Close
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Subscribe
Logo
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Subscribe
    Home Applications
    • Applications
    • Cybersecurity
    • Networking

    Security Vendors Flunk Vista SP1 Detection Tests

    Written by

    Ryan Naraine
    Published April 4, 2008
    Share
    Facebook
    Twitter
    Linkedin

      eWEEK content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More.

      Some of the biggest names in the anti-virus industry have flunked detection tests for known malware samples on Windows Vista Service Pack 1.

      Seventeen of 37 anti-malware products pitted against “in the wild” viruses on the latest version of Vista failed to obtain VB100 certification, an industry benchmark used to rate product quality, according to test results released by Virus Bulletin.
      Among the software products failing to nab VB100 certification were McAfee VirusScan Enterprise, Trend Micro Internet Security, Norman Virus Control, Sophos Anti-Virus, Webroot Spy Sweeper with AntiVirus, Alwil Software’s Avast, BitDefender Antivirus 2008, PC Tools AntiVirus and VirusBuster Professional.
      To gain VB100 from Virus Bulletin’s testers, a product must detect 100 percent of malicious Trojans, bots and viruses from a batch of “in the wild” samples maintained in the WildList Organization International’s database. The WildList contains a listing of viruses collected and reported by virus hunters during actual computer attacks.
      The basic requirements for a VB100 passing grade are that a product detect, both on demand and on access, in its default settings, all malware known to be in the wild at the time of the review, and generate no false positives when scanning a set of clean files.

      For live coverage of this year’s RSA Conference, click here.

      However, as the results show, several brand-name anti-malware labs are still missing virus samples linked to known attacks.

      In McAfee’s case, for example, the company’s VirusScan Enterprise 8.5.0i was described as simple and dependable with solid integration of Windows Vista’s UAC (User Account Control) feature. Virus Bulletin’s John Hawes said the product’s detection rates were “dependably excellent” during the tests until a single sample of the W32/Virut strain reared its ugly head.
      Since that sample was in the WildList set, that was enough to deny McAfee a VB100 award, Hawes explained.
      Trend Micro Internet Security, a three-user anti-malware product that retails for $49.99, also scored well on some detections but Hawes said some false positives led to the failing grade. “A small number of file infectors were missed in the WildList set and a couple of items in the clean set were labeled as ‘TROJ_Generic.’ As a result, Trend does not qualify for the VB100 award on this occasion,” he said.
      Webroot Spy Sweeper with AntiVirus shares signatures with Sophos Anti-Virus; both failed because some samples of the tricky Virut variants were not detected.
      While these results are a public relations embarrassment for the bigger anti-virus vendors, analysts say the results should be taken with a grain of salt.

      “[T]here are a couple asterisks worth noting,” Paul Roberts, senior analyst in The 451 Group’s enterprise security research unit, wrote in a research note. “First of all: The platform in question-Vista SP1-was released shortly after the deadline for product submissions to VB. VB reviewer John Hawes … is up front about that fact that not every anti-malware vendor was even able to get a copy of SP1 for testing before submitting their wares to VB for certification.”

      Roberts added, “Certifications like VB100, which are based largely on static file analysis, have gone a long way towards sustaining the signature-based detection model when others might serve consumers and enterprises better.”

      He said most anti-virus companies already do blend behavior and signature-based detection methods, but warned that companies that rely heavily on the former, like BitDefender, tend to do worse on tests like the VB100.
      “Does that mean BitDefender provides inferior protection to a company like, say Kingsoft, which did receive the award? Hardly, but the lack of certification still becomes a hook on which to hang competitive claims. Bottom line: You get punished for not using signatures, even if that’s the right or most effective thing to do,” Roberts said.
      Roberts called for new testing methods to help “end the illusion of competence that current testing models perpetuate” and raise the bar for malware detection among established vendors.

      Ryan Naraine
      Ryan Naraine

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      MOST POPULAR ARTICLES

      Artificial Intelligence

      9 Best AI 3D Generators You Need...

      Sam Rinko - June 25, 2024 0
      AI 3D Generators are powerful tools for many different industries. Discover the best AI 3D Generators, and learn which is best for your specific use case.
      Read more
      Cloud

      RingCentral Expands Its Collaboration Platform

      Zeus Kerravala - November 22, 2023 0
      RingCentral adds AI-enabled contact center and hybrid event products to its suite of collaboration services.
      Read more
      Artificial Intelligence

      8 Best AI Data Analytics Software &...

      Aminu Abdullahi - January 18, 2024 0
      Learn the top AI data analytics software to use. Compare AI data analytics solutions & features to make the best choice for your business.
      Read more
      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Video

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2024 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.