New AV is here >

Discussion in 'other anti-virus software' started by StevieO, Mar 22, 2006.

Thread Status:
Not open for further replies.
  1. Happy Bytes

    Happy Bytes Guest

    So you're going to say that i do not know what i say here? Do you know who i'm?
     
  2. JimIT

    JimIT Registered Member

    Joined:
    Jan 22, 2003
    Posts:
    1,035
    Location:
    Denton, Texas
  3. TeraInnovations

    TeraInnovations Registered Member

    Joined:
    Jan 25, 2006
    Posts:
    91
    With AVG, they have an on-access guard so a virus COULDN'T go thru and infect all of the files.

    A user is not constantly clicking Scan in your program, and I don't see how scanning speed could protect you any better....

    Your 'scanning' is also just like running dir C:\windows\ /a /b /s>C:\listoffiles.txt
    and using grep to find the 'malicious' lines

    There, should I sell that for $15 now?
     
  4. TeraInnovations

    TeraInnovations Registered Member

    Joined:
    Jan 25, 2006
    Posts:
    91
    "Viruses which replaces legal programs like notepad.exe it detect by memory hash check."

    I have a question about this. Isn't this exactly what you said you DIDN'T want to do? And, in memory, what if the program opens up a file (i.e. - notepad opening a file) Would that change your hash?

    Hashing memory is not going to work...
     
  5. kalpik

    kalpik Registered Member

    Joined:
    May 26, 2005
    Posts:
    369
    Location:
    Delhi, India
    Interesting (funny too!) Thread!
     
  6. Acadia

    Acadia Registered Member

    Joined:
    Sep 8, 2002
    Posts:
    4,332
    Location:
    US
    Indeed, this has been a very enjoyable thread, unfortunately, I don't know enough about this stuff to know if these guys are serious, or just having fun! :blink:

    Acadia
     
  7. IBK

    IBK AV Expert

    Joined:
    Dec 22, 2003
    Posts:
    1,886
    Location:
    Innsbruck (Austria)
    hm, which friends?

    HB understands it perfectly and what he writes is true. He has much more experience in writing AV programs and analyzing malware than probably most other well-known AV peoples, so it is a bit funny that YOU write him that he does not understand your "program".

    Just for curiosity and nothing more, how old are you?
     
  8. kalpik

    kalpik Registered Member

    Joined:
    May 26, 2005
    Posts:
    369
    Location:
    Delhi, India
    Oh they are serious BELIEVE ME!! Right HB?? ;)
     
  9. _me

    _me Registered Member

    Joined:
    Mar 23, 2006
    Posts:
    6
    Interesting is that most every malware and dangerous file can be found by filename so i dont understand why you guys have so much against filename check.
    It is obvious that some of you develop malicious programs and filename check is like cancer for you.
     
  10. bigc73542

    bigc73542 Retired Moderator

    Joined:
    Sep 21, 2003
    Posts:
    23,934
    Location:
    SW. Oklahoma
    The personal attacks need to stop or this thread will be closed

    bigc
     
  11. EraserHW

    EraserHW Malware Expert

    Joined:
    Oct 19, 2005
    Posts:
    588
    Location:
    Italy
    Now I ask: why this sentence? Now you've well-explained your skill level ;)
     
    Last edited: Mar 23, 2006
  12. kalpik

    kalpik Registered Member

    Joined:
    May 26, 2005
    Posts:
    369
    Location:
    Delhi, India
    So that means even i can build my own AV!! Filename check is not that big a deal! Would you buy my AV? And what if i rename a virus as explorer.exe??
     
  13. _me

    _me Registered Member

    Joined:
    Mar 23, 2006
    Posts:
    6
    Normal user will not rename any malicous file to legitimate process, if you wanna ruin your computer be my guest.

    Build av program is not so easy as you think, RemoveIT Pro has more than 50.000 virusus in his database with daily update.
    Every day atleast 200 new viruses comes so it is not so simple.
     
    Last edited: Mar 23, 2006
  14. kalpik

    kalpik Registered Member

    Joined:
    May 26, 2005
    Posts:
    369
    Location:
    Delhi, India
    Yes, normal user wont do that! But im a virus writer, and what if i release my virus as explorer.exe??
     
  15. _me

    _me Registered Member

    Joined:
    Mar 23, 2006
    Posts:
    6
    If you release your virus with legitimate name, it will be located by signature.
    Hash is good for checking viruses which replaces legitimate processes.
    Moust of viruses up to 95% can be located with filename check.
     
  16. IBK

    IBK AV Expert

    Joined:
    Dec 22, 2003
    Posts:
    1,886
    Location:
    Innsbruck (Austria)
    rofl :p
     
  17. kalpik

    kalpik Registered Member

    Joined:
    May 26, 2005
    Posts:
    369
    Location:
    Delhi, India
    No comments! :rolleyes: :blink: :p
     
  18. Happy Bytes

    Happy Bytes Guest

    Oh the great one speaks :D There are A LOT of trojans which are using randomly generated names. And please explain to me how you would detect for instance this virus with your Filename Check:

    http://www.eset.com/msgs/tengaa.htm

    Or the ItW Listed Parite.B ? That is completely impossible to detect parasitic viruses with a filename check due to the fact that parasitic viruses ATTACHING itself to existing valid files!
     
  19. _me

    _me Registered Member

    Joined:
    Mar 23, 2006
    Posts:
    6
    RemoveIT Pro does not have only filename check it has also signature check for randomly generated viruses.
    RemoveIT Pro XT Enterprise has filter which prevents writing on processes.
    This technology is similar like firewall which block ports.
    Process will normally work but it cannot be patched.
    There are many people who thanks me that only my program helps them so my work has meaning and i only do this to help people.
     
    Last edited: Mar 23, 2006
  20. Happy Bytes

    Happy Bytes Guest

    Oh is it? :D I'm very sad to tell you that parasitic viruses also attaching to files which are currently NOT RUNNING. And now? :eek:
     
  21. Happy Bytes

    Happy Bytes Guest

    Wait i just get it... You don't even know what a parasitic virus is - isn't it? :eek:
    Why you don't let this business to people which actually knowing what they are doing? I Tell you what - this program should be added to the Rouge-List:
    http://www.spywarewarrior.com/rogue_anti-spyware.htm

    Can someone take care of this?
     
  22. JimIT

    JimIT Registered Member

    Joined:
    Jan 22, 2003
    Posts:
    1,035
    Location:
    Denton, Texas
    This fellow is wondering why his laptop suddenly will not boot. He is looking for a good time to schedule repairs...:ouch:
     

    Attached Files:

    • 1.jpg
      1.jpg
      File size:
      41 KB
      Views:
      294
  23. kalpik

    kalpik Registered Member

    Joined:
    May 26, 2005
    Posts:
    369
    Location:
    Delhi, India
    I really dont think thats a laptop, but oh well! :D
     
  24. bigc73542

    bigc73542 Retired Moderator

    Joined:
    Sep 21, 2003
    Posts:
    23,934
    Location:
    SW. Oklahoma
    This thread has degraded to the point that the posts are now just personal in nature and not actually related to the original meaning of the thread. So it will now be closed.

    bigc
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.