Wilders Security Forums  

Go Back   Wilders Security Forums > Security Products > other anti-virus software
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old September 12th, 2002, 07:18 AM
Hummer Hummer is offline
Infrequent Poster
 
Join Date: Sep 2002
Posts: 18
Default TDS + Software Firewall + << ?? A-V here >>


Hi All,

I'm about to purchase TDS-3 for trojan protection and was curious what A-V I should go for.. I'm seeing strong reviews for Kaspersky Pro version, NOD32, Dr-Web, and F-Secure. Let's say I'm fine in trojan protection and I want a strong heuristic / 99% virus catching / worm catching A-V program. Kaspersky pro seems perfect but its out of my budget for a A-V program alone. Would appreciate any info on the above programs, in comparing each other. Thanks in advance!
  #2  
Old September 12th, 2002, 09:38 AM
Jooske's Avatar
Jooske Jooske is offline
Incredibly Massive Poster
 
Join Date: Feb 2002
Location: Netherlands, EU near the sea
Posts: 9,713
Default Re:TDS + Software Firewall + << ?? A-V here >>

For TDs i think you've made the best choice in that area; for KAV you could decide to look at the KAV /AVP personal version, which is half as pricy as the Pro, more because you have to renew yearly and they are willing to lower the renewal price 20% so that certainly is a point of consideration. It has strong heuristic and other aspects.
NOD32 is the specialist in viruses i read here in the forum, the others you mention people have different opinions on. I'd say of possible give them a try for a trial period and who knows you can with that bridge the time till DCS comes with new tools for us (i suppose they will keep concentrating on the trojans and worms in which they are specialists, but i don't know for certain of course).
Look what more you see here in all the comments in the forum, for sure and try how it behaves on your own system.
__________________
Jooske
"o_o"
  #3  
Old September 12th, 2002, 02:00 PM
wizard's Avatar
wizard wizard is offline
Frequent Poster
 
Join Date: Feb 2002
Location: Europe - Germany - Duesseldorf
Posts: 818
Default Re:TDS + Software Firewall + << ?? A-V here >>

Kaspersky Pro is too expensive but they sell a 'normal' version of the program called Kaspersky Anti Virus Personal which is only two tools less (Office Guard and Integrity checker). F-Secure is a good program which uses F-Prot and KAV Engine. It is also more on the expensive site.

DrWeb is a good scanner but in many cases not user friendly. Also the heuristic produces a lot of false positives. So only recommended to experienced users.

My favourite scanner at the moment is NOD32. NOD32 is fast, has strong heuristics, extrem good results on ITW malware and it is not that expensive as other scanners. As you chose your trojan protection already with TDS-3 then I would say go with NOD32.

wizard
__________________
wizardRESEARCH - Malware Research & Analysis since 1989
  #4  
Old September 12th, 2002, 02:56 PM
Jooske's Avatar
Jooske Jooske is offline
Incredibly Massive Poster
 
Join Date: Feb 2002
Location: Netherlands, EU near the sea
Posts: 9,713
Default Re:TDS + Software Firewall + << ?? A-V here >>

You could even consider the money you spare on the KAV Personal Pro to get KAV Personal and put the money you save with that difference in WormGuard to have a marvelous protection against worms, besides the TDS trojans protection you would have with that already. Not sure what the other tools lagter this year from DCs will be, so like said and suggested by others in several threads in the forums here, take your time, try what you like, and just try to get used to them.
As far as i remember F-secure (i had an older version longer ago) has indeed F-Prot and AVP included, but in my old version it did not include the heuristic scanning which has the original stand alone KAV/ AVP version. Not sure if that has changed now.
As NOD32 is especially for the viruses, i think the advise to start with that beside TDS and WG would be a wonderful combination, and if you ever want one more the KAV personal is excellent beside that too. NOD32 is really strong and has a good email scanner too among others.

__________________
Jooske
"o_o"
  #5  
Old September 12th, 2002, 04:33 PM
wizard's Avatar
wizard wizard is offline
Frequent Poster
 
Join Date: Feb 2002
Location: Europe - Germany - Duesseldorf
Posts: 818
Default Re:TDS + Software Firewall + << ?? A-V here >>

F-Secure comes with a third heuristic only scan engine. This third engine does only work on NT-based windows versions (e.g. Win2k, WinXP)

wizard
__________________
wizardRESEARCH - Malware Research & Analysis since 1989
  #6  
Old September 12th, 2002, 04:53 PM
Jooske's Avatar
Jooske Jooske is offline
Incredibly Massive Poster
 
Join Date: Feb 2002
Location: Netherlands, EU near the sea
Posts: 9,713
Default Re:TDS + Software Firewall + << ?? A-V here >>

Aha, that explains! and my version was long ago, so it could have been changed in the meantime
Think the combination we mentioned TDS - NOD32 - WG would be marvelous! to have trojans, viruses, worms, scripts, emails, website infections etc all covered.
__________________
Jooske
"o_o"
  #7  
Old September 12th, 2002, 05:51 PM
Hummer Hummer is offline
Infrequent Poster
 
Join Date: Sep 2002
Posts: 18
Default Re:TDS + Software Firewall + << ?? A-V here >>

Thanks for all the input!

I forgot to mention this earlier, a few questions:

Am I right in that a virus only activates on the initial .exe unless it is compressed? Anything that is activated subliminally (not at the time of execution) is something that would be found in TDS)

On that note, any comparison results between NOD32 and KAV on compression scanning. Would a setup.exe be considered compression or is it only zip/cab/rars. My main focus is finding malicious files before I open them.

[me=Hummer]posts newbie questions. [/me]

Thx
  #8  
Old September 12th, 2002, 06:33 PM
Vampirefo
 
Posts: n/a
Default Re:TDS + Software Firewall + << ?? A-V here >>

I don't care for heuristic, but you do, So Drweb would probably be the best choice for you, If you are looking for a free AVP, AV6 is a great one. It's free and does a good job but it's limited.

I use NAV 2002 myself, one thing though you should look at is your resources, if you are using a version of windows less then the NT kernel. ie W95-ME. A lot of AVP's are resource hogs, they use a lot of resources, if you use the AVP as a full time scanner, rather than as a on demand scanner.

Also do you plan on run TDS-3 full time or on demand? full time is going to use a lot of resource, so you have to determine, how many resources you have left, if you run TDS-3 full time, plus take in to account how many other programs start with windows, and how many you wish to start yourself.
  #9  
Old September 12th, 2002, 07:00 PM
Technodrome's Avatar
Technodrome Technodrome is offline
Global Moderator
 
Join Date: Feb 2002
Location: New York
Posts: 2,140
Default Re:TDS + Software Firewall + << ?? A-V here >>

Quote:
quoting: Hummer link=board=24;threadid=3614;start=0#24319 date=1031867465]

On that note, any comparison results between NOD32 and KAV on compression scanning. Would a setup.exe be considered compression or is it only zip/cab/rars. My main focus is finding malicious files before I open them.
Thx

KAV has better results in regards of compression scanning (it supports more archives)

NOD32 has better heuristic code analyzer then KAV!

If you are going to use TDS3 then go absolutely with NOD32.

Zip/cab/rars are archives (compressed files)


Technodrome
__________________
Classic Trance Hit: PPK - Resurrection
  #10  
Old September 12th, 2002, 08:11 PM
Tinribs's Avatar
Tinribs Tinribs is offline
Frequent Poster
 
Join Date: Mar 2002
Location: England
Posts: 734
Default Re:TDS + Software Firewall + << ?? A-V here >>

With tds I think Nod32 is perfect,I run it and in all my years of security applications testing Its the most 'system' friendly.
__________________
A proud member of Wilders since March 2002
  #11  
Old September 12th, 2002, 09:35 PM
Hummer Hummer is offline
Infrequent Poster
 
Join Date: Sep 2002
Posts: 18
Default Re:TDS + Software Firewall + << ?? A-V here >>


excellent responses, thanks all.

One thing I forgot to ask. Does NOD32 support LAN drive scans? Tried looking on nod32's site, no luck.

-Hummer
  #12  
Old September 13th, 2002, 04:33 AM
Jooske's Avatar
Jooske Jooske is offline
Incredibly Massive Poster
 
Join Date: Feb 2002
Location: Netherlands, EU near the sea
Posts: 9,713
Default Re:TDS + Software Firewall + << ?? A-V here >>

For TDS: i see it on a win98se system with 8,4 MB load, (correct me if i'm wrong, but i read on NT/2000/XP it would use less) but as long as it's in rest not actively scanning, you won't notice too much, till you do a full scan for instance. With that it uses several threads at a time to speed up the scanning process and more is used of course. But you will not be full time scanning; the exec protection hook is checking really quick the executables and uses little.
You might like to use at times such programs as taskinfo2000 or the kind to see what are the space consuming programs.

With the scanoptions all checked in the TDS scan you get all possible finds, and if you uncheck the zip/rar and compressed you would only get possible live trojans.
With TDS you can scan the whole network logical drives, but the memory parts only from the system where it's installed.
__________________
Jooske
"o_o"
  #13  
Old September 13th, 2002, 05:23 AM
bubs's Avatar
bubs bubs is offline
Regular Poster
 
Join Date: Apr 2002
Location: Suffolk, England
Posts: 106
Default Re:TDS + Software Firewall + << ?? A-V here >>

One thing I forgot to ask. Does NOD32 support LAN drive scans? Tried looking on nod32's site, no luck.

-Hummer


Yes. Click on the NOD32 green cross, and in 'targets', you,ll see radio buttons for 'local' and 'network'. Mapped drives show on the list, but are not 'targetted' by default.
  #14  
Old September 13th, 2002, 05:29 AM
Paul Wilders's Avatar
Paul Wilders Paul Wilders is offline
Administrator
 
Join Date: Jul 2001
Location: The Netherlands
Posts: 12,461
Default Re:TDS + Software Firewall + << ?? A-V here >>

Quite so, bubs
Attached Images
 
__________________
01110010 01100101 01100111 01100001 01110010 01100100 01110011 00100000 01110000 01100001 01110101 01101100
 

Wilders Security Forums > Security Products > other anti-virus software « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 03:33 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums