测试会说话
2009-08, 10 August-05 September
Submitted by virusp on Wed, 09/09/2009 - 13:34.
* Comparative tests
Comparative tests
The test was made on 10 August-05 September 2009, using Windows XP Professional SP3 on a Pentium Dual Core 2Ghz, 2048MB DDRAM-2.
All programs tested had the latest versions, upgrades and updates and they were tested using their full scanning capabilities e.g. heuristics, full scan etc.
The default settings of each program were not used, in order for each program to achieve its maximum detection rate. Because of this, there is a possibility for the tested programs to detect a few false positives.
All programs were updated on August 10th 2009, between 03.00AM and 07.00AM GMT.
The 562086 virus samples were chosen using Kaspersky, F-Prot, Nod32, Dr.Web, BitDefender and McAfee antivirus programs’ reports. Each virus sample was unique by virus name, meaning that AT LEAST 1 antivirus program detected it as a new virus.
MS-DOS based virus samples were not used.
ALL virus samples were unpacked and the only samples that were kept were the ones that were packed using external-dos-packers (that means not winzip, winrar, winace etc).
The virus samples had the correct file extension using a special program (Renexts) and were unique, according to checksum32 filesize.
Most "fake" virus samples were removed, as well as "garbage" files.
The programs MKS_VIR , PER and IPArmor were not tested because there were no english demo versions available.
The program Extendia AVK was not tested because there was no demo version available.
Thorough mode was not used in VBA32 due to extremely slow scan process and heuristics were set to medium.
The Cleaner’s heuristics were set to medium due to many false positives.
The program F-Prot was tested using its command line scanner (options fpscan /adware /applications /output=fpscan_report.log /streams /maxdepth=4 /heurlevel=4) because its GUI kept crashing.
The program ZondexGuard was not tested because it could not be updated.
The programs Microsoft Security Essentials and A-Squared Anti-Malware crashed while scanning the samples.
The program Avast Professional uses the same engine as Avast free edition.
The program Steganos Antivirus uses the same engine as AVG free edition.
The program Moon Secure uses the same engine as ClamWin.
DOS-Based scanners were not tested.
The following file types were used.
SH, ELF, COM, EXE, PL, BAT, PRC, DOC, XLS, BIN, MDB, IMG, PPT, VBS, VBA, OLE, HTM, INI, SMM, TD0, REG, CLASS, HTA, JS, VI_, URL, PHP, WMF, HLP, XML, SCR, PIF, SHS, WBT, CSC, MAC, DAT, CLS, STI, INF, HQX, XMI, SIT.
The virus samples were divided into these categories, according to the type of the virus :
File = BeOS, FreeBSD, Linux, Mac, Palm, OS2, Unix, BinaryImage, BAS, MenuetOS viruses.
Windows = Win.*.* viruses.
Macro = Macro and Formula viruses.
Malware = Adware, DoS, Constructors, Exploit, Flooders, Nukers, Sniffers, SpamTools, Spoofers, Virus Construction Tools, Droppers, PolyEngines, Rootkits, Packed.
Script = ABAP, BAT, Corel, HTML, Java, Scripts, MSH, VBS, WBS, Worms, PHP, Perl, Ruby, Python, WHS, TSQL, ASP, SAP, QNX, Matlab viruses.
Trojans-Backdoors = Trojan and Backdoor viruses.
Rank
1. G DATA 2009 20.0.2.1 - 98,89%
2. F-Secure 2009 9.00.148 - 98,72%
3. Kaspersky 2010 9.0.0.463 - 98,67%
4. AntiVir 9.0.0.381 Premium - 98,64%
5. ZoneAlarm Antivirus 8.0.400.020 - 98,62%
6. AntiVir 9.0.0.407 Personal - 98,56%
7. Ashampoo 1.61 - 98,48%
8. MultiCore 2.001.00036 - 98,36%
9. Paretologic 6.1.1 - 98,11%
10. TrustPort 2.8.0.2255 - 98,03%
11. eScan 10.0.977.4091 - 97,82%
12. The Shield 2009 12.0.12 - 97,72%
13. BitDefender 2010 11.0.15.297 - 97,61%
14. Ikarus 1.0.97 - 97,15%
15. AVG 8.5.392 Free - 97%
16. BitDefender 2009 12.0.12.0 Free - 96,37%
17. Nod32 4.0.437.0 - 95,97%
18. Avast 4.8.1335 Free - 95,87%
19. Comodo 3.9.95478.509 - 95,57%
20. Trend Micro Antivirus 17.1.1250 - 95,36%
21. F-Prot 6.0.9.1 - 93,03%
22. McAfee Enterpise 8.7.0i - 92,35%
23. McAfee 13.11.102 - 92,32%
24. Norman Security Suite 7.10.0.1 - 90,76%
25. Blink Personal 4.3.2 - 90,17%
26. Vba32 3.12.10.9 - 89,91%
27. K7 Antivirus 7.7.0568 - 89,02%
28. Norton 16.5.0.134 - 87,37%
29. ArcaVir 2009 - 85,09%
30. Outpost 6.7.2957.446.0711 - 83,59%
31. Dr. Web 5.00.4.06300 - 82,89%
32. Rising AV 21.51 - 80,92%
33. Vipre 3.1.2775 - 79,69%
34. Kingsoft 2009.08.05.16 - 79,59%
35. V3 Internet Security 2009.08.10.02 - 79,24%
36. ViRobot Desktop 5.5 - 79,05%
37. Antiy Ghostbusters 6.1.6 - 77,14%
38. Panda 2009 9.00.00 - 70,8%
39. Twister 7.3.3.9983 - 67,14%
40. Virus Chaser 5.0a - 66,54%
41. Quick Heal 10.00 - 65,97%
42. PC Tools 6.0.0.19 - 59,77%
43. ClamWin 0.95.2 - 52,48%
44. Sophos Sweep 7.6.8 - 42,84%
45. Iolo 1.5.3 - 40,14%
46. Net Protector 2009 - 34,34%
47. The Cleaner 2010 Free 6.1.0.2007 - 34,11%
48. Digital Patrol 5.10.102 - 27,29%
49. Trojan Hunter 5.1.875 - 24%
50. Protector Plus 8.0.E02 - 21,61%
51. Solo 8.0 - 11,3%
52. Trojan Remover 6.8.1 - 11,16%
53. VirIT 6.4.71 - 9,01%
54. IOBit Security 360 beta 3.1 - 8,92%
55. PCClear 1.0.8.6 - 8,08% |