![]() |
|
#101
|
||||
|
||||
|
@Firefighter
I've been discussing about F-Secure's Libra engine any times already... The official statement at F-Secure is "Libra is NO F-Prot engine" they don't ever mention about the database... Personally I think just like Firecat that F-Secure made their own engine using the F-Prot databases, maybe we can invastigate if the Libra and F-Prot update sequence are simular ![]()
__________________
"Proud openSUSE user." |
|
#102
|
||||
|
||||
|
Quote:
__________________
Last edited by Radu : Today, at 5:32 AM. Reason: Found new malicious code |
|
#103
|
||||
|
||||
|
Quote:
Best regards, Firefighter!
__________________
Some savolax answer to the southern man: Q. No onko viiruksia näkynyt? A. No voe tokkiisa. Just äskönnii oes männynnä yks vuan en ehtinnä nähä. Tuolta saanan takkoo se männä jölököttel suorraah järvvee letit hulumuteh! Last edited by Firefighter : March 19th, 2005 at 10:17 AM. |
|
#104
|
||||
|
||||
|
Quote:
The infected archive count using scan logs can therefore be much higher than the original malware sample size!!! Initially, I was very surprised by this result when I first started my amateur AV malware testing Therefore it is better to scan the archive and allow the scanner to delete the recognised malware; then compare the number of remaining samples with the original malware collection size. Now, IMHO, some AV scanners do have problems in scanning/deleting archived samples. Quote:
Quote:
![]() |
|
#105
|
||||
|
||||
|
Quote:
![]()
__________________
"Proud openSUSE user." |
|
#106
|
||||
|
||||
|
Quote:
• Worm_731\Email-Worm.Win32.Klez.h.zip\I-Worm.Klez.h\[From cij1999 ][Subject:[Users] Re:users,japanese girl VS playboy] Suspected infection: Exploit.HTML.FileDownload • Worm_731\Email-Worm.Win32.Klez.h.zip\I-Worm.Klez.h\[From cij1999 ][Subject:[Users] Re:users,japanese girl VS playboy]t13[1].scr Infection: Email-Worm.Win32.Klez.h • Worm_731\Email-Worm.Win32.Klez.h.zip\I-Worm.Klez.h Suspected infection: Exploit.HTML.FileDownload Best regards, Firefighter!
__________________
Some savolax answer to the southern man: Q. No onko viiruksia näkynyt? A. No voe tokkiisa. Just äskönnii oes männynnä yks vuan en ehtinnä nähä. Tuolta saanan takkoo se männä jölököttel suorraah järvvee letit hulumuteh! Last edited by Firefighter : March 19th, 2005 at 10:38 AM. |
|
#107
|
||||
|
||||
|
Quote:
Probably my next car. Best regards, Firefighter!
__________________
Some savolax answer to the southern man: Q. No onko viiruksia näkynyt? A. No voe tokkiisa. Just äskönnii oes männynnä yks vuan en ehtinnä nähä. Tuolta saanan takkoo se männä jölököttel suorraah järvvee letit hulumuteh! Last edited by Firefighter : March 21st, 2005 at 01:15 AM. |
|
#108
|
||||
|
||||
|
Quote:
I'll be happy to buy a 20 year old Lada next year :p but first searching for an appartment ![]()
__________________
"Proud openSUSE user." |
|
#109
|
||||
|
||||
|
Quote:
Best regards, Firefighter!
__________________
Some savolax answer to the southern man: Q. No onko viiruksia näkynyt? A. No voe tokkiisa. Just äskönnii oes männynnä yks vuan en ehtinnä nähä. Tuolta saanan takkoo se männä jölököttel suorraah järvvee letit hulumuteh! |
|
#110
|
|||
|
|||
|
Quote:
Is there more than one file in this archive? If yes, why? You are supposed to test only the real Klez malware file (in this case, it seems to be a *.scr). The rest seem to be exploits, which are to "deliver" the malware. Don't you have an own exploit section? And again: why are your samples zipped at all? That is confusing and can falsify the results. |
|
#111
|
||||
|
||||
|
Quote:
Over 95 % of my samples contains only one infected file, but because they were picked from virus collection sites, s...t happens. This may falsify the total results a bit, but only towards a bit better detection rate among some not so good av:s. Best regards, Firefighter!
__________________
Some savolax answer to the southern man: Q. No onko viiruksia näkynyt? A. No voe tokkiisa. Just äskönnii oes männynnä yks vuan en ehtinnä nähä. Tuolta saanan takkoo se männä jölököttel suorraah järvvee letit hulumuteh! |
|
#112
|
||||
|
||||
|
Quote:
![]()
__________________
"Proud openSUSE user." |
|
#113
|
||||
|
||||
|
IT'S HYUNDAI, NOT HUYNDAI.
![]()
__________________
AMD Athlon 2000+ 512 DDR ram 80gb HD Ati Radeon 9100 128 mb Windows XP SP2 Every week another AV
|
|
#114
|
||||
|
||||
|
Quote:
Best regards, Firefighter!
__________________
Some savolax answer to the southern man: Q. No onko viiruksia näkynyt? A. No voe tokkiisa. Just äskönnii oes männynnä yks vuan en ehtinnä nähä. Tuolta saanan takkoo se männä jölököttel suorraah järvvee letit hulumuteh! |
|
#115
|
||||
|
||||
|
I tried this rebranded product on my Celeron M 1.5Ghz, 256 RAM Notebook PC. The product is genuine F-Secure Antivirus 2005. Its loaded with a Firewall, spam control, parental filters etc.
But, I found it to be a major resource hog. I feel it surpasses Norton. It adds a number of processes and consumes your RAM like crazy. I recomend that users with fast processors and large memory (512MB) should stick with it. Lower end machines cant cope with it. Regards, Abhishek |
|
#116
|
||||
|
||||
|
Quote:
__________________
1337 4-3v3r! Thanks for all this... take down my gmail and yahoo [msgr] id's if you want ![]() //||// [[]] 11 33 |
|
#117
|
||||
|
||||
|
Just added Norman VC 5.80.02 with Sandbox to my test table in post 78. this thread. Detected 10 as "possible", 29 as "New unknown virus" and 93 by Sandbox.
Best regards, Firefighter!
__________________
Some savolax answer to the southern man: Q. No onko viiruksia näkynyt? A. No voe tokkiisa. Just äskönnii oes männynnä yks vuan en ehtinnä nähä. Tuolta saanan takkoo se männä jölököttel suorraah järvvee letit hulumuteh! Last edited by Firefighter : March 20th, 2005 at 10:37 AM. |
|
#118
|
||||
|
||||
|
Is this good or bad compared to your other tested AV's, FF?
|
|
#119
|
||||
|
||||
|
Quote:
Best regards, Firefighter!
__________________
Some savolax answer to the southern man: Q. No onko viiruksia näkynyt? A. No voe tokkiisa. Just äskönnii oes männynnä yks vuan en ehtinnä nähä. Tuolta saanan takkoo se männä jölököttel suorraah järvvee letit hulumuteh! |
|
#120
|
||||
|
||||
|
Unfortunately there was an calculating error in the last Norman trojan like detectings in post 78. The table should be.
Best regards, Firefighter!
__________________
Some savolax answer to the southern man: Q. No onko viiruksia näkynyt? A. No voe tokkiisa. Just äskönnii oes männynnä yks vuan en ehtinnä nähä. Tuolta saanan takkoo se männä jölököttel suorraah järvvee letit hulumuteh! |
|
#121
|
||||
|
||||
|
Quote:
When I checked F-Secure Anti-virus on the anti-virus section, my copy said that it was 2004. I downloaded from the site Friday. I like the product and will keep it even if it is 2004. |
|
#122
|
||||
|
||||
|
@Firefighter
Are the results of Command AV the same as F-Prot? I heard they use the same engine, and since the results of Command AV in your test are just fine, F-Prot might get more interesting every day for me ![]()
__________________
"Proud openSUSE user." |
|
#123
|
|||
|
|||
|
To Firefighter:
Can you add Dr.Web with its Spyware/Adware databases into the text mix? I think the extra database adds about 3,000+ more threats. Thanks |
|
#124
|
||||
|
||||
|
Quote:
Best regards, Firefighter!
__________________
Some savolax answer to the southern man: Q. No onko viiruksia näkynyt? A. No voe tokkiisa. Just äskönnii oes männynnä yks vuan en ehtinnä nähä. Tuolta saanan takkoo se männä jölököttel suorraah järvvee letit hulumuteh! |
|
#125
|
||||
|
||||
|
Quote:
Best regards, Firefighter!
__________________
Some savolax answer to the southern man: Q. No onko viiruksia näkynyt? A. No voe tokkiisa. Just äskönnii oes männynnä yks vuan en ehtinnä nähä. Tuolta saanan takkoo se männä jölököttel suorraah järvvee letit hulumuteh! |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|