Skip navigation.

RejZoR's little secrets

Tweaks, tools, programs, hints and more, everything you need to make your techy life easier

Posts tagged with "antivirus"

avast! and Win32:Delf-MZG [Trj] detections everywhere

, , , ...

Late yesterday some technical problems happened with virus definitions which were solved pretty fast.
Detection in question was Win32:Delf-MZG [Trj] with definitions 3.12.2009 - 91203-0.
Please use avast! updater to update to 3.12.2009 - 91203-1 or later which resolves this issue.
If you encounter any popups during this process, just click "Ignore" and restore everything from Chest that was detected under this detection.

I'm sure ALWIL team feels sorry about this situation, but they did solved it pretty fast.
Such things can happen occasionally. No one is immune to this (it happened to almost everyone, even McAfee, Symantec and Trend Micro).

UPDATE and official ALWIL Software statement:
http://forum.avast.com/index.php?topic=51647

UPDATE 2 and help how to remedy the situation:
http://support.avast.com/index.php?_m=knowledgebase&_a=viewarticle&kbarticleid=376

UPDATE 3 and explanation what went wrong:
http://forum.avast.com/index.php?topic=51783.0

Microsoft Security Essentials problems and what has to be fixed

, , , ...

The program is very simple to use since it doesn't offer all that many settings.
However i've noticed quite some problems that need to be addressed.

First and most important is performance hit. After testing, it turned out that MSE is scanning archives on-access. This indeed offers early detection of malware inside archives, but also results in a significant performance hit. I see no reason to scan archives on-access (don't mistake archives for runtime packers!). Malware inside archives is benign until you extract it in one or another way. And once you do that, the usual file scanner will pick it up. So i really hope Microsoft will add option to disable on-access archive scanning (the option in settings is for on-demand btw).

Second issue that's also very important is the update process. Checking for signatures only ever 24 hours is just not enough these days, because 24 hours is a huge time frame for threats today.
If you've just updated and new threat just emerges, Microsoft creates definitions for it and you won't recieve it for next 24 hours. For one whole day! That's just not acceptable.
Every antivirus, be it free or payable should check for new definitions each time internet connection is detected and after that at least every 2 hours. This way it's ensured that antivirus has the newest signatures when it's the most important.

These two issues are the most important and i hope Microsoft will fix them fast. Because on-access archive scanning is really bogging down my netbook. And i even cought it few times to bog down my main system with Core i7 920 and 6GB of RAM. And that's what was worrying me the most.
Issue regarding definition signatures is also important.

Microsoft Security Essentials released!

, , , ...

Microsoft today released a highly anticipated Microsoft Security Essentials. It's a freeware anti-malware protection without any advanced settings or features. But it still provides easy to use and very reliable protection for less knowledgeable users. You don't really have to tweak and adjust anything. It just works. You'll only know about it when it finds a malware. No need for registrations, no subscriptions etc.
Install and forget. Only thing you'll need is genuine version of Windows. That's the only requirement.
You do have original Windows right? :wink:

Official page and download:
http://www.microsoft.com/security_essentials

ThreatFire 4.6 behavior anti-malware released!

, , , ...



PCTools company released a new version of their award winning behavior detection system ThreatFire.
I've been tracking the progress of this program since it's early days. Back then it was called Cyberhawk and it was really effective without need for signature updates. This hasn't changed. In fact, it has only improved. And best of all, it's free for personal usage (for home usage).

The biggest new feature in version 4.6 is full 64bit support. Yes, this means that you can install ThreatFire on any 32bit or 64bit Windows operating system. They've also added full Windows 7 support.

ThreatFire is excellent additional layer of protection along your existing antivirus.
Pair ThreatFire with avast! or AVIRA and you'll have outstanding protection for free.
But you can use ThreatFire with any other security program.

Immunet Protect - Cloud anti-malware

, , , ...


Immunet Protect
http://www.immunet.com/protect

Latest security trend is cloud computing. And Immunet Protect is cloud based anti-malware software.
Technically speaking, the more users use it, the better it'll work. Can't really say much about it's effectiveness, but it's free and has a very low impact on performance. And can also be used along with other security programs. So give it a try if you're interested and contribute to their cloud system.

EDIT:
I forgot to mention it's still in BETA stage, although they don't mention that anywhere in the program and only on some parts of the webpage.

avast! 5 quick preview!

, , ,

After chatting with ALWIL team i've got some info on what we can expect. I'll not be able to disclose everythng in detail since some of the info is still confidential. But i'll make few points to let avast! fans know what to expect from avast! 5. All this is still half official, so if anything will not land in the initial avast! 5 release, don't attack me or ALWIL guys. The missing features will probably follow in avast! 5.1 release.

There will be different versions, most notably antivirus and suite. First is obviously stand alone antivirus, while other one contains other features like firewall.
The first and most significant change will be GUI or graphical user interface. And the change is massive. I still don't have some details and stuff that i've seen was still heavy prototype stuff but still. It looks great and very functional. I'm sure most of you will love it. Second will be under the hood. They decreased memory footprint significantly and also lowered the system requirements, meaning avast! 5 will be much much faster and also use less resources. But they don't stop there. Under the hood improvements also include massive improvements in detection. Enhanced virus definition updates (VPS) with superior flexibility, incredibly fast VPS updating (very similar to Symantec Pulse updates, only for avast! Professional users though), enhanced proactive methods like heuristics, behavioral detection and sandboxing to combat 0-day threats and many many more exciting features.

The release is scheduled for summer 2009. Czech based ALWIL Software again shows they mean serious business with their state of the art engineered software. It will indeed be a very hot summer for any antivirus geek when avast! hits the internet. Stay tuned! This summer!

UPDATE 2009/05/28
It appears there was a "communication error" (from my side) regarding the release date. The alpha and beta test phase will indeed begin soon (which falls under the summer estimation), however the actual retail release in 5 major languages (and more to follow later) and in 3 different editions is scheduled for autumn 2009. I'll post some more info once i get the alpha version in my hands.

AVIRA Antivir 9 released!

, , , ...

German based security company AVIRA released their new version of Antivir antivirus.
This time version number 9 with many new features and enhancements.

New features include:
- refreshed interface
- improved self-protection
- improved submission of quarantined samples
- improved cleaning of malware
- added adware/spyware detection for free version
- enhanced and improved updater
- faster scanning through utiilization of 2 CPU cores for on-demand scanning

You can read more here:
http://www.avira.com

DOWNLOAD:
FREE EDITION: http://www.free-av.com
PREMIUM/PRO/IS EDITIONS: http://www.avira.com

Free antivirus for everyone!

, , , ...

I've noticed that many users still use either cracked security software or no security software at all.
Now using cracked security software is like relying on locks bought from some strange guy, not running anything today is not that smart even if you are very cautious while browsing. Besides, who ever said you have to pay for anything? Many already know them, others don't. You really can't lose anything, just gain.
Here are three most known antivirus programs that keep milions of users secured online.
I'll make a small description so it'll be easier to decide but feel free to try all three (separately of course) and decide which one fits your needs...

avast! Antivirus Home Edition
One of the oldest antiviruses around, first program to achieve VB100% award, the avast! Antivirus from Czech based ALWIL Software. Their philosophy is to offer security to every home user for free without any catches or detection limitations. What is detected by their payable version is also detected by the free one. Too good to be true? Nah, it's all there!

Quick description:
+ provides protection against all malware types (even against spyware/adware & active rootkits!)
+ fast with small footprint
+ also supports legacy operating systems (like Windows 98)
+ very small and fast fully automatic updates (checks every 4 hours, even 56k friendly!)
+ very good technical support through forums, e-mail and phone
+ very configurable even for free version
+ sound/speech effects for warnings
+ strong self-defense
+ update servers are the same as the ones for payable users (over 80 hi-speed servers!)
- no scan/task scheduler
- detection is not the best (though it's not that bad as it might sound, they're improving it fast)
- requires free registration every 14 months

AVG Antivirus Free Edition
Thats correct, another Czech based antivirus company called Grisoft. Their antivirus has been known for very low footprint and good compatibility in the past. With acquisition of Ewido Networks they've gained quiet some technology which greatly reflects in their detection rates in their latest versions of their antivirus. Investments from Intel Corporation also help them greatlly i assume...

Quick description:
+ offers malware and spyware/adware detection
+ quiet fast
+ very good detection
+ easy to use (not all that configurable)
- does not support legacy operating systems anymore (like WIndows 98)
- does not protect from active rootkits
- checks for updates only once per 24 hours (thats bad)
- uses special a bit slower free servers
- tech support limited to forums only

AVIRA AntiVir Personal Free
Formerly known as H+BEDV with their flagship product AntiVir. They've renamed their company to AVIRA some time ago and since then, it's getting better and better...
This one used to be the ugly duckling in the past with rather mediocre detection, ugly interface, huge and slow updates. Something no one would really want to use. German engineers changed all that in just 2 years. Today, AntiVir is one of the most highly rated antiviruses there is, with brutal detection in all fronts, nice interface, incrimental and very frequent updates. But free version has its downsides...

Quick description:
+ very configurable even for free version
+ very high detection
+ very high scan speed
+ very frequent almost hourly released updates
+ offers Scheduler to schedule scans or update checks
- does not support legacy operating systems anymore (like Windows 98)
- offers only malware detection (no spyware/adware detection)
- does not protect from active rootkits
- uses special a bit slower free servers
- checks for updates only once per 24 hours (thats bad)
- displays advertising popup for their Premium version after each virus definition update
- tech support limited to forums only

Each has it's own limitations and bonuses so don't look just at minuses... Check the list and decide what you need the most. Or simply try each of these three and decide then. I'm quiet sure anyone would find something useful for himself/herself. Better safe than sorry!

Surf the net in a safe way!

Security Center Reset 1.0 released!

, , , ...

Security Center Reset is a handy tool that gives you ability to easily reset Windows XP/Vista Security Center monitoring status.

Ever happened that Security Center was still reporting your former antivirus/firewall as installed but disabled, even though you already uninstalled it long ago?
No more from now on with Security Center Reset!

Just uninstall ALL antiviruses and firewalls (excluding Windows XP/Vista Firewall of course) and run this tool.
It will automatically reset the monitoring status of Security Center.
After this this is done, you can install back your latest favorite antivirus or firewall software that will be properly re-detected in Security Center as you install it.

DOWNLOAD SECURITY CENTER RESET...