App Review More Fun with Ransomware Part 4

It is advised to take all reviews with a grain of salt. In extreme cases some reviews use dramatization for entertainment purposes.
Clearly Avast rely on the signatures which why the Hardened Mode nor the DeepScreen help a lot, considering that its still a lack of analysis how to prevent the possible buffer overflow attack.

Unfortunately the HIPS concept didn't help either which better to rely on the traditional ones.

Meanwhile for BDAR like other products, it should be up to date for latest ransomware variants.
 
Tornado- I already had a video finished about CryptoPrevent and similar Group policy modifiers that was to be published instead of this one, but just as I was going to upload it I discovered that CP will have a major new build coming out soon. Therefore I felt a video on the current version would be neither fair nor especially relevant.

But as soon as CP version 8 finishes beta I'll be all over it (for fair or foul).
 
Bit late to the party, but great vid as always :) Nice to see Avast! work well :) Had it in the past, quite good software, but the time I used it, agressive settings made the system quite slow. However I love their UI and the tons of stuff it has - and can be configured to the users wishes :)
 
minegroasprilla- as Circe (nice name, btw) stated I don't use an AV as I really don't see much point in them as they are fairly easy to bypass with any serious zero-day coding. For an example, if you have seen any of the Boot time videos you would have noticed that none of the AVs tested detected my timing Trojan, and only a minority detected the ransomware that was dropped (I made sure all of them would have stopped it if run normally).

The real issue would be if instead of an old ransomware sample I coded in a zero-day version...

Also, this may be of interest:

Google Online Security Blog: New research: Comparing how security experts and non-experts stay safe online