CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
spacer spacer

129 FPs in latest PrevxCSI Free Scanner
Goto page 1, 2  Next
 
Post new topic   Reply to topic       All -> FavForums -> Prevx [del.icio.us!] [digg it!] [reddit!]
View previous topic :: View next topic  
Author Message
SteveEast9

Trooper
Trooper


Joined: Feb 13, 2008
Posts: 15
Location: UK

PostPosted: Wed Feb 13, 2008 1:00 am    Post subject: 129 FPs in latest PrevxCSI Free Scanner
Reply with quote

I have a full version full licence for Prevx2 with the latest version 1.0.2 Build 123 installed.
So I am happy with my system (along with Comodo Pro Firewall in Advanced Defense+ mode, ComodoBOClean and AVG Free AV).

However, I periodically scan with the PrevxCSI Free just out of interest, and before (today) using this new super-duper version that wants you DESPERATELY to buy it (!!) it found....wait for it..

ONE HUNDRED AND TWENTY NINE BAD FILES!!!!
'All' of them allegedly 'rootkits', the list included every Prevx2 process ( Rolling Eyes ) and every other file was completely safe!!


I then proceeded to do a FULL SYTEM file scan with my installed LICENSED Prevx, with no exclusions, and for it to scan in archives.

What did it find? NOTHING

I then proceeded to do a FULL SYTEM file scan (no exclusions, scan in archives and zips) with Comodo Professional FW Malware scanner.

What did that find? NOTHING


AVG Full system scan - no exclusions, all archives and zips - found: NOTHING

Comodo BOClean is up to date onguard in real time - what has it alerted me to? NOTHING

Spybot S&D Full Scan - NOTHING

AdAware 2007 - NOTHING


Frankly, this is very worrying.

I will certainly not be recommending Prevx CSI to anyone anymore until I am once again truly confident that it is NOT simply a 'ruse' to get people to part with money on a clean system.

Back to top
View users profile Send private message
IP: 83.100.*.*

Guest






PostPosted: Wed Feb 13, 2008 12:25 pm    Post subject:
Reply with quote

Sounds like the known issue with Comodo mentioned here:
http://www.wilderssecurity.com/showpost.php?p=1178725&postcount=30

Back to top
m_giuliani

Prevx Host
Premium Member

Joined: Sep 23, 2006
Posts: 56
Location: Italy
Premium

PostPosted: Wed Feb 13, 2008 2:05 pm    Post subject:
Reply with quote

Hello,

have you contacted Prevx Support thru ticket?

Just because instead of claiming big things, it could be that there's a bug or incompatibility with some other security software.

Back to top
View users profile Send private message Visit posters website MSN Messenger
slxplovs

Guest
IP: 81.148.*.*






PostPosted: Wed Feb 13, 2008 3:56 pm    Post subject:
Reply with quote

This issue was resolved recently. Please make sure you are using the latest build of CSI which is 1.5.103.197. If the problem persists with this build I strongly suggest you open a support call with Prevx.

Back to top
SteveEast9

Trooper
Trooper


Joined: Feb 13, 2008
Posts: 15
Location: UK

PostPosted: Thu Feb 14, 2008 10:26 pm    Post subject:
Reply with quote

Anonymous wrote:
Sounds like the known issue with Comodo mentioned here:
http://www.wilderssecurity.com/showpost.php?p=1178725&postcount=30


It is *not* a known issue *with Comodo*. You have it the wrong way around.

It is now a *known* issue with Prevx CSI - they have discovered (as they have reported to me through a support ticket) that it is THEIR product's incompatibility with Comodo - not the other way around.
It is PREVX CSI finding false positives (including its OWN processes) - not Comodo.

Back to top
View users profile Send private message
SteveEast9

Trooper
Trooper


Joined: Feb 13, 2008
Posts: 15
Location: UK

PostPosted: Thu Feb 14, 2008 10:30 pm    Post subject:
Reply with quote

Anonymous wrote:
Sounds like the known issue with Comodo mentioned here:
http://www.wilderssecurity.com/showpost.php?p=1178725&postcount=30


It is *not* a known issue *with Comodo*. You have it the wrong way around.

It is now a *known* issue with Prevx CSI - they have discovered (as they have reported to me through a support ticket) that it is THEIR product's incompatibility with Comodo - not the other way around.
It is PREVX CSI finding false positives (including its OWN processes) - not Comodo.

Back to top
View users profile Send private message
SteveEast9

Trooper
Trooper


Joined: Feb 13, 2008
Posts: 15
Location: UK

PostPosted: Thu Feb 14, 2008 10:31 pm    Post subject:
Reply with quote

damn Castle Cops site is like a slug in mud and posts the same thing 3 times

Back to top
View users profile Send private message
SteveEast9

Trooper
Trooper


Joined: Feb 13, 2008
Posts: 15
Location: UK

PostPosted: Thu Feb 14, 2008 10:45 pm    Post subject:
Reply with quote

slxplovs wrote:
This issue was resolved recently. Please make sure you are using the latest build of CSI which is 1.5.103.197. If the problem persists with this build I strongly suggest you open a support call with Prevx.


You are TOTALLY AND UTTERLY WRONG - that IS the BAD build of Prevx CSI and it is STILL being hosted on Prevx.

This is their reply - read it, the corrected not buggered release is NOT out yet:
"Dear Prevx User,

Prevx Technical Support have responded to your query.

Here is the message that has just been posted:

***********************************************************************************

Subject: The latest PREV CSI Free scanner

Hello,
We have identified a compatibility issue between some other software and Prevx CSI - are you running Comodo HIPS or Defense products?

We are in no way trying to frighten people into buying the full program - this is a known issue which we are addressing and will have fixed in a new build which should be released tomorrow afternoon or Friday with build number 1.3.105.205 or higher.

We are sorry for your inconvenience. If you still experience this issue after updating to the newest version, please let us know as that will show that it is an issue which we had not anticipated. We have had a number of users come in with this issue and have refunded those who have mistakely purchased CSI because of this detection - as I said, we are not trying to frighten people, this is just an incompatibility between CSI and some other security software.

Best Regards,
Prevx Support"

Back to top
View users profile Send private message
ctrlaltdelete

Corporal
Corporal


Joined: Nov 26, 2006
Posts: 66
Location: Netherlands

PostPosted: Fri Feb 15, 2008 1:58 am    Post subject:
Reply with quote

I'm running Prevx 2.0 build 127

Can't remember any issues between Prevx 2.0 and Prevx CSI in previous builds.

Back to top
View users profile Send private message Visit posters website
m_giuliani

Prevx Host
Premium Member

Joined: Sep 23, 2006
Posts: 56
Location: Italy
Premium

PostPosted: Fri Feb 15, 2008 11:22 pm    Post subject:
Reply with quote

A new update to CSI has been released today Wink

Changelog:

* Compatibility with Comodo Security Products
* Greatly improved detection on BHOs and other DLL-based malware
* Simplified Scan Process
* Rootkit Scanner false positive elimination
* New Scanner GUI which displays information on what is being scanned
* More detailed logging of the cleanup process[/list]


_________________
Prevx Research Lab
Back to top
View users profile Send private message Visit posters website MSN Messenger
SteveEast9

Trooper
Trooper


Joined: Feb 13, 2008
Posts: 15
Location: UK

PostPosted: Wed Feb 20, 2008 12:42 am    Post subject:
Reply with quote

No change there. It still finds a mountain of (mostly the same) FPs.

Back to top
View users profile Send private message
ctrlaltdelete

Corporal
Corporal


Joined: Nov 26, 2006
Posts: 66
Location: Netherlands

PostPosted: Wed Feb 20, 2008 2:01 pm    Post subject:
Reply with quote

Strange.... i just installed Prevx 2 build 123 on a system (XP SP2) and scanned with Prevx CSI.

Nothing found.




csi123.png
 Description:
Image of Prevx 2 build 123 with Prevx CSI 1.5.103.214
 Filesize:  88.11 KB
 Viewed:  87 Time(s)

csi123.png


Back to top
View users profile Send private message Visit posters website
PrevxCSIHelp

Cadet
Cadet


Joined: Feb 15, 2008
Posts: 4
Location: USA

PostPosted: Wed Feb 20, 2008 9:49 pm    Post subject:
Reply with quote

SteveEast9 - please try uninstalling Prevx CSI and then reinstalling the newest version (v214) from http://info.prevx.com/downloadcsi.asp

Virtually all of the users which were experiencing this issue have reported to us that it was fixed, so, we aren't sure why this would still be happening to you. A reinstall may be the key to fixing it.

Back to top
View users profile Send private message
SteveEast9

Trooper
Trooper


Joined: Feb 13, 2008
Posts: 15
Location: UK

PostPosted: Thu Feb 21, 2008 12:54 pm    Post subject:
Reply with quote

Thanks.

It *is* fixed now but it was nothing to do with it being installed. I only used the newest (build 214) direct from the saved .exe file.
It was the application data file that had been created by the *old* problem version. It interfered with the operation of the new build.
This is obviously a glitch that occurs if all a user wants to do is scan with PrevxCSI but not actually install it

Back to top
View users profile Send private message
Noname

Guest
IP: 83.251.*.*






PostPosted: Sat Feb 23, 2008 5:37 am    Post subject: wanted this to be a great product but...
Reply with quote

[size=18]Tested Prevx Csi home download.

Just want you all to know that when you install
this you even install a trojan that is very hard to remove...
It acts as a Rootkit because with several intelligent rootkit scanners that finds it cant remove it. if you have nod32 installed before you will try this its yell
windows32/Genetic trojan. if you pause nod32 and install this S**t nod32 wouldnt find it anymore because now its a rootkit!
Tried to install (only) Prevx cia on another clean system because i scanned where and how did i got this in my cube.
Conclusion:
if you try it you have to buy it to remove the trojan Sad

I Will never ever try anything from them again.
Dont want to spend to much time on this more.
But for you who care ask them what these files
are that installs and cannot be seened in \windows\system32\drivers\ but they are there coz they exist in memory: mchInjdrv.sys I know what it is it is a dll injector... and spjj.sys ????
want to try this yourself:
Download RKU and check drivers tab before and after install.

This Sucks.... All for money so how do i get rid of the rootkit from my computer now?
I Dont wanna have the rootkit that hides this dll injector... Evil or Very Mad
[/size]

Back to top
Display posts from previous:   
Post new topic   Reply to topic       All -> FavForums -> Prevx All times are GMT
Goto page 1, 2  Next
Page 1 of 2

 
Quick Reply:
Username: 

Quote the last message
Attach signature (signatures can be changed in profile)
 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum


Powered by phpBB © 2001 phpBB Group
spacer spacer