Make your video test requests!

F

ForgottenSeer 109138

I'd like to see AppGuard Solo put through your tests.

@Shadowra

The below LOLBins list has been around since 2004 although modified and added server .exe's. It has been posted here before I think back some years. Its extensive and used by many that add LOLBins blocking in their applications.

Appguard, is not a install and test at default application. Its not designed to be run at default settings. It is designed to be placed on the system, locked down with no interaction from the "average users" to protect them from themselves. As any products that allow users "choices" is redundant as the user can simply click to ignore the warning if they want to run something bad enough, no matter how severe the warning looks. Locking the system ensures this will not be the case. Using parental controls of Appguard making a Superuser will allow you to set it up so the normal users can not change settings. It is not an easy application to set up and administer, most users lack the knowledge of the application let alone the operating system to know what and how to block. This leaves many users that claim Appguard not effective not only mistakenly wrong but silly because you can be sure they do not know how to use it claiming so.

Testing, can not be done with just a folder of samples in user space, as you will bore the crowd with nothing but "DOH" it wont run. You have to be very creative to test Appguard with simulated attacks. Not to mention there is no "trial" version to test at this point.

Apologies ahead of time for formatting and items being cut off since the website here limits ways to address such lists.

Untitled document_Sheet1_1.jpg
Untitled document_Sheet1_2.jpg
Untitled document_Sheet1_3.jpg
Untitled document_Sheet1_4.jpg
Untitled document_Sheet1_5.jpg
Untitled document_Sheet1_6.jpg
 
F

ForgottenSeer 107474

@Shadowra

The below LOLBins list has been around since 2004 although modified and added server .exe's. It has been posted here before I think back some years. Its extensive and used by many that add LOLBins blocking in their applications.

Practical response AKA Ultimate vision, always fun to see a Chrome and Linux fan showing his love for Microsoft (y):) we should all block the lolbin winword.exe (and excel and powerpoint and ...)
1713033614886.png
 

Shadowra

Level 37
Thread author
Verified
Top Poster
Content Creator
Malware Tester
Well-known
Sep 2, 2021
2,630
All comments are welcome, I read all your messages.

Concerning AppGuard, I have no experience of its use. I could test it, but it's an anti-exe.
Why not test it with other security software? :)

Nevertheless, I ask you to remain constructive and above all not to bicker in my requests, not because I ask for it, but it destroys the reading made by myself or the other members of this forum :/

As for the D+2 tests, this will come during May. Namely that I will be away for a few days at the beginning of May.

The next test will be Norton 360, it should be released on Wednesday or Thursday (this weekend, let me watch Coachella, already with the time difference I'm having a hard time xD )

Shadowra
 

Oldie1950

Level 7
Verified
Well-known
Mar 30, 2022
306
F

ForgottenSeer 109138

Practical response AKA Ultimate vision, always fun to see a Chrome and Linux fan showing his love for Microsoft (y):) we should all block the lolbin winword.exe (and excel and powerpoint and ...)
View attachment 282800
This is a list of Windows binaries that are known to have vulnerabilities "CVEs" or often targeted or used by attackers. Using this for a block list does not mean one has to block everything on it. Anyone that has to use winword should harden it period.
 

Shadowra

Level 37
Thread author
Verified
Top Poster
Content Creator
Malware Tester
Well-known
Sep 2, 2021
2,630
@Shadowra
I became aware of the Cegis Cyber security program through AV-LAB.
The program is based on the whitelist approach, similar to CyberLock. I would be very interested in a test. Has anyone ever looked into this program?

I don't think there's a link to download it on their site :/.
 

PALTO01

Level 1
Jul 7, 2021
24
Please test the latest free version of : Avast, AVG, Kaspersky, Comodo Beta, Ahn Lab V3 Lite, Bitdefender free edition, Zone Alarm free antivirus+firewall against huge number of latest malware samples & all kinds of malicious & phising links.

Also test the latest paid version of : McAfee Total security, ESET Smart Security, Bitdefender Total Security, QuickHeal Total security, Avast & AVG Premium Security & Kaspersky Premium Security against all huge number of latest malware samples & all kinds of malicious & phising links.
 
F

ForgottenSeer 109138

Please test the latest free version of : Avast, AVG, Kaspersky, Comodo Beta, Ahn Lab V3 Lite, Bitdefender free edition, Zone Alarm free antivirus+firewall against huge number of latest malware samples & all kinds of malicious & phising links.

Also test the latest paid version of : McAfee Total security, ESET Smart Security, Bitdefender Total Security, QuickHeal Total security, Avast & AVG Premium Security & Kaspersky Premium Security against all huge number of latest malware samples & all kinds of malicious & phising links.
@Shadowra probably be just as easy to put them all on at the same time then run that pack, time saving at least 🤪
 

Jonny Quest

Level 22
Verified
Top Poster
Well-known
Mar 2, 2023
1,156
Please test the latest free version of : Avast, AVG, Kaspersky, Comodo Beta, Ahn Lab V3 Lite, Bitdefender free edition, Zone Alarm free antivirus+firewall against huge number of latest malware samples & all kinds of malicious & phising links.

Also test the latest paid version of : McAfee Total security, ESET Smart Security, Bitdefender Total Security, QuickHeal Total security, Avast & AVG Premium Security & Kaspersky Premium Security against all huge number of latest malware samples & all kinds of malicious & phising links.
Agree with @Digmor Crusher this would be a good place to start:
 

Shadowra

Level 37
Thread author
Verified
Top Poster
Content Creator
Malware Tester
Well-known
Sep 2, 2021
2,630
Please test the latest free version of : Avast, AVG, Kaspersky, Comodo Beta, Ahn Lab V3 Lite, Bitdefender free edition, Zone Alarm free antivirus+firewall against huge number of latest malware samples & all kinds of malicious & phising links.

Also test the latest paid version of : McAfee Total security, ESET Smart Security, Bitdefender Total Security, QuickHeal Total security, Avast & AVG Premium Security & Kaspersky Premium Security against all huge number of latest malware samples & all kinds of malicious & phising links.

Most of the ones you mentioned have already been tested ;)
Then, I can do a few but with time (like AhnLab, ZA, QuickHeal, K7).
(there's no point in testing the same antivirus 20 times)
 

PALTO01

Level 1
Jul 7, 2021
24
Most of the ones you mentioned have already been tested ;)
Then, I can do a few but with time (like AhnLab, ZA, QuickHeal, K7).
(there's no point in testing the same antivirus 20 times)
But testing the latest versions with fresh malware samples and fresh malicious links is important & makes more sense if i am not wrong.
 

Shadowra

Level 37
Thread author
Verified
Top Poster
Content Creator
Malware Tester
Well-known
Sep 2, 2021
2,630
But testing the latest versions with fresh malware samples and fresh malicious links is important & makes more sense if i am not wrong.

Yes, but I only test in case of new versions which can be important (engine improvement, new features, major new build etc).
Some of the antivirus programs you mention don't have this. Others, I'll do because it's been a long time.
(Except for Avast, which will have a re-test).
 
F

ForgottenSeer 109138

But testing the latest versions with fresh malware samples and fresh malicious links is important & makes more sense if i am not wrong.
Let me help you understand. Testing even at this level takes lots of time, resources and patience, especially for (and this here is a key word to understand) a "volunteer" to dedicate the time to making these videos. I mention this so as to not take away from his work with this next part.

That said, there is also the safety factor, which is why you do not see dedicated labs here providing true route of infection videos that would actually be more realistic and accurate as to a products abilities. If you could for example explain how the tester could execute a sample, let it openly establish connection with a command and control server yet contain it from infecting a network or a server, I'm all ears.

Yet without letting the samples do what they do naturally in the wild, the product can not do as "it's designed" and shine it's strengths and weaknesses properly. Hence making this testing inaccurate.

So enjoy the tests you do get from these volunteers and treat them with a grain of salt as the disclaimer states above. Understand it's not wise to base an opinion on the products abilities from these tests.although one does get a glimpse into the modules and workings of them.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top