Future Changes to Prevx

Discussion in 'Prevx Releases' started by Triple Helix, Jun 13, 2009.

Thread Status:
Not open for further replies.
  1. Skywolfe

    Skywolfe Registered Member

    Joined:
    Apr 8, 2010
    Posts:
    82
    I have and it doesn't seem to make much of a difference it just jumped around. but without it installed, the mouse works fine.
     
  2. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    It may be worth having a remote support session to solve this. If you'd be interested, could you please send me a PM and we can schedule a time from there?

    Thanks! :)
     
  3. Skywolfe

    Skywolfe Registered Member

    Joined:
    Apr 8, 2010
    Posts:
    82
    it has already been uninstalled ;) I had to because things would freeze because ot it.
     
    Last edited: Jun 29, 2010
  4. raven211

    raven211 Registered Member

    Joined:
    May 4, 2005
    Posts:
    2,567
    Virtualization/sandboxing of files unknown to your central and analysis.


    Has this been suggested before and do you've any plans for something like this or similar to this?
     
  5. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    Yes :) Prevx 4 uses virtualization/sandboxing techniques but isn't a conventional sandbox... per-se. :)

    I'll clarify this more once we get closer to a beta :D
     
  6. shadek

    shadek Registered Member

    Joined:
    Feb 26, 2008
    Posts:
    2,538
    Location:
    Sweden
    I am once again requesting increased detection of rouge AVs.

    Even at maximum heuristic settings they're running past Prevx without a hint or prompt. I could post an example right now but I know it's against the rules to link to malware at Wilders.

    Shouldn't unknown and new files get detected by age/popularity criteria and prompt me what to do? These bad-ass-malwares installs silently while Prevx does nothing (and that goes for Panda Cloud Antivirus and Avira Premium as well).
     
  7. BoerenkoolMetWorst

    BoerenkoolMetWorst Registered Member

    Joined:
    Dec 22, 2009
    Posts:
    4,872
    Location:
    Outer space
    It is in the making, Prevx 4 will get a special Behaviour detection for rogue's ;)
     
  8. Dark Star 72

    Dark Star 72 Registered Member

    Joined:
    May 27, 2007
    Posts:
    778
    Does this mean that Prevx 4 will not be compatible with the likes of Returnil and Shadow Defender which the present versions of Prevx are?
     
  9. shadek

    shadek Registered Member

    Joined:
    Feb 26, 2008
    Posts:
    2,538
    Location:
    Sweden
    I kind of knew that already. I was just trying emphasize the importance of such implemention once again. :) It's the weak spot of Prevx! :)
     
  10. Uli9000

    Uli9000 Registered Member

    Joined:
    Sep 29, 2009
    Posts:
    85
    Location:
    Edinburgh
    Hi

    Any chance of adding safeonline protection to flashpeaks slimbrowser?

    Uli
     
  11. Uli9000

    Uli9000 Registered Member

    Joined:
    Sep 29, 2009
    Posts:
    85
    Location:
    Edinburgh
    Hi

    Scratch that, just found out it's based on IE which makes me a little uncomfortable.

    Uli
     
  12. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    No, Prevx will still remain compatible with everything it is compatible with today :)
     
  13. shadek

    shadek Registered Member

    Joined:
    Feb 26, 2008
    Posts:
    2,538
    Location:
    Sweden
    I am once again pleading for better rouge AV protection. All files should get checked against Prevx database. If never seen before, I want to know about it. Even at all max heuristic this one just got through without any notification from Prevx:

    MD5 : d96a9047e5c30fb2f709d0f45783efe0

    Cheers! :)
     
  14. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    In our defense, I just checked that MD5 on VT and no one finds it :) (VBA32 just says it is using a cryptor, but not an actual detection).
     
  15. Baz_kasp

    Baz_kasp Registered Member

    Joined:
    May 1, 2008
    Posts:
    593
    Location:
    London

    I dont think spamming the request thread with the same request will make it happen any faster to be honest....how about sending them the samples so they can be added? :)
     
  16. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    It's also probably worth noting that the MSI itself won't contain the malicious components - if you actually install it, does Prevx not warn?
     
  17. shadek

    shadek Registered Member

    Joined:
    Feb 26, 2008
    Posts:
    2,538
    Location:
    Sweden
    It does not warn when installing and it does not seem to add any malware onto my computer. KIS 2011 however warns me the application is untrusted (seen by less than 10 users of the community) and asks me whether or not to trust it, run under restrictions or block it. I choose to trust it and no reaction yet from Prevx (and to be completely fair, Kaspersky doesn't detect it as malicious, just unknown).

    The Rouge AV was PCDefenderSilentSetup.msi and was collected from MDL. Silently installed in program files\def\ and when I executed the .exe, a scan window was shown from Prevx down in right corner but was allowed to run... and I was screwed. Firefox got terminated and the dice was rolled. :p Some russian bad-ass scanner completely destroyed my computer and had to restart with Returnil. :)

    I will stop spamming this thread now with the request. I just sent it to Prevx. :)
     
    Last edited: Aug 6, 2010
  18. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,275
    Location:
    Ontario, Canada
    You can say what ever you want and keep doing so!! But it is best to send to Prevx to get them added! :thumb: V4 will have something better to handle rogue's so that's good to know! ;)

    TH
     
  19. shadek

    shadek Registered Member

    Joined:
    Feb 26, 2008
    Posts:
    2,538
    Location:
    Sweden
    I know, I know, I know. I'll stop. :)
     
  20. Baz_kasp

    Baz_kasp Registered Member

    Joined:
    May 1, 2008
    Posts:
    593
    Location:
    London
    I would like to see an online file submission webpage to negate the need for logging into email in order to send suspicious files.
     
  21. shadek

    shadek Registered Member

    Joined:
    Feb 26, 2008
    Posts:
    2,538
    Location:
    Sweden
    Agreed. Would allow quicker and more easy-going submission of files without 'the hassle'.
     
  22. SQBI

    SQBI Registered Member

    Joined:
    Feb 11, 2010
    Posts:
    8
    The 'authenticating files' message window could have an "always on top" option.
     
  23. BoerenkoolMetWorst

    BoerenkoolMetWorst Registered Member

    Joined:
    Dec 22, 2009
    Posts:
    4,872
    Location:
    Outer space
    I support this request :)
     
  24. Phantasm

    Phantasm Registered Member

    Joined:
    Jul 29, 2009
    Posts:
    87
    Use ThreatFire and Prevx together = Excellent
     
  25. shadek

    shadek Registered Member

    Joined:
    Feb 26, 2008
    Posts:
    2,538
    Location:
    Sweden
    I long for Prevx 4! :)
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.