Not wrong at all. Just check out G DATA results at avlab.pl or others. G DATA always performs below average in properly designed and implemented professional antivirus lab tests.
G DATA worse than average for banking protection:
G DATA worse than average (almost the worst) for fileless malware:
MalwareHub is not professional testing. It is testing performed by non-professionals using amateur methodology.
Nobody is talking about signatures here. Detection by signature is a joke. Nobody can take any review seriously that emphasizes detection by signature.
The problem with these institutes is they don't run a malicious sample or code in real time to generate similar malicious scenarios then check how in real time the AV's react ?
Reasons were obvious : Either they can't code such malicious code, secondly in wild samples might have been blocked by Web shield / Static signatures. Disabling these and testing only Proactive shields is another matter.
Second catch is now a days most AV vendors made sure their proactive modules are tied to reactive modules (likely) to cover up their weak points when only Proactive shields are enabled to defend such real time hard blooded malicious behaviors (fair enough) ex: Norton -SONAR
So in case if u want a ready made hand coded samples to trigger similar behaviors obviously many Av's wont react since they can't perform all the triggers what an actual malware does real time . For ex: All the above scenario's are purely hips based..so Spy shelter / Comodo (expected) rocked the test, then Dr WEB. Majority of well knwn vendors like BD, G data tanked the test. SIMPLE. they just won' t react.
Ex: It is easy to just code a ransomware to simply encrypt files by any simple form, or make a suspicious sample by yourself (by simple code so simple) that deletes all your files , majority of AV don't react to such simple hand coded scenarios.
It is just my opinion, on these tests overall not just Avlab.pl there are 4/5 other institutes. DENNIS LAB a German based AV testing used to be somewhat ok but it was closed*
Our HUB is where we execute real world sample scenarios (to certain extent) where Av's face real time challenge, just purely based on the samples we get that day. Standard AV's might not win every time, but they definetly give a STRONG fight back . To my knowledge these are the AV's that does exactly that - TOP-> K, BD, G data, Norton
middle rank are Avg/Avast, F secure , Emsisoft.
*Take above opinion with a grain of salt *