Layered defence, how effective solution?

Discussion in 'other anti-virus software' started by Firefighter, Dec 15, 2004.

Thread Status:
Not open for further replies.
  1. solarpowered candle

    solarpowered candle Registered Member

    Joined:
    Jan 9, 2003
    Posts:
    1,181
    Location:
    new zealand
    Now FF can you repeat these tests with the trial version of TDS-3?
     
  2. Stan999

    Stan999 Registered Member

    Joined:
    Sep 27, 2002
    Posts:
    566
    Location:
    Fort Worth, TX USA
    Hi Firefighter,

    It is not just NOD but some other AVs also have good Heuristics and are also working to improve that type of protection. I personally believe that type of protection is also a valid consideration for chosing an overall line of defense.
     
  3. Firefighter

    Firefighter Registered Member

    Joined:
    Oct 28, 2002
    Posts:
    1,670
    Location:
    Finland
    I agree.

    Best regards,
    Firefighter!
     
  4. Firefighter

    Firefighter Registered Member

    Joined:
    Oct 28, 2002
    Posts:
    1,670
    Location:
    Finland
     
    Last edited: Dec 18, 2004
  5. nameless

    nameless Registered Member

    Joined:
    Feb 23, 2003
    Posts:
    1,233
    Are there any stats at all on how successful heuristic technology is at detecting zero-hour malware? Or false positives caused by heuristics? Or how many pain-reliever bottles have been consumed as a direct result of it?
    -
     
  6. Firefighter

    Firefighter Registered Member

    Joined:
    Oct 28, 2002
    Posts:
    1,670
    Location:
    Finland
    I'm just curious, how good Avast's heuristics in email could be. Unfortunately I couldn't install my a bit over 260 Megs collection to my emailbox to check that. Still very good combo with Ewido in my mind.

    Best regards,
    Firefighter!
     
  7. Stan999

    Stan999 Registered Member

    Joined:
    Sep 27, 2002
    Posts:
    566
    Location:
    Fort Worth, TX USA
    Some testing results here:

    Retrospective/ProActive Test:
    http://www.av-comparatives.org

    I have noted some posts about FPs but I haven't noticed any FPs myself with NOD's AH on a game machine here used by a bunch of teens. However, I have noted that the NOD HTTP scanner has terminated some of the connections with an AH detection while they were surfing game platform cheat and walk through sites which I consider a good thing and that does help cut down on the pain-reliever bottles for me.:)

    IMHO, I do think it is very good that heuristic can stop this sort of stuff prior to an AV getting the definitions out to all their users and then users updating their definitions in a timely fashion.
    https://www.wilderssecurity.com/showthread.php?t=58482

    So from my end heuristic can be a valuable addition, YMMV.
     
  8. Firefighter

    Firefighter Registered Member

    Joined:
    Oct 28, 2002
    Posts:
    1,670
    Location:
    Finland
    Can you show any screenshot how I can update that f...g mother of trojans detection software (tds).

    PS. My eyes are already almost blind after this. Maybe because of that it is only 1:54 AM local time.

    Best regards,
    Firefighter!
     
  9. Notok

    Notok Registered Member

    Joined:
    May 28, 2004
    Posts:
    2,969
    Location:
    Portland, OR (USA)

    Attached Files:

  10. Notok

    Notok Registered Member

    Joined:
    May 28, 2004
    Posts:
    2,969
    Location:
    Portland, OR (USA)
    Then copy it to your TDS-3 directory, and you're done!
     

    Attached Files:

  11. rdsu

    rdsu Registered Member

    Joined:
    Jun 28, 2003
    Posts:
    4,540
    Thanks Firefighter, for these tests... ;)

    It's nice to see who can we improve our protection with combining our AV's with some AM's (AntiMalware)...

    What is your current opinion about ewido and a-squared?
     
  12. Firefighter

    Firefighter Registered Member

    Joined:
    Oct 28, 2002
    Posts:
    1,670
    Location:
    Finland
    Personally I like Ewido, easy to use and make tests, that's why I have bought a licence to it.

    About a² Personal. Have you seen many engine updates concerning av:s, that can improve the "Common PC Protection" level in real time protection from 69...88 % to 84...92 %? There you have my answer.

    Best regards,
    Firefighter!
     
  13. rdsu

    rdsu Registered Member

    Joined:
    Jun 28, 2003
    Posts:
    4,540
    I also prefer the ewido.

    It seems that they work hardly to make a very good program... ;)
     
  14. Firefighter

    Firefighter Registered Member

    Joined:
    Oct 28, 2002
    Posts:
    1,670
    Location:
    Finland
    How fast detection rate can improve? Just after 3 days Ewido scored 100 detections more than on last Friday. Over 50 worms more and the rest were mostly among trojan like malware. Now only eScan Free, McAfee and DrWeb were better against worms than Ewido.

    All this happened even that I have not submitted any samples to any av/at vendor.

    Best regards,
    Firefighter!
     
  15. Firefighter

    Firefighter Registered Member

    Joined:
    Oct 28, 2002
    Posts:
    1,670
    Location:
    Finland
    And now just few hrs later, again 12 detections more with Ewido, am I tracked?

    Best regards,
    Firefighter!
     
  16. rdsu

    rdsu Registered Member

    Joined:
    Jun 28, 2003
    Posts:
    4,540
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.