查看: 8057|回复: 20
收起左侧

[讨论] 为什么F-Secure 的病毒检测率那么低?

[复制链接]
金山升级精灵
发表于 2009-10-7 13:17:59 | 显示全部楼层 |阅读模式
可能是因为在更新发布之前F-Secure 要经过十分彻底地测试,才发布。因此,F-Secure 慢了一拍!

http://bbs.kafan.cn/viewthread.php?tid=184960

syfwxmh
发表于 2009-10-7 13:33:16 | 显示全部楼层

回复 1楼 金山升级精灵 的帖子

至于为什么,其实原理很简单,因为滞后获取特征码,而且不包括最新的引擎相应的技术跟不上。而且BD引擎本身对本地化支持就不好,查杀率差也是理所当然的。
(以当时AVP为例,卡巴是每15-30分一次升级,而FS是1-2小时升级,但这期间的查杀率和误报项目是完全一样的。)

至于十分彻底的测试这点,我是不苟同的。原来用卡巴引擎的时候,往往是卡巴误报什么,FS也误报什么。
现在BD也一样,BD误报什么,FS同样误报什么。
包括系统文件,所以发布前测试的说法是空穴来风的。
xppara
发表于 2009-10-7 13:55:59 | 显示全部楼层
補充:
而且有時候明明有報毒
卻既不讓你刪
也不讓你隔離
就只有告訴你那是毒
你只有自己動手刪除...
(同樣的情形還有 AVG2010, BD2010, Trend 2010)
cctv12a
发表于 2009-10-7 14:34:05 | 显示全部楼层
刚从FSCS9 AVP换到TP版本···试用一下

[ 本帖最后由 cctv12a 于 2009-10-7 18:13 编辑 ]
嘁。不稀罕~
发表于 2009-10-7 15:57:15 | 显示全部楼层

回复 2楼 syfwxmh 的帖子

正因为FS无法修改病毒库,所以稍作延时提供更新也是很合情合理的,总不能让自己的用户第一时间跟BD和KAV一起死吧。。。嘎嘎。。。

另外,FS还是需要测试病毒库的(自有引擎部分的特征码)。。。
vvv0808
发表于 2009-10-14 22:09:24 | 显示全部楼层
F-secure应该自己会测试一下。
藍天使
发表于 2009-10-15 07:08:39 | 显示全部楼层
專業2樓!
推一個

==
FS人氣最近確實是不高
fukc
发表于 2009-10-18 13:40:18 | 显示全部楼层
顶!!!
BBCALL
发表于 2009-10-29 08:32:39 | 显示全部楼层
测试会说话

2009-08, 10 August-05 September
Submitted by virusp on Wed, 09/09/2009 - 13:34.

* Comparative tests

Comparative tests

The test was made on 10 August-05 September 2009, using Windows XP Professional SP3 on a Pentium Dual Core 2Ghz, 2048MB DDRAM-2.

All programs tested had the latest versions, upgrades and updates and they were tested using their full scanning capabilities e.g. heuristics, full scan etc.

The default settings of each program were not used, in order for each program to achieve its maximum detection rate. Because of this, there is a possibility for the tested programs to detect a few false positives.

All programs were updated on August 10th 2009, between 03.00AM and 07.00AM GMT.

The 562086 virus samples were chosen using Kaspersky, F-Prot, Nod32, Dr.Web, BitDefender and McAfee antivirus programs’ reports. Each virus sample was unique by virus name, meaning that AT LEAST 1 antivirus program detected it as a new virus.

MS-DOS based virus samples were not used.

ALL virus samples were unpacked and the only samples that were kept were the ones that were packed using external-dos-packers (that means not winzip, winrar, winace etc).

The virus samples had the correct file extension using a special program (Renexts) and were unique, according to checksum32 filesize.

Most "fake" virus samples were removed, as well as "garbage" files.

The programs MKS_VIR , PER and IPArmor were not tested because there were no english demo versions available.

The program Extendia AVK was not tested because there was no demo version available.

Thorough mode was not used in VBA32 due to extremely slow scan process and heuristics were set to medium.

The Cleaner’s heuristics were set to medium due to many false positives.

The program F-Prot was tested using its command line scanner (options fpscan /adware /applications /output=fpscan_report.log /streams /maxdepth=4 /heurlevel=4) because its GUI kept crashing.

The program ZondexGuard was not tested because it could not be updated.

The programs Microsoft Security Essentials and A-Squared Anti-Malware crashed while scanning the samples.

The program Avast Professional uses the same engine as Avast free edition.

The program Steganos Antivirus uses the same engine as AVG free edition.

The program Moon Secure uses the same engine as ClamWin.

DOS-Based scanners were not tested.

The following file types were used.

SH, ELF, COM, EXE, PL, BAT, PRC, DOC, XLS, BIN, MDB, IMG, PPT, VBS, VBA, OLE, HTM, INI, SMM, TD0, REG, CLASS, HTA, JS, VI_, URL, PHP, WMF, HLP, XML, SCR, PIF, SHS, WBT, CSC, MAC, DAT, CLS, STI, INF, HQX, XMI, SIT.

The virus samples were divided into these categories, according to the type of the virus :

File = BeOS, FreeBSD, Linux, Mac, Palm, OS2, Unix, BinaryImage, BAS, MenuetOS viruses.
Windows = Win.*.* viruses.
Macro = Macro and Formula viruses.
Malware = Adware, DoS, Constructors, Exploit, Flooders, Nukers, Sniffers, SpamTools, Spoofers, Virus Construction Tools, Droppers, PolyEngines, Rootkits, Packed.
Script = ABAP, BAT, Corel, HTML, Java, Scripts, MSH, VBS, WBS, Worms, PHP, Perl, Ruby, Python, WHS, TSQL, ASP, SAP, QNX, Matlab viruses.
Trojans-Backdoors = Trojan and Backdoor viruses.


Rank

1. G DATA 2009 20.0.2.1 - 98,89%
2. F-Secure 2009 9.00.148 - 98,72%
3. Kaspersky 2010 9.0.0.463 - 98,67%
4. AntiVir 9.0.0.381 Premium - 98,64%
5. ZoneAlarm Antivirus 8.0.400.020 - 98,62%
6. AntiVir 9.0.0.407 Personal - 98,56%
7. Ashampoo 1.61 - 98,48%
8. MultiCore 2.001.00036 - 98,36%
9. Paretologic 6.1.1 - 98,11%
10. TrustPort 2.8.0.2255 - 98,03%
11. eScan 10.0.977.4091 - 97,82%
12. The Shield 2009 12.0.12 - 97,72%
13. BitDefender 2010 11.0.15.297 - 97,61%
14. Ikarus 1.0.97 - 97,15%
15. AVG 8.5.392 Free - 97%
16. BitDefender 2009 12.0.12.0 Free - 96,37%
17. Nod32 4.0.437.0 - 95,97%
18. Avast 4.8.1335 Free - 95,87%
19. Comodo 3.9.95478.509 - 95,57%
20. Trend Micro Antivirus 17.1.1250 - 95,36%
21. F-Prot 6.0.9.1 - 93,03%
22. McAfee Enterpise 8.7.0i - 92,35%
23. McAfee 13.11.102 - 92,32%
24. Norman Security Suite 7.10.0.1 - 90,76%
25. Blink Personal 4.3.2 - 90,17%
26. Vba32 3.12.10.9 - 89,91%
27. K7 Antivirus 7.7.0568 - 89,02%
28. Norton 16.5.0.134 - 87,37%
29. ArcaVir 2009 - 85,09%
30. Outpost 6.7.2957.446.0711 - 83,59%
31. Dr. Web 5.00.4.06300 - 82,89%
32. Rising AV 21.51 - 80,92%
33. Vipre 3.1.2775 - 79,69%
34. Kingsoft 2009.08.05.16 - 79,59%
35. V3 Internet Security 2009.08.10.02 - 79,24%
36. ViRobot Desktop 5.5 - 79,05%
37. Antiy Ghostbusters 6.1.6 - 77,14%
38. Panda 2009 9.00.00 - 70,8%
39. Twister 7.3.3.9983 - 67,14%
40. Virus Chaser 5.0a - 66,54%
41. Quick Heal 10.00 - 65,97%
42. PC Tools 6.0.0.19 - 59,77%
43. ClamWin 0.95.2 - 52,48%
44. Sophos Sweep 7.6.8 - 42,84%
45. Iolo 1.5.3 - 40,14%
46. Net Protector 2009 - 34,34%
47. The Cleaner 2010 Free 6.1.0.2007 - 34,11%
48. Digital Patrol 5.10.102 - 27,29%
49. Trojan Hunter 5.1.875 - 24%
50. Protector Plus 8.0.E02 - 21,61%
51. Solo 8.0 - 11,3%
52. Trojan Remover 6.8.1 - 11,16%
53. VirIT 6.4.71 - 9,01%
54. IOBit Security 360 beta 3.1 - 8,92%
55. PCClear 1.0.8.6 - 8,08%
benjaminyu
头像被屏蔽
发表于 2009-10-29 09:46:40 | 显示全部楼层
有好成绩的还是用avp引擎的2009啊,估计2010得跌到和bd差不多的13位左右吧
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-24 16:56 , Processed in 0.138692 second(s), 16 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表