www.anti-virus.by
BY | Home
  VirusBlokAda  
 
 
 

News

 
Vba32 News

29.06.2011 Vba32 build 3.12.16.4
  • Operating system emulator was improved
  • Some bugs with Quarantine maintenance were fixed
  • Some bugs in memory-check algorithm were fixed
  • Algorithm of NSIS-installers scanning was improved
  • Algorithm of QSetup-installers scanning was improved
  • Unpacking chm-files was improved
  • Overall work robustness of antivirus kernel was improved
  • Work robustness of Console Scanner for the latest versions of Ubuntu/Debian was restored

23.06.2011 Vba32 build 3.12.16.3
  • Some bugs in Vba32 Scanner were fixed
  • Bugs in the update via a proxy server were fixed

15.06.2011 Vba32 build 3.12.16.2
  • LNK type was added in the list of processed extensions of Monitor and Scanner

08.06.2011 Vba32 build 3.12.16.1
  • Detection algorithm for malware LNK-files was improved

12.04.2011 Vba32 build 3.12.16.0
  • Multi-Threading mode in Console Scanners for Windows and Linux. Number of scanning threads is activated by J[+|-|=thread_count] key. J=1 key is a default. J+ key sets automatic amount of threads and equals to number of CPUs in system
  • Progress indicator in Console Scanners for Windows and Linux. This mode is activated by SP[+|-] key
  • Number of supported versions for NSIS-installer was increased
  • Number of supported versions for QSetup-installer was increased
  • Support for new PE-file packers
  • Heuristics Malware-Cryptor.Inject.gen.a
  • Operating system emulator was improved
  • CPU emulator was improved
  • Heuristics on malicious was improved
  • Overall work robustness of antivirus kernel was improved

19.01.2011 Vba32 build 3.12.14.3
  • Operating system emulator was improved
  • Overall work robustness of antivirus kernel was improved

10.11.2010 Vba32 build 3.12.14.2
  • Detection algorithm for malware LNK-files was improved
  • Detection algorithm for malware PDF-files was improved
  • Operating system emulator was improved
  • CPU emulator was improved
  • Overall work robustness of antivirus kernel was improved

20.09.2010 Vba32 build 3.12.14.1
  • Self-protection support in Windows 7 and Windows Vista SP2
  • NTFS-streams in Console Scanner for Linux
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.4 and Malware-Cryptor.Win32.General.4.1) was improved
  • Operating system emulator was improved
  • CPU emulator was improved

09.08.2010 Vba32 build 3.12.14.0
  • Support for new PE-file packers
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.4.1)
  • Detection algorithm for malware PDF-files
  • Operating system emulator was improved
  • CPU emulator was improved
  • Detection algorithm for mailbomb was improved
  • Algorithm of autorun files scanning in Windows was improved
  • Overall work robustness of antivirus kernel was improved

03.08.2010 Vba32 build 3.12.12.8
  • Fixed bug in Vba32 Monitor

28.07.2010 Vba32 build 3.12.12.7
  • Bug in collaboration of Vba32 Monitor and CryptoPro CSP version 3.6 (http://www.cryptopro.ru) was fixed

14.07.2010 Vba32 build 3.12.12.6
  • Some bugs in Vba32 Control Agent were fixed
  • Some bugs in Vba32 Mail Filter were fixed

06.07.2010 Vba32 build 3.12.12.6
  • Vba32 Scheduler

07.06.2010 Vba32 build 3.12.12.5
  • Some bugs in Vba32 Control Agent were fixed
  • Some bugs in Vba32 Mail Filter were fixed

13.05.2010 Vba32 build 3.12.12.5
  • Operating system emulator was improved
  • More robust handling of damaged RAR and ZIP type archives
  • Added support for new PE-file packers
  • Antivirus kernel speed was increased on PE-files
  • BScope-technology was improved

31.03.2010 Vba32 build 3.12.12.4
  • Operating system emulator was improved
  • Detection algorithm for mailbomb was improved
  • Bugs with processing archives and mail formats were fixed
  • Overall work robustness of antivirus kernel was improved

02.03.2010 Vba32 build 3.12.12.3
  • Support of Windows 7
  • Implemented the proper transition to the new Control Center
  • *. pdf and *. swf were added in the list of extensions handled by default in Monitor
  • New setting "Trust Authenticode" was added in Scanner
  • Some bugs in Vba32 Loader were fixed
  • Some bugs in Vba32 Scanner were fixed
  • Documentation and language files were revised
  • Period of key file updating was increased from 7 to 21 days

08.02.2010 Vba32 build 3.12.12.2
  • Algorithm of autorun files scanning in Windows was improved
  • Code of unpacking MIME was improved
  • Heuristic false positives were fixed (Crafted.Win32File.OLS)
  • Operating system emulator was improved
  • Overall work robustness of antivirus kernel was improved

28.12.2009 Vba32 build 3.12.12.1
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.4) was improved
  • Reworked Autoit-based programs checking subsystem (lower FP probability, faster database updates)
  • Operating system emulator was improved
  • CPU emulator was improved

16.11.2009 Vba32 build 3.12.12.0
  • Support for 7zip-archives
  • New keys for console scanner: /SD[+|-] - delete suspicious files /SR[+|-] - rename suspicious files /SM+[directory] - move suspicious files to selected directory (C:\Virus by default)
  • Module Vba32 AntiRootkit was updated to 3.12.4.0
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.5)
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.6)
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.7)
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.4) was improved
  • Operating system emulator was improved
  • CPU emulator was improved
  • Detection algorithm for exploits was improved
  • Bug with detection files in Console Scanner Quarantine was fixed
  • PDF, SWF extensions were added to the list of default file extensions to console scanners
  • Documentation and language files were revised

23.09.2009 Vba32 build 3.12.10.11
  • Avoiding false positives on digitally signed files mode was implemented. If an incorrect record which cause false positive on a digitally signed file should appear in a base, detection of such file will not happen. This mode enabled by default
  • It can be disabled by the /na console scanner key
  • Checking thread functioning marker in Console Scanner for Windows
  • Detection of new autostart files
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.3) was improved
  • Heuristics on malicious AutoIT-scripts was improved
  • Overall work robustness of antivirus kernel was improved

24.08.2009 Vba32 build 3.12.10.10
  • Operating system emulator was optimized antivirus kernel speed was increased by 20% (on PE-files)
  • Algorithm of "curing" registry was improved

22.07.2009 Vba32 build 3.12.10.9
  • CPU emulator was improved
  • Operating system emulator was improved
  • Algorithm of "curing" registry was improved
  • Bugs with processing RAR archives were fixed

09.07.2009 Vba32 build 3.12.10.8
  • New algorythm of scanning autoruns in Vba32 Scanner and Vba32 Loader. The "Scan memory" and "Scan files launched at system startup" are combined into one. Now memory as well as autoruns can be scanned using three modes: Fast, Full and Excessive
  • Feature to restore files from Vba32 Quarantine by Vba32 Control Center
  • Vba32 Monitor driver improved
  • Background scanning errors fixed

09.06.2009 Vba32 build 3.12.10.7
  • Option to place infected files to Quarantine from Vba32 Windows Explorer Extension
  • Option to send notifications for Vba32 Control Center from Vba32 Windows Explorer Extension
  • Detection algorithm for virus Virus.Win32.Virut was improved

25.05.2009 Vba32 build 3.12.10.6
  • Detection algorithm of malicious files (SScope-technology). This technology is an evolution of behaviour detection algorithm of malicious files (BScope-technology). SScope-technology creates virus signature for malicious family and detects samples disregard to packers that they are processed
  • Algorithm of autorun files scanning in Windows was improved
  • Algorithm of "curing" registry was improved

12.05.2009 Vba32 build 3.12.10.5
  • Self-protection support in Windows 7
  • Self-protection algorithm was improved
  • Detection algorithm for virus Virus.Win32.Sality was improved

29.04.2009 Vba32 build 3.12.10.4
  • Heuristics on malicious AutoIT-scripts was improved
  • Detection algorithm for virus Virus.Win32.Virut

23.04.2009 Vba32 build 3.12.10.3
  • The "Block autorun of USB devices" option was added to Vba32 Monitor
  • Countries Ukraine and Iran were added to Vba32 Activation
  • Some bugs in Vba32 Loader were fixed
  • Some bugs in Vba32 Activation were fixed

01.04.2009 Vba32 build 3.12.10.2
  • Detection algorithm for malicious AutoIT-scripts was improved
  • Heuristics on malicious INF-files was improved
  • Operating system emulator was improved
  • CPU emulator was improved
  • Detection algorithm for mailbomb was improved

26.02.2009 Vba32 build 3.12.10.1
  • Heuristics on malicious INF-files was improved
  • Some bugs in self-protection algorithm were fixed

18.02.2009 Vba32 build 3.12.10.0
  • Double-level support of autorun files scanning in Windows
  • Support of Unicode (UTF-8) in AV-kernel and in Console Scanner
  • Detection algorithm of malicious files (BScope-technology)
  • Processing of new malicious packers
  • CPU emulator was improved
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.4) was improved
  • Detection algorithm for malware-installers was improved
  • Processing packed files was made faster
  • Detection algorithm for viruses in PE-files was improved
  • Work with some types of containers objects was improved
  • Overall work robustness of antivirus kernel was improved (including processing corrupted files)
  • Language files were revised

16.02.2009 Vba32 build 3.12.8.13
  • Polish and Lettish language resources
  • Vba32 Monitor driver for Windows Vista x64 and Windows 2008 Server x64 was improved
  • Self-protection algorithm was improved
  • Some bugs in Vba32 Loader were fixed
  • Documentation was revised

30.01.2009 Vba32 build 3.12.8.12
  • Detection algorithm for malicious AutoIT-scripts was improved

22.01.2009 Vba32 build 3.12.8.11
  • Heuristics on malicious AutoIT-scripts (Trojan-Downloader.Autoit.gen and Autoit.Script.Trojan)

03.12.2008 Vba32 build 3.12.8.10
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.4) was improved

01.12.2008 Vba32 build 3.12.8.10
  • Detection algorithm for WMA-trojans was improved
  • CPU emulator was improved
  • Operating system emulator was improved
  • Detection algorithm for Pinch log-files was improved
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.4) was improved
  • Overall work robustness of antivirus kernel was improved

29.10.2008 Vba32 build 3.12.8.9
  • Detection algorithm for some malware was improved

20.10.2008 Vba32 build 3.12.8.8
  • Detection algorithm for Pinch log-files
  • Detection algorithm for script viruses was improved
  • Overall work robustness of antivirus kernel was improved

15.10.2008 Vba32 build 3.12.8.7
  • New version of Remote Control Agent
  • Update path 'http://vba32.de/update/' was replaced with 'http://updates.vba32.de/'
  • Some bugs in Vba32 Loader were fixed
  • Documentation was revised

24.09.2008 Vba32 build 3.12.8.6
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.4)
  • Operating system emulator was improved
  • CPU emulator was improved
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.3) was improved
  • Detection algorithm for INF-files was improved
  • Overall work robustness of antivirus kernel was improved

03.09.2008 Vba32 build 3.12.8.5
  • Vba32 Activation module was improved
  • Robustness of Vba32 Loader for Windows Vista was improved

20.08.2008 Vba32 build 3.12.8.4
  • Heuristics on malicious packers (Malware-Cryptor.Win32.General.3)
  • Operating system emulator was improved
  • Processing some types of malware by antivirus kernel was improved

06.08.2008 Vba32 build 3.12.8.3
  • Operating system emulator was improved

31.07.2008 Vba32 build 3.12.8.2
  • Script - filter, Outlook - plugin, Mail filter - plugin for Vba32 for Vista
  • Vba32AntiRootkit module (load by launching Vba32arkit.exe)
  • Operating system emulator was improved
  • Overall work robustness of antivirus kernel when processing corrupted files was improved
  • Documentation was revised

17.07.2008 Vba32 build 3.12.8.1
  • Some bugs in processing command line were fixed (key /ic)
  • Unpacking chm-files was improved
  • Some bugs in Vba32 Loader were fixed

15.07.2008 Vba32 build 3.12.8.0
  • Some bugs in Vba32 DOS Console Scanner were fixed

14.07.2008 Vba32 build 3.12.8.0
  • Algorithm that allows avoiding false positives on digitally signed files
  • Algorithm that allows detecting malware signed by trojan digital signature
  • Algorithm that allows detecting by heuristics analyzer modified files with integrated digital signature (the feature is available at excessive heuristics level /ha=3)
  • Heuristics on malicious packers
  • Detection of malware in PDF-files
  • Heuristics on malicious INF-files
  • Operating system emulator was improved
  • Algorithm of emulating and detecting malicious packers was improved
  • Overall work robustness of antivirus kernel when processing corrupted files was improved
  • Antivirus kernel performance when working with clean files was improved by 25%

09.07.2008 Vba32 build 3.12.6.9
  • Some bugs in Vba32 Loader were fixed

23.06.2008 Vba32 build 3.12.6.8
  • Some bugs in Vba32 Scanner and Vba32 Loader were fixed
  • Some bugs in Vba32 Activation were fixed
  • SendLogs utility was improved

02.06.2008 Vba32 build 3.12.6.7
  • CPU emulator was improved

12.05.2008 Vba32 build 3.12.6.6
  • New memory checking modes were implemented in Scanner and Loader. There are three modes now: Fast, Full, Excessive. Moreover the additional checks are performed by Vba32Antirootkit, that allows detecting hidden processes and drivers in memory
  • Algorithm of speeding up Loader launching process was implemented (it's available in the Fast and Full memory checking modes)
  • Bugs in Quarantine and Outlook-plugin were fixed
  • Documentation was revised

22.04.2008 Vba32 build 3.12.6.5
  • CPU emulator was improved
  • Detection algorithm for INF-files was improved

01.04.2008 Vba32 build 3.12.6.4
  • CPU emulator was improved
  • File-cache algorithm was improved
  • Detection algorithm for INF-files was improved
  • Bugs with checking autostart in Windows 9x were fixed

17.03.2008 Vba32 build 3.12.6.3
  • Bugs with processing RAR archives were fixed
  • Bugs with curing in PST were fixed
  • CPU emulator was improved
  • Bugs with curing inf-files were fixed
  • Usage of key /fm and complex keys /ha and /m was improved

25.02.2008 Vba32 build 3.12.6.2
  • Documentation was revised
  • INF extension was added to the list of default file extensions to scan

12.02.2008 Vba32 build 3.12.6.1
  • Vba32ar.dll module. This module implements Vba32 AntiRootkit technology. It is integrated into memory check process and can be accessed in Console Scanner only. To activate antirootkit scanning, specify the following command line arguments /mr+/ha Module is available on 32-bit operating systems starting with Windows 2000.

01.02.2008 Vba32 build 3.12.6.0
  • VBA32 Loader bug (on Windows 95) was fixed
  • VBA32 Console Scanner bug (on Windows 95) was fixed

31.01.2008 Vba32 build 3.12.6.0
  • Memory-check algorithm was changed
  • Heuristics was improved
  • Detection algorithm for crypted and packed viruses was improved
  • Bugs in antivirus kernel and console scanner were fixed

29.01.2008 Vba32 build 3.12.2.6
  • Vba32 Activation module that allows registering Vba32 online

08.11.2007 Vba32 build 3.12.2.5
  • Code of unpacking rar-archives was revised
  • Kernel was improved to provide Vba32 functioning at computers running Windows Vista

24.09.2007 Vba32 build 3.12.2.4
  • Possibility to escalate priveleges via VBA32 on systems running Windows NT was fixed

19.09.2007 Vba32 build 3.12.2.4
  • VBA32 Monitor driver functioning on systems running Windows NT was improved

05.09.2007 Vba32 build 3.12.2.4
  • Problem occured when scanning some corrupted files was fixed

22.08.2007 Vba32 build 3.12.2.3
  • Support for more PE-file packers
  • Improvements for generic malware detection
  • Some fixes for virus signatures loading for their size reduction and better scalability

30.07.2007 Vba32 build 3.12.2.2
  • Improved metamorphic win32-viruses detection algorithms

18.07.2007 Vba32 build 3.12.2.1
  • Detection algorithm for encrypted polymorphous script viruses improved

16.07.2007 Vba32 build 3.12.2
  • Win32 viruses base format improved, it became more compact
  • Processing of PE files improved
  • Script viruses search algorithms improved. Now they are faster and use less memory.
  • The emulator improved, set of supported packers of PE files extended
  • Detection algorithm for new version of Trojan-Dropper.Feebs

14.06.2007 Vba32 build 3.12.0.2
  • Processing of corrupted RAR and ZIP archives improved
  • Program environment emulation improved

11.06.2007 Vba32 build 3.12.0.1
  • Performance of the heuristic analyzer improved (at maximum heuristic level, ha=2)
  • Detection of malicious programs that exploit systems of protection against emulation and debugging improved

05.04.2007 Vba32 build 3.12.0
  • Scanning of mail messages received by IMAPv4
  • Background scanning of files with the help of the SOTeCheck technology (can be configured on the Background scanning tab of the Vba32 Monitor settings window)
  • GUI for SendLogs utility (on the General tab of the Vba32 Loader main window click the Support link, then press Request support)
  • Option that enables a user to limit size of scanning archives, corresponding parameter added to Vba32 Console Scanner: /al=n, n - archive size, KB
  • New version of Antidialer
  • Fast scanning of files for malicious scripts
  • Some algorithms used for script virus detection are improved
  • Recovery of the system registry when neutralizing trojans is improved
  • Heuristics is improved
  • Set of supported PE packers was extended

29.03.2007 Vba32 build 3.11.3
  • Mail bomb detection
  • Processing of Outlook2007 mail bases
  • Recovery of the system registry when neutralizing trojans is improved
  • Set of supported PE packers was extended

08.01.2007 Vba32 build 3.11.2
  • Detection of Droppers and Trojan-Installers (it can be enabled by the /sfx console scanner key as well as by the "Scan SFX" GUI scanner option)
  • Algorithm of exploit detection in OLE files and animated mouse pointers was improved
  • Detection of trojans in media files with Digital Rights Management
  • Scanning of executables masked as BMP file
  • "Search for rootkits" option. It allows turning on/off search of rootkits
  • Set of supported PE packers was extended
  • Stability when checking corrupted OLE files was improved
  • CPU emulator was improved
  • Thorough scan mode was revised

23.08.2006 Vba32 build 3.11.1
  • Vba32 process termination protection
  • Option to shut-down (to hibernate, to suspend) computer after on-demand scanning is finished
  • Option to scan "autorun" entries during Vba32 Loader startup
  • Service utility SendLogs.exe was added. It simplifies log files collecting and sending them to the support service
  • Set of supported PE packers was extended
  • Invalid "Quoted Printable" attachments processing was improved

26.04.2006 Vba32 build 3.11.0
  • POP3-filter bug leading to blocking on some e-mail messages was fixed
  • POP3-filter compatibility with e-mail utility "Postie" was fixed

30.03.2006 Vba32 build 3.11.0
  • Mail quarantine was added, POP3-filter and Outlook-plugin co-operation with quarantine was implemented
  • Installation of new license file was simplified in the Vba32 Personal (by double-clicking vba32.key)
  • Warning about coming license expiration was added
  • Script-virus detection algorithms were improved
  • Antivirus kernel update without PC reboot was implemented
  • Scanner user interface was improved: it's possible to perform actions on objects in the results panel
  • CPU emulator performance was improved
  • Set of supported PE packers was extended

03.01.2006 Vba32 build 3.10.5
  • Detection of WMF files with exploit was implemented

11.11.2005 Vba32 build 3.10.5
  • "Antidialer" component added. This component tracks and blocks (by user-specified rules) remote access connection attempts (this component is only available for Vba32 Personal and Workstation for Win NT/2000/XP/2003)
  • "Quarantine" component added. It allows to store suspicious files and backup copies of infected files, as well as to send files for analysis to the VBA server
  • Set of supported PE packers was extended

01.07.2005 Vba32 build 3.10.4
  • Heuristics implemented for some types of phishing messages
  • Non-standard "Quoted Printable" attachments processing improved

24.06.2005 Vba32 build 3.10.4
  • One more level of heuristics analyzer added (excessive) (option for command-line scanner - /ha=3)
  • Now it is possible to specify alternative resources to update program from
  • Fast monitor mode implemented (scanning only newly created and modified files)
  • BINHEX attachments scanning and disinfection implemented
  • Implemented scanning of MSI packages
  • Added popup help into dialogs
  • Help system updated
  • Improved update system behaviour on connection termination
  • Improved performance of CPU emulator
  • Extended set of supported PE packers
  • Extended list of scanned "autorun" registry keys
  • Fixed bug in monitor driver in some cases leading to BSoD
  • Improved stability while processing damaged OLE-files
  • Improved stability of Script-filter



 
CONTACTS
220088,Smolenskaya str., 15, 803, Minsk, Belarus
Sales department: +375 17 294 84 29
Development department: +375 17 290 59 29
Support: support-en@anti-virus.by
Sales: sales-en@anti-virus.by
New viruses: newvirus@anti-virus.by
Twitter: VirusBlokAda@Twitter