I'm testing AV products against zeroday malware

Discussion in 'other anti-virus software' started by bradtech, Oct 12, 2009.

Thread Status:
Not open for further replies.
  1. bradtech

    bradtech Guest

    Which ones are not playing?
     
  2. acr1965

    acr1965 Registered Member

    Joined:
    Oct 12, 2006
    Posts:
    4,995
    I liked Threatfire on XP but on Vista it borked two keyboards- one on my desktop and one on my laptop. I tried it again recently and same thing happened. Actually even tried Cyberhawk on Vista recently and the same thing happened- dead keyboard in Vista.
     
  3. lonelywolf

    lonelywolf Registered Member

    Joined:
    Jun 10, 2009
    Posts:
    73
    :D
    Yes, that is why I am using only security softwares that are not giving me headaches of any kind. Currently Vipre together with the pctools firewall and the k-meleon browser are behaving well. Threatfire is good but it's constantly having some issues with the installed software on this pc of mine (legitimate software :D ), Comodo Idem, just wanted to mention some of the offenders ( they are not alone ) that unfortunately do not like this pc of mine, don't ask me why, I don't really care.
    :)
     
  4. acr1965

    acr1965 Registered Member

    Joined:
    Oct 12, 2006
    Posts:
    4,995
    Just watched the MSE video. Interesting how, after infection, the Vista firewall blocked Windows Explorer from accepting incoming network connections.
     
  5. Nunes

    Nunes Registered Member

    Joined:
    Apr 4, 2006
    Posts:
    103
    Location:
    AMADORA,Portugal
    I only saw the rising video (I didn't find the others except Avast) and I must say that it is done incorrectly. You have to put in the skin of an average user and execute your files to see if the AV detects them as malware and blocks it's execution. What you did is to see that the AV has an HIPS behavior and asks the user if he wants to execute the file. This will happen with all the exe files malware or not. You have to execute them to see the av response to changes made by the file.
     
  6. tipstir

    tipstir Registered Member

    Joined:
    Jun 9, 2008
    Posts:
    830
    Location:
    SFL, USA
    30 videos posted, the ones I had issues with won't play but they seem to play now could have been with YT servers at the time.
     
  7. aigle

    aigle Registered Member

    Joined:
    Dec 14, 2005
    Posts:
    11,164
    Location:
    UK / Pakistan
    Where is geswall video?
     
  8. aigle

    aigle Registered Member

    Joined:
    Dec 14, 2005
    Posts:
    11,164
    Location:
    UK / Pakistan

    http://www.freerav.com/
     
  9. lifetweaker

    lifetweaker Registered Member

    Joined:
    Jun 24, 2009
    Posts:
    63
    Location:
    127.0.0.1
  10. tipstir

    tipstir Registered Member

    Joined:
    Jun 9, 2008
    Posts:
    830
    Location:
    SFL, USA
    I had the one they posted that said the same thing and it still won't update. I never had 2008 version. 2009 won't update no matter if it is INTFree or freeav just won't update. I've moved on...
     
  11. LagerX

    LagerX Registered Member

    Joined:
    Apr 16, 2008
    Posts:
    565
    You should test IObit Security 360 v1.02 :)
     
  12. acr1965

    acr1965 Registered Member

    Joined:
    Oct 12, 2006
    Posts:
    4,995
    F-prot is up on youtube. Yikes!
     
  13. lifetweaker

    lifetweaker Registered Member

    Joined:
    Jun 24, 2009
    Posts:
    63
    Location:
    127.0.0.1
    Wow, FProt Sucks....IMHO
     
    Last edited: Oct 15, 2009
  14. ccomputertek

    ccomputertek Registered Member

    Joined:
    Jul 27, 2009
    Posts:
    371
    Something must have gone wrong, plus you can only see 42 seconds of part 2.

    Could you PM me a compilation of those zero day links starting from today and spanning from the last couple weeks or so bradtech ? So I can run some tests, or just PM me a site that has all these links and keeps track of links like this.
     
  15. lifetweaker

    lifetweaker Registered Member

    Joined:
    Jun 24, 2009
    Posts:
    63
    Location:
    127.0.0.1
    That's what I thought too_O ...Have you had any personal experience with FProt?
     
  16. ccomputertek

    ccomputertek Registered Member

    Joined:
    Jul 27, 2009
    Posts:
    371
    I have personally seen for myself F-prot be stronger than even NOD32, yes.But I think the last windows version of F-prot I used was previous to this new updated version bradtech tested.
     
  17. bradtech

    bradtech Guest

    I am tracking down the issue with the part 2 videos messing up.. They run fine on my computer, and other computers in my house.. Upon uploading to youtube something goes insane. I am uploading Trend Micro, and about to test Bullguard, and PrevX
     
  18. trjam

    trjam Registered Member

    Joined:
    Aug 18, 2006
    Posts:
    9,102
    Location:
    North Carolina USA
    I know my eyes are bad but where is part 2 of Eset. The part where it fails.
     
  19. btman

    btman Registered Member

    Joined:
    Feb 11, 2006
    Posts:
    576
    Hey there just learned about these tests but I have some questions:

    A. I get that these are 0 day attacks, but is there any sort of consistency between malware links used? Or do you just grab different links for each test and AV. So basically which tests use the same links against different AV's? Do all part 1's use the same set as other part 1's for an AV?

    B. Your after video ratings are kind of weird. I just watched BitDefender 2010 part 1. And I skipped through most of it and got to the end and saw it missed and let run a ton of junk. but you give a 3-3.5? Where as Kaspersky part 1 it missed 1 malware and let it run, didn't even let the rest of them install and you give it a 3?

    C. Will you ever take say like 50 of these zero day attacks? Test them on a bunch of AV's and make a report of your results? I love youtube, but I just don't have the time to watch every one of these videos I'd rather just skim through results lol.

    D. Will there be a Kaspersky part 2?

    Sorry if you already answered some of these I haven't skimmed through the entire thread yet as most of it seems to be requests lol.
     
  20. bradtech

    bradtech Guest

    ESET blocked all attacks on that day.
     
  21. bradtech

    bradtech Guest


    On each day I compile a list, and test the products on that day with the same list.. Pay no attention to me rating them.. It's just my opinion on what I have seen, not any kind of formula I wrote down, and apply to each product based on results. If I come up with some kind of rating system I'll post it on here for critique. My main problem with Kaspersky was the type of threat it allowed to run not the number..
     
  22. bradtech

    bradtech Guest

    PrevX kicked some ass :thumb:
     
  23. lifetweaker

    lifetweaker Registered Member

    Joined:
    Jun 24, 2009
    Posts:
    63
    Location:
    127.0.0.1
    Incidentally--how well did FProt do on the full scan? Account on the video messing up.
     
  24. bradtech

    bradtech Guest

    I believe it found 34 infections, but didn't get rid of that one variant running.
     
  25. tipstir

    tipstir Registered Member

    Joined:
    Jun 9, 2008
    Posts:
    830
    Location:
    SFL, USA
    These two a free but how would they do..?

    EAV Antivirus Suite Free Edition 6.20
    My Free Antivirus 2.1


    Don't forget
    1. Quick Heal - India's Leading Anti-Virus Software
    2. Bullguard Internet Security
    3. Protector Plus
    4. eScan Internet Security
    5. ADinf32 Anti-Virus Software (Standard or Pro)
    6. VIRUSfighter 5.81
    7. Handy Antivirus
    8. Safe n Sec Plus Antivirus
    9. COMMAND AntiVirus
    10. Abacre Antivirus
    11. K7 Antivirus
    12. Swift Anti-virus Adload Spy Keylogger
    13. Security Shield AntiVirus 2009
    14. KV antivirus software
    15. Qihoo 360 Free Antivirus
    16. Jiangmin Anti-Virus
     
    Last edited: Oct 15, 2009
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.