PC Review


Reply
Thread Tools Rate Thread

Antispyware Beta Problems

 
 
Ross MacLeod
Guest
Posts: n/a
 
      27th Feb 2005
Heya, I've been using the beta for this for a couple of
days, testing what it can pick up and how good it is by
infecting myself with spyware and browser hijackers to see
if the beta would pick them up. Unfortunately it missed
more than 3/4 of the infected files. Particurly:
.. Coolwebsearch files - i.e. smiley central spyware etc
.. Browser Hijackers
.. suspicious cookies - i.e. tracking cookies, data miners
.. Trojan generators and Trojans - didn't expect it to pick
these up, however they were obtained by simply going on a
webpage, infecting my pc in the same manner as spyware,
which is a serious security issue.
Most of these files were picked up using a combination of
other software:
..Ad-Aware Se
..Browser Sentinal
..Browser Hijack Recovery
..Avast! Antivirus
The majority of the files which were underdetected were
associated with doubleclick.net.
 
Reply With Quote
 
 
 
 
Rich
Guest
Posts: n/a
 
      28th Feb 2005
Yes that is bad! It shows that Microsoft Antispyware isn't
quite there yet; while keeping in mind thatt the threats
you mention are picked up by other detectors. That can be
fixed by better detection strings. Precisely why i use
several antispyware programs for scans.

>-----Original Message-----
>Heya, I've been using the beta for this for a couple of
>days, testing what it can pick up and how good it is by
>infecting myself with spyware and browser hijackers to see
>if the beta would pick them up. Unfortunately it missed
>more than 3/4 of the infected files. Particurly:
>.. Coolwebsearch files - i.e. smiley central spyware etc
>.. Browser Hijackers
>.. suspicious cookies - i.e. tracking cookies, data miners
>.. Trojan generators and Trojans - didn't expect it to

pick
>these up, however they were obtained by simply going on a
>webpage, infecting my pc in the same manner as spyware,
>which is a serious security issue.
>Most of these files were picked up using a combination of
>other software:
>..Ad-Aware Se
>..Browser Sentinal
>..Browser Hijack Recovery
>..Avast! Antivirus
>The majority of the files which were underdetected were
>associated with doubleclick.net.
>.
>

 
Reply With Quote
 
plun
Guest
Posts: n/a
 
      28th Feb 2005
Rich wrote
>-----Original Message-----
>Yes that is bad! It shows that Microsoft Antispyware
>isn't quite there yet; while keeping in mind thatt the
>threats you mention are picked up by other detectors.
>That can be fixed by better detection strings. Precisely
>why i use several antispyware programs for scans.


I think we need more than just to detect malicious strings
beacuse these changes in this battle. example CWS,
About:blank, VX2.

A better "sandbox technology" to simulate with a
real "micro computer" and the run all new executable
files within this box is better than to only identify
strings.

Norman Antivirus and others vendors uses this technology
for viral detection.

http://www.norman.com/Virus/13927/en

--
plun





 
Reply With Quote
 
Ron Chamberlin
Guest
Posts: n/a
 
      1st Mar 2005
Hi Ross,
It would be interesting to see what % of the 'missed' items were dataminers
and cookies as this product doesn't currently scan for them.


Ron Chamberlin
MS-MVP

"Ross MacLeod" <(E-Mail Removed)> wrote in message
news:0cfa01c51cc1$96782810$(E-Mail Removed)...
> Heya, I've been using the beta for this for a couple of
> days, testing what it can pick up and how good it is by
> infecting myself with spyware and browser hijackers to see
> if the beta would pick them up. Unfortunately it missed
> more than 3/4 of the infected files. Particurly:
> . Coolwebsearch files - i.e. smiley central spyware etc
> . Browser Hijackers
> . suspicious cookies - i.e. tracking cookies, data miners
> . Trojan generators and Trojans - didn't expect it to pick
> these up, however they were obtained by simply going on a
> webpage, infecting my pc in the same manner as spyware,
> which is a serious security issue.
> Most of these files were picked up using a combination of
> other software:
> .Ad-Aware Se
> .Browser Sentinal
> .Browser Hijack Recovery
> .Avast! Antivirus
> The majority of the files which were underdetected were
> associated with doubleclick.net.
>




 
Reply With Quote
 
 
 
Reply

Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Beta Microsoft Antispyware Problems, Sidney Anti-Spyware Installation 1 10th Feb 2005 08:59 PM
Problems with AntiSpyware Beta 1 Linda Spyware Announcements 1 25th Jan 2005 06:19 PM
Problems with AntiSpyware Beta 1 Linda Spyware Announcements 2 24th Jan 2005 07:39 PM
Beta antispyware problems Richard Windows XP Basics 3 12th Jan 2005 10:44 PM
Beta antispyware problems Richard Spyware Discussion 0 12th Jan 2005 10:09 PM


Features
 

Advertising
 

Newsgroups
 


All times are GMT +1. The time now is 01:40 PM.