Fortinet Security Suite

Discussion in 'other anti-malware software' started by dw426, Sep 1, 2009.

Thread Status:
Not open for further replies.
  1. Brocke

    Brocke Registered Member

    Joined:
    Mar 16, 2008
    Posts:
    2,306
    Location:
    USA,IA
    thats is because of their crazy heuristics, turn it off and no more FP, you also can right click them in the scan window and submit as false postive or virus.

    they seem to update/fix issues fast
     
  2. Brocke

    Brocke Registered Member

    Joined:
    Mar 16, 2008
    Posts:
    2,306
    Location:
    USA,IA
    jmonge,

    have you tested this yet? I cant Waite :D
     
  3. Morro

    Morro Registered Member

    Joined:
    Jul 11, 2009
    Posts:
    355
    Location:
    Netherlands
    Question, the WebGuard with which browsers does it work?
     
  4. cet

    cet Registered Member

    Joined:
    Sep 3, 2006
    Posts:
    876
    Location:
    Turkey/İzmir
    Web guard is working with IE and Opera.I have not tested firefox.
     
  5. Morro

    Morro Registered Member

    Joined:
    Jul 11, 2009
    Posts:
    355
    Location:
    Netherlands
    Well considering i use Opera as my main browser, it is good to see that for ones Opera is also supported. :D

    I am getting more and more interested in trying this software. :)
     
  6. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    i am hitting this software with alot of stones:) as we speak
     
  7. Brocke

    Brocke Registered Member

    Joined:
    Mar 16, 2008
    Posts:
    2,306
    Location:
    USA,IA

    Sweet! i cant wait to hear what the out come it :D
     
  8. Morro

    Morro Registered Member

    Joined:
    Jul 11, 2009
    Posts:
    355
    Location:
    Netherlands
    Well i installed FortiClient today, and now i can tell you that it also works with Firefox.
     
  9. Keyboard_Commando

    Keyboard_Commando Registered Member

    Joined:
    Mar 6, 2009
    Posts:
    690
    Matousec tests: http://www.matousec.com/projects/proactive-security-challenge/results.php


    forticlient1.JPG

    Failed Tooleaky :eek: Doesn't look like Forticlient's firewall offers anything in the way of decent protection.

    # Level 2 – AWFT1, DNStest, Ghost, Jumper, Kill3, Kill3b, Kill6, Wallbreaker3, Wallbreaker4 - Failed
    # Level 3 – AWFT3, AWFT4, DNStester, Kernel1, Kill3f, Kill4, Kill7, SSS2, Suspend1, Thermite - Failed
    # Level 4 – CopyCat, CPIL, CPILSuite1, Kernel1b, Keylog1, Kill3e, Kill8, Kill9, SSS, Suspend2 - Failed
    # Level 5 – Breakout1, CPILSuite2, Crash1, Crash2, Crash3, Crash4, Kernel2, Kernel3, Keylog2, Kill3c, Kill3d, VBStest - Failed
    # Level 6 – CPILSuite3, Crash5, Crash6, DDEtest, ECHOtest2, FireHole, Flank, Kernel4, Keylog3, Keylog4, Kill10, Kill11, Runner - Failed
    # Level 7 – BITStest, FireHole2, Keylog5, Keylog6, Kill12, OSfwbypass, Runner2, Schedtest, SSS3 - Failed
    # Level 8 – Kernel4b, Kernel5, Keylog7, Kill5, NewClass, Schedtest2, SockSnif, SSS4 - Failed
    # Level 9 – Crash7, Driver Verifier - Failed
    # Level 10 – BSODhook, ShadowHook - Failed
     
    Last edited: Sep 10, 2009
  10. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    they tested the firewall part of the suit,i think they shut the antivirus/antispyware off:D did some one else tested the antimalware part of the suite?thanks,i did a personal test and out of 10 it passed 8 missing only two,but i tested the complete security suite:D
     
  11. Morro

    Morro Registered Member

    Joined:
    Jul 11, 2009
    Posts:
    355
    Location:
    Netherlands
    Jmonge i hope that with passed 8 you mean it stopped 8 out of 10 threats. :)
     
  12. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    yes indeed;)
    they were 10 new malwares
     
  13. Morro

    Morro Registered Member

    Joined:
    Jul 11, 2009
    Posts:
    355
    Location:
    Netherlands
    Phew. :D
     
  14. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    lol:D
     
  15. blacknight

    blacknight Registered Member

    Joined:
    Sep 25, 2007
    Posts:
    3,351
    Location:
    Europe, UE citizen
    Someone knows what av engine it uses ?
     
  16. Sputnik

    Sputnik Registered Member

    Joined:
    Feb 24, 2005
    Posts:
    1,198
    Location:
    Москва
    @blacknight
    It's their own engine.
     
  17. blacknight

    blacknight Registered Member

    Joined:
    Sep 25, 2007
    Posts:
    3,351
    Location:
    Europe, UE citizen
    Thanks Sputnik, but someone talked to me also about Sophos engine....?
     
  18. Morro

    Morro Registered Member

    Joined:
    Jul 11, 2009
    Posts:
    355
    Location:
    Netherlands
    I think you mean the post from Saraceno, post 19 on the first page. He mentioned this:

     
  19. the Tester

    the Tester Registered Member

    Joined:
    Jul 28, 2002
    Posts:
    2,854
    Location:
    The Gateway to the Blue Hills,WI.
    +1
    I decided not to install the entire suite either.
    You can do that with the installer.
    An example- I didn't install the firewall as I already have one that I like.
     
  20. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
    I decided to try it, because it has some user share in the corporate world. Installed the AV only.

    Put it on the PC of my wife (DefenseWall is protecting it), only installed the AV + AS. Nice feauture to check auto start entries of the registry. Application part can only be managed in a corporate environment.

    The free version only has got the 'in the wild'blacklist data base, not old 'zoo' malware. I have set real time to check at writes only, ignoring the C:\ root, Windows and Program Files (DW takes care of that, just want to prevent spreading virusses through mail). It runs awfully light, much lighter than Avira, AVG, Rising or Avat in simular setup.

    So far seems to fit my purpose (just check downloaded files and attachements of e-mail) for current virusses.

    Regards Kees
     
  21. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    webprotection is nice feature too:)
     
  22. the Tester

    the Tester Registered Member

    Joined:
    Jul 28, 2002
    Posts:
    2,854
    Location:
    The Gateway to the Blue Hills,WI.
    It is a nice program.
    As already mentioned previously, the annoyance with it is the labeling of so many security programs as "suspicious".
    The scans are faster than expected and Fortinet is configurable to some extent with heuristics etc...
    I'll keep it for a while.
     
  23. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
    Well, it really is a nice program

    I have IE8 and Iron set up to download to T:\Downloads, also the temp files directory of Windows and IE are moved to T:\

    I have DefenseWall protecting everything (and made sure with resource protection that IE and Iron were not allowed to read/write from D:\ which is my data partition).

    Because Fortinet has different settings for scanner, real time and e-mail, I can make fortinet to
    - check all start up registry changes (which is a nice bonus)
    - allow scanner to access all
    - have e-mail only look at incoming traffic of outlook express and outlook
    - set the real time protection to exclude D:\, C:\Windows and C:\Program Files (so effectively only checking T)
    - set the real time to look only at data writes only

    I don't need any other protection than DefenseWall V3 (still in beta), because it simply covers everything. Only I do not want to spread virusses around via mail. So fortiner checks writes of web browsers in T:\ (temporrary partition) and incoming e-mail.

    I am really pleased with it, because it is so light with minimal CPU load and minimal I/O. Only down side of the free version is that it does not check on zoo virussed (old ones) only the current in the wild (active ones). Plus side of this is that blacklist data base is small (for updates and check at writes), so eats very little CPU time.

    Cheers
     
  24. Keyboard_Commando

    Keyboard_Commando Registered Member

    Joined:
    Mar 6, 2009
    Posts:
    690
    Hi Kees. Just wondered if you have tested the reg guard? if it has more than HKLM/Run.

    Cheers & Beers
     
  25. Brocke

    Brocke Registered Member

    Joined:
    Mar 16, 2008
    Posts:
    2,306
    Location:
    USA,IA

    Im not sure if its more than that but i know it does work great. it alarts with a yes or no popup.

    I like it so far.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.