Advanced Heuristic

S

sinu

Thread author
Which AV uses advanced Heuristic method of detection?
 
S

sinu

Thread author
What did you mean under "advanced heurestic"? Agressive heurestic? Very agressive heurestic have Qihoo and BD.
its like there is an option in avira AV to select the heurestic level to advanced heurestic or normal heurestic for detecting unknown malwares
 
H

hjlbx

Thread author
Most AVs use heuristics... one notable exception is Emsisoft.

All the AVs that use heuristics allow the user to set the heuristics algorithm: Low - Medium - High.

High is aggressive - it might detect legitimate files - especially some WIndows system files, like Microsoft Malicious Removal Tool or something similar.

High is a huge system resource hog that will very likely double, if not triple or quadruple, the time required for a full-system scan and place high load on CPU.

For example, Comodo using Low heuristics will complete full system scan in about 40 minutes on my specific system. Using High heuristics it takes 2.5 hours. CPU load remains consistently in 75 to 100 % range during entire scan - and causes other apps to misbehave or not work at all (this is expected behavior under such high CPU load for all AV - not just Comodo). (On your system results will very likely be different - but follow the same trend).

You will find the same trend with all other AVs that use heuristics.

Who has "best" heuristics?: Avira, BitDefender, and Kaspersky.
 
Last edited by a moderator:
  • Like
Reactions: FireShootSK

jamescv7

Level 85
Verified
Honorary Member
Mar 15, 2011
13,070
In such heuristic term, a simply matching hexadecimal is a basic term to detect in-related viuses/malware that consist of suspicious behavior however don't depend too much, as its ability is limited as possible no wonder how much advance technology like DNA Matching or in-depth generic analysis still percentges of efficiency is hardly at the rate of medium to medium high level.

If you are going to compare the test from various organizations Avira and Kaspersky; but sometimes Bitdefender.

The advantage of BB or HIPS should take care the most crucial part when everything bypassed.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top