<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Pablo Endres&#039; Blog &#187; Malware</title>
	<atom:link href="http://www.pabloendres.com/category/security/malware/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.pabloendres.com</link>
	<description></description>
	<lastBuildDate>Sun, 22 Jan 2012 19:20:15 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>AV Comparisson</title>
		<link>http://www.pabloendres.com/2008/02/26/av-comparisson/</link>
		<comments>http://www.pabloendres.com/2008/02/26/av-comparisson/#comments</comments>
		<pubDate>Tue, 26 Feb 2008 21:02:41 +0000</pubDate>
		<dc:creator>Pablo Endres</dc:creator>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://pabloendres.com/wordpress/?p=20</guid>
		<description><![CDATA[About a year ago I went through the process of evaluating AV&#8217;s for the company I was working for. What I did was setup some detection tests using Eicar and some &#8220;wild&#8221; viruses. Additionally I asked the vendors I chose from instinct: symantec, Sophos, Panda, Fortinet and looked up their listed vuln. in the past [...]]]></description>
			<content:encoded><![CDATA[<p>About a year ago I went through the process of evaluating AV&#8217;s for the company I was working for. What I did was setup some detection tests using Eicar and some &#8220;wild&#8221; viruses. Additionally I asked the vendors I chose from instinct: symantec, Sophos, Panda, Fortinet and looked up their listed vuln. in the past year (ovdb) and the time it took them to issue and install an update. I compared the upgrade strategy: engine, threat DB, application; some vendors don&#8217;t automatically give you all of that. Used info from <a href="http://virusbtn.com/">http://virusbtn.com</a> to compare some results in time.  Setup demos to see them in action, and test their reporting capabilities in real time.  After all that of coarse $$$ came into play.  With that information I made a BIG table and put some weights on the items and let the best player win.  For those who will ask, Sophos came out with the best results in our environment.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.pabloendres.com/2008/02/26/av-comparisson/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

