• 0

Your favourite Antivirus?


  

2295 members have voted

  1. 1. Your favourite Antivirus?

    • Avast!
      193
    • AVG
      306
    • BitDefender
      42
    • Kaspersky
      261
    • McAfee
      154
    • NOD32
      633
    • Norton/Symantec
      435
    • Panda
      29
    • Trend Micro
      81
    • Other
      161


Question

Recommended Posts

  • 0
NOD32 wouldn't be slow unless you've got something else that it's not compatible with. It does seem to disagree with almost as many programs as Outpost though.

585967173[/snapback]

This is the problem that I have found with NOD32. I am still with McAfee ater all these years. NAV has gone to the dogs!!!

  • 0

I've been running NOD32 on my laptop for over a year now. Rock solid and low on resources. I've managed to convert many of my friends over after they've seen how fast everything is ready after a reboot (compared with the 30 second wait of Norton...). They've never had any problems that I've heard of either.

Slowest scanner? NOD32 is known for its fast scanning... my 80GB drive now takes 6 minutes to scan (and it's almost a full 80GB...) compared to the 45mins when I was running NAV2004.

EDIT: Oh and as for services, NOD32 only needs one process to keep your system safe: nod32krn.exe (the NOD32 Kernel Service). The other process (nod32kui.exe) is the GUI for NOD32, which isn't necessary if you've configured things properly.

Edited by Zxian
  • 0
I've been running NOD32 on my laptop for over a year now. Rock solid and low on resources. I've managed to convert many of my friends over after they've seen how fast everything is ready after a reboot (compared with the 30 second wait of Norton...). They've never had any problems that I've heard of either.

Slowest scanner? NOD32 is known for its fast scanning... my 80GB drive now takes 6 minutes to scan (and it's almost a full 80GB...) compared to the 45mins when I was running NAV2004.

EDIT: Oh and as for services, NOD32 only needs one process to keep your system safe: nod32krn.exe (the NOD32 Kernel Service). The other process (nod32kui.exe) is the GUI for NOD32, which isn't necessary if you've configured things properly.

585968461[/snapback]

What do you configure to turn that off?

And yes, for me, it's another vote for NOD32...used to use SAV, slow scanning, updates less frequent, and pretty decent on system resources but not as good as NOD32.

  • 0

Norton was terrible on my laptop and old PC. I use AVG, for the performance I get from it. My PC always loads quickly with even 14 icons in the taskbar it runs smoothly. It scans my 250GB hard-drive (of which there is now 199GB of free space) super quickly and its useful to just right click a file I have downloaded and scan it effectivley with AVG. :D

  • 0

http://www.zone365.com/content/10/96/2

Testbed consisted of 321 Viruses, Trojans and Worms, all for the Windows32 environment, and all reasonably new samples. I don't have any data on whether some of these are zoo, or ITW, but they are all real threats I feel someone is likely to encounter, since I got them off the internet (and i've verified they are real as each sample must be detected by at least 4 AV's for me to consider it). All scanners were installed on a clean system, without any traces of other anti-virus softwares - between each test the system and directories were cleaned, and the registry was sweeped. Each AV product was treated with a double-reboot, one before, and one after installation. Each scanner was set at its highest possible settings, and was triple checked for proper options and configuration. Most products were the full registered version when possible, others were fully functional unrestricted trials. All products were tested with the current version as of 6-14-04, and the latest definitions for that date. Each product was run through the test set a minimum of 3 times to establish proper settings and reliability, the only product to exhibit some variance on this was F-Secure, which had one scan come up less than the other two without any settings changes indicating a possible stability issue.

The final standings:

1) MKS-Vir

1a) eXtendia AVK

2) Kaspersky 5.0/4.5

2a) McAfee VirusScan 8.0

3) F-Secure

4) GData AVK

5) RAV + Norton (2 way tie)

6) Dr.Web

7) CommandAV + F-Prot + BitDefender (3 Way Tie)

8) ETrust

9) Trend

10) Panda

11) Avast! Pro

12) KingSoft

13) NOD32

14) AVG Pro

15) AntiVIR

16) ClamWIN

17) UNA

18) Norman

19) Solo

20) Proland

21) Sophos

22) Hauri

23) CAT Quickheal

24) Ikarus

Heuristics seemed to play some of a roll in this test, as no AV had every virus in my test in their definitions, and products with stronger heuristics were able to hold their position towards the top of the test. Double/Multi engined products put up strong showings as well, proving to me that the redundacy method works, and I think more AV companies should considering double-engines. The strongest heurisitical AV I noticed was F-Prot/Command, picking up only 247 samples with definitions but they were able to power through 67 additional hits on "Possible Virus" indicators - very strong! Norton with BloodHound activated had 30 Heuristical pickups, and DrWeb rounded up the pack with 20 heuristical pickups. eXtendia AVK grabs the number one slot with double engine scanning, anything the KAV engine missed, the RAV engine picked up with great redundancy on the double engine/definition system. McAfee actually missed only 2 samples with its definitions, but picked those 2 up as "Suspicious File", and therefore, scores nearly perfect as well.

The biggest dissapointments for me were Norman and Nod32. Even with Advanced-Heuristics enabled, NOD32 failed to pick up a large portion of the samples. Norman, while finding some of the toughest samples, managed to completely miss a large portion of them! Showing that their sandbox-emulation system has great potetential, but its far from complete.

________________________________________

Actual test numbers were:

Total Samples/Found Samples (321 total possible) + Number Missed + Detection Percentage

Discovered and tested MKS-Vir2004, from Poland. Surprisingly, this one with caught every sample perfectly on Medium Heuristics. Specifically, nearly 50 samples were picked up Heuristically giving it a perfect score of 321/321. However, when I increased Heuristics to "Super Deep", it picked up an addition 10 more suspicious files. Upon further investigation, it was found that it was picking up signatures of hacktool utilities left over in some of the archives and flagging those files. Indeed, this is impressive. MKS-Vir2004 exhibits the most advanced detection algorithms i've ever seen, clearly it only had signatures for 271 of my samples, but through code emulation, it was able to pick up all 321 samples!! It clearly labeled the Heuristically found ones as things as "Likely Win32 Trojan" or "Highly Suspicious Acting File". In addition, its scanning speed was incredibly quick, and its memory footprint was quite small. Impressive! Furthermore, this is a full featured and fairly polished product that appears to update at least once per day, and tech support responded to me within 5-15 minutes on my emails. Unfortunately, it appears to not be available in the US for purchase at this time.

1a) MKS_Vir 2004 - 321/321 0 Missed - 100%

1b) eXtendia AVK - 321/321 0 Missed - 100%

2a) Kaspersky 5.0 - 320/321 1 Missed - 99.70% (with Extended Database ON)

2b) McAfee VirusScan 8.0 - 319/321 + 2 (2 found as joke programs - heuristically) - 99%

3) F-Secure - 319/321 2 Missed - 99.37%

4) GData AVK - 317/321 4 Missed - 98.75%

5) RAV + Norton (2 way tie) - 315/321 6 Missed - 98.13%

6) Dr.Web - 310/321 11 Missed - 96.57%

7) CommandAV + F-Prot + BitDefender (3 Way Tie) - 309/321 12 Missed - 96.26%

8) ETrust - 301/321 20 Missed - 93.76%

9) Trend - 300/321 21 Missed - 93.45%

10) Avast! Pro - 299/321 22 Missed - 93.14%

11) Panda - 298/321 23 Missed - 92.83%

12) Virus Buster - 290/321 31 Missed - 90.34%

13) KingSoft - 288/321 33 Missed - 89.71%

14) NOD32 - 285/321 36 Missed (results identical with or without advanced heuristics) - 88.78%

15) AVG Pro - 275/321 46 Missed - 85.66%

16) AntiVIR - 268/321 53 Missed - 83.48%

17) Antidote - 252/321 69 Missed - 78.50%

18) ClamWIN - 247/321 74 Missed - 76.94%

19) UNA - 222/321 99 Missed - 69.15%

20) Norman - 215/321 106 Missed - 66.97%

21) Solo - 182/321 139 Missed - 56.69%

22) Fire AV - 179/321 142 Missed - 55.76%

23) V3 Pro - 109/321 212 Missed - 33.95%

24) Per_AV - 75/321 - 246 Missed - 23.36%

25) Proland - 73/321 248 Missed - 22.74%

26) Sophos - 50/321 271 Missed - 15.57%

27) Hauri - 49/321 272 Missed - 15.26%

28) CAT Quickheal - 21/321 300 Missed - 6%

29) Vir_iT - 10/321 311 Missed - 3%

30) Ikarus - Crashed on first virus. - 0%

Interesting also to note, is the detection level of the US AVK version with KAV+RAV engines was higher than the German version with KAV+BitDefender engines. Several vendors have free versions of their for purchase AV's, we didn't test the free versions, as it would serve no purpose for this test, but based on the results, none of the free versions would have been very impressive anyway. The term "Heuristics" seems like it should be taken very liberally, as some products that claim to be loaded with Heuristics scored miserably on items they clearly didn't have definitions for. Scanning speed was not measured, as it was totally irrelevant to my testing, and on-access scanners were not tested, as it would have been too time consuming, but considering most products have similar on-access engines as on-demand, and use the same database, results most likely, would be very similar.

Cut through the hype, cut through the marketing schemes, this was a real test, with real samples, and none of these samples were provided to the antivirus software vendors in advance. This is real world, and these are likely badguys you'll encounter, since I got them in my real encounters, and all were aquired on the internet in daily activities which anyone out there might be involved in. (Installing shareware, filesharing, surfing, etc). Keep in mind that with ITW tests the AV vendors have full disclosure of what they will be tested on in advance, not so here, so heuristics and real detection algorithms will play a big part, as well as the depth and scope of their definition database.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Are they marketed as an entry into astronomy or astrophotography? I do astrophotography. With big rigs, lots of computers, cables and headaches. I love it. And by learning this ridiculously complex hobby, I’ve learned about the objects I’m shooting. Astronomy followed from photography.
    • Microsoft confirms Recycle Bin bug across all versions of Windows by Usama Jawad A couple of days ago, we reported that the latest Patch Tuesday update has seemingly resulted in a lot of issues for many users, including OneDrive and Dropbox access problems, BitLocker recovery lockouts, and BSODs. Although Microsoft is yet to acknowledge these bugs, it has confirmed another, relatively smaller issue across all supported versions of Windows. In an update on its Windows Release Health Dashboard, Microsoft has confirmed that after installing June's Patch Tuesday update (KB5094126), you'll experience unexpected behavior when leveraging Recycle Bin. Basically, when you attempt to delete an item from the Recycle Bin, the confirm dialog will show you the internal file name of that content rather than the actual name. For example, the file may be named abc.png, but the confirm dialog will ask if you're sure that you want to permanently delete $Rxxxxx.png from the Recycle Bin. This is pretty much it for the scope of the bug itself; it just displays the wrong name in the confirm dialog. The correct name will be shown in the list view of the Recycle Bin and if you restore the file, it will return with the correct name as well. This issue affects pretty much all supported versions of Windows client and server, including: Client: Windows 11, version 26H1; Windows 11, version 25H2; Windows 11, version 24H2; Windows 11, version 23H2; Windows 10, version 22H2; Windows 10 Enterprise LTSC 2021; Windows 10 Enterprise LTSC 2019; Windows 10 Enterprise LTSB 2016 Server: Windows Server 2025; Windows Server 2022; Windows Server 2019; Windows Server 2016; Windows Server 2012 R2; Windows Server 2012 As things currently stand, Microsoft is working on a concrete solution that will be released in a "future" Windows update. It remains to be seen if the firm will wait till the next Patch Tuesday or roll out an out-of-band (OOB) fix. The good news is that commercial customers can deploy a workaround right now, but they will have to reach out to Microsoft Support for Business for additional details.
    • They said by this time everyone will have flying cars. WELL...
    • A study by physicist Henry Tye of Cornell University suggests that the universe may not expand forever. Instead, it could eventually stop expanding, begin contracting and end in a "Big Crunch" roughly 20 billion years from now. Maybe not as we now know that time can flow backwards.
    • Of course. Simply reverse the polarity.
  • Recent Achievements

    • Reacting Well
      BizSAR earned a badge
      Reacting Well
    • First Post
      AndreaB earned a badge
      First Post
    • Week One Done
      Huge Trailer earned a badge
      Week One Done
    • Week One Done
      Classifyskilleducation earned a badge
      Week One Done
    • One Month Later
      eurospharma62 earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      577
    2. 2
      +Edouard
      183
    3. 3
      PsYcHoKiLLa
      75
    4. 4
      Michael Scrip
      72
    5. 5
      neufuse
      64
  • Tell a friend

    Love Neowin? Tell a friend!