Randux
Expert Member
Windows Defender and common sense for me
South Africa’s biggest forum. Discuss, discover, and connect with thousands of members.
I tried AVG again but it's a lot worse now. Very hard to set up with a lot of unnecessary and duplicate options. Then when you disable a feature or notification it keeps on telling you it's disabled which defeats the purpose. The final straw was when I had a program that would duplicate file dates but it would block it and there was no way to exit the scanner.Anti-virus software is almost as annoying as talking printing drivers.
Anti-virus should be invisible until there is a virus. But all lean and mean software packages migrate to a circus of themeing and intrusiveness.
I loved Avira.I paid for the proper version. But at some point they decided to bombard me with "warnings" that could only be solved by buying another of their products. So uninstalled it.
I installed BitDefender and it decided that it should install its own root certificate, and mask the certificates of websites INCLUDING ones with invalid certificates. I uninstalled ASAP because you don't want random root certificates in your machine.
I haven't looked at AVG in the while. Does it still make sounds? And do annoying pop-ups to indicate activity?
Truely anti-viruses are almost as bad as viruses themselves.
It's quite a major bit of security. If you must use Defender then fine and well but any anti-virus is only as good as its detection but the first priority should be to ensure it doesn't get on your system in the first place. Windows is the very antithesis of security. Instead of relying on things being hidden you should be acquainted with the system so you don't screw it up. The first thing I do is make my system as open and accessible as can be so I can see what's going on with it. People click on a virus not wondering why it's showing a jpg extension when it shouldn't show any extension. Extensions should always show. That way you can't accidentally click it thinking it's a picture.While that makes some sense, it sounds like a major PITA for a tiny bit of extra security. Defender really isn’t intrusive enough to warrant that much fuss. I just asked my dad about it and he says to ask you if you miss Vista’s UAC, whatever that is about, lol.
Also chatGPT tells me that antivirus catches only 28% of zero day exploits, which sounds better than zero?
It can’t be that major if I haven’t ever had a virus in all my years using a computer. Imagine having gone through that daily chore for years and years just to get the same result lol. I just use common sense and a non-intrusive antivirus.It's quite a major bit of security. If you must use Defender then fine and well but any anti-virus is only as good as its detection but the first priority should be to ensure it doesn't get on your system in the first place. Windows is the very antithesis of security. Instead of relying on things being hidden you should be acquainted with the system so you don't screw it up. The first thing I do is make my system as open and accessible as can be so I can see what's going on with it. People click on a virus not wondering why it's showing a jpg extension when it shouldn't show any extension. Extensions should always show. That way you can't accidentally click it thinking it's a picture.
That's the point of ESETs running joke. You don't have a virus because it can't detect it. POS softwareOur company use Eset.. haven't failed yet so all good
Isn’t sentinel one Enterprise software? Cant be downloaded only for one no?These are literally the top 5 out of 5 worst endpoint protection products.
Anything ESET is a paid for... The joke in Cybersecurity is "BOT32, because it installs the botnet for you".
My popular picks for South Africa would be.
Microsoft Defender, crowd strike, sentinel one, sophos (on their way down) and Trend Micro.
I'm not sure where you get that from. Eset usually stands up fairly well in all AV benchmarks that I've seen and we've been using it for years with no issues. It's also relatively well priced compared to other offerings.That's the point of ESETs running joke. You don't have a virus because it can't detect it. POS software
I'll just leave this here.No one like Avast?
I'll just leave this here.
![]()
Avast fined $16.5 million for ‘privacy’ software that actually sold users’ browsing data
Avast collected data on location, health concerns, and more.www.theverge.com
You can't trust anyone anymore. But yea not much you can do about it now and considering the fine I'm guessing they plugged that by now.Sheesh......
Guess I'm stuck with them for now, as I paid for a year's subscription, but on the plus side it was during a special and got it super cheap.
You mean managed AV? , that's been around for decades.AV is old school.
EDR is the future.
These days its the Mac that is constantly pestering you about permissions. We get about 3 calls a week with Mac users who can no longer screen share because their mac got an update.
No, endpoint detection and response.You mean managed AV? , that's been around for decades.
Application signatures and locked down permissions and good security patching is probably still the best way to run a mostly secure setup
What I actually meant by application signature, was the white listing of applications and blocking the rest.No, endpoint detection and response.
Software like Cloudstrike or SentinalOne uses behaviour analysis with AI. Monitors registry, files, network connections etc to detect threats/anomolies. No more signature based scanning of files which is always one step behind.
This is the way to go but almost impossible to implement in the corporate world unless everything is very tightly controlled. I don't know of a single place that has implemented a default block policy and only allow whitelisted applications.What I actually meant by application signature, was the white listing of applications and blocking the rest.
I know of a few that have, the problem is that the whitelisted applications get compromised without having the modify the application.This is the way to go but almost impossible to implement in the corporate world unless everything is very tightly controlled. I don't know of a single place that has implemented a default block policy and only allow whitelisted applications.