|
ANTIMALWARE SCANNING
To gauge each vendor's ability to detect and block malware found in the wild, we ran three tests using 8,114 recent malware specimens from a private collection graciously provided by antispam researcher Bill Stearns. Our zoo included a large variety of worms, bots, backdoors and viruses. For each test, we recorded the percentage of specimens not eradicated in each round of testing (See "Antimalware Scanning Results," PDF).
[IMAGE] [IMAGE] [IMAGE] ENDPOINTS | Antimalware Scanning
[IMAGE] [IMAGE] [IMAGE] [IMAGE]
[IMAGE]
[IMAGE]
[IMAGE]
The good news
Trend Micro, CA and eEye all did very well, generally detecting and blocking or removing all but about 8 to 9 percent of the malware thrown at them.
The bad news
IBM ISS crashed several times, scoring so poorly as to cause us to double-check that the protection was enabled.
[IMAGE]
[IMAGE]
Our first test was designed to evaluate each product's real-time signature-based defense...
To continue reading for free, register below or login
To read more you must become a member of SearchSecurity.com

s by copying the malware from a hardened machine to a shared directory on the protected target system. We then recorded the percentage of malware specimens that made it into the target's file system, escaping detection by the product's real-time scanning capabilities.
We then performed an on-demand scan of all malware that survived our first test, to assess the combined real-time and on-demand scan capabilities for identifying and eradicating malware.
Finally, we conducted on-demand scanning independently by disabling real-time scanning, copying all malware to the target file system, and then executing a scan of the entire zoo.
Trend Micro, CA and eEye all did very well, generally detecting and blocking or removing all but about 8 to 9 percent of the malware we threw at them in all tests.
[IMAGE] [IMAGE] [IMAGE] Antimalware Scanning Results
[IMAGE] [IMAGE] [IMAGE] [IMAGE]
[IMAGE]
[IMAGE]
[IMAGE]
Click here for our Antimalware Scanning results. (PDF).
[IMAGE]
[IMAGE]
|
 |
|