Ponting Posted August 12, 2014 Share Posted August 12, 2014 Full report: http://pcsl.r.worldssl.net/report/exploit/rce_mitigations_201408_en_malwarebytes.pdf Link to comment Share on other sites More sharing options...
knowledge-Spammer Posted August 12, 2014 Share Posted August 12, 2014 :) Malwarebytes Anti-Exploit Link to comment Share on other sites More sharing options...
AlienForce1 Posted August 12, 2014 Share Posted August 12, 2014 Full report: http://pcsl.r.worldssl.net/report/exploit/rce_mitigations_201408_en_malwarebytes.pdfFor me it`s very hard to believe that this test is not conducted to get Norton on first place ... In AV-Comparative`s tests Bitdefender and Kaspersky are on the first place ... In AV-Test.org the same BD and KIS have maximum protection in their tests ... Link to comment Share on other sites More sharing options...
dcs18 Posted August 12, 2014 Share Posted August 12, 2014 Can somebody inform us - how many services does MBAE create? Link to comment Share on other sites More sharing options...
Ponting Posted August 12, 2014 Author Share Posted August 12, 2014 For me it`s very hard to believe that this test is not conducted to get Norton on first place ... In AV-Comparative`s tests Bitdefender and Kaspersky are on the first place ... In AV-Test.org the same BD and KIS have maximum protection in their tests ...From the PDFThis test was commissioned by Malwarebytes Corp. to test the exploit blocking capabilities of different products against relevant vulnerabilities (i.e. vulnerable applications which are targeted typically by Exploit Kits and targeted attacks).PCSL made the sole research and methodology decision of which CVEs to test and how to test. No exploit code samples were provided by Malwarebytes. Link to comment Share on other sites More sharing options...
AlexCross Posted August 12, 2014 Share Posted August 12, 2014 If I remember well they are sponsored by different companies. Link to comment Share on other sites More sharing options...
darko999 Posted August 12, 2014 Share Posted August 12, 2014 Is that Malwarebytes bytes Anti Exploit a bit like "Emsisoft's mamutu"? It says something like behavior protection in the description. Link to comment Share on other sites More sharing options...
dcs18 Posted August 12, 2014 Share Posted August 12, 2014 Can somebody inform us - how many services does MBAE create?The silence is deafening. :tehe: Link to comment Share on other sites More sharing options...
Nastrahl Posted August 12, 2014 Share Posted August 12, 2014 Can somebody inform us - how many services does MBAE create?Two services : one for itself, one for the scheduler, and one more process for the GUI. Link to comment Share on other sites More sharing options...
Nastrahl Posted August 12, 2014 Share Posted August 12, 2014 Full report: http://pcsl.r.worldssl.net/report/exploit/rce_mitigations_201408_en_malwarebytes.pdfFor me it`s very hard to believe that this test is not conducted to get Norton on first place ... In AV-Comparative`s tests Bitdefender and Kaspersky are on the first place ... In AV-Test.org the same BD and KIS have maximum protection in their tests ...Because exploits are differents than viruses, malwares and such. Link to comment Share on other sites More sharing options...
dcs18 Posted August 12, 2014 Share Posted August 12, 2014 Can somebody inform us - how many services does MBAE create?Two services : one for itself, one for the scheduler, and one more process for the GUI.Yes, exactly like its elder sibling - MBAM (V2+) Link to comment Share on other sites More sharing options...
Nastrahl Posted August 12, 2014 Share Posted August 12, 2014 Can somebody inform us - how many services does MBAE create?Two services : one for itself, one for the scheduler, and one more process for the GUI.Yes, exactly like its elder sibling - MBAM (V2+)Oops my bad, I thought you asked about MBAM and not MBAE :facepalm:Don't ask how I misunderstood that, I don't know either :oSorry :( Link to comment Share on other sites More sharing options...
Ponting Posted August 13, 2014 Author Share Posted August 13, 2014 :snack: :snack: :snack: MBAE :fight: :argue: HMPAhttp://www.wilderssecurity.com/threads/pcsl-remote-code-execution-exploit-mitigations-for-popular-applications-aug-2014.367084/ Link to comment Share on other sites More sharing options...
Ponting Posted August 13, 2014 Author Share Posted August 13, 2014 Link to comment Share on other sites More sharing options...
Ponting Posted August 13, 2014 Author Share Posted August 13, 2014 Only mbae-svc.exe is listed as Malwarebytes Anti-Exploit Service in services.msc and mbae.exe is for the GUI.If you need more info on MBAE's process,service,registry keys,etc,etc....install MBAE and check it :tooth: Link to comment Share on other sites More sharing options...
dcs18 Posted August 13, 2014 Share Posted August 13, 2014 Only mbae-svc.exe is listed as Malwarebytes Anti-Exploit Service in services.msc and mbae.exe is for the GUI.If you need more info on MBAE's process,service,registry keys,etc,etc....install MBAE and check it :tooth:I don't think most folks would be interested in installing MBAE (or any software - for that matter) which creates 2 services as part of their new plan.FWIW, I bet most folks who innocently installed MBAE will now have second thoughts. Link to comment Share on other sites More sharing options...
knowledge-Spammer Posted August 13, 2014 Share Posted August 13, 2014 Only mbae-svc.exe is listed as Malwarebytes Anti-Exploit Service in services.msc and mbae.exe is for the GUI.If you need more info on MBAE's process,service,registry keys,etc,etc....install MBAE and check it :tooth:I don't think most folks would be interested in installing MBAE (or any software - for that matter) which creates 2 services as part of their new plan.FWIW, I bet most folks who innocently installed MBAE will now have second thoughts.will now have second thoughts i did but now i like it :) its a nice program Link to comment Share on other sites More sharing options...
Ponting Posted August 13, 2014 Author Share Posted August 13, 2014 According to PCSL's Exploit Mitigations Test report, HitmanPro.Alert 3 CTP2 did not stop many exploits. We tested some of the exploits that we apparently 'failed' and made a video. In this video you will see CVE-2012-0663 QuickTime, CVE-2012-4792 IE8, CVE-2013-3163 IE8 and 2 x CVE-2013-1488 Java7.PCSL's report does not give details on the used configuration, if it was a virtual environment or what kind of payloads were setup in Metasploit. So in the video you will see that the Metasploit exploit either tries to start the Windows Calculator or, in case of Java, initiate a Meterpreter Shell. The first 3 exploit attempts are blocked on the exploit technique and both Java tests are blocked on 'sandbox escape'.Enjoy the show: Source:http://www.wilderssecurity.com/threads/hitmanpro-alert-support-and-discussion-thread.324841/page-84#post-2399525 Link to comment Share on other sites More sharing options...
knowledge-Spammer Posted August 13, 2014 Share Posted August 13, 2014 According to PCSL's Exploit Mitigations Test report, HitmanPro.Alert 3 CTP2 did not stop many exploits. We tested some of the exploits that we apparently 'failed' and made a video. In this video you will see CVE-2012-0663 QuickTime, CVE-2012-4792 IE8, CVE-2013-3163 IE8 and 2 x CVE-2013-1488 Java7.PCSL's report does not give details on the used configuration, if it was a virtual environment or what kind of payloads were setup in Metasploit. So in the video you will see that the Metasploit exploit either tries to start the Windows Calculator or, in case of Java, initiate a Meterpreter Shell. The first 3 exploit attempts are blocked on the exploit technique and both Java tests are blocked on 'sandbox escape'.Enjoy the show: Source:http://www.wilderssecurity.com/threads/hitmanpro-alert-support-and-discussion-thread.324841/page-84#post-2399525Comments are disabled for this video. ? as they no it still have problems but its a nice program to i think Link to comment Share on other sites More sharing options...
Ponting Posted August 13, 2014 Author Share Posted August 13, 2014 Comments are disabled for this video. ? as they no it still have problems but its a nice program to i thinkFeel free to post there :) Link to comment Share on other sites More sharing options...
software182 Posted August 13, 2014 Share Posted August 13, 2014 or use EMET 5, not bad & it's free... Link to comment Share on other sites More sharing options...
knowledge-Spammer Posted August 13, 2014 Share Posted August 13, 2014 just been awarded AV-Test’s Best Repair 2014 Award http://www.av-test.org/en/test-procedures/award/av-test-award-2014/ Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.