Kaspersky Anti-Virus 2009 receives the Gold Malware Treatment Award


Recommended Posts

Link: anti-malware-test.com

Kaspersky Lab, a leading developer of secure content management solutions, announces that Kaspersky Anti-Virus 2009 has received the Gold Malware Treatment Award from respected security software test laboratory Anti-Malware Test Lab.

More than 15 antivirus products, including Norton AntiVirus 2009, BitDefender Antivirus 2009 and Eset NOD32 Antivirus 3.0, participated in a series of tests evaluating the ability of the products to treat active infections. The computer used for testing was loaded with the Windows XP SP3 operating system. The tests were conducted by Anti-Malware Test Lab between September 15 and October 15, 2008 in accordance with a specially-developed methodology to test the ability of the popular antivirus products in combating malicious programs which had already penetrated the system and were hiding traces of their activities.

According to the test results, Kaspersky Anti-Virus 2009 received the Gold Malware Treatment Award, along with five other products tested by Anti-Malware Test Lab. The rest of the participants, including McAfee VirusScan 2008, Eset NOD32 Antivirus 3.0 and BitDefender Antivirus 2009 did not pass the test and were therefore judged incapable of protecting a user?s computer from active infections.

Alexander Gostev, the Head of the Global Research and Analysis Team at Kaspersky Lab, says that the ability of an antivirus program to treat infected computers has been the basic idea of antivirus from the very beginning of the IT industry. ?A modern antivirus must not only be a tool for preventing infection but it must also be a powerful instrument which can remove active infections if other security technologies fail?, said the expert. ?The test performed by Anti-Malware Test Lab demonstrates the difference in approaches of vendors in understanding the idea of antivirus protection. However, it is not enough to detect nonactive malicious code ? the incidents with malicious programs such as Rustok and Sinowal have already proved this. We are pleased to see the Kaspersky Lab product among the leaders of this test. It means we not only understand the need to have a balance between proactive technologies, signature-based detection and ability to treat infected computers, but we also keep the development of all components of an antivirus product at their highest levels.?

It's hard to believe NOD32 would fail so miserably. I read their testing methodology:

Default settings recommended by the respective vendor were used when installing each antivirus product on the infected computer. All the actions recommended by each antivirus program (restarting the system, installing updates, etc.) were performed.

I am wondering if NOD32 comes with heuristic, adware/spyware/riskware, potentially unwanted applications, and potentially unsafe applications enabled by default. This *might* be why NOD32 got 0/15, which would be ridiculous. It is been a long time, so I don't remember if I enabled them manually or not.

It would also be nice if they differentiated between no detection or detected but failed to remove properly. They grouped both together.

I purchased a nod32 license for a test, and now while it installed I always scan suspicious files that I download using this baby: http://www.virustotal.com/

And every time that nod32 doesn't find anything in the scan I performed on the file, virustotal sure does and Kaspersky always is one of the antiviruses that recognize the virus. I now just don't trust nod32 and waiting for my license to expire, to go back to Kaspersky.

edit: Here's an example of one such file: http://www.virustotal.com/analisis/c870ab3...5e4a1c17ae6b0af

Nod32 is one of the antiviruses that doesn't see it as a virus.

Edited by Pupik

I'm pretty surprised by the results, NOD32 has been a highly regarded product for quite some time and it's odd to see that it ranks lower on the list... ESET seem to have dropped the ball with version 3.0, I've seen it cause some weird issues on Windows Vista SP1 64-bit (random blue screens when logging in, Windows services randomly failing, etc.)

Those awards/tests have no credibility. They totally ignored other factors which make the difference between a good/not so good AV.

They focused mainly on scanning performance of old malware code, which was conceived years ago. While current malware are more sophisticated, stealth, hard to analyze (i.e this very test uses Rustok.a while there's the brand new c variant with some anti-debugging/anti-reversing features that no one yet has succeeded to break)..

If you really are a paranoid user, I suggest you plug out your internet connection cable. Because there's no AV/FW than can protect your data from at least half the malware out there.

On a further note, this month?Microsoft Patch Tuesdayi> release, fixes for the very fisrt time one of the vulns leading to full system takeover (SMBRelay BoF) that was publicly disclosed in 2001, and an exploit for this has been part of Metasploit since mid-last year. Now even with a "perfect" AV, your data still at stake.. plug off that cable and stop worrying.

Those awards/tests have no credibility. They totally ignored other factors which make the difference between a good/not so good AV.

They focused mainly on scanning performance of old malware code, which was conceived years ago. While current malware are more sophisticated, stealth, hard to analyze (i.e this very test uses Rustok.a while there's the brand new c variant with some anti-debugging/anti-reversing features that no one yet has succeeded to break)..

If you really are a paranoid user, I suggest you plug out your internet connection cable. Because there's no AV/FW than can protect your data from at least half the malware out there.

On a further note, this month’s Microsoft Patch Tuesday release, fixes for the very fisrt time one of the vulns leading to full system takeover (SMBRelay BoF) that was publicly disclosed in 2001, and an exploit for this has been part of Metasploit since mid-last year. Now even with a "perfect" AV, your data still at stake.. plug off that cable and stop worrying.

Good thing I have WiFi :rofl:

But interesting read, thanks.

Its the best along with Nod32 at the moment at catching viruses/spyware and being uptodate with definitions.

The only problem with kaspersky is that sometimes it's updates cause BSOD on vista... stop 0x00000050

check their forums.. I just had one early this week on KAV 2009 antivirus only for vista

nasty.

Kaspersky seems kind of expensive. How much does a renewal run you.. I can't seem to find it on their website.

Actually Avast scored just as well as Kaspersky and you can get that one for free!!

The one thing about nod, is they say you have to buy 2 license to install it on 2 computer, but if you install it on 2 computers with just 1 license and use the same user name pass on both, it works :|

Edited by warwagon
Kaspersky seems kind of expensive. How much does a renewal run you.. I can't seem to find it on their website.

Actually Avast scored just as well as Kaspersky and you can get that one for free!!

The one thing about nod, is they say you have to buy 2 license to install it on 2 computer, but if you install it on 2 computers with just 1 license and use the same user name pass on both, it works :|

Interestingly enough I am a reseller of Eset NOD32 Products. What I really like about the company is that they are very relaxed about how they allow you to use your discretion as regards selling their products.

We get given a certain amount of keys for our own use that we can use for ourselves and also to sell. We are allowed to use the same keys for different users and customers. They have basically told us not to misuse the privilege, other than that nothing else! I have been selling the product for years now and have never picked up any problems as regard licensing!

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Simple answer is yes, you will still get the Windows updates and as long as browser is up to date, you will be good. Only thing secure boot does is protect you against boot level threats and make it harder to install other OS's. I've been looking into this pretty thoroughly lately myself as wifes computer has secure boot disabled plus my other, older computers that run Linux, don't have secure boot enabled. Have seen all kinds of questions about this on the Linux Mint and MX Linux forums. Just don't suddenly enable secure boot now.
    • How many other companies will follow Ford's lead? Or, have they already gotten lazy and become enslaved to AI--and now can't figure out how to get out of that mess.
    • Why would any self-respecting intelligent person follow any recommendation by Donald's GOP administration? With almost two years of fabrications, deceit, and blatantly illegal behavior, why believe them now? They had best be gone after the November 2026 election, so we'll wait and see.
    • AltSendme 0.4.1 by Razvan Serea AltSendme is a minimal, cross-platform application designed for fast, secure, and private peer-to-peer file transfers. It allows users to send files or entire directories directly between devices without relying on cloud servers, accounts, or any personal information. Everything is encrypted end-to-end using modern protocols like QUIC and TLS 1.3, ensuring both strong security and low-latency performance. Transfers are verified with BLAKE3 for data integrity, and interrupted downloads automatically resume, making the experience reliable even on unstable connections. You can transfer anything—images, videos, documents, and more. Integrity checks are performed on both ends, so your files are automatically verified for correctness during both sending and receiving. AltSendme works seamlessly across local networks or long-distance links, capable of saturating multi-gigabit connections for extremely fast delivery. With built-in NAT traversal and encrypted relay fallback, it connects devices almost anywhere. The app integrates with the Sendme CLI and will soon support mobile and web platforms. Fully free and open-source, AltSendme offers a lightweight, privacy-first alternative to traditional cloud-based services, removing size limits, upload costs, and unnecessary data exposure. AltSendme 0.4.1 changelog: Release Highlights Self-hosted relays: Run your own iroh relay so transfers don't rely on public infrastructure. Includes a full deployment template in deploy/relay/ with Docker Compose for a VPS and configuration examples for production use. Fly.io support: One-click deploy template for Fly.io, including a quick-start config (fly.dev.toml) for testing without a custom domain, plus production setup with Let's Encrypt and your own hostname. Relay settings UI: New Settings → Network panel to choose how AltSendme connects: automatic public relays, custom self-hosted URLs (with optional auth token), or disabled. Test connections, verify latency, and see live relay status in the footer. Disable relays: Turn off relay servers entirely when you only need same-network transfers (e.g. LAN). Direct connections only. No relay hop required when devices can reach each other. Android graduates from beta: Android is now part of the regular release cycle alongside desktop. APKs ship with each version (universal, arm64, and armv7). Other improvements Private relay access control via shared auth token Relay fallback notifications when a custom relay is unreachable Broadcast mode toggle in sharing settings Android release build fixes (split-per-ABI APKs, universal APK preservation) UI polish: mobile safe-area insets, dropzone layout, transfer progress animation Bug fixes for minification-related serialization issues and system tray icon loading What's Changed feat(relay): add relay status functionality and settings UI (a120cdf) feat(relay): implement custom relay server configuration and verification (51276c7) feat(relay): add configuration for private relay access and enhance observability features (48fbabf) feat(relay): enhance relay URL validation, display connection status (d4fffa0) feat(relay): add RelayChangeGuard component and enhance relay-related translations (16ba514) feat(broadcast): add toggle setting for broadcast mode in sharing UI (ca6d977) fix(relay): correct QUIC discovery port, pin image, templatize fly.dev (52a2ba5) fix: More broken serialization due to minification (67491a9) fix(android): preserve true universal APK across per-ABI builds (e9f256f) fix(ui): conditional safe-area insets padding on mobile (1182f0e) refactor(transfer): CircularRing component animation fix (944572b) chore(android): drop x86 and x86_64 release APKs, keep universal+arm64+armv7 (34ada0b) Download: AltSendme 0.4.1 | ARM64 | ~9.0 MB (Open Source) Download: AltSendme for MacOS | Android Links: AltSendme Home Page | GitHub | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • You are mostly right about the ephemeral nature of it. As I mention in the article, if you dont add a second device or take a backup of your account before uninstalling it, then yes you will lose access to your account. That said, in terms of actual user experience when you sync multiple devices your message history carries across and there's also a Saved Messages chat like there is on Telegram to send messages and attachments between your installs. But yh, what you point out are correct and its not trying to emulate Messenger or Telegram.
  • Recent Achievements

    • Week One Done
      flexorcist earned a badge
      Week One Done
    • One Month Later
      Woland13 earned a badge
      One Month Later
    • Week One Done
      Woland13 earned a badge
      Week One Done
    • One Year In
      bernmeister earned a badge
      One Year In
    • Week One Done
      Scoobystu earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      495
    2. 2
      +Edouard
      225
    3. 3
      PsYcHoKiLLa
      149
    4. 4
      Steven P.
      75
    5. 5
      FloatingFatMan
      71
  • Tell a friend

    Love Neowin? Tell a friend!