Serious Discussion iDefender

The new version of iDefender has been released with new official website: iDefender

iDefender is 5D (Process Defense, File Defense, Network Defense, Registry Defense, Enhance Defense)
Endpoint Active Defense System based on scene mode, it provides you with the ability to fully control your computer.
Using iDefender can help you prevent ransomware, defend advanced threads, intercepting exploits, hardening system, and protecting privacy.

iDefender breaks the traditional protection model based on object operation and designs a rule engine based on template + parameters, which greatly reduces the difficulty of editing defense rules, and also provides a rule marketplace, make it easy to share and using rules.

iDefender supports more than 50 events monitoring and more than 60 scene templates.
By creating rules can cover 100% of the defenses of ATT&CK tactics.

Lightweight, Profession, High Compatibility
Typo's on your website

1720965040236.png
 
Hi all

I have some questions abot this software

1. Which languages did it have

2. How can I submit samples to check

3. On which Windows Versions did it work or supported

4. Any plans to add it to virustotal

5. Any videos available

6. And any changelogs and screenshots available

7. And where can I boughtb it

Mops21
 
Hi all

I have some questions abot this software

1. Which languages did it have

2. How can I submit samples to check

3. On which Windows Versions did it work or supported

4. Any plans to add it to virustotal

5. Any videos available

6. And any changelogs and screenshots available

7. And where can I boughtb it

Mops21
1. English (https://idefender.trustsing.com/) and Chinese (https://trustsing.com/idefender)
2,4. It is not an Antivirus but a HIPS that intercepts behaviors.
3. From win7sp1 to win11, and servers.
5,6. From the website: iDefender
7. It is free for now
 
1. English (https://idefender.trustsing.com/) and Chinese (https://trustsing.com/idefender)
2,4. It is not an Antivirus but a HIPS that intercepts behaviors.
3. From win7sp1 to win11, and servers.
5,6. From the website: iDefender
7. It is free for now
Hi

Thank you very much for your infos

Mops21
 
Not sure why someone would want HIPS with all the alerts in post 39 when behavioural blocking exists, but everyone decides for themselves.

Behavioural blocking and policy enforcement which is part of everyone’s antivirus software also has many of these rules but applies context and whitelisting.
 
Updated to 5.0.5
  • Added AI-powered antivirus scanning
  • Fixed false positives in built-in rules and enhanced existing rules
  • Fixed dark mode background display issue in Exclusions
  • Fixed driver loading process recognition issue
  • Improved password requirement for tray menu operations (valid for 1 minute)
  • Added value name field to registry setting value handling cache
 
There is only just one attack vector that it doesn't cover, and that's the one used by Chinese hackers and APTs. :)

They're already inside our telecoms, you want them in your home too?

They may not be funded by the Chinese gov't, but when the gov't comes knocking on their door, they will comply with all their requests. And they will deny all knowledge of such just as Huawei did.
 
Last edited:
There is only just one attack vector that it doesn't cover, and that's the one used by Chinese hackers and APTs. :)

They're already inside our telecoms, you want them in your home too?

They may not be funded by the Chinese gov't, but when the gov't comes knocking on their door, they will comply with all their requests. And they will deny all knowledge of such just as Huawei did.
Absolutely agree! Not to offtopic the topic with this product, but I, like you, believe that products from totalitarian countries cannot be trusted. :) Anyway, it would be interesting to see how much this product has improved. In the interest of science, so to speak. :)
 
  • Like
Reactions: simmerskool
Updated to 5.1.0
  • Reimplemented the detection logic for DLL Side-Loading.
  • Reimplemented the detection logic for BYOVD (Bring Your Own Vulnerable Driver).
  • Built-in advanced defense available for free for a limited time.
  • Added support for blocked events and notifications for kernel rules.
  • Add support for RPC remote call traceability initiated via localhost.
  • Added a process reputation mechanism, allowing the display of process reputation information in pop-up notifications.
  • Added support for configuring to avoid recording duplicate events or displaying badge for duplicate events.
  • Added detection for more code injection methods.
  • Added recognition of third-party original signature information signed by Microsoft.
  • Optimized the tagging mechanism of the rule engine.
  • Enhanced self-protection logic.
  • Merged rule files into a single file to avoid frequent I/O issues in scenarios with large numbers of rules.
  • Fixed an issue where process protection failed when pop-up rules were triggered.
  • Fixed other reported issues.
  • Optimized some built-in rules.
  • Updated the antivirus engine.