Windows 10: AVLab ransomware test/October 2016

Discus and support AVLab ransomware test/October 2016 in AntiVirus, Firewalls and System Security to solve the problem; AVLab ransomware test/October 2016 Full pdf report: https://avlab.pl/sites/default/files...ransomware.pdf For software indented for protecting... Discussion in 'AntiVirus, Firewalls and System Security' started by RubberDucky, Nov 10, 2016.

  1. AVLab ransomware test/October 2016


    AVLab ransomware test/October 2016


    Full pdf report: https://avlab.pl/sites/default/files...ransomware.pdf

    For software indented for protecting home users and micro businesses computers:

    Best +++

    Arcabit Internet Security
    Comodo Cloud Antivirus
    Emsisoft Internet Security 11
    Emsisoft Internet Security 12
    Foltyn SecurityShield
    F-Secure SAFE
    G DATA Internet Security
    Kaspersky Internet Security 2017
    Qihoo 360 Total Security
    SecureAPlus Premium
    Trend Micro Internet Security 2017
    Voodoo Shield Pro
    Zemana Antimalware Premium
    ZoneAlarm Internet Security Suite

    Best ++
    Avast Internet Security 2016
    Avira Internet Security Suite
    Bitdefender Antivirus Free Edition
    Bitdefender Internet Security 2017
    Dr. Web Space Security
    ESET Smart Security 10 (BETA)
    TrustPort Internet Security

    Good+
    Avast Free Antivirus 2016
    AVG AntiVirus Free Edition
    AVG Internet Security
    Comodo Internet Security 8

    Average
    Ad-Aware Free Antivirus
    ESET Smart Security 9
    FortiClient FreeNorton Security
    Panda Internet Security
    Sophos HOME

    Tested
    Malwarebytes Anti-Malware Premium
    McAfee LiveSafeWebroot SecureAnywhere Comlpete
    Avira Free Antivirus
    Dr Web Katana
    Panda Free Antivirus
    Comodo Internet Security Pro 10 (BETA)
    Windows Defender
    Malwarebytes Anti-Ransomware (BETA)

    For software indented for protecting small and medium businesses workstations:

    Best +++
    Arcabit Endpoint Security
    Comodo ONE Enterprise
    Emsisoft Anti-Malware for endpoints
    F-Secure Protection Servicefor Business
    G DATA Client Security Business
    Kaspersky Endpoint Security 10 for Windows
    Seqrite Endpoint SecurityEnterprise Suite
    Sophos Endpoint Protection

    Best++
    Avast for Business Endpoint Security
    AVAST for Business Basic
    Avira AntiVirus Business Edition
    Bitdefender GravityZone
    Kaspersky Anti-Ransomware Toolfor Business
    Panda Adaptive Defense

    Good+
    Avira Antivirus for Endpoint
    ESET Endpoint Security

    Average

    - none -

    Tested
    Trend Micro Worry-Free Business Security



    :)
     
    RubberDucky, Nov 10, 2016
    #1
  2. bhringer Win User

    We detect this ransomware as Ransom:Win32/ZCryptor.A.

    If your files were encrypted I suggest you refer to the following:

    Zcrypt Ransomware Support and Help Topic (.Zcrypt How to decrypt files.html)

    Zcrypt Ransomware Support and Help Topic (.Zcrypt How to decrypt files.html) - Ransomware Help & Tech Support

    Additional information:

    The Week in Ransomware - May 27 2016 - Zcrypt, Jigsaw, and More (The Zcrypt Ransomware is Released-May 24th 2016)

    The Week in Ransomware - May 27 2016 - Zcrypt, Jigsaw, and More

    Link (.lnk) to Ransom

    Link (.lnk) to Ransom

    ~
     
    bhringer, Nov 10, 2016
    #2
  3. rhabdomantist, Nov 10, 2016
    #3
  4. AVLab ransomware test/October 2016

    RubberDucky,

    Thanks for the interesting info.
     
    cottonball, Nov 10, 2016
    #4
  5. Steve C Win User
    I use Kaspersky Internet Security since I get it free from my bank. However, I have some concerns since it's a Russian firm - but is a US firm any safer considering US government influence?
     
    Steve C, Nov 10, 2016
    #5
  6. jimbo45 Win User
    Hi there

    the BEST protection against Ransomware is a CLEAN BACKUP -- then if you are unfortunate enough to get Ransomware simply RESTORE system -- don't shut down normally - POWER OFF immediately via Power switch and restore your system from backup say on USB device. If in "Paranoia mode" then format HDD also before restoring - but usually a system restore will be just fine.

    I wonder though how many people have actually had Ransomware -- it seems to come from email links --I can't believe after the number of warnings people have against opening unknown email links etc they still fall into the trap.

    One problem with AV software is how do you distinguish between a Normal (application type) program and a piece of malware. Unless you have an up to date image of every possible program on the planet AV wont detect a lot of these.

    AV software can detect if central resources etc are being attacked such as altering HDD boot sectors or fiddling with the kernel -- but say you wrote a standard piece of basic code to read a directory and write Hex'00' to every file in the directory I'm not sure if Any AV program would detect this as a rogue program - especially if YOU are running it - even as a background program.

    One can quite easily WRECK a system just by bad (or deliberate) programming without having to make any "memory calls", BIOS calls, use Windows undocumented special features etc.

    Just try it on a VM if you can do any coding and see if your AV detects it !!!!! - Save any critical data first before trying this experiment --which is why I suggest doing this on an ISOLATED VM not connected to your HOST / LAN via a network.

    The main security problem with Windows is the design of Windows itself on Home computers -- usually SINGLE USER systems where user is "The system administrator" and has access to all the resources.

    At least with Linux you have to run as root to do serious damage - although any user can destroy their own files by accident easily enough..

    People need to specify a bit more "What are they actually protecting themselves against" - the answers might be quite interesting of course.

    Cheers
    jimbo
     
    jimbo45, Nov 13, 2016
    #6
  7. WD last, as always, who would have thought?! I wonder, what happens, once they implement ATP, it looks promising.
    I think I am gonna replace Avast Free on my mom's computer to Qihoo Essential again. Hope it will run better this time.

    Something to watch, if you are interested in ransomware's detection: www.youtube.com/channel/UC6rpY1_vDoNV2AhS63enMZg
     
    TairikuOkami, Nov 13, 2016
    #7
  8. f14tomcat Win User

    AVLab ransomware test/October 2016

    Just curious, what is indented software?
     
    f14tomcat, Nov 14, 2016
    #8
  9. jimbo45 Win User
    Hi there

    also nobody seems to answer my question is on "What exactly is malware", how do you identify it correctly and why isn't a badly written or intentional user program such as my example as reading a file directory with a simple visual basic program (or even any FREE version of Basic / or a script) which can then write Hex '00' to every file in the directory regarded as "Malware".

    I should think simple program like that - can't be more than a few lines of code -- could do a lot of damage and in my book that definitely would be classed as malware if run uncontrolled on people's computers.

    Cheers
    jimbo
     
    jimbo45, Nov 14, 2016
    #9
  10. lx07 Win User
    Autocorrect/spelling error?

    I imagine when the report says "software indented for" they mean "software intended for".
     
  11. f14tomcat Win User
    Most likely. Guess somebody didn't proof read.
     
    f14tomcat, Apr 5, 2018
    #11
Thema:

AVLab ransomware test/October 2016

Loading...
  1. AVLab ransomware test/October 2016 - Similar Threads - AVLab ransomware test

  2. Windows Server 2016 October 2021 Security Patch

    in Windows 10 Gaming
    Windows Server 2016 October 2021 Security Patch: Hello All,This is regarding the latest security Patch release for Server 2016 KB5006669 released on 12th Oct2021.As per the patch Improvements & Fixes section, this patch will configure, registry setting given below. However, after applying this patch, noticed, below registry...
  3. Windows Server 2016 October 2021 Security Patch

    in Windows 10 Software and Apps
    Windows Server 2016 October 2021 Security Patch: Hello All,This is regarding the latest security Patch release for Server 2016 KB5006669 released on 12th Oct2021.As per the patch Improvements & Fixes section, this patch will configure, registry setting given below. However, after applying this patch, noticed, below registry...
  4. HLK Test fails for Windows Server 2016

    in Windows 10 Drivers and Hardware
    HLK Test fails for Windows Server 2016: Hi All, We are running the HLK test on Windows Server 2016. For all the driver's oplock test is getting failed. Some drivers are not changed and the test was passed for those drivers previously. But now with the same HLK setup the test is getting failed for those drivers...
  5. Microsoft Security Bulletin(s) for October 11 2016

    in Windows 10 Updates and Activation
    Microsoft Security Bulletin(s) for October 11 2016: Microsoft Security Bulletin(s) for October 11 2016 Note: There may be latency issues due to replication, if the page does not display keep refreshing Today Microsoft released the following Security Bulletin(s). Note: http://www.microsoft.com/technet/security and...
  6. October 2016 Cumulative Update Changed Settings

    in Windows 10 Updates and Activation
    October 2016 Cumulative Update Changed Settings: Windows 10 Pro x64 laptop had updates set to automatically download and then notify. (Still using v. 1511 build 10586 due to continuing reported issues with 1607.) No problems with any updates prior to Oct 2016. Oct 11 cumulative update KB3192441 apparently failed and...
  7. Final public test builds of Windows Server 2016 and System Center 2016

    in Windows 10 News
    Final public test builds of Windows Server 2016 and System Center 2016: Microsoft is making available today to testers its final public technical previews of Windows Server 2016 and System Center 2016. Technical Preview 5 (TP5) of both products are available for download on April 27. Both of these previews are considered "feature-complete" at...
  8. Microsoft Security Bulletin Summary for October 11th 2016

    in Windows 10 News
    Microsoft Security Bulletin Summary for October 11th 2016: Today we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to apply security updates as soon as they are released. More information about this month’s security updates and advisories can be...
  9. Windows developer evaluation virtual machines - October 2016 build

    in Windows 10 News
    Windows developer evaluation virtual machines - October 2016 build: We’re releasing the October 2016 edition of our evaluation Windows developer virtual machines (VM) on Windows Dev Center. The VMs come in Hyper-V, Parallels, VirtualBox and VMWare flavors and will expire on 01/17/17. These installs contain: Windows 10 Enterprise...
  10. October 2016 updates for Get & Transform in Excel 2016 & Power Query

    in Windows 10 News
    October 2016 updates for Get & Transform in Excel 2016 & Power Query: Excel 2016 includes a powerful new set of features based on the Power Query technology, which provides fast, easy data gathering and shaping capabilities and can be accessed through the Get & Transform section on the Data ribbon. Today, we are pleased to announce three new...