What free AV's have ransomeware protection?

Discussion in 'other anti-virus software' started by rhuds13, Jun 5, 2023.

  1. rhuds13

    rhuds13 Registered Member

    Joined:
    Jul 11, 2007
    Posts:
    109
    Would like to find good av with ransomeware protection that is free.
     
  2. digmor crusher

    digmor crusher Registered Member

    Joined:
    Jul 6, 2012
    Posts:
    1,138
    Location:
    Canada
    Technically all AV's should block ransomware, after all their sole purpose is to block malware which ransomware is. Some have specific modules for this which may, or may not, be marketing fluff. Top free AV's would be Kaspersky, Bitdefender, Microsoft Defender and Avast, just pick one and maybe supplement it with a secondary program such as Voodoo Shield or OSArmour, if you chose to run Defender in W10 or 11 you can use Configure Defender and/or Hard Configurator to jack up the protection a notch.
     
  3. IvoShoen

    IvoShoen Registered Member

    Joined:
    Jan 2, 2008
    Posts:
    842
    Avast One Free
     
  4. EASTER

    EASTER Registered Member

    Joined:
    Jul 28, 2007
    Posts:
    11,096
    Location:
    U.S.A. (South)
    Kaspersky-Microsoft Defender
     
  5. Azure Phoenix

    Azure Phoenix Registered Member

    Joined:
    Nov 22, 2014
    Posts:
    1,550
  6. roger_m

    roger_m Registered Member

    Joined:
    Jan 25, 2009
    Posts:
    8,580
    Just bear in no antivirus which has ransomware protection, or even standalone anti-ransomware product will protect you against all ransomware. The best way to avoid ransomware is to not be click happy and be very careful about what files you open. The vast majority of infections happen when you manually open an infected file.
     
  7. Brummelchen

    Brummelchen Registered Member

    Joined:
    Jan 3, 2009
    Posts:
    5,642
    i have in mind that MS Defender is only able to fully detect ransomware when running an offline scan? is that still true? so if, why so? and why do offer other vendors antiransomeware without such behavior?
    From my technical knowledge an offline scan is the only way to detect it before starting the OS. this means that eg Eset and others need to scan before the system starts (scan on boot or similar feature).
     
  8. rhuds13

    rhuds13 Registered Member

    Joined:
    Jul 11, 2007
    Posts:
    109
    Giving Avast One Essential a try. Maybe be ok. I just noticed that on this system can't see difference between what I have read and not on this site. Wonder why? On other system fine.
     
    Last edited: Jun 6, 2023
  9. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,192
    Location:
    Ontario, Canada
    CyberLock! https://www.cyberlock.global/
     
  10. moredhelfinland

    moredhelfinland Registered Member

    Joined:
    Mar 31, 2009
    Posts:
    331
    Location:
    Finland
    How about then, when you install a program, which seems to be legitimate one. After the installing procedure, it drops and run a .cmd .bat file, that uses legitimate 7zip or rar command line function to rapidly encrypt you %homepath% ?
    That is why im not using standard environment variables, which mean, i do not save anything to "dowloads, music, documents etc" folders. I made my own folders for music, documents etc.
     
  11. digmor crusher

    digmor crusher Registered Member

    Joined:
    Jul 6, 2012
    Posts:
    1,138
    Location:
    Canada
  12. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,176
    Location:
    The Netherlands
    You can also use AppCheck Free, this tool uses behavioral monitoring, while many AV's rely mostly on cloud scanning. I believe Bitdefender Free also has behavior monitor, but I'm not sure if it's specialized to monitor for suspicious file activity like AppCheck.

    https://www.tomsguide.com/reviews/bitdefender-antivirus-free-for-windows
    https://www.softpedia.com/get/PORTA...---Antispyware/AppCheck-Anti-Ransomware.shtml
     
  13. roger_m

    roger_m Registered Member

    Joined:
    Jan 25, 2009
    Posts:
    8,580
    It's rare these days for an antivirus to not have behaviour monitoring.
     
  14. loungehake

    loungehake Registered Member

    Joined:
    Mar 9, 2015
    Posts:
    196
    Location:
    Wigan
    I use the Malwarebytes AntiRansomware beta which is free. This works with Avast, BitDefender and Panda Dome and probably many others.
     
  15. xxJackxx

    xxJackxx Registered Member

    Joined:
    Oct 23, 2008
    Posts:
    8,472
    Location:
    USA
    It appears that you can still get the free Kaspersky Anti-Ransomware Tool. You could pair that with any product.
     
  16. monkeylove

    monkeylove Registered Member

    Joined:
    Dec 10, 2013
    Posts:
    217
  17. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,176
    Location:
    The Netherlands
    Yes, but they don't all work the same. I believe that AppCheck and HMPA constantly monitor the file system for ransomware like activity, I don't believe that all AV's do this. What most of them do is they send files to the cloud to get a verdict, but this is not the same as monitoring the file system for suspicious I/O activity.
     
  18. roger_m

    roger_m Registered Member

    Joined:
    Jan 25, 2009
    Posts:
    8,580
    They do both.
     
  19. monkeylove

    monkeylove Registered Member

    Joined:
    Dec 10, 2013
    Posts:
    217
  20. Pat MacKnife

    Pat MacKnife Registered Member

    Joined:
    Mar 31, 2014
    Posts:
    615
    Location:
    Belgium
    It has ransomware protection, but not the rollback function like the paid one.
    Many tests on youtube shows it have very good protection against ransomware...
     
  21. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,176
    Location:
    The Netherlands
    AFAIK, Windows Defender doesn't monitor the file system for ransomware behavior, at least not in the same way as HMPA and AppCheck do. That's why I always recommend these tools, because they function as a second line of defense.

    OK, so it can block ransomware from running, but if this ransomware somehow managed to still encrypt some files, then you are toast?
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.