Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Inactive Support Threads
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Security
Video Reviews - Security and Privacy
CLOSED - Challenge VoodooShield (and Win a lifetime License!)
Message
<blockquote data-quote="NullByte" data-source="post: 522553"><p>I don't understand, I was talking about SecureAPlus and you can check that yourself (it applies to VoodooShield too since it's using VirusTotal)</p><p></p><p>About the other things that I said, you can check the Wilders forum.</p><p>[SPOILER="Wilders Post"]</p><p>VoodooShield said: <a href="https://www.wilderssecurity.com/goto/post?id=2600304#post-2600304" target="_blank">↑</a></p><p>Before I forget... NullBytes did have a point when he talked <strong>about injecting malware into a clean file, which someone already demonstrated on this thread a few weeks ago</strong>. Which would not be an issue, except for the fact that VS does allow by Parent Process by default (to automatically whitelist as much clean stuff as possible). So basically, all I need to do is make sure that if a non-whitelisted item is going to be allowed by the previously allowed parent process, that it is checked by the blacklist and VoodooAi first.</p><p>I made a video witch is something like that...</p><p>[MEDIA=youtube]dIdjBZ5R7is[/MEDIA][/SPOILER]</p><p></p><p>On the other hand, the same things that I said about VoodooShield applies to Avast and the guys from tech support where way friendlier and they understood without all this hate (it took two days to answer but I was ok).</p><p></p><p>if you look at the video made by AV-Gurus you can see again that the AI doesn't know if a file is safe or not. Now, if you take the game posted a few days ago that had a PUP inside, there is a high chance that you will get infected and it's not only about VoodooShield it's about most Anti-EXE and how they are made (BTW, the game with the PUP had a high chance to bypass comodo too).</p><p></p><p>When I made the post I didn't knew that all the fanboys will jump on me and even the Dev had a hostile attitude so, I stopped helping any security software. The worst part is that this type of attack or tricks how you wanna say it are not new, if you surf a few hacking forums you will see.</p><p></p><p>After all the hate from a few members (from here) and a few people from wilders made accounts here and sent me hate too, I stopped talking about this type of stuff since here is not the place. I hate drama and this post made me go out of my way.</p><p></p><p>I think that Dan should remove some engines from the VirusTotal and only let fewer, this way the FP will be lower and the detection will be the same. On file checking he needs to add additional checking, beside that he should make a way to check every running process with virus total (just in case something bypassed).</p></blockquote><p></p>
[QUOTE="NullByte, post: 522553"] I don't understand, I was talking about SecureAPlus and you can check that yourself (it applies to VoodooShield too since it's using VirusTotal) About the other things that I said, you can check the Wilders forum. [SPOILER="Wilders Post"] VoodooShield said: [URL='https://www.wilderssecurity.com/goto/post?id=2600304#post-2600304']↑[/URL] Before I forget... NullBytes did have a point when he talked [B]about injecting malware into a clean file, which someone already demonstrated on this thread a few weeks ago[/B]. Which would not be an issue, except for the fact that VS does allow by Parent Process by default (to automatically whitelist as much clean stuff as possible). So basically, all I need to do is make sure that if a non-whitelisted item is going to be allowed by the previously allowed parent process, that it is checked by the blacklist and VoodooAi first. I made a video witch is something like that... [MEDIA=youtube]dIdjBZ5R7is[/MEDIA][/SPOILER] On the other hand, the same things that I said about VoodooShield applies to Avast and the guys from tech support where way friendlier and they understood without all this hate (it took two days to answer but I was ok). if you look at the video made by AV-Gurus you can see again that the AI doesn't know if a file is safe or not. Now, if you take the game posted a few days ago that had a PUP inside, there is a high chance that you will get infected and it's not only about VoodooShield it's about most Anti-EXE and how they are made (BTW, the game with the PUP had a high chance to bypass comodo too). When I made the post I didn't knew that all the fanboys will jump on me and even the Dev had a hostile attitude so, I stopped helping any security software. The worst part is that this type of attack or tricks how you wanna say it are not new, if you surf a few hacking forums you will see. After all the hate from a few members (from here) and a few people from wilders made accounts here and sent me hate too, I stopped talking about this type of stuff since here is not the place. I hate drama and this post made me go out of my way. I think that Dan should remove some engines from the VirusTotal and only let fewer, this way the FP will be lower and the detection will be the same. On file checking he needs to add additional checking, beside that he should make a way to check every running process with virus total (just in case something bypassed). [/QUOTE]
Insert quotes…
Verification
Post reply
Top