Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

using AMTSO's anti-malware feature checks

The Anti-Malware Testing Standards Organization (AMTSO) provides a way to test antivirus programs. Well, it’’’’s actually a check of features and settings. Go tohttp://www.amtso.org/feature-settings-check.html (“Feature Settings Check for Desktop Solutions”), where there are 5 features to check:

1. Test if my protection against the manual download of malware (EICAR.COM) is enabled
2. Test if my protection against a drive-by download (EICAR.COM) is enabled
3. Test if my protection against the download of a Potentially Unwanted Application (PUA) is enabled
4. Test if protection against accessing a Phishing Page is enabled
5. Test if my cloud protection is enabled

I use Sophos Anti-Virus for Mac and have for several years, so I tried these out.

EDIT 2014-03-26 changed test #3 to #4): I had to set some preferences correctly but after doing so SAV passed tests 1, 2, 3, and 5. In my test SAV does not pass the anti-phishing web site test (#4).

I’’’’d appreciate it if other users of SAV would test their settings. I’’’’d rather find that that I made some mistake and that SAV protected against phishing web sites.

Thanks!

:1016485


This thread was automatically locked due to age.
Parents
  • Just tested this and the results are all blocked apart from my number three (the Potentially Unwanted Application test).

    No.TestResult
    1 Test if my protection against the manual download of malware (EICAR.COM) is enabled Blocked
    2 Test if my protection against a drive-by download (EICAR.COM) is enabled Blocked
    3 Test if my protection against the download of a Potentially Unwanted Application (PUA) is enabled Not blocked. SAV for Mac doesn't scan for PUA. SAV for Windows 2000 and above does.
    4 Test if protection against accessing a Phishing Page is enabled Blocked
    5 Test if my cloud protection is enabled Blocked. File downloads but on-access scanner immediately detects file in Downloads folder. With cleanup threat set the file is deleted immediately, otherwise use Quarantine Manager to cleanup the threat.

    I'm running Sophos Anti-Virus for Mac version 9 which is the latest version for Mac OS X 10.6 and above.  Version 9 has Web Protection and so browsers are protected. Version 8 doesn't have the Web Protection feature.  It's a free upgrade to 9 and you're better protected.  If you're not running version 9 you may get different results.

    Download version 9 here: http://www.sophos.com/en-us/products/free-tools/sophos-antivirus-for-mac-home-edition/download.aspx

    :1016489
Reply
  • Just tested this and the results are all blocked apart from my number three (the Potentially Unwanted Application test).

    No.TestResult
    1 Test if my protection against the manual download of malware (EICAR.COM) is enabled Blocked
    2 Test if my protection against a drive-by download (EICAR.COM) is enabled Blocked
    3 Test if my protection against the download of a Potentially Unwanted Application (PUA) is enabled Not blocked. SAV for Mac doesn't scan for PUA. SAV for Windows 2000 and above does.
    4 Test if protection against accessing a Phishing Page is enabled Blocked
    5 Test if my cloud protection is enabled Blocked. File downloads but on-access scanner immediately detects file in Downloads folder. With cleanup threat set the file is deleted immediately, otherwise use Quarantine Manager to cleanup the threat.

    I'm running Sophos Anti-Virus for Mac version 9 which is the latest version for Mac OS X 10.6 and above.  Version 9 has Web Protection and so browsers are protected. Version 8 doesn't have the Web Protection feature.  It's a free upgrade to 9 and you're better protected.  If you're not running version 9 you may get different results.

    Download version 9 here: http://www.sophos.com/en-us/products/free-tools/sophos-antivirus-for-mac-home-edition/download.aspx

    :1016489
Children
No Data