- Individual Applications
Protect
Filter
Perform
Connect
Add-Ons
- Software Packages
- Complete Appliances
|
|
#21 (permalink) | |
|
Master Untangler
Join Date: Aug 2008
Posts: 178
![]() |
Quote:
I guess there is nothing that will stop this monster so far. Last edited by gpeters; 04-23-2011 at 04:16 AM.. Reason: spelling |
|
|
|
|
|
#22 (permalink) |
![]() ![]() Join Date: Apr 2008
Location: Phoenix, AZ
URLs submitted: 8
Posts: 15,464
![]() |
What are you using for desktop AV?
Untangle Premium at the edge, and NOD32 on the desktop, and I don't see these infections. The only time a box gets sick is if the thing goes home and doesn't have UT's filters.
__________________
Rob Sandling, BS:SWE, MCP Intouch Technology Phone: 480-272-9889 rob@intouchtechllc.com UntangleAppliances.com Phone: 866-794-8879 |
|
|
|
|
#25 (permalink) |
|
Master Untangler
Join Date: Aug 2008
URLs submitted: 10
Posts: 316
![]() |
Trend is only a mid pack AV in detection.
Here is one month out of a four month real world "whole dynamic test" to see how an AV uses ALL it's Suite's resources to stop a compromise or attack. This is one of the best and real world tests out there. http://chart.av-comparatives.org/chart2.php . Last edited by blueshoes; 04-24-2011 at 06:30 AM.. |
|
|
|
|
#26 (permalink) |
![]() ![]() Join Date: Apr 2008
Location: Phoenix, AZ
URLs submitted: 8
Posts: 15,464
![]() |
To be fair, NOD won't "stop" this infection by itself and it has a high rating according to that site. It does however contain things just enough that adding UT's defenses has built a wall strong enough that my ability to remove viruses is actually diminished thanks to a lack of demand for the skill reducing my need to practice it. Which I is the point I might add, that said, these tests are run using the default settings for the AV in most cases. I didn't dig in to see if that test was tweaked to enable heuristics and other advanced features some AV providers leave off.
I'd look into your central console and see if there are any settings you can use to harden the AV modules you have.
__________________
Rob Sandling, BS:SWE, MCP Intouch Technology Phone: 480-272-9889 rob@intouchtechllc.com UntangleAppliances.com Phone: 866-794-8879 |
|
|
|
|
#27 (permalink) | |
|
Untanglit
Join Date: Sep 2008
Posts: 19
![]() |
Quote:
I run Untangle Lite + Kaspersky at 3 sites. I am seeing a number of scareware malware still get through. Are you using the paid Web Filter and if so is that blocking most of these scareware trojans? |
|
|
|
|
|
#28 (permalink) | |
|
Master Untangler
Join Date: Apr 2009
Location: Holly Springs, NC
URLs submitted: 154
Posts: 218
![]() |
Quote:
Unfettered internet access cannot be defended and whitelisting works every time it’s tried. The key to information security is a dynamic balance between unlimited permissions and strict denial, and if this were easy anyone could do it... I would use all the tools I can afford and spend the rest of my time attempting to educate users. Last edited by f1assistance; 07-21-2011 at 06:23 AM.. |
|
|
|
|
|
#29 (permalink) |
![]() ![]() Join Date: Apr 2008
Location: Phoenix, AZ
URLs submitted: 8
Posts: 15,464
![]() |
I haven't seen this particular bug in a while, it's been a couple of months. So either my users haven't found a site with it, or Untangle Premium + NOD32 are dealing with it now.
Rogue Anti-Malware is still one of the more common issues on random new client boxes that come in.
__________________
Rob Sandling, BS:SWE, MCP Intouch Technology Phone: 480-272-9889 rob@intouchtechllc.com UntangleAppliances.com Phone: 866-794-8879 |
|
|
![]() |
| Thread Tools | |
|
|