![]() |
|
#26
|
|||
|
|||
|
The test was done properly. If you want I can send you a sample and you test it yourself, ok?
__________________
http://bsa.isoftware.nl |
|
#27
|
||||
|
||||
|
Quote:
in short only Shadow Defender works @ 100% |
|
#28
|
||||
|
||||
|
Quote:
First of all, I don't have a test-system, so it would be foolhardy on my part to do what you suggest. Secondly, please don't take offense to my comment - I mean no disrespect. But when you said that you just rebooted your test-system in order to determine if that specific malware could circumvent an ISR-protected partition (thinking that a reboot should have cleansed the system), that was a mistake - ISR programs simply don't work that way! This is not to suggest that an ISR-protected partition can't be bypassed by certain malware, it's just to suggest that the ISR-portion of your test appears flawed. Aaron
__________________
I'm Retired - I was tired yesterday and I'm tired again today... ...but with Rollback Rx, MBAM, Privatefirewall, and Drive Snapshot, I sleep pretty well! |
|
#29
|
|||
|
|||
|
I donīt remember the restoring procedure for each of the products because I did that long time ago. Before testing with the malwares I did a test to be sure that the restoring procedure was correct, and it was. After infecting the system, the restoring procedure could not remove the malware from system.
You can find other threads from different people that made the same test with similar malware samples and the results are the same. Search the forum to find them.
__________________
http://bsa.isoftware.nl |
|
#30
|
||||
|
||||
|
Quote:
Aaron
__________________
I'm Retired - I was tired yesterday and I'm tired again today... ...but with Rollback Rx, MBAM, Privatefirewall, and Drive Snapshot, I sleep pretty well! |
|
#31
|
|||
|
|||
|
Quote:
Itīs not the same test. Different people used the same samples and same version of products and everybody got the same result: almost all rollback software running under an admin account is unsecure. Period.
__________________
http://bsa.isoftware.nl |
|
#32
|
||||
|
||||
|
Quote:
![]()
__________________
I'm Retired - I was tired yesterday and I'm tired again today... ...but with Rollback Rx, MBAM, Privatefirewall, and Drive Snapshot, I sleep pretty well! |
|
#33
|
||||
|
||||
|
Quote:
Anything you say I've ran CTM for almost a year now with no issues. I've ran SD for years no issues. I've ran Deepfreeze with no issues. Test all you want,it's not like using in the real world period.
__________________
Windows XP SP3 & GeSWall |
|
#34
|
|||
|
|||
|
Quote:
Tests were done with malware samples in the wild, not POCs, but if you prefer to have a fictitious peace of mind it´s up to you. Anyway I give to you the same offer I gave to Aaron: I send you a malware sample and you test it yourself.
__________________
http://bsa.isoftware.nl |
|
#35
|
||||
|
||||
|
I've been using CTM for over a year and have it installed now (version 2.6.138262.166).
I like it and recommend it. At first, CTM was buggy and I did lose data on two occasions, but one of those was totally my fault. For at least the past six months, CTM has performed flawlessly for me. It has, along with Sandboxie, WinPatrol, Keyscrambler, and Malwarebytes become a permanent member of my install. |
|
#36
|
||||
|
||||
|
Quote:
Maybe you didn't understand what I already said: Quote:
It doesnt matter what YOUR TESTING shows.In the real world,it's highly unlikely to come across all these exploits. In all of my years using virtualization products and rollback software,I've had zero, "0" infections or problems.
__________________
Windows XP SP3 & GeSWall |
|
#37
|
||||
|
||||
|
Quote:
No I did not, but then they were not references on the same page. So you agree, why state something differently elsewhere on your website |
|
#38
|
|||
|
|||
|
Quote:
It´s you who don´t understand: rollback software is not secure because it´s unable to stop certain malwares (not exploits). Just because you didn´t get a malware that bypassed CTM doesn´t mean that malware doesn´t exist. Maybe you didn´t experience an infection because you only download software from trusted repositories. Obviously with good and secure measures it´s pretty difficult to get a malware. Resuming: you are talking about your experience and I´m talking about a fact. To put it in simple words that anyone can understand: just because you never saw an elephant it doesn´t mean elephants don´t exist. btw... do you want to hear my experience? In the real world a malware bypassed the DeepFreeze I had installed in my computer. If you google a bit you will find similar experiences.
__________________
http://bsa.isoftware.nl Last edited by Buster_BSA : April 22nd, 2011 at 05:26 AM. |
|
#39
|
|||
|
|||
|
Quote:
Because I donīt think they are related. My tool is limited, as any other software, of course, but when I say: "A big advantage of Buster Sandbox Analyzer compared to other systems doing the same task is that BSA can be better, more accurate and report more or less information depending of the user, meanwhile other analyzers will be as good or as bad as their designers did it." I mean that other tools are static, you can not improve the analysis by yourself. Meanwhile, BSA allows you to run other software that can help to improve the analysis. I donīt see why that statement is over the top.
__________________
http://bsa.isoftware.nl |
|
#40
|
||||
|
||||
|
Quote:
I am tending to agree with you, having used RB Rx for a number of years, having suffered a significant issue recently and now looking at the Returnil Multi-Snapshot beta...which does indeed look very promising as an alternative.
__________________
KIS 2013 & Webroot SecureAnywhere Essentials 2013 ...once again the perfect combination! |
|
#41
|
||||
|
||||
|
Quote:
I'll speak fact with you. If you rely on just CTM for security,you have a good chance of being in trouble. Fact:I've got Geswall,which is my primary defense. Fact: I'll personally let you know when something defeats this setup.
__________________
Windows XP SP3 & GeSWall |
|
#43
|
|||
|
|||
|
Quote:
I recommend using Windows from a Limited User Account. I recommend backup of system and important data using software like CloneZilla. I recommend web surfing using software like Sandboxie. I recommend downloading software from trusted repositories. I recommend having a good antivirus installed and updated in a daily basis if possible. Regards.
__________________
http://bsa.isoftware.nl |
|
#44
|
|||
|
|||
|
Quote:
is there a particular Virtualization/ISR software (apart from Shadow Defender...) that you Trust? -OR- Shadow Defender should be rejected, too? (like CTM and the rest ISR Apps...) |
|
#45
|
|||
|
|||
|
In the case I wanted to use an ISR software I only would trust SD.
__________________
http://bsa.isoftware.nl |
|
#46
|
|||
|
|||
|
Quote:
__________________
Linksys WRT54GS (Tomato) Firewall Norton AntiVirus 2012 Sandboxie (license) CTM |
|
#47
|
|||
|
|||
|
Quote:
![]() |
|
#48
|
|||
|
|||
|
Is SDīs coder still MIA?
__________________
http://bsa.isoftware.nl |
|
#49
|
||||
|
||||
|
Quote:
unfortunately yes.
__________________
| Xubuntu || NoScript || Image for Linux + BootIt Bare Metal | |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|