I'm testing AV products against zeroday malware

Discussion in 'other anti-virus software' started by bradtech, Oct 12, 2009.

Thread Status:
Not open for further replies.
  1. trjam

    trjam Registered Member

    Joined:
    Aug 18, 2006
    Posts:
    9,102
    Location:
    North Carolina USA
    has anyone detected and cleaned it correctly?
     
  2. bradtech

    bradtech Guest

    Yes, I believe it is part of the Zeus line.
     
  3. Meriadoc

    Meriadoc Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    2,642
    Location:
    Cymru
    if its that one I've dissected it:D
     
  4. bradtech

    bradtech Guest

    I'd have to say that NOD32, and Prevx has been humbled by some of this stuff
     
  5. kaixi

    kaixi Registered Member

    Joined:
    Oct 9, 2009
    Posts:
    17
    Still no DefenseWall test? I'm interested in this app as I'm using the trial on my computer and if it performs well I might buy it.
     
  6. rolarocka

    rolarocka Guest

    Wouldnt a safe mode scan with nod/prevx get rid of it?
     
  7. Meriadoc

    Meriadoc Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    2,642
    Location:
    Cymru
    Hi Brad, I see that you check with HJT and Eset's SysInspecter. Do you check if anything else has been missed. The gmer ark and gmer's catchme userland ark, RootRepeal, Rootkit Unhooker and IceSword are good tools to use failing using a debugger such as WinDbg. These would cover hidden processes, services, files, registry items and connections to complete the picture so to speak if something got passed the software - with other hints and features if so technically minded.

    Just a thought.
     
  8. Ed_H

    Ed_H Registered Member

    Joined:
    Nov 10, 2004
    Posts:
    662
    Location:
    Chicago, IL
    I'd also like to see DefenseWall tested as well as Online Armor++. I suspect both of these would block everything but it would be interesting to see the results.
     
  9. webster

    webster Registered Member

    Joined:
    Feb 23, 2004
    Posts:
    285
    Location:
    Denmark
    Looks like these have been renamed and disabled with the vir extention. Perhaps NOD32 did this automatically ;)
     
  10. JasSolo

    JasSolo Registered Member

    Joined:
    May 9, 2007
    Posts:
    414
    Location:
    Denmark
    I'd like to see NIS 2010 and/or NAV 2010 tested or demonstrated, as arc1965 so well putted it ;-). It would be fun to see, if all the fuzz about it, holds water or not.


    Cheers
     
  11. lifetweaker

    lifetweaker Registered Member

    Joined:
    Jun 24, 2009
    Posts:
    63
    Location:
    127.0.0.1
    Another vote for DefenseWall...
     
  12. Fuzzfas

    Fuzzfas Registered Member

    Joined:
    Jun 24, 2007
    Posts:
    2,753
    That's unfair towards antivirus products. Defensewall is too strong. :D

    Seriously, what are the chances that Brad will encounter something that can breach Defensewall? 0,01% ?
     
  13. lifetweaker

    lifetweaker Registered Member

    Joined:
    Jun 24, 2009
    Posts:
    63
    Location:
    127.0.0.1
    No, it's less than that :D
     
  14. tipstir

    tipstir Registered Member

    Joined:
    Jun 9, 2008
    Posts:
    830
    Location:
    SFL, USA
  15. Fly

    Fly Registered Member

    Joined:
    Nov 1, 2007
    Posts:
    2,201
    Why don't you test Antivirus 2009 ? :p
     
  16. Page42

    Page42 Registered Member

    Joined:
    Jun 18, 2007
    Posts:
    6,944
    Location:
    USA
    Okay, I understand what you mean now. ;)
     
  17. andyman35

    andyman35 Registered Member

    Joined:
    Nov 2, 2007
    Posts:
    2,336
    Excellent idea ! Since it's on so many machines it's popularity must mean it's rather good.:D
     
  18. Zimzi

    Zimzi Registered Member

    Joined:
    Jul 10, 2005
    Posts:
    289
    Please be serious. We are discussing about very important matters here. :rolleyes:
     
  19. tipstir

    tipstir Registered Member

    Joined:
    Jun 9, 2008
    Posts:
    830
    Location:
    SFL, USA
    You guys so funny for him to these a rouge antivirus. But there are some unknown Antivirus programs made by lesser known security software companies. This INNOBATE AntiVirus provides On-Access, on-demand resident shield against virus, worms, trojans, and malware Sounds like it can protect the system. I could test but this guy already has test rig ready to go..

    I myself ran into this one last night: dologin.exe Comodo FW and Rising AV both caught this one trying to contact a ip site 71.x.x.x

    This INNOBATE supports: Windows 2003, Windows Vista, Windows Server 2008, Windows XP, Windows 7
    http://download.cnet.com/Innobate-AntiVirus-Free/3000-2239_4-10964882.html
     
    Last edited: Oct 17, 2009
  20. bradtech

    bradtech Guest

    Man I had to bail on that last review... About to fall asleep in my chair :ninja: *puppy* *puppy*

    That was some nasty stuff..

    NOD32/PCTW/PrevX
     
  21. xandros

    xandros Registered Member

    Joined:
    Oct 30, 2006
    Posts:
    411
    where is comodo internet security o_O
     
  22. bradtech

    bradtech Guest

    On the list :)
     
  23. tipstir

    tipstir Registered Member

    Joined:
    Jun 9, 2008
    Posts:
    830
    Location:
    SFL, USA
    Test is time consuming! Add RegProt (Registry Prot) to your list, small program is lets you know what going to run or run as..) (Yes to allow No to del)
     
  24. 1000db

    1000db Registered Member

    Joined:
    Jan 9, 2009
    Posts:
    718
    Location:
    Missouri
    Hey Brad try IOBit 360 against some MW.
     
  25. clocks

    clocks Registered Member

    Joined:
    Aug 25, 2007
    Posts:
    2,787
    I'd like to see IOBit 360 and AVG Free ver 9.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.