See if your antivirus software REALLY works

Page 2 - Seeking answers? Join the AnandTech community: where nearly half-a-million members share solutions and discuss the latest tech.

MDesigner

Platinum Member
Apr 3, 2001
2,016
0
0
That's not good, Daedalus.. Dc61.exe is the serious one. kernel32.dli is only suspect, according to Bitdefender (and one other app I think).
 

MDesigner

Platinum Member
Apr 3, 2001
2,016
0
0
By the way, thank you everyone.. this has been extremely helpful & informative, probably not only for myself, but for others reading this thread.
 

Daedalus12

Junior Member
Oct 8, 2002
18
0
0
I don't know about this but I just checked it again with Bitdefender 7.2 and surprisingly it only caught two (It also missed the Dc61.exe). What do make of that????? I am running Win. Server 2003 btw.


Edited: Um nevermind the BitDefender is awesome. It just needed a little update. :)
 

MDesigner

Platinum Member
Apr 3, 2001
2,016
0
0
By the way, those of you stressing that your software didn't pick up kernel32.dli, try changing the extension to .com or .exe. Panda won't even pick it up unless the extension is one of its preset ones to watch out for...
 

Sunner

Elite Member
Oct 9, 1999
11,641
0
76
Originally posted by: MDesigner
By the way, those of you stressing that your software didn't pick up kernel32.dli, try changing the extension to .com or .exe. Panda won't even pick it up unless the extension is one of its preset ones to watch out for...

Symantec Antivirus Corporate 8.1 with the latest definitions didn't pick up the .dll file, forced SAC to scan it, no dice, renamed to .exe, no dice.
 

TheWart

Diamond Member
Dec 17, 2000
5,219
1
76
I have McAfee Viruscan Enterprise 7.1 thru a university license, Moosoft's TheCleaner 4.0 Pro thru purchase, and TDS-3 Trojan Scanner thru shareware. Hmm, interesting results for me:

On forced scans after I extracted the files (autoprotects all off) Viruscan caught kernel32.dll but not the other two, TheCleaner caught the other two but not kernel32.dll, and TDS-3 caught only the d61.

With Autoprotect on both Viruscan and TheCleaner (but only when files are run not jsut downloaded cuz I trust myself that much) Viruscan removed kernel32.dll at extraction, and I'm positive that TheCleaner would not let me run the other two (since it scanned them positively in the other test).

So I feel safe with my 3-pack since I run weekly manual scans, am careful what I download from the internet, and have good autoprotect settings. Thanks for the reality check MDesigner!
 

Mem

Lifer
Apr 23, 2000
21,476
13
81
PC-Cillin 2002 identified & blocked this in mid-download..

My VCOM SystemSuite V5 detected the viruses before I even had a chance to unzip or go to my default download folder,however it didn`t detect the kernel32.dli one.

Btw the AV software in SS5 is made by Trend Micro.
 

boran

Golden Member
Jun 17, 2001
1,526
0
76
well, also have avast anti virus, detected only the .exe file the DLI and .bat file were not identified as being virusses... well, swithing to AVG it is then.
 

mcveigh

Diamond Member
Dec 20, 2000
6,457
6
81
OK can anyone exp[lain why people runing the same software get different results?

I am running NAV 2003 at home all settings to max. it only catches 2 out of 3 yet some get all 3 caught?

I have kaspersky but haven't installed it yet.
 

eriqesque

Senior member
Jan 4, 2002
704
0
71
Originally posted by: gsaldivar
Originally posted by: MDesigner
gsalvidar & eriqesque: could you disable your auto protect, download the zip file, extract the files into a folder...then do a manual scan of the folder to see which viruses/trojans your software picks up on?

Thanks

PC-Cillin 2002 identified 2 out of 3.

It missed the kernel32.dlI file.


AVG identified 2 out of 3 also
missed the kernel32.dll file
This is the Free edition to answer your other question.

 

eriqesque

Senior member
Jan 4, 2002
704
0
71
On my above post
the manual scan had heuristics off
then I turned it on and it nailed all 3
 

InlineFive

Diamond Member
Sep 20, 2003
9,599
2
0
TAKE NOTE:\

Please start listing the release dates of your software! Say "Norton Antivirus 2004 (with all updates)" caught 2 of them instead of just saying "Norton Antivirus".

Thank you!

-Por
 

arcenite

Lifer
Dec 9, 2001
10,660
7
81
Avast (latest updates, etc) only picked up dc61.exe as Win32: Kifer

Ignored other files. I had to extract the files for it to find it.. Maybe it's time to find a new scanner.

Bill

Edit: I'm not downloading BitDefender.

 

MDesigner

Platinum Member
Apr 3, 2001
2,016
0
0
Originally posted by: aRCeNiTe
Avast (latest updates, etc) only picked up dc61.exe as Win32: Kifer

Ignored other files. I had to extract the files for it to find it.. Maybe it's time to find a new scanner.

Bill

Edit: I'm not downloading BitDefender.

What do you have against Bitdefender? Of all the extensive testing I've done, Bitdefender and Panda Titanium Antivirus 2004 come out on top. They picked up all three viruses/trojans. I'm starting to like Panda because it has a nicer interface, and provides a lot more information when it detects a virus. It gives you a link to a page describing the virus.. Bitdefender doesn't. Plus Panda has this whole info center with bulletins, etc.. right within the app. Very nice. Not to mention that Bitdefender is unable to remove viruses from archives... so when you try to delete the archive, Bit stops you because it has viruses...but..it can't remove them... vicious cycle. Panda effortlessly removed the viruses from the zip file.

Trend Micro Internet Security 2004 was disappointing.. it only picked up 2 out of 3. I definitely wouldn't pay $50 for it.
 

arcenite

Lifer
Dec 9, 2001
10,660
7
81
Originally posted by: MDesigner
Originally posted by: aRCeNiTe
Avast (latest updates, etc) only picked up dc61.exe as Win32: Kifer

Ignored other files. I had to extract the files for it to find it.. Maybe it's time to find a new scanner.

Bill

Edit: I'm not downloading BitDefender.

What do you have against Bitdefender? Of all the extensive testing I've done, Bitdefender and Panda Titanium Antivirus 2004 come out on top. They picked up all three viruses/trojans. I'm starting to like Panda because it has a nicer interface, and provides a lot more information when it detects a virus. It gives you a link to a page describing the virus.. Bitdefender doesn't. Plus Panda has this whole info center with bulletins, etc.. right within the app. Very nice. Not to mention that Bitdefender is unable to remove viruses from archives... so when you try to delete the archive, Bit stops you because it has viruses...but..it can't remove them... vicious cycle. Panda effortlessly removed the viruses from the zip file.

Trend Micro Internet Security 2004 was disappointing.. it only picked up 2 out of 3. I definitely wouldn't pay $50 for it.

Er.. I meant now, sorry. I downloaded and installed it but it seems as if it doesn't support active scanning (in the free version)

Bill