site Search:


 
    All Forums Hot Topics Gallery






how-to block ads


 
Search Topic:
Uniqs:
1405
Share Topic
Posting?
Post a:
Post a:
Links: ·Hijack This logs? ·Panda Free Tools ·Vundo Removal
AuthorAll Replies

claudiubotez

join:2009-06-28

The truth behind AV shields

Hi,

Is not uncommon to see, on an AV program , multiple shields like:

File System Shield
Mail Shield
Web Shield
P2P Shield
IM Shield
Script Shield
Network Shield
Behavior Shield

Im I wrong to consider that aside of File System Shield and Behavior Shield the rest of them are more or less useless?

Thanks,
Claudiu

nonymous
Premium
join:2003-09-08
Glendale, AZ
Reviews:
·Callcentric

Some AV do allow custom settings for each of those actions. Some AV make more sense than others; however. On some the settings are semi unique and geared to that use. On others it is like well the other AV do it I guess we have to also. The settings seem more generic and the subdivisions forced. So it depends on the AV.



norwegian
Premium
join:2005-02-15
Outback
Reviews:
·WestNet Broadband

reply to claudiubotez
File System Shield - required naturally
Mail Shield - protect emails
Web Shield - Protect from some http coding etc
P2P Shield - file sharing protection, not important if you do not use one
IM Shield - IM are nearly gone with the likes of facebook, but still useful if you use IM
Script Shield - I would buy any A/V with this over one without, most important besides file and behavioral to me.
Network Shield - If your on a network and some cable companies are set up that way, yes, if you're at home and you can cover all machines then it's no good, but network means that and if wifi public spots are used and it covers that, it must be worth it's weight in gold.
Behavior Shield - Come on, I don't think I need to answer this with present posts of yours, but yes, in line with script protection, and both possibly above the file protection when browsing the Internet.
--
The only thing necessary for the triumph of evil is for good men to do nothing - Edmund Burke



Name Game
Premium
join:2002-07-07
North Myrtle Beach, SC
kudos:7

reply to claudiubotez
You missed some stuff most have..and yes you are wrong and it all depends on the primary use of your computer for many different user types..and they are all usually customizable to one's particular need..and you can read about that ( how to customize )at this link for one of the common AV's out there that has the features you mentioned:

Happens to be AVAST but most have similar feature.

Antivirus kernel based on certified antivirus engine.
Resident protection comprising individual modules or "shields", each of which can be individually configured or disabled:
File System Shield — Real-time protection against viruses and other malware threats. Scans files as they run on your computer to keep viruses from being able to execute.
Mail Shield — Scans messages and attachments in E-mail/Microsoft Outlook/Exchange for viruses.
Web Shield — HTTP protection (local transparent proxy). Version 4.8 also allows the blocking of URLs. Scans URLs and incoming data for viruses, and aborts connections to the site if one is found.
P2P Shield — Scans P2P files from file share programs.
IM Shield — Instant Messaging protection. (Scanning of files transferred through instant messaging applications)
Script Shield — Scans webpages for malicious scripts, and disables them from infecting your computer, though they can still be used (for example, a clickable button.)
Network Shield — Basic protection against well-known network worms. Acts as an Intrusion Detection System.
Behavior Shield — Reports suspicious behavior by analyzing the behavior of programs
Anti-spyware capabilities
Anti-rootkit capabilities (Powered by GMER)[10].
Self-Protection — Prevents malware from terminating avast! processes and damaging avast! files.
Automatic incremental updates — Updates of both the program and the virus database which is used to identify potential threats — Avast! updates its virus definitions on a regular basis (sometimes multiple updates daily) and this process is automated by default.
Audible alarms — Vocal warnings and notices such as "Threat has been detected!" and "Virus database has been updated."
Boot-time scan — Users can schedule a boot-time scan to remove infections that load during Windows startup.
Virus Chest — Quarantine; folder where infected files can be stored. The virus chest also stores vital system files to protect them from damage by malware. Users can also add their own files to the virus chest. Once in the chest, a file cannot be executed; double-clicking the file will instead display information about the file.
SafeZone — SafeZone is a special web browser in avast! Pro Antivirus 6.x and avast! Internet Security 6.x based on Chromium web browser. It allows users to browse the web in a private, secure environment, invisible to the rest of the users' system.
WebRep browser plugin — WebRep is a community-based website reputation tool implemented in version 6.0 of Avast! Antivirus.[11]
Avast! antivirus monitor— Avast! antivirus monitor is a sidebar gadget for Windows 7 and Windows Vista. It comes with Avast! Antivirus 6 and 7.
Consumer Alert - Gives the user information if their credit may have been tampered with (US Customers Only)
AVAST cloud — Avast! 7 introduces streaming updates from the cloud in addition to daily virus database updates. Throughout the day, AVAST streams updates to users, giving them faster warnings about new malware. This supplements regular virus updates, keeping users informed and protected regardless of their internet connection.
FileRep - The FileRep feature enables faster threat identification by sorting new, potentially dangerous files from known safe files. Sourced from the CommunityIQ sensor network, the data helps avast! decide when questionable files should be placed in the AutoSandbox.
Remote Assistance — An avast! user can connect to the computer of a second avast! user, allowing the “helper-friend” to help with any computer issues.

»en.wikipedia.org/wiki/Avast!

If you are looking to save RAM and if you have older processor on your box..by all means turn off what you do not need..based upon you user habit.
--
Gladiator Security Forum
»www.gladiator-antivirus.com/



Name Game
Premium
join:2002-07-07
North Myrtle Beach, SC
kudos:7

reply to claudiubotez
Did you change over to avast now ??? that list sure looks familiar.


nonymous
Premium
join:2003-09-08
Glendale, AZ
Reviews:
·Callcentric

reply to claudiubotez
I think some of the older AV did all this under only a few headings or less. Like I said it is a way to offer more control for the user what and how a AV scans and does. Some AV do it better than others.
So offers the user more control of what the AV is doing on their system and what connections and how it is monitoring them.


claudiubotez

join:2009-06-28

1 edit

reply to Name Game
No, I am still with MSE. I bought a license though , for Avast 7 Pro and I test it (trial) ; MSE doesn't have any "fancy" shields, yet is quite good in reviews;

I spent some time going through various AV's and I am quite disappointed (especially by WSA -the worst so far) so I am sticking with MSE.

If you want Avast 7 Pro licence for 1 year PM me!- EXPIRED

Claudiu



Name Game
Premium
join:2002-07-07
North Myrtle Beach, SC
kudos:7

Stay safe my friend..and hope someone takes you up on the offer..I am just fine with not running any AV.



Triple Helix
Go Blue Jays Go
Premium
join:2007-07-26
Oshawa, ON
kudos:7
Reviews:
·Rogers Hi-Speed

reply to claudiubotez

said by claudiubotez:

No, I am still with MSE. I bought a license though , for Avast 7 Pro and I test it (trial) ; MSE doesn't have any "fancy" shields, yet is quite good in reviews;

I spent some time going through various AV's and I am quite disappointed (especially by WSA -the worst so far) so I am sticking with MSE.

If you want Avast 7 Pro licence for 1 year PM me!- EXPIRED

Claudiu

There you go bitching about WSA again when you don't know how it really works give it up OK as you told KIT that you are not a user anymore »community.webroot.com/t5/Webroot···510#M304

TH
--
Triple Helix - Microsoft® MVP Consumer Security 2012
VIP Member Of ASAP - (Alliance of Security Analysis Professionals™)
Official Webroot SecureAnywhere (Prevx) Support Forum Helper.
(H59 Clan)


hayc59
Im Your Huckleberry
Premium
join:2001-02-26
David R.I.P.
kudos:21

reply to claudiubotez
Trip nice peg job!!



Triple Helix
Go Blue Jays Go
Premium
join:2007-07-26
Oshawa, ON
kudos:7
Reviews:
·Rogers Hi-Speed

reply to Name Game

said by Name Game:

Stay safe my friend..and hope someone takes you up on the offer..I am just fine with not running any AV.

Please teach him how not to use an AV!

TH


noAVhere

@sbcglobal.net

reply to claudiubotez
i use virtualization like deep freeze on top of that, the OS is virtualized too... on top of that the browser is virtualized too...no virus touches me.



Name Game
Premium
join:2002-07-07
North Myrtle Beach, SC
kudos:7

There you go..a voice of reason. Reminds me of this graphic.

claudiubotez

join:2009-06-28

2 edits

reply to Triple Helix
Hi Triple Helix,

I gave up WSA long time ago; no hard feelings, but I left WSA because I am not that easy to fool;

The only regret I have--->the support was excelent.

Claudiu


Mele20
Premium
join:2001-06-05
Hilo, HI
kudos:4

reply to Name Game
All those shields...just to impress the user when NONE are needed except the real time shield and the on demand scanner that I don't even see listed. Rootkit protection is useful if you don't run a classic HIPS. Self protection can be very harmful though. I never allow that but I have a classic HIPS to take care of that and still not need to enable it on whatever AV I use so that if the AV (and Avast is particularly bad about this) has a tainted update and goes insane, I can control it. If Self Protection was turned on then I couldn't control it if it goes insane. It all comes back to the fact that a classic HIPS is what folks need and I do not look forward to trying to find a good one when I get a new computer soon.
--
When governments fear people, there is liberty. When the people fear the government, there is tyranny. Thomas Jefferson


Saturday, 18-May 15:14:07 Terms of Use & Privacy | feedback | contact | Hosting by nac.net - DSL,Hosting & Co-lo
over 13.5 years online © 1999-2013 dslreports.com.
Most commented news this week
Hot Topics