- Apr 13, 2013
- 3,224
Haven't had time to do videos lately as I'm busy professionally (Just when I thought I was out, they pull me back in! Know what I mean, Comrade E?), but please accept this quickie...
Great video, cruelsister!
I guess HitmanPro.Alert would detect the botnet because of the mitigation against process hollowing, but not the scanner.
Can we see this ? I agreeIt probably would have, except she tested it against Hitman Pro. Test was this side of being pointless. Test it again against the latest beta of hitman pro alert and see what happens.
It probably would have, except she tested it against Hitman Pro. Test was this side of being pointless. Test it again against the latest beta of hitman pro alert and see what happens.
A test it's a test and HMP failed. Now if their premium program which is HMPA would have stopped it that is another story. Personally i consider HMP almost useless and HMPA a premium program but buggy at times.
Well, CS mentioned both Malwarebytes and HMP aren't that good at detecting worms. You can see her worm video series for that. I don't recall Malwarebytes being tested against this botnet (not yet).@cruelsister
Mhh, you reply feeds further speculation. Since I can't find a video of MB failing this botnet Sample (or ZAM blocking/finding this same sample), There must have been a reason to single out HMP for this test. So the Governmental IT "Pros" were probably advertising the benefits of HMP in relation to bot nets. A pity you don't mention "man and horse" as we say in Dutch.
Unless SOPHOS also supported this claim then it's like bashing a product based on the ignorance of someone that has nothing to do with the product. Did any of the people making these claims work for SOPHOS? People will watch your video, and think HMP failed the test, when in fact it was the wrong product to test.The second reason is that the initial malware run was part of something larger that I coded in order to embarrass and disgrace some Governmental IT "Pros" that should know better at a Show and Tell last week (I am really mean).