MRG Flash Tests 2011

Discussion in 'other anti-virus software' started by LODBROK, Jan 27, 2011.

Thread Status:
Not open for further replies.
  1. Marcos

    Marcos Eset Staff Account

    Joined:
    Nov 22, 2002
    Posts:
    14,456
    I'm still wondering about MD5 of the tested files. For instance, I've hunted for all Hiloti (aka Cimag) files from various sources that appeared within the last 2 months and didn't find a single one undetected by ESET (including today's variants). Quite the contrary, I've found a number of Cimags detected only by ESET and DrWeb from famous AVs. This raises some doubts about what and how was tested, hence I would kindly ask the authors to provide a list of hashes for the tested files for verification.
     
  2. Thankful

    Thankful Savings Monitor

    Joined:
    Feb 28, 2005
    Posts:
    6,564
    Location:
    New York City
  3. LODBROK

    LODBROK Guest

    Nope. Panda's not there.
     
  4. Thankful

    Thankful Savings Monitor

    Joined:
    Feb 28, 2005
    Posts:
    6,564
    Location:
    New York City
    Email sent.
     
  5. Sveta MRG

    Sveta MRG Registered Member

    Joined:
    Aug 16, 2009
    Posts:
    209
    We are having some layout problems, everything should be OK now. We will rebuild the table and Panda will be back in it.

    There was an error with McAfee's and Eset's results, it is fixed now.

    Regards,
    Sveta
     
  6. Page42

    Page42 Registered Member

    Joined:
    Jun 18, 2007
    Posts:
    6,944
    Location:
    USA
    Norton results changed too...
    from 40-32-8
    to 44-35-9
    Thanks for fixing.
     
  7. Marcos

    Marcos Eset Staff Account

    Joined:
    Nov 22, 2002
    Posts:
    14,456
    Hi Sveta,
    would it be possible to share MD5 of the tested files so that AV vendors can verify the test results? This is one of the AMTSO principles for testing which make tests reputable.
     
  8. nosirrah

    nosirrah Malware Fighter

    Joined:
    Aug 25, 2006
    Posts:
    560
    Location:
    Cummington MA USA
    I would kind of like that to go a step further and include a VT link for a very specific reason. Not only will get your MD5s but the extra VT data can be used to confirm many other things including first seen by VT date.
     
  9. The Hammer

    The Hammer Registered Member

    Joined:
    May 12, 2005
    Posts:
    5,752
    Location:
    Toronto Canada
    trjam's been there ,done that, got the T shirt I"m sure.;)
     
  10. trjam

    trjam Registered Member

    Joined:
    Aug 18, 2006
    Posts:
    9,102
    Location:
    North Carolina USA
    Sticking with Avira. But I do luv them all.:blink:
     
  11. harsha_mic

    harsha_mic Registered Member

    Joined:
    Mar 11, 2009
    Posts:
    815
    Location:
    India
    Yes. I like the idea of providing the VT links along with the test results. I even think it is pretty doable as the sample involved per test is at very minimum. It would be easier to track how fast the vendors are adding their detections and all antivirus vendors could get the samples with ease. just my 2 cents :)
     
  12. Marcos

    Marcos Eset Staff Account

    Joined:
    Nov 22, 2002
    Posts:
    14,456
    VirusTotal results can be misleading to some people as they only show how files are detected by on-demand scanners but do not tell anything about real protection capabilities of particular security programs to protect the user against the given malware.
     
  13. Page42

    Page42 Registered Member

    Joined:
    Jun 18, 2007
    Posts:
    6,944
    Location:
    USA
    Based on current overall results, here are the AV rankings showing percent PASSED:
    (Hopefully no miscalculations! Some are tied.)

    1. DefenseWall (100%)
    2. Malwarebytes (98%)
    3. Emsisoft (91%)
    4. Zemana (90%)
    5. Coranti (83%)
    6. Prevx (82%)
    7. Norton (80%)
    8. Sunbelt (80%)
    9. BluePoint Security (75%)
    10. GData (52%)
    11. Immunet (52%)
    12. Eset (52%)
    13. Avira (48%)
    14. Kaspersky (48%)
    15. McAfee (41%)
    16. SUPERAntispyware (39%)
    17. Panda (39%)
    18. Avast (36%)
    19. BitDefender (36%)
    20. F-Secure (30%)
    21. AVG (30%)
    22. Microsoft (18%)
    23. PCTools (3%)

    MRG Current Overall.jpg
     
  14. nosirrah

    nosirrah Malware Fighter

    Joined:
    Aug 25, 2006
    Posts:
    560
    Location:
    Cummington MA USA
    I didn't mention it for the scan results, the MD5 and first VTed date are what I am interested in.
     
  15. The Hammer

    The Hammer Registered Member

    Joined:
    May 12, 2005
    Posts:
    5,752
    Location:
    Toronto Canada
    o_O In the latest test 4/12/11 the combined Avast/Bitdefender results don't match up with G-Data which uses both their engines.http://malwareresearchgroup.com/
     
  16. Cimmerian

    Cimmerian Registered Member

    Joined:
    Nov 29, 2010
    Posts:
    410
    Location:
    New Jersey
    I noticed this too, and brought it up a little earlier in this thread. Seems that MRG is using Avast V6, while G Data is still using an earlier engine, V4 I believe, though I may be wrong, I forgot to check it. When G Data releases the 2012 line-up, it'll include the Avast V6 engine, so the test results should reflect this.
     
  17. tgell

    tgell Registered Member

    Joined:
    Nov 12, 2004
    Posts:
    1,097
    On the latest test dated 4/12 avast! passes everything but Hiloti and TDSS shows orange instead of green. Anybody know why? Or maybe I am just colorblind.
     
  18. harsha_mic

    harsha_mic Registered Member

    Joined:
    Mar 11, 2009
    Posts:
    815
    Location:
    India
    they have caught on-execution by avast bb :)
     
  19. tgell

    tgell Registered Member

    Joined:
    Nov 12, 2004
    Posts:
    1,097
    Thanks. Looks like the Behavior Blocker is starting to do its job.
     
  20. Matthijs5nl

    Matthijs5nl Guest

    Orange probably means they got AutoSandboxed, after they have been flagged as suspicous based on the combination of heuristics/behavioral shield/community.
     
  21. harsha_mic

    harsha_mic Registered Member

    Joined:
    Mar 11, 2009
    Posts:
    815
    Location:
    India
    Yeah. It is definetely improved from v5.1. It catches some malware on execution in my sandboxie :)
    Currently, i could not test it :( as my sandboxie wouldn't run any browser because of a bug related to trusteer. Waiting for v3.55 sandboxie.
     
  22. Thankful

    Thankful Savings Monitor

    Joined:
    Feb 28, 2005
    Posts:
    6,564
    Location:
    New York City
    Last edited: Apr 13, 2011
  23. Matthijs5nl

    Matthijs5nl Guest

    Great to see MRG performing this type of "simple" but yet possible in the real world testing. Really becoming one of my favourite tests to follow. I hope they continue with this and maybe more nice testing, so we can just rely on AV-Comparatives/AV-Test.org/VirusBulletin for the bigger tests. In my eyes all other "professional" tests are useless.

    Suggestion to the MRG website administrator, it would be nice to be able to sort the totals table on "Passed".
     
  24. Page42

    Page42 Registered Member

    Joined:
    Jun 18, 2007
    Posts:
    6,944
    Location:
    USA
    I asked the same "color" question on this thread about a month ago, and someone pointed to this post by Sveta.
     
  25. Thankful

    Thankful Savings Monitor

    Joined:
    Feb 28, 2005
    Posts:
    6,564
    Location:
    New York City
    4/13 Tests:
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.