

(given by the testers after consulting statistical methods)

For example, in a scenario where all products achieve low detection rates, the highest-scoring ones will not necessarily receive the highest possible award. However, the testers do not stick rigidly to this in cases where it would not make sense. The malware detection rates are grouped by the testers after looking at the clusters built with the hierarchal clustering method. The red drafted line defines the level of similarity. It indicates at what level of similarity the clusters are joined. This dendrogram shows the results of the cluster analysis. This means that as more prevalent a malware family is, as more samples from that family are included in the test-set. Furthermore, the distribution of families in the test-set has been weighted based on family-prevalence and was build based on Microsoft’s global telemetry data. The test-set used has been built consulting telemetry data with the aim of including prevalent malware samples from the last weeks/months prior to the test date which are/were endangering users in the field and consisted of 131189 samples. AMTSO has a rudimentary test to verify the proper functionality of cloud-supported products. In fact, sometimes products with cloud functionality have various network issues due to which no cloud security is provided, but the user is not warned. While in our test we check whether the cloud services of the respective security vendors are reachable, users should be aware that being online does not necessarily mean that the cloud service of the products they use is reachable/working properly.

Vendors should make sure that users are appropriately warned in the event that the connectivity to the cloud is lost, which may considerably affect the protection provided, and e.g.
FREE MCAFEE INTERNET SECURITY 2015 FULL
The cloud should be considered as an additional benefit/feature to increase detection rates (as well as response times and false alarm suppression), and not as a full replacement for local offline detections. Users should be aware that detection rates may in some cases be drastically lower if the scan is performed while offline (or when the cloud service is unreachable for various reasons). Our tests are performed using an active Internet connection. Please note: Several products make use of cloud technologies, which require an active Internet connection. The test is thus called File Detection Test (as opposed to the earlier On-Demand Tests), as on-access scanning is taken into consideration. Although no samples were executed during this test, we considered cases where malware would be recognized on-access, but not on-demand. The detections made by the security product are noted and analysed. On each test system the malware set is scanned. To ensure that all file recognition capabilities are used, we enabled scan of all files, scan of archives and scan for PUA in all products. All products had Internet/cloud-access during the test and were tested using default settings.

The malware sets were frozen on the 17 th August 2015.
FREE MCAFEE INTERNET SECURITY 2015 WINDOWS 7
Trend Micro Internet Security 8.0 Build: Įach test system is running on Microsoft Windows 7 SP1 64-Bit including a respective security product, which was last updated on the 3 rd of February 2015.
