Introducing, The New Prevx Edge.

Discussion in 'Prevx Releases' started by trjam, Nov 13, 2008.

Thread Status:
Not open for further replies.
  1. softtouch

    softtouch Registered Member

    Joined:
    Jan 31, 2006
    Posts:
    415
    Sent email. Thanks.
     
  2. softtouch

    softtouch Registered Member

    Joined:
    Jan 31, 2006
    Posts:
    415
    The settings are all on default, I never touched them...

    The log shows this:
    [29/5/2009 19:28] The file [D:\Own\d2007\ADS Scanengine\ads.exe] has been blocked because it contains a threat of type [Community.OuterEdge] - Identity: 5AA9ABA30058BB23AE5C063223C8740010F08754

    They are plain delphi 2007 programs, just compressed with upx or pecompact2 to reduce their size.

    And about the digital ID, its far too expensive to get a digital ID. Consider this are all freeware application, I do not make any money with them...
    And the requirements are just plain stupid to get a digital ID... I was already talking to comodo regarding this.
     
  3. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    The warning which we are showing is correct - the file should have a Community.OuterEdge detection in this case. Very very rarely would an average user actually encounter software only ever seen by themselves. The file which you have pasted above is flagged because it is packed/encrypted and absolutely brand new - you were the first user to ever see it (and the only user still). Therefore, because of the age/spread heuristics, the file is logically flagged before any further data is gathered from the file.

    You can circumvent this warning by not packing your software or by sending us download links when you release a new version - this is a common practice by software developers when dealing with AVs (we have to do it with every new release or update).
     
  4. softtouch

    softtouch Registered Member

    Joined:
    Jan 31, 2006
    Posts:
    415
    Sure I am the first user who "see" it. I guess every programmer is the first user...

    That it is packed does not mean its malware. You cannot consider that a brand new packed program is malware, without analyzing / unpacking it, like other av scanner do.

    And sending download links... I update at least 2-3 times a day my programs... I would have to hire somebody just for keeping you updated about new releases...

    Look at the VT report here: http://www.virustotal.com/analisis/...65d922cf2a387b9416565a02d324d530c7-1243599386

    ...
     
  5. Dark Star 72

    Dark Star 72 Registered Member

    Joined:
    May 27, 2007
    Posts:
    778
    Joe,
    A question about the new Secure Browser/Sandbox feature.
    If I am browsing with Firefox using the Secure Browser and I get a warning that I have malware etc. in the Sandbox - how is it cleaned up. Do I:
    a) clean it up with Prevx as is done at the moment - or
    b) just close the Secure Browser/Sandbox and its gone as it is with Sandboxie
     
  6. hawki

    hawki Registered Member

    Joined:
    Dec 17, 2008
    Posts:
    6,130
    Location:
    DC Metro Area
    .
    PrevxHelp

    Outstanding Prevx Customer Service :))


    I had hesitated to buy a license for Prevx because of my concerns about activation issues after reinstalling my OS.

    Well, turns out my concerns were totally unjustified.

    I had to reinstall Windows this AM.

    Sent a message to PrevxHelp requesting a new license.

    My license was reactivated within an hour :)

    (I suspect that if my request was made during normal business hours. the reactivation would have been done even sooner.)

    Thanks

    .
     
  7. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    will prevx detects active hiden rootkits?thanks
     
  8. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    We aren't saying its malware, we're saying it is blocked by the Age/Spread detection, which is correct.
     
  9. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    Yes, that's one of our strong points :) You can read about one of our more recent conquests from: http://prevx.com/blog.asp
     
  10. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    I indeed would have gotten it sooner but I've been stuck in a hotel with poor internet service :D You can always write into our customer service inbox if I'm not responding fast enough as well, or with a license key issue like you had, you can sign up for MyPrevx (http://my.prevx.com) and use that interface to deactivate your current computer, which should allow you to enter it in a new computer.

    Let me know if you need anything else :)
     
  11. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    thanks:thumb: i am running malware defender with prevx in one of my pc's and it is fast
     
  12. Pleonasm

    Pleonasm Registered Member

    Joined:
    Apr 9, 2007
    Posts:
    1,201
    PrevxHelp, as a consequence of this enhancement, Prevx will now be able to be compared to other “non-cloud” anti-virus vendors using methodologies such as those employed by AV Comparatives – correct?

    Thank you.
     
  13. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    No, the offline support is only in as a backup in the event that the internet is unreachable (i.e. if an infection is blocking us from connecting). It does not have anywhere near the strength of the whole Prevx database and is just a list of simple signatures of known malicious programs.
     
  14. MaxEntropy

    MaxEntropy Registered Member

    Joined:
    May 21, 2009
    Posts:
    101
    Location:
    UK
    Have you tried adding your Delphi app's folder to the excluded list in Prevx's Detection Overrides?

    That works for me when running console-mode apps created with a C++ compiler.
     
  15. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    We've decided to centralize the sandboxing around cleanup rather than true sandboxing for usability reasons. This way the user won't be interrupted if they do want to keep the program and they will be able to remove it if wanted (so the answer is A :D)
     
  16. ypestis

    ypestis Guest

    Is there any chance of a Prevx Forum here at Wilders?
    When threads grow this long,it is near impossible
    to see if ones queston or comment has not already
    been "done to death" twenty pages back.

    thanks
     
  17. phxcobra

    phxcobra Registered Member

    Joined:
    Feb 12, 2009
    Posts:
    7
    Ok, i have an issue that bugging me. I'm signed up on myprevx and i get email updates if one of my system is infected. Well, i keep getting a notice that one of my systems is infected. I look on the system and prevx says clean and the status doesnt show any cleaned threats in the last 60 scans. i just did a deep scan and it came back clean, but then i get another email saying my system is infected. Ideas? i've tried looking at the log, but its not entirely intuitive as it looks like a couple places it detects malware, but it doesnt say it cleaned anything and in the main screen it doesn't list any detected threats. i've included the beginning of the log where and the last line.


    Some non-malicious files are not included in this log.
    Heuristics Settings: Age: 2, Pop: 2, Heu: 4 (Dir: 1)
    Last Scan: Fri 2009-05-29 10:10:44 US Mountain Standard Time. Number of Scans: 60. Last Scan Duration: 3 minutes 34 seconds.
    [DN] (ACTIVE) c:\windows\system32\etdcoinst.dll [PX5: 8231E96B009B55F3069F03D7EEC2D700641EE0B9] Malware Group: Community.OuterEdge
    [D] (ACTIVE) c:\windows\system32\btbigbmp.dll [PX5: CBAD643300FE9C7FE02F01413D1A7900694AD5A4] Malware Group: Community.OuterEdge

    ----------------------
    Previously Detected Files:
    [DN] (ACTIVE) c:\windows\softwaredistribution\download\593d5ddb620b1f1b4bef986c655fd062\sp2qfe\mswrd8.wpc [PX5: 7D4A2B01000D9F3144CD0444FAEE87007220EF06] Malware Group: Community.OuterEdge
     
  18. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    Hello phxcobra,
    Those lines in the log don't necessarily mean it was detected as infected. Could you please PM me your license key so I can try to see what is causing the warning?
     
  19. benton4

    benton4 Registered Member

    Joined:
    Nov 29, 2004
    Posts:
    158
    Location:
    Oregon
    This is indeed a great point as well as a great idea!!
     
  20. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    What, you don't like scrolling through 170 pages of posts? :D However, if anyone has any questions which they suspect have been hashed through already on the forum, feel free to PM me :)
     
  21. G1111

    G1111 Registered Member

    Joined:
    May 11, 2005
    Posts:
    2,304
    Location:
    USA
    Joe - Hoping you keep the new version as lite and compatible as Prevx 3 is now. It works well with my other security, does not slow down my machine as very early versions of Prevx did (a few years ago). It is a simple, eloquent security product. Hoping it stays that way.
     
  22. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    Don't worry - if the new version was to hurt system performance or get larger than 1MB, I would be looking up at the guillotine being prepared to fall on my outstretched neck :D
     
  23. Mongol

    Mongol Registered Member

    Joined:
    Jul 24, 2004
    Posts:
    1,581
    Location:
    Houston, TX
    I agree 100% with this idea. The longevity of this thread and obvious interest in Prevx here at Wilders makes this a great idea...:thumb: :D
     
  24. elapsed

    elapsed Registered Member

    Joined:
    Apr 5, 2004
    Posts:
    7,076
    I think a Prevx support forum on Wilders is a good idea, and in my opinion, one the Prevx folks should consider.
     
  25. PrevxHelp

    PrevxHelp Former Prevx Moderator

    Joined:
    Sep 14, 2008
    Posts:
    8,242
    Location:
    USA/UK
    Haha true :D

    "What is your security setup" was started Dec. 15, 2005 - 1261 days ago. This thread was started Nov. 13th, 2008 - 197 days ago. If measured from the start, the "What is your security setup" thread has an average of 3.85 posts per day (with 4855 posts as of now) and this thread has an average of 21.5 posts per day (with 4236 posts now).

    Therefore, if the growth is completely constant from the start of each (which it obviously isn't but it would be too hard to snapshot the acceleration from a post-by-post basis :D), we should catch up with the "What is your security setup" thread in 35.07 days :D
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.