Home few antivirus comparaison

Discussion in 'other anti-virus software' started by Cadoul, Apr 11, 2005.

Thread Status:
Not open for further replies.
  1. illukka

    illukka Spyware Fighter

    Joined:
    Jun 23, 2003
    Posts:
    633
    Location:
    S.A.V.O
    bitdefender has an excellent heuristic engine. not quite NOD32 though
    especially BD's backdoor heuristic's are great ( i've seen many behaveslike win32 backdoor detections on new/modified malware)
    nod scores better on viruses/worms


    Cadoul: please continue your tests :D

    av tests are always interesting to read :D

    a question: do you use standard bases with the avs when testing?
    for example do you use drweb's spyware/riskware (beta) bases?
    or KAV's extended bases?
    did you enable extended threats with NAV ?
    etc
     
  2. Firecat

    Firecat Registered Member

    Joined:
    Jan 2, 2005
    Posts:
    8,251
    Location:
    The land of no identity :D
    At AV-Comparatives' latest retrospective/proactive test, NOD does better than BD at heuristically detecting Backdoors too. Any clarification? o_O
     
  3. Cadoul

    Cadoul Registered Member

    Joined:
    Apr 11, 2005
    Posts:
    76
    Location:
    France
    I used the last updates for AV products, extended versions but never beta.
    I made 22 tests. Big job. May i'll continue later.
    Sincerely
    Cadoul
     
  4. illukka

    illukka Spyware Fighter

    Joined:
    Jun 23, 2003
    Posts:
    633
    Location:
    S.A.V.O
    @Firecat

    the opinion is based on real life experience in finding new undetected malware.
     
  5. Firecat

    Firecat Registered Member

    Joined:
    Jan 2, 2005
    Posts:
    8,251
    Location:
    The land of no identity :D
    Oh OK - So that means BD heuristics is effective at Trojans/Backdoors, while NOD's is more effective at viruses/worms?
     
  6. IBK

    IBK AV Expert

    Joined:
    Dec 22, 2003
    Posts:
    1,886
    Location:
    Innsbruck (Austria)
    That's is the reality. Wait other ~50 days to see the results of the next proactive test.
     
  7. illukka

    illukka Spyware Fighter

    Joined:
    Jun 23, 2003
    Posts:
    633
    Location:
    S.A.V.O
    nod is IMO effective against general new malware, be it backdoors/trojans/malware/worms/viruses/dialers/anything.. its heuristics are second to none ;)

    i've just noticed that BD seems to be particularly effective against modified/new backdoors or bots, i suppose it is because it has good unpacking engine which is always helpful in backdoor detection.
    again, these are my personal opinions/experiences

    as i understand av-comparatives uses only decompressed samples the result may be different with packed malware
     
  8. Firecat

    Firecat Registered Member

    Joined:
    Jan 2, 2005
    Posts:
    8,251
    Location:
    The land of no identity :D
    Hmm....I heard that BitDefender's HIVE technology has been partly implemented right now. Softwin support told me that BitDefender's HIVE is the only heuristic engine so far to catch at least 70% of all ITW malware out there without signatures.

    Whats so strange is, NOD does better than that every time right? o_O

    Of course, I dont think unpackers are very important if the AV has a memory scanner. Am I right?
     
  9. IBK

    IBK AV Expert

    Joined:
    Dec 22, 2003
    Posts:
    1,886
    Location:
    Innsbruck (Austria)
    No, just unarchivied, but not decompressed.
     
  10. illukka

    illukka Spyware Fighter

    Joined:
    Jun 23, 2003
    Posts:
    633
    Location:
    S.A.V.O
    that would explain it, i don't know BD that well, thats for the pro version right ? has ther been an upgrade of BD after the last av-comparatives test?

    slightly but noticeably( based on my experience )

    depends a little on the memory scanner, but basically yes
     
    Last edited: Apr 16, 2005
  11. Firecat

    Firecat Registered Member

    Joined:
    Jan 2, 2005
    Posts:
    8,251
    Location:
    The land of no identity :D
    Yes, BitDefender recently announced their HIVE technology, and "Phase I" of the HIVE heuristics engine is now been added to BD (I think its for both versions).

    "Phase I" of HIVE is a "Virtual PC in a PC", sort of like a Sandbox. There is more to come, and HIVE will be 100% implemented by the end of the year.
     
  12. Firecat

    Firecat Registered Member

    Joined:
    Jan 2, 2005
    Posts:
    8,251
    Location:
    The land of no identity :D
    And btw thanks for answering my queries illukka and IBK :)
     
  13. Cadoul

    Cadoul Registered Member

    Joined:
    Apr 11, 2005
    Posts:
    76
    Location:
    France
    Last post about that subject. i get the last Symantec Corp 10 this morning.
    i tried with max settings and last update(04/20/05).
    Symantec Corp 10.0.0.359------------------22329
    Sincerely
    Cadoul
     
  14. sinbad370

    sinbad370 Registered Member

    Joined:
    Mar 1, 2005
    Posts:
    68
    Location:
    Georgia
    Hello, I am just curious how well Gdata 2005 would do in your test. I wonder how differently the combo would compare relative to their individual programs. Would you consider testing this?
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.