![]() |
|
#1
|
||||
|
||||
|
The Rokop crew started testing AV tools. So far they reported on GData AntiVirenKit professional 2004 and Norton AntiVirus 2004. I don't know about english translations available, I could summarize a bit if you want it.
What I do like is their testing resources used. Haven't seen that a lot. You can find the Rokop site via this link (babelfish.altavista.com is quite effective in translating german to english )
__________________
greetings, André First law of Jerry Pournelle: First check cables |
|
#2
|
|||
|
|||
|
Hi Meneer, That would be really good if you could summarize it for those of us who dont speak german . Thank you kind sir.
|
|
#3
|
||||
|
||||
|
The rokop standard test comprises:
Windows XP system, with a test set of wild trojans, zoo Backdoors, packed Backdoors, common worms (worms, i-worms, P2P, IRC etc.), macro viruses and Dialers, altogether the test set contains 817 Samples. (please no comments to me... about the test setup )GDATA: It's equipped with two scanning engines (Kaspersky and Bitdefender). Kaspersy scanner is very good, almost redering BD useless... almost Very good detection rate: * Backdoor Zoo - all found (1 missed by Kaspersky but found by BD) * wild horses (trojans in this case) - all found * Backdoors packed - 3 misses (1 by BD) * Macroviren - all found * Wild worms – all found * Dialers - ca. 15 % (12 % BD, 3 % KAV) * False positives - 8 (BD-Engine) resources used: 3 processes take 16.6 Mb Reference test took 3 min. and 1:19 min CPU time Conclusion: All in all the program makes a very good impression. A very easy operation, a simple configurability and an excellent detection rate recommend this program. The impression is clouded a little by the fact that one gets updates only once per week (excluded Emergency update) and that, depending upon configuration and existing hardware, the system performance can suffer somewhat. The problem with the updates can be solved however through to a support extension connected with additional costs. Norton 2004: Scanner weaknesses in detecting dialers and packed virusses. * Backdoor Zoo - missed 2 * wild trojans, - missed 5 * Backdoors packed - found 9,3 % * Macroviren - found all * wild worms – missed 9 * Dialers - ca. 24 % * False positives - severe errors during testing Resources used: 5 processes, using 16 to 23 Mb Reference test took 5:22 min. and 3:02 min CPU time Conclusion: In our case the difficult installation and crashes with the false positive test cloud the general impression. (Rokop are a bit uncertain if the less than positive testresults are due to a testenvironment, although their system contains no exotic components...) On the other hand the user interface, the very easy operation and configuration works is appreciated. The detection rate and scanning new parasites leaves something to be desired, but at least Norton started implementing of the scanning of packed executables.
__________________
greetings, André First law of Jerry Pournelle: First check cables |
|
#4
|
|||
|
|||
|
Watch out for the third part of our test series which will be available tomorrow!
|
|
#5
|
|||
|
|||
|
Hey Bo , welcome .
![]() |
|
#6
|
|||
|
|||
|
Thank you solarpowered candle!
BTW: our new test is online: http://www.rokop-security.de/main/article.php?sid=690&mode=thread&order=0 |
|
#7
|
||||
|
||||
|
Thanks Bo and welcome for sure
![]()
__________________
Missing Kids http://www.bigcatrescue.org/ |
|
#8
|
||||
|
||||
|
And heres the translated version
![]() Quote:
__________________
|
|
#9
|
||||
|
||||
|
To everyone from Firefighter!
When u are looking at those two last comparison tests made by Rokop, u can see that AVK 2004 with KAV and BitDefender engines is superior to scan runtimepackers compared to any other av. http://www.rokop-security.de/main/article.php?sid=632 http://www.rokop-security.de/main/article.php?sid=693 The former AVK 12 Pro with KAV and RAV was poorer to detect packed trojans in Scheinsicherheit's test last year than McAfee, KAV and F-Secure but now I believe that there isn't any other av that can unpack so well than AVK 2004 (KAV 5.0 beta?). Runtimepacked scanning capability according to Rokop last two comparing tests were. --1. 97.7 % AVK 2004 --2. 89.0 % McAfee 8.0 --3. 87.0 % McAfee 7.0 --4. 84.8 % F-Secure AV 5.40 PE --5. 82.6 % KAV 4.5 Personal --6. 60.9 % DrWeb 4.30 --6. 60.9 % RAV v8.6 --8. 58.7 % NOD32 v2 --9. 54.3 % BitDefender v7.1 Pro 10. 28.3 % AntiVir PE 6.21 We have to remember that these results are a summary of two different tests made by a same tester, but anyway. "The truth is out there, but it hurts!" Best regards, Firefigter!
__________________
Some savolax answer to the southern man: Q. No onko viiruksia näkynyt? A. No voe tokkiisa. Just äskönnii oes männynnä yks vuan en ehtinnä nähä. Tuolta saanan takkoo se männä jölököttel suorraah järvvee letit hulumuteh! |
|
#10
|
||||
|
||||
|
The AVK test is available in English
There's an overview for the three packages tested sofar: at this link. (Hey guys: will you be testing free AV's too? )
__________________
greetings, André First law of Jerry Pournelle: First check cables |
|
#11
|
|||
|
|||
|
Well, I thought about including AntiVir in our test series but it depends on my (our) time budget. Do you have any candidates you'd like to see?
|
|
#12
|
||||
|
||||
|
go ahead! i'd like to see anti-vir in the rokop test
__________________
a proud supporter of THE GLORIOUS REDS To Ride, Shoot Straight And Speak TheTruth |
|
#13
|
||||
|
||||
|
Avast please
![]()
__________________
greetings, André First law of Jerry Pournelle: First check cables |
|
#14
|
|||
|
|||
|
We published an english review of this antivirus solution about a year ago:
http://www.rokop-security.de/main/article.php?sid=501 The detection test is not comparable to the one we use in our actual test series, because of different malware samples in our test sets. |
|
#15
|
||||
|
||||
|
I would like to see McAfee retested again with it's new engine avaialbele :
http://www.nai.com/us/downloads/updates/engine.asp This is a highly regarded improvement apparantly. ![]()
__________________
Peter. |
|
#16
|
||||
|
||||
|
And, of course, NOD32. But Roman promised it would we tested anyway. So I'm looking forward...
![]() Regards Stefan
__________________
(A)bort, (R)etry, (Q)UAKE? |
|
#17
|
|||
|
|||
|
Quote:
This would be interesting! On the other hand, this engine only is available via manual update. Therefore it is doubtful, whether this comparison would reflect real life situations a regular user is confronted with. |
|
#18
|
|||
|
|||
|
I would be real interested to see how e trust promo does BO . It has both vet and inoculateIT .
|
|
#19
|
||||
|
||||
|
-Computer Associates EZ AV 6.1.7 ( Vet Engine )
-eTrust Antivirus 7.0 Promotional ( InoculateIT and Vet on-demand and real-time scan engines ) -AVG 6 free -Trend Micro PC-Cillin
__________________
StarFox http://my.opera.com/HEXX4FR/affiliate/ |
|
#20
|
|||
|
|||
|
Quote:
It seems not to be as interesting as I thought it would be! I retested the whole program with engine 4260 (because of the changed signature files) and then tested it again with the new and promising engine 4320. It virtually made no difference if I used the old or the new engine, the results were exactly the same! By the way, as McAfee performed very well in our original test, improvements are hard to make. ![]() |
|
#21
|
||||
|
||||
|
Thank you Bo for the retest and info! I found the new engine could catch bugs like Java Byte Verify and NO_Cheat in the zipped archive files, and then delete them. But as you say, the programme has done so well in the past. My favorite AV by far (Enterprise v.7.1.0)
![]()
__________________
Peter. |
|
#22
|
||||
|
||||
|
I have been trying to tell people for years or at least since version 6.0 that mcafee is an excellent AV.
__________________
The Only Safe Computer Is Unplugged ![]() MEMBER ASAP since 2004 Alliance of Security Analysis Professionals |
|
#23
|
|||
|
|||
|
The next test of our series is online! You can find our Bitdefender Standard v7 test here: http://www.rokop-security.de/main/ar...thread&order=0
|
|
#24
|
|||
|
|||
|
Today, we released the next test in our current test series:
AntiVir PE: http://www.rokop-security.de/main/ar...thread&order=0 A free AV as you wished ![]() |
|
#25
|
||||
|
||||
|
Good job, Bo
![]() Gratuliere my complimentsregards, paul
__________________
01110010 01100101 01100111 01100001 01110010 01100100 01110011 00100000 01110000 01100001 01110101 01101100 |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|