本帖最后由 YorkWaugh 于 2020-3-23 17:25 编辑
ClamWin 0.99.4评测 今天在水楼聊天,两位朋友 @a27573 @swizzer 提到这款杀软,就折腾了一下 软件介绍(以下为官网介绍,Google机翻): ClamWin是适用于Microsoft Windows 10/8/7 /Vista / XP / Me / 2000/98和Windows Server 2012、2008和2003的免费防病毒程序。 全球每天有 600,000多名用户使用 ClamWin Free Antivirus。它带有一个简单的安装程序和开源代码。您可以完全免费下载和使用它。它具有以下特点: - 对病毒和间谍软件的检测率很高;
- 扫描调度程序;
- 自动下载定期更新的病毒数据库。
- 独立的病毒扫描程序和右键菜单集成到Microsoft Windows资源管理器;
- 加载到Microsoft Outlook中以自动删除感染了病毒的附件。
最新版本的Clamwin FreeAntivirus是0.99.4 请注意,ClamWin FreeAntivirus 不包括即时访问的实时扫描程序。您需要手动扫描文件才能检测到病毒或间谍软件。 测试环境:虚拟机,Windows XP SP3 首先,我们看一下这款似乎来自于上世纪的软件安装流程: 安装包图标:无比经典,和XP超配有没有 “欣赏”下安装流程: 软件没有中文,安装界面也是无比“经典” 接收协议 为所有用户安装 选择安装位置 选择安装组件(网络帮助文件是德语和荷兰语,所以我没装) 我第一次安装选择了联网更新病毒数据库,但速度感人 ,因此这次我未下载 到此,安装完毕。根据第一次安装经验,我自行下载病毒库: 复制到C:\Documents and Settings\All Users\.clamwin\db目录下 如果选择联网更新,界面如下: 软件图标(总算正常些了): 软件界面: 功能选项(论坛里有人介绍过,我不详细说明): 废话结束,测试开始: 病毒包选取:@QVM360 的样本集奉上_140&样本集奉上_141 大约历时3分钟,结果如下:
生成报告clamav_report_230320_161448.txt,如下: Scan Started Mon Mar 23 16:12:32 2020 ------------------------------------------------------------------------------- C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\Enigma\1.enigma.exe: Win.Trojan.Autoit-7356348-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\Enigma\3.enigma.exe: Win.Malware.005376ae-6840569-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\Enigma\4.enigma.exe: Win.Malware.005376ae-6840569-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\Enigma\5.enigma.exe: Win.Malware.005376ae-6840569-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\MD5\1.exe: Win.Trojan.Autoit-7356348-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\NoobyProtect\1_se.exe: Win.Malware.Noobyprotect-6622929-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\NoobyProtect\2_se.exe: Win.Malware.Noobyprotect-6622929-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\NoobyProtect\3_se.exe: Win.Malware.Noobyprotect-6622929-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\NoobyProtect\4_se.exe: Win.Malware.Noobyprotect-6622929-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\NoobyProtect\5_se.exe: Win.Malware.Noobyprotect-6622929-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\NoobyProtect\6_se.exe: Win.Malware.Noobyprotect-6622929-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\Original\1.exe: Win.Trojan.Autoit-7356348-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\Themida\1.Themida.exe: Win.Trojan.Bifrose-7112072-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\Themida\3.Themida.exe: Win.Malware.Ardamax-6965117-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\Themida\4.Themida.exe: Win.Trojan.Bifrose-7112072-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\ZProtect\1.zp.exe: Win.Trojan.Autoit-7356348-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_140\ZProtect\5.zp.exe: Win.Trojan.Zegost-7495607-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_141\Enigma\4_protected.exe: Win.Malware.005376ae-6840569-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_141\NoobyProtect\1_se.exe: Win.Malware.Noobyprotect-6622929-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_141\NoobyProtect\2_se.exe: Win.Malware.Noobyprotect-6622929-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_141\NoobyProtect\3_se.exe: Win.Malware.Noobyprotect-6622929-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_141\NoobyProtect\4_se.exe: Win.Malware.Noobyprotect-6622929-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_141\ZProtect\2.zp.exe: Win.Trojan.Zegost-7495607-0 FOUND C:\Documents and Settings\Administrator\桌面\test\样本集奉上_141\ZProtect\4.zp.exe: Win.Dropper.Ramnit-7076132-0 FOUND ----------- SCAN SUMMARY ----------- Known viruses: 6788700 Engine version: 0.99.4 Scanned directories: 20 Scanned files: 77 Infected files: 24 Data scanned: 87.11 MB Data read: 81.87 MB (ratio 1.06:1) Time: 128.609 sec (2 m 8 s) -------------------------------------- Completed -------------------------------------- 评测结束,仅供娱乐
|