I wanna say Comodo got a very quick response for new malware.
I was send this sample for Comod AV Lab last 2 days.
And Comodo can detect this rapidly.
link to scan result VirScan - 多引擎文件在线检测平台
By that day that I send malware to another AV vendors too.
But there was no reply and respones too.
You will see a marked improvement in our response times in the next 2 months as we start putting our new hardware into production. We already have put some in place which resulted in great improvement. We have some more going in shortly that will directly effect the response time. We are aiming for 30 min response time (fingers crossed).
??? I have noticed that the daily update page has not updated for 2 days now, and i know it happens occasionaly, but also Cavs itself has been stuck on Db 1141 since wedensday?. Could it be because of some problems at Comodos end that the Db updates have not occurred?.
Huh I have noticed that the daily update page has not updated for 2 days now, and i know it happens occasionaly, but also Cavs itself has been stuck on Db 1141 since wedensday?. Could it be because of some problems at Comodos end that the Db updates have not occurred?.
Regards
Dave1234.
We had serious issues with Data Center where we host all our servers and there was downtime for many hours. Everything is resolved now and updates are under QA and will be released shortly.
Where do al those signatures come from?.. I find it impossible that this amount of growth is being achieved by people who are submitting samples… I don’t think those people have millions of samples…
I think it is hundreds of thousand of people submitting samples and I am sure they have setup a honeypot and other things to search for malware on the net. I myself so far have submitted over 2000 samples in the last few weeks. I actually had a rar containing over 1800 samples that was no detected and in a few days it went from detecting 200 of them to over 1600, and still growing.
I would still like to know how avira finds new variants so fast, it’s a matter of minutes or hours before they have a new signature out. Comodo can take days before a signature is out.
Comodo has honey posts, Partnerships with other AV Organizations, and there is a hell of alot of malware people are submitting. Then you have ThreatCast which helps identify potential malware as well as good files, (How many users blocked or allowed a certain alert), Create a blacklist or whitelist for it after analysis, etc.
Avira has been around for long as well, and has nice Heuristic…
CAvs on the other hand has no heuristic whatsoever atm. =)
Also Avira has this nice little “rated suspicious, send to the AV lab??” inbuilt function. Probably helping collecting a few baddies, I hope comodo adds this to the CIMA, send suspicious file to comodo… But I guess they will… =)