Percentage of Viiruses not blocked

  • Thread starter Thread starter brightwell_151
  • Start date Start date
B

brightwell_151

Hello All,

Are there any ballpark figures for the number of viruses that are
blocked by the most common commercial and freeware AV products.

I'm just trying to manage the expectations of the IT and Management
teams who appear to assume that you can put in AV and it blocks all
Viruses that have ever been found.

Or... maybe I'm wrong... I'm of the understanding that to keep the
signature file manageable they must drop off the older and least often
seen signatures and also even the newer attakcs may not get in if they
are not widespread.

So does anyone have a feel for what percentage of 'known' viruses
(albeit maybe not widespread) are not blocked by the signature file or
heuristic capability of the most common AV products?

Many thanks if you have this info

Regards,

Brightwell
 
Hello All,

Are there any ballpark figures for the number of viruses that are
blocked by the most common commercial and freeware AV products.

I'm just trying to manage the expectations of the IT and Management
teams who appear to assume that you can put in AV and it blocks all
Viruses that have ever been found.

What could possibly be their collective alternative?
Or... maybe I'm wrong... I'm of the understanding that to keep the
signature file manageable they must drop off the older and least often
seen signatures and also even the newer attacks may not get in if they
are not widespread.

So does anyone have a feel for what percentage of 'known' viruses
(albeit maybe not widespread) are not blocked by the signature file or
heuristic capability of the most common AV products?

Many thanks if you have this info

Regards,

Brightwell

Of course viruses should not be their singular worry. Creating the
safest environment, getting & keeping your systems secure and the never
ending education of their users should be.

Best wishes to you.

Pete
 
Hello All,

Are there any ballpark figures for the number of viruses that are
blocked by the most common commercial and freeware AV products.

I'm just trying to manage the expectations of the IT and Management
teams who appear to assume that you can put in AV and it blocks all
Viruses that have ever been found.

Or... maybe I'm wrong... I'm of the understanding that to keep the
signature file manageable they must drop off the older and least often
seen signatures and also even the newer attakcs may not get in if they
are not widespread.

So does anyone have a feel for what percentage of 'known' viruses
(albeit maybe not widespread) are not blocked by the signature file or
heuristic capability of the most common AV products?

Many thanks if you have this info

Regards,

Brightwell
************ REPLY SEPARATER *************
AV software is a good backstop, but there is no replacement for common sense
and good operating practice. All AV software will fail at one time or another,
The most vulnerable time is when a new piece of malware is first released into
the wild. It takes time to identify a virus, and produce and distribute the
signatures. I have a dozen or more on file that were detectable in the first
few days by a very small percentage of AV manufacturers. These are for the most
part Trojan Downloaders that have a tendency to morph every few days, making it
difficult for the AV manufacturers to keep up.

J.A. Coutts
 
************ REPLY SEPARATER *************
AV software is a good backstop, but there is no replacement for common sense
and good operating practice. All AV software will fail at one time or another,
The most vulnerable time is when a new piece of malware is first released into
the wild. It takes time to identify a virus, and produce and distribute the
signatures. I have a dozen or more on file that were detectable in the first
few days by a very small percentage of AV manufacturers. These are for the most
part Trojan Downloaders that have a tendency to morph every few days, making it
difficult for the AV manufacturers to keep up.

J.A. Coutts

The above is /so/ true. I've witnessed situations where failure to
check for the latest signatures caused up to several man days of
restoration effort.

Pete
 
Back
Top