- Mar 11, 2017
- 132
Please provide comments and solutions that are helpful to the author of this topic.
@Emmanuellws Do you believe that SRPs would not prevent fileless attacks?
Very interesting conversation. Some of it over my head, most of it I understood. IF Panda is that good, and this business model were affordable, then many home users would buy it. I assume that is not true.
The fact is I don't think any of the manufacturers want to make "A PERFECT" solution, if they did, it would put EVERYONE out of business and I mean everyone.
Combine all the features discussed here into one product, and what happens to Comodo, Avira, Kaspersky, Avast, ETC
So it's in everyones benefit to NOT produce such a product, and IF YOU decided to try it, you might get bought out or get your legs broken.
Well at least I didn''t go to other product or brand forum and bash about their products there. It the user's choice. They come here to bash because they thought Panda is bad. Well, I just shared the product's feature that I think it is good since I already tested Sophos Intercept X, Voodooshield...and I am being Neutral to all this similar product...I didnt bash...I even advise their users to check for MD5 poisoning status. So why bothered with my post? And only in this threads I say no to antivirus which heavily rely on HIPS and behaviour protection only and signature based protection since I need something that can help my not-so-IT-savvy users to decide what's good and what's bad.
Wow...I am going to reach 100 post soon...
It is why i don't use worthless programs like all those obsolete AVs.thats what I meant too..do i have to repeat that thing again? If you all know since ages...that if a program just solely doing app whitelisting, it won't be able to protect against filesless attack. thanks for agreeing on me.
sorry about the images though. Still learning how to use the forum's feature
I'll try to find out about the spoiler pictures thingy
Windows Built-in SRP is complicated or time consuming for some to maintain i admit; it is why i use Appguard (im sure everyone knew i wil mention it ) , do the same but does it simpler and better.
Windows Built-in SRP is complicated or time consuming for some to maintain i admit; it is why i use Appguard (im sure everyone knew i will mention it ) , do the same but does it simpler and better.
AppGuard doesn't work like VoodooShield. VoodooShield blocks or asks, AppGuard just blocks.
AppGuard basically divides the system into two. One is the system-space. The other is the user-space. System-space is where all legit applications reside. All of them are allowed to run without restrictions (except when they're put into Guarded Apps list). User-Space is where programs, legitimate or not, aren't allowed to run, (except when they're put into Guarded Apps list or have valid digital signatures).
Guarded applications are allowed to run, but are not allowed to do certain things, like reading and writing to protected areas of the system and registry.
It has many reviews already here or in the YouTube.
You manage a park of 900+ machines and you use AVs? What OS do you use ? Home versions?
Personally, no way as an system admin, i would rely on any AVs for securing my network.
In big corporate park, you must use SRP, group policies, virtualization/rollback systems to lock workstations. AVs are obsolete and now unreliable for corporations. 0-days evolve to quickly for any AVs to catch up , and BB or whatever features an AV may have always requires user input , skills and time, and system admins don't have the luxury of time.
Companies' workstations are supposed to be static system (OS + only the resquired soft for the employees to work), then you lock it from modifications (exception may be required for some departments).
Though AppGuard isn't generally considered an application whitelisting software, it can do what application whitelisting does. You may call the system-space as a "whitelist".Well, Application Whitelisting is the way to go to fight against zero-day ransomware. With a deadline on solving the ransomware and zeroday malware given to me by the management, I am too consumed on those limited number of products I mentioned earlier until I ended up with Panda Adaptive Defense 360. Finally Panda AD360 is in place...and now I can sleep soundly without any nightmare. Thanks for sharing brief info on Appguard.
Exact, Appguard for corporation are tailormade.Anyway, I'm talking from the perspective of the home user version of AppGuard. I think its enterprise/business version may have a different configuration. After all, AppGuard is primarily an enterprise/business product, just made available to home users.
Indeed, better use what you know. However, you can still research and practice on better methods/softwares for the future.Anyway, if you're satisfied with Panda, then good for you. In the end, we must stay with what makes us confident and secure.
And it is a big scam with hundreds of PFs. this crap was mentioned here and not even worth continuing the discussion about it.But what if there is an anti-virus solution that includes an automated whitelist? And what if this security solution was available for home users and business use? Well there is. PC Matic is available for home use, and implements an automated global whitelist, while PC Matic Pro is available for enterprise and government use.
Appguard works like this : User Review - AppGuard (note that the enterprise version doesn't have the Guarded Apps feature, pointless on corporate environment)I bumped into Appguard before as I was searching for antimalware + application whitelisting solution. Does it work like Voodooshield?
Indeed, the price may be an obstacle to you, i can't tell you, you have to contact the sales department, also and i'm not aware of a local Malaysian reseller for it.How is the price per-unit in USD? Well you know in Malaysia, the exchange rate here is quite f****ed up. So, I have to get the best and at the same time affordable...and with local support and reseller. I can't really get everything that I want...perhaps Appguard is also hard for us to get a local support and reseller.
Implementing stuff has costs and takes time and skill.Very interesting conversation. Some of it over my head, most of it I understood. IF Panda is that good, and this business model were affordable, then many home users would buy it. I assume that is not true.
The fact is I don't think any of the manufacturers want to make "A PERFECT" solution, if they did, it would put EVERYONE out of business and I mean everyone.
Combine all the features discussed here into one product, and what happens to Comodo, Avira, Kaspersky, Avast, ETC
So it's in everyones benefit to NOT produce such a product, and IF YOU decided to try it, you might get bought out or get your legs broken.
Very interesting conversation. Some of it over my head, most of it I understood. IF Panda is that good, and this business model were affordable, then many home users would buy it. I assume that is not true.
You have a good point, the most interest products for customers are current/main flagship programs; considering where Adaptive Defense like others are more on the business scale and the terminologies will understand only by specific groups on how it performs.