![]() |
| Clam Sentinel Version 1.22 Released! |
|
ROCKNROLLKID
|
Was using ClamSentinel 1.22 beta versions, nothing to report on my side.
I mentioned in another topic, I had submitted PDF and javascript samples to Andrea and Robert to improve their heuristic module. They are currently studying the samples and should have it delivered in a few months, if everything goes alright. Now, we just wait for ClamWin .98.4/.5. |
||||||||||||
|
|
|||||||||||||
|
lwc
|
Did your samples include a trojan horse? Looks like the program was completely abandoned after you sent those samples. Just kidding, of course, but it is a shame because this program had such potential. |
||||||||||||||
|
|
|||||||||||||||
|
ROCKNROLLKID
|
Well, they were PDF/javascript malware, so you are not entirely wrong, haha. They were packed in a zip file with a password.
Anyways, I haven't heard from Andrea since then myself, either. Both Bob and Andrea decided that doing non-PE heuristics was a waste of time and that companies should instead take better care of their program and close security holes and all Bob wants to work on improving the heuristics in Sentinel. He is currently trying to learn Pascal. Sentinel is still decent as it is now. It will offer someways in protection but without updates, that is slowly declining. |
||||||||||||
|
|
|||||||||||||
|
GuitarBob
|
No progress on Sentinel to report at this time--still studying Pascal. Sentinel heuristics are still good but they are based on 2014 and earlier malware. Malware has moved on--there's lots of JavaScript stuff now and even some malware that only resides in RAM--after it is injected by a hard-to-detect script. In addition, Sentinel is resident, but there is no file control to prevent a file from executing until it has passed heuristics and signatures as being okay.
At the present time, I think that Yara signatures are the way to go. Regards, |
||||||||||||
|
|
|||||||||||||
| Clam Sentinel Version 1.22 Released! |
|
||
|
Powered by phpBB © phpBB Group
Design by phpBBStyles.com | Styles Database.
Content © ClamWin Free Antivirus GNU GPL Free Software Open Source Virus Scanner. Free Windows Antivirus. Stay Virus Free with Free Software.
Design by phpBBStyles.com | Styles Database.
Content © ClamWin Free Antivirus GNU GPL Free Software Open Source Virus Scanner. Free Windows Antivirus. Stay Virus Free with Free Software.


