Thanks for the update,
@Emsisoft
I think Kis as Emsi are very good products.
In general no AV is perfect and detection/protection will vary in time too.
I have both and I tested Emsi IS before Der.Reisende.
I think their overall detection rate, including BB, has worsened on the last months.
BB is missing some samples in the Hub tests, more than in the past in my opinion.
What's excellent with Emsisoft is that they release new versions as soon as available, without waiting as all othwrs I know the next year.
I' m pretty confident they are working on these issues and versin 12 will bring Emsi back to the "top".
@Emsisoft,
Can you pks explain how exactly Emsi behaves when a file not detected by signature /heuristic is executed?
1- Emsi checks the network database every time an unknown file is run: if the file is found the "info" is used, if not BB monitors the file's behavior and if suspect it alerts the user.
2- the network database is checked not alwas but only when BB flags the file as suspicious.
After that the network "info" is used if available, if not BB will ask user what to do.
If memory serves, Fabian said Emsi uses the 2nd approach, but I might be wrong.
I would prefer the 1st...
Can you pls help us to understand this?
Thank you