[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re[2]: [inbox] Re: [Full-Disclosure] Hi! Antiviruses Comparison - A Little Research Results



Dear Curt Purdy,

--Friday, April 16, 2004, 10:39:14 PM, you wrote to 3APA3A@xxxxxxxxxxxxxxxx:


CP> Been following this thread and I can bite my tongue no longer.  As a
CP> long-time user of the first AV in the world, F-Secure, then F-Prot in '88, I
CP> have found it to be the only AV that could detect and remove every virus I
CP> have ever come upon, including multiple instances where fully updated Norton
CP> and McAfee either did not detect or could not remove them.

CP> They were the first AV with signature auto-updating over 4 years ago. And it
CP> does not update once a week or once a day, but continually checks on an
CP> hourly basis for new sigs.  It has three seperate scan engines, so it's like
CP> having a layered defense in one product.  And it operates at the lowest
CP> level of any AV I am aware of, running at the base level of I/O, actually
CP> grabbing it off the disk before any other process can touch it, making it
CP> extremely fast and efficient with no noticble impact in performance, even on
CP> slow boxes.  My $.02

CP> Curt Purdy CISSP, GSEC, MCSE+I, CNE, CCDA
CP> Information Security Engineer
CP> DP Solutions

Do  you  remember  Nimda  worm?  It  was  probably first worm to exploit
Outlook Express vulnerability to launch itself automatically. On Windows
NT  4.0  F-Secure  engine  (well, it was few years ago, I don't remember
version) had a problem - it catch this worm _after_ it was executed. And
worm  successfully  spreads  from  protected  machine approx. in ~50% of
cases...



-- 
~/ZARAZA
Áđîńüňĺ ńňŕđŕňüń˙ - íč÷ĺăî čç ýňîăî íĺ âűéäĺň. (Ňâĺí)

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html