3

votes

Vote

os-utilities in OS & Utilities Channel,
Written by: Cedric Voisin on Apr 15 2010, 8:32am

Beyond your AV

Most of you already use an antivirus solution but do you really know what it does and what makes a solution better than another one?

I'll try to spot some very important points to make your choice.

Antivirus works in two different ways:

-Static Mode
 
     AV is active upon user request/action
 
-Dynamic Mode:

     AV is always active(resident software) and performs action without any user interaction.
 
Antivirus Technics:

  1. Shape analysis

    This solution relies on analyzing a file content out of an execution context.
    Unfortunately this is an unsolvable problem, and this is not a very accurate solution.
  2. Databases/Signatures

    The goal of this, is to find out a/some revelant bits coming from a well known virus.
    But this solution relies on a database and it's an utopy to think that every virii can be identify.
    On the other hand this solution does not allow polymorphic detection, and suppose that you keep your software up to date with the very last virus definition.
  3. Spectrum Analysis

    Beyond this cryptic name, Spectrum Analysis looks for running instructions and try to found out any non common instructions that may be due to virus

  4. Heuristics

    Heuristics is a math model applied to computer industry.
    The hidden goal of this is to detect potential harmful threat by assigning a score to it.
    This as well as spectrum analysis has a limited scope and can generate some false-positive.
  5. Integrity checks

    Or how to use a sandbox.
    When installing your antivirus it will assign a checksum to executables or files you trust.
    If a threat, malware or virus try to modify those trusted files, your software will automatically detect it because the checksum will be different.



 Most of current anti-virus use a mix of all those technics to have the better detection ratio they can.

 

 Hereunder a choice of pretty good antivirus software:
 
Avast -> http://www.avast.com
AVG -> http://www.grisoft.com
Kaspersky -> http://www.kaspersky.com
NOD32 -> http://www.nod32.com
     
 
Hope this article will help you to understand a bit more how your antivirus works.

Citizens Comments

Patrick Salomon says:

Avast is my Windows' favorite, just because it doesn't eat 20% (or more) of the computer ressources. I hate antivirus hunger :)

2

Votes

Vote
Apr 15 2010, 8:16am | Report

Benjamin VASSAL says:

and what do you think about Microsoft security essential? it doesn't take so much resource and it seems efficient.

1

Vote

Vote
Apr 15 2010, 2:32pm | Report

Tim Browning says:

MS Security Essentials has had a lot of good write-ups, amazingly! I shall give it a go when I next install a new machine.

1

Vote

Vote
Apr 16 2010, 8:10am | Report

Ritchie HEPVAR says:

Is Avast AV Free version enough security to install?

or should I better buy the pro version?

I could install Zone Alarm Free Firewall for the missing part of the Avast AV Free version.

Any other suggestion to get free internet security Software which does not have resources madness.

0

Votes

Vote
Apr 16 2010, 3:21pm | Report

Patrick Salomon says:

You should use a different hardware for firewall.

Most router have this functionality. Avast free is great for home usage.

0

Votes

Vote
Apr 16 2010, 3:24pm | Report

Post your comment

default Avatar

You might be interested in these related contributions

SoftCity Promotion

About the Author

Cedric Voisin

Paris, Ile-de-France, FR

115 contributions

I'm working in IT for almost 10 years now.

Very interested in Open Source technology, I'm still trying to improve my skills and discover new project i can work on.

To be short I'm an ITcoholic!

Popular contributions

software social commerce