Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Inactive Support Threads
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Software
Security Apps
Other security for Windows, Mac, Linux
Xylent Antivirus
Message
<blockquote data-quote="Shadowra" data-source="post: 1086705" data-attributes="member: 92939"><p>Hello <img src="data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7" class="smilie smilie--sprite smilie--sprite109" alt=":)" title="Smile :)" loading="lazy" data-shortname=":)" /></p><p></p><p>In my queries for the past few days, I've had a totally unknown AV pop up, asking me for a test.</p><p>It's Xylent.</p><p></p><p>I quickly looked into it, and it was untestable.</p><p>There have been corrections, so it deserves its own topic.</p><p></p><p>Still quickly, it uses ClamAV, YARA and its own rules based on MD5/SHA1 .</p><p>On installation, Xylent still doesn't launch anything! You have to launch the interface and its engine (which will quickly take up 3GB of RAM!!).</p><p>(coded by [USER=112433]@XylentAntivirus[/USER] )</p><p></p><p>[ATTACH]283346[/ATTACH] [ATTACH]283347[/ATTACH]</p><p></p><p>I decide to test it... obviously, Xylent's analysis doesn't work... It runs in a vacuum...</p><p></p><p>[ATTACH]283348[/ATTACH]</p><p></p><p>I take some old malware from a pack and some old malware just to see...</p><p>[ATTACH]283349[/ATTACH] [ATTACH]283350[/ATTACH]</p><p></p><p>On the Zombie virus, no reaction... </p><p>On another malware, reaction after .... 7 minutes!</p><p></p><p>And on Cerber5 Ransomware, it tries to kill the Ransomware... problem, it's already acted!</p><p></p><p>[ATTACH]283351[/ATTACH]</p><p></p><p>I stopped the test straight away because it was useless.</p><p>There are several problems, which I will explain:</p><p></p><p>- Xylent uses an MD5 and SHA1 database. All the malware needs to do is change one byte to bypass the protection. An MD5 comparison is obsolete and useless.</p><p>- It loads its entire database into memory, occupying CPU and RAM to death (I've got a Ryzen 7 7700X, and it was constantly busy).</p><p>- The software is coded entirely in VbNet, which is totally unacceptable for an antivirus! Possibly the interface (Bitdefender & Kaspersky do this) but the rest MUST be coded in C or C++.</p><p>- No drivers (I can kill it with no problem)</p><p>- Very slow actions (you can see it)</p><p>- Totally covered in bugs (a console next to the interface? ), the fact that it launches nothing so on restart no protection, and why do you have to launch the engine manually?</p><p></p><p>I think this project clearly deserves a re-code, because it's just not right.</p></blockquote><p></p>
[QUOTE="Shadowra, post: 1086705, member: 92939"] Hello :) In my queries for the past few days, I've had a totally unknown AV pop up, asking me for a test. It's Xylent. I quickly looked into it, and it was untestable. There have been corrections, so it deserves its own topic. Still quickly, it uses ClamAV, YARA and its own rules based on MD5/SHA1 . On installation, Xylent still doesn't launch anything! You have to launch the interface and its engine (which will quickly take up 3GB of RAM!!). (coded by [USER=112433]@XylentAntivirus[/USER] ) [ATTACH]283346[/ATTACH] [ATTACH]283347[/ATTACH] I decide to test it... obviously, Xylent's analysis doesn't work... It runs in a vacuum... [ATTACH]283348[/ATTACH] I take some old malware from a pack and some old malware just to see... [ATTACH]283349[/ATTACH] [ATTACH]283350[/ATTACH] On the Zombie virus, no reaction... On another malware, reaction after .... 7 minutes! And on Cerber5 Ransomware, it tries to kill the Ransomware... problem, it's already acted! [ATTACH]283351[/ATTACH] I stopped the test straight away because it was useless. There are several problems, which I will explain: - Xylent uses an MD5 and SHA1 database. All the malware needs to do is change one byte to bypass the protection. An MD5 comparison is obsolete and useless. - It loads its entire database into memory, occupying CPU and RAM to death (I've got a Ryzen 7 7700X, and it was constantly busy). - The software is coded entirely in VbNet, which is totally unacceptable for an antivirus! Possibly the interface (Bitdefender & Kaspersky do this) but the rest MUST be coded in C or C++. - No drivers (I can kill it with no problem) - Very slow actions (you can see it) - Totally covered in bugs (a console next to the interface? ), the fact that it launches nothing so on restart no protection, and why do you have to launch the engine manually? I think this project clearly deserves a re-code, because it's just not right. [/QUOTE]
Insert quotes…
Verification
Post reply
Top