GuitarBob





Joined: 09 Jul 2006 Posts: 4639 Location: USA

Yes, Clam Sentinel can detect worms that have a ClamWin signature, and it can also detect them via heuristics that meet a malware profile. All AVs have trouble detecting new malware for which they do not have a signature or if the malware looks like a "good" file. In those cases, they have to wait for someone to get infected and give them a sample.



Lots of malware is targeted toward specific users now, and it is changed very often. So there may not be many samples, and it takes an AV some time to prepare a signature when they get a sample. So malware has a big window of opportunity. That is why you need to keep your AV updated and be careful where you go on the web.



Regards,