![]() |
|
#26
|
||||
|
||||
|
Quote:
There's no HIPS functionality in MSE, and HIPS functionality of WD is taken out in Windows 7 version. MSE's proactive defense is based on Dynamic Signatures (search for it), which typically delivers the same "prompts" as a regular detection, thus continuing unmatched simplicity. ![]() |
|
#27
|
||||
|
||||
|
Quote:
OK - Thank You Raven Are there any other ways MSE checks if the file is valid? MD5, etc.? Last edited by Toby75 : July 30th, 2009 at 03:30 PM. |
|
#28
|
||||
|
||||
|
Quote:
No problem. Sorry, but I don't have that technical information, though I'm sure someone else here knows. |
|
#29
|
||||
|
||||
|
MSE does start to slooow things down after a couple of days, but it is still beta.
__________________
Webroot SecureAnywhere |
|
#30
|
||||
|
||||
|
No problems here, been testing on 20 PC's of varying speeds, memory.
Killed the Rustok SpamBot that was plaguing one PC and showed no slowdown on even the PC with least memory/CPU power. Initial download of signatures was slow on all but after setting up scheduler on daily 4hr intervals it updates quick as a flash now. Thumbs up from me, and it's only a Beta!!
__________________
Win 8/Avast 8/Common Sense 8 |
|
#31
|
||||
|
||||
|
anyone tested it? how does it work? how about the balance between resource consumption and detection rate?
|
|
#32
|
||||
|
||||
|
Quote:
http://www.wilderssecurity.com/showt...ity+essentials |
|
#33
|
||||
|
||||
|
I am not sure how it detects. I am beginning to think it is not scanning for malware but rather scanning files for them. I can't think of another way to describe it.
__________________
Asus P5Q PRO, Intel Q9650 Quad Core 3.0 Ghz GeForce 9800 GTX+, 4GB OCZ DDR 1200 Running Windows 7 x64 |
|
#34
|
||||
|
||||
|
You don't need to describe it, Microsoft describes it very well, it's based on heuristics/generic signatures/dynamic signatures, whatever you want to call it.
__________________
OpenDNS with DNSCrypt SSD: Windows 8 Pro x64 | IE10 (Enhanced Protected Mode) & Fanboy's TPLs HDD: Xubuntu 12.04 LTS (x64) | Firefox: ABP(Fanboy's list) & HTTPS Everywhere |
|
#35
|
||||
|
||||
|
On the Microsoft forums they say that using WD will not be necessary when using MSE...that it covers the same things and then some.
However, WD has HIPS, MSE does not. So you can bypass MSE! |
|
#36
|
||||
|
||||
|
Quote:
Yep, they're making a big mistake. If checking the built-in Windows Defender of Windows 7 you'll get what I mean... ![]() |
|
#37
|
||||
|
||||
|
Quote:
When you look at the I/O of MSE, it must be using the same intrusion detection agents as Windows Defender, only you can not control them. So the option to be warned when joining as an experienced member in the community is lost. For Windows 7/Vista Users the UAC protection will cover that ground, so only the XP users are worse off in practise (well at least the 95% of them which run as admin). Regards Kees |
|
#38
|
||||
|
||||
|
Quote:
So what you're saying is that MSE is handling all the data which was HIPS "automatically" by itself instead, and that the same goes for the later WD? |
|
#39
|
||||
|
||||
|
Sorry, yes and no
MSE offers the same protection as WD at basic user level, using all standard settings. It performs the actions you defined (automatically) when a known malware touches a point protected by an intrusion agent, Only as advanced user (spynet community) of WD you would get a warining. UAC covers these grounds, so that is problably why MS removed the WD options. As a basic user of WD, you can control/select the agents, MSE does not offer this option. But I guess 99% of the users did not change these WD settings anyway. Cheers |
|
#40
|
||||
|
||||
|
Quote:
I used to use WD as an advanced member. Now I'm using MSE with UAC active. When I'm testing malware which try to load drivers...I'm not prompted by UAC...am I supposed to be prompted? I thought UAC only controls the execution of exe's. Edit: I forgot to mention I'm using Vista. |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|