Introducing, The New Prevx Edge.

Discussion in 'Prevx Releases' started by trjam, Nov 13, 2008.

Thread Status:
Not open for further replies.
  1. Baldrick

    Baldrick Registered Member

    Hi Joe

    I have a collection of leaktests stored on my PC and a while back Edge started detecting one of them (TrojanSimulatir.exe). I reported this to you and if I remember you updated the records to class it as a 'Test virus'...and all has been well unitl this afternoon then all of a sudden 3.0.1.17 has detected TrojanSimulator.exe plus seven othr similar such leaktests...all stored in the same location on my PC.

    I am intrigued as to why this might be? Also, have PM'd you the list of the .EXEs concerned and a scan log of the session that found them...in case you want to evaluate them and mark them as 'Test virus' or the like?

    Cheers


    Baldrick:D
     
    Last edited: Feb 21, 2009
  2. PrevxHelp

    PrevxHelp Former Prevx Moderator

    About three months ago, right on the edge of the Edge release (horrible pun intended :D) we made major architectural changes to our database which have immensely improved detection. Prevx2 and Edge do share the same back end database and database-side heuristics/rules so Prevx2 is able to leverage a good deal of what Edge detects.

    However, as GES/POR pointed out, that's where the similarities end :) The post referring to Prevx2's detection versus Edge's detection was talking about how they act in realtime when blocking an infection that is trying to enter. This completely ignores all of the new rootkit detection, new scan engine, and a whole host of new functionality in Edge. The 1-2 minute scan in Edge will actually find far MORE than Prevx2's 30-odd minute scan on the same system.

    With Edge, we now have multiple layers of heuristics. The database is built primarily on heuristics and server-side analysis but all of that is handled "in the cloud" regardless of user settings. In Edge, we opened up some more granularity to the heuristics engine with our Advanced Heuristics, Age, and Spread detection settings. These engines are all on top of the standard detection and Prevx2 can't leverage any of those engines at all.

    Moving forward we are constantly adding new features which are based on Edge's new engines and can't be 100% ported back to the Prevx2 "language" but we aren't going to just abandon Prevx2 because it does have a niche market of people who like the behavior blocking components :)

    But if you want to leverage all of the benefits GES/POR outlined and more, Edge will fit your specifications :)
     
  3. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Windows tends to access files throughout the system when indexing data, etc. so its possible that Edge caught onto this and saw that these files might be interesting so it added them to its default scan. I'll look into marking these files as Test Viruses (begrudgingly because I am conceptually against leaktests :D But I guess it is valid to have them identified as this :D)
     
  4. PrevxHelp

    PrevxHelp Former Prevx Moderator

    The problem with this is that there is no way to do it at the software level reliably. You'll need a USB stick with write protection at the hardware level (i.e. - a little switch on the side which locks it down). That's really going to be the best way and the only way which I would personally trust to prevent getting infected from putting a USB stick in :)
     
  5. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Very interesting. Well, the next beta cycle won't be starting for quite some time now *knock on wood* as it looks like we've reached stability with v3.0.1.17 but once we start unveiling more functionality with new builds, it would probably be worth starting from fresh and trying the updating again :)
     
  6. jmonge

    jmonge Registered Member

    is the Gui going to change or remain same?cause this one is easy to navigate and use:) thanks
     
  7. SIR****TMG

    SIR****TMG Registered Member

    I updated and running just fine
     
  8. PrevxHelp

    PrevxHelp Former Prevx Moderator

    So far we don't have any changes planned to the GUI :)
     
  9. jmonge

    jmonge Registered Member

    cool i tried it for the last 7 days and it is really fast and stable;)
     
  10. LoneWolf

    LoneWolf Registered Member

    That's good news. :D
    I like the way it's laid out :thumb:
     
  11. lost24

    lost24 Registered Member

    Prevx Edge seems to have compatibility issues with Shadow Defender. I installed the latter half an hour ago, and then Prevx kept crashing and coming back. When I started SD it detected it as a threat.
    There were crashes even after override.

    I have just uninstalled SD and everything is back to normal. It's a shame they can't cohabit.

    PS : I didn't even get into shadow mode.
     
  12. brihy1

    brihy1 Registered Member

    does the check for updates check for new versions of edge or sigs or what??on my desktop i have registered edge 3.0.1.3.do i have to manually download the newer version 3.0.1.7?
     
  13. GES/POR

    GES/POR Registered Member

    Program Updates/Versions only, did you try to download from the GUI?

    Sigs are all hosted on the serverside of PX
     
  14. brihy1

    brihy1 Registered Member

    yes i opened edge and hit check for updates and says im using the newest prevx edge software?3.0.1.3
     
  15. GES/POR

    GES/POR Registered Member

    Probably will be available in a few hours trough the GUI, if im guessing right this is the deal with most vendors --- newest versions are not directly pushed out to plain users, instead they are downloadable on webbie's first.

    If you download the newest version from the website and install it ontop of your current installation it will update just fine as said earlier by PXhelp
     
  16. Triple Helix

    Triple Helix Specialist

    Last edited: Feb 21, 2009
  17. Baldrick

    Baldrick Registered Member

    Hi Joe

    Don't mark them as such on my behalf (sorry if that sounds big headed...not meant to be). If the Prevx approach is that they should be flagged as they have been then so be it. I can always set Detection Overrides for them if I want/feel.

    So please go with the Prevx view. :D
     
  18. chris2busy

    chris2busy Registered Member

    did you try lowering the self defence?
     
  19. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Hello,
    We'll be looking into this further internally so we can try and reproduce the incompatibilities. I'll let you know if we find something :)
     
  20. PrevxHelp

    PrevxHelp Former Prevx Moderator

  21. lost24

    lost24 Registered Member

    I have to say no, but it didn't even cross my mind, because it kept crashing, so I just wanted to put the fire out, lol. Now I wish I had tried.

    Thanks a lot. I haven't abandonned all hope to make both work together on my comp :)
     
  22. BG

    BG Registered Member

    Just installed Vista Service Pack 2 RC1 and Edge is going nuts. Have you guys checked edge against this yet? NAV is remaining calm.
     
  23. PrevxHelp

    PrevxHelp Former Prevx Moderator

    By nuts, I'm guessing that it is scanning a lot of files in realtime? Could you send me a scan log? I should be able to see what is triggering it from there :)
     
  24. Romagnolo1973

    Romagnolo1973 Registered Member

    To PrevxHelp
    Today Edge was updating to new version , I get every ok to my Comodo Defense+ but at one moment everythig crashes, blue screen of Windows and this error message about PXARK.Sys : Driver Unload Without Cancelling Pendings Operation etc.....
    Rebooting PrevxEdge does not exist on my pc o_O
    I download a new version 3.0.1.17 to the Prevx site and now everything seems ok, no need to insert my edge licenses cause she was automatic downloaded I thik

    Sorry for my bad english

    My system is XP Pro, with Avira Free, Comodo CIS 3.8 with Defense+enable, Edge was setting with autoprotection enable (no password protection for edge setting)

    I tell you this for your check
    Thanks
     
  25. ctrlaltdelete

    ctrlaltdelete Registered Member

    Romagnolo1973,
    There was an issue with pxark.sys on some machines when uninstalling Edge.
    The file pxark.sys is not used anymore in Edge, so i'm pretty sure you will not see this error again :D
    I don't know exactly in which Edge version\build pxark.sys was replaced, at least 1 month ago it was replaced in the Beta's i tested.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice