[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <955001597.20040417130010@SECURITY.NNOV.RU>
From: 3APA3A at SECURITY.NNOV.RU (3APA3A)
Subject: [inbox] Re: Hi! Antiviruses Comparison - A Little Research Results
Dear Curt Purdy,
--Friday, April 16, 2004, 10:39:14 PM, you wrote to 3APA3A@...urity.nnov.ru:
CP> Been following this thread and I can bite my tongue no longer. As a
CP> long-time user of the first AV in the world, F-Secure, then F-Prot in '88, I
CP> have found it to be the only AV that could detect and remove every virus I
CP> have ever come upon, including multiple instances where fully updated Norton
CP> and McAfee either did not detect or could not remove them.
CP> They were the first AV with signature auto-updating over 4 years ago. And it
CP> does not update once a week or once a day, but continually checks on an
CP> hourly basis for new sigs. It has three seperate scan engines, so it's like
CP> having a layered defense in one product. And it operates at the lowest
CP> level of any AV I am aware of, running at the base level of I/O, actually
CP> grabbing it off the disk before any other process can touch it, making it
CP> extremely fast and efficient with no noticble impact in performance, even on
CP> slow boxes. My $.02
CP> Curt Purdy CISSP, GSEC, MCSE+I, CNE, CCDA
CP> Information Security Engineer
CP> DP Solutions
Do you remember Nimda worm? It was probably first worm to exploit
Outlook Express vulnerability to launch itself automatically. On Windows
NT 4.0 F-Secure engine (well, it was few years ago, I don't remember
version) had a problem - it catch this worm _after_ it was executed. And
worm successfully spreads from protected machine approx. in ~50% of
cases...
--
~/ZARAZA
??????? ????????? - ?????? ?? ????? ?? ??????. (????)
Powered by blists - more mailing lists