Free Newsletters
Technology & Business Daily

InfoWorld
Log-in | Register
Page 3 of 8  «  Previous Page    Next Page » 

Countering spyware

 

Eset NOD32 Antivirus System may not be in anyone’s top five list of products to consider, but given a more comprehensive administration UI, it could become a major player in the anti-malicious program market. I like the way Eset integrates the various monitors, and the Remote Administration console nearly makes up for the other rough edges.

Free IT resource

Virtualization Insights from Top Experts - Learn how virtualization gets real!

Sponsored by Dell

Free IT resource

TechNet: More ways to know it, share it, and keep it running.

Sponsored by Microsoft

Return to special report

DOWNLOAD PDF

Click here to download InfoWorld's special report Anti-spyware


F-Secure Anti-Virus Client Security 6
F-Secure Anti-Virus Client Security has one of the best, most comprehensive security bundles available, although it suffers a bit from a disjointed administration user interface. One of three anti-spyware solutions in this review that includes anti-virus capabilities in the same package, Anti-Virus Client Security’s real-time protection stopped all attempts to infect my test clients. Reporting is browser-based and provides ample predefined templates.  Because of its awesome real-time protection and overall performance, Anti-Virus Client Security 6 received the highest score of the ten products reviewed.

Anti-Virus Client Security is a complete anti-virus, anti-spyware, intrusion prevention and detection, and personal firewall system bundled in one tight package. There are a lot of moving parts that make Anti-Virus Client Security work, and they all come together in the F-Secure Policy Manager Console. Installation of the console on my Windows 2003 Server took little time to complete, and the auto-discovery of my client PCs was quick. I pushed out an installation package to a Windows XP Professional PC without a hitch.

Creating a policy for my domain took slightly longer than other products due to odd organization in the Policy Manager. I was constantly jumping back and forth between tabs, trying to make sure I knew what I was selecting. Deploying a policy required clicking on yet another tab and then clicking the Update icon. My issues with the UI are purely personal; all of the options and choices are clearly marked with helpful descriptions. After an hour of working with it, I was more comfortable with the Policy Manager UI, but never at ease.

Because of all of the included features, there are a lot of choices to make when creating a policy. It is with the wealth of choices that Client Security overcomes its UI. One unique feature is the different security levels available in Client Security. Administrators can create one security policy for “office” users, and another for “everywhere else,” each with its own specific security settings. For instance, office users may have the personal firewall feature turned off, whereas a mobile user’s policy may enable the personal firewall when connected at a Wi-Fi hotspot.

With Client Security active and with all features enabled, there were 18 processes listed in Task Manager, consuming at a minimum 55MB of RAM. Unlike CounterSpy Enterprise and Tenebril SpyCatcher, there is no way to throttle up or down Client Security’s CPU usage. Whenever I launched a scan of my client PC, Client Security’s processes took up nearly 80 percent of processor time, greatly reducing system response.

The reporting engine was one of the stronger implementations in the group, coming in just behind McAfee’s system. F-Secure’s Web-enabled reporter worked easily and allowed me to slice and dice the collected data quickly to monitor activity on my network.

Overall, I found the combination of anti-virus and anti-spyware effective at preventing infection and at removing traces if a PC was already infected. The real-time scanner was adept at stripping both virus and malware out of the HTTP stream. With the real-time scanner enabled, I was never able to sneak anything past it.

LANDesk Security Suite 8.6
Long known as an enterprise management company, LANDesk aims to become known as an enterprise security company. Easily one of the most complex and scalable products in this roundup, LANDesk Security Suite 8.6 includes end point security, patch management, and security compliance with very good malware and spyware protection. Real-time protection was above average, blocking most attempts, and reporting was excellent.

Installation on my Windows 2000 Server was straightforward, with the tough part to come. Unlike Sunbelt CounterSpy, getting agents deployed and policy configured took quite some time and a bit of trial and error. By default, Security Suite doesn’t download all of the necessary spyware and malware definitions. I had to create an update task and choose what I wanted to retrieve. Next, I had to define my default Windows configuration, then assign PCs to that configuration. Finally I had to create a task to push this configuration information out to my clients.

I understand why LANDesk is designed the way it is: It’s hugely scalable. By making me define all of those items, it provides a multitude of configuration choices, with different policies and definitions for different workgroups or domains. My biggest knock against the UI is that while the tasks did indicate when a job was active or pending, some jobs took a while to complete, and I often wondered whether things were really happening. A progress indicator might be nice. A pop-up monitor provides some feedback, but it, too, leaves something to be desired.


Continued
»  Previous Page | 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | Next Page » 



Computer Associates eTrust PestPatrol Anti-Spyware Corporate Edition r5

Computer Associates, ca.com

Good  7.6
criteria score weight
Effectiveness 8 50%
Management 7 20%
Reporting 6 10%
Setup 9 10%
Value 7 10%

Cost:
For 100 users, $39.95 per user

Platforms:
Compatible with Windows 98 and later

Bottom Line:
Computer Associate’s eTrust PestPatrol provides very good detection and removal of installed spyware. Its administrative UI is easy to install, maintain, and use, but its reporting is very limited. Real-time detection and prevention of initial spyware installation is very weak: It allows spyware to install but prevents the processes from running.

About our Reviews and Scoring Methodology



Eset NOD32 2.5 Antivirus System

Eset, eset.com

Good  7.2
criteria score weight
Effectiveness 7 50%
Management 7 20%
Reporting 9 10%
Setup 7 10%
Value 7 10%

Cost:
$2,060 for 100 enterprise users

Platforms:
Windows 95 and later, Linux OS Linux (Kernel 2.2.x, 2.4.x and 2.6.x, glibc 2.2.5 or higher); Novell NetWare 4.x and later

Bottom Line:
NOD32 Antivirus System has the potential to be a major anti-spyware player with a few enhancements, such as smoother, more streamlined installation. Policies are flexible but building them is a chore. Reporting is very strong, allowing for many different views into workstation histories. Detection and prevention is merely average: A small group of spyware slipped through.

About our Reviews and Scoring Methodology



F-Secure Anti-Virus Client Security 6

F-Secure, f-secure.com

Excellent  9.3
criteria score weight
Effectiveness 10 50%
Management 8 20%
Reporting 9 10%
Setup 9 10%
Value 9 10%

Cost:
For 100 users, $29.75 per user

Platforms:
Server: Windows 2000/XP/2003; client: Windows 2000/XP, F-Secure Policy Manager Console

Bottom Line:
F-Secure has rolled anti-virus, anti-spyware, and personal firewall protection into a single package. It has the best real-time protection of any products in this roundup, stopping all attempts. On previously infected systems, detection and removal were also first rate. Reporting is excellent, but it suffers from some organizational issues in the administrative UI.

About our Reviews and Scoring Methodology



LANDesk Security Suite 8.6

LANDesk, landesk.com

Excellent  8.7
criteria score weight
Effectiveness 9 50%
Management 8 20%
Reporting 10 10%
Setup 8 10%
Value 8 10%

Cost:
For 100 users, $5,900 for the first year, $2,900 each year after

Platforms:
Server: Windows 2000/2003 Server; client: Windows 95 and later, Mac OS 9.22 and later, HP-UX, IBM AIX 5.1, NetWare 6.0, 6.5, Red Hat Linux 7.3, 8.0, 9.0, Solaris 8, Suse Linux 9.

Bottom Line:
LANDesk Security Suite scales to any size and complements the already strong LANDesk product family. It has very good detection and remediation, and its real-time protection is above average, although an IE toolbar did slip through. Reporting is top notch but administrative overhead is considerable.

About our Reviews and Scoring Methodology



McAfee VirusScan Enterprise 8.0 with Anti-Spyware Enterprise Module 8.0

McAfee, mcafee.com

Very Good  8.2
criteria score weight
Effectiveness 8 50%
Management 8 20%
Reporting 10 10%
Setup 8 10%
Value 8 10%

Cost:
For 100 users, $16 per user with 1-year support

Platforms:
Server: Windows NT 4 Server, Windows 2000/2003 Server; client: Windows NT 4, Windows 2000/2003/XP

Bottom Line:
The addition of Anti-Spyware Enterprise Module to VirusScan Enterprise provides a very scalable platform for protecting your network from spyware and viruses. Reporting capabilities are excellent, but real-time protection is only average. Administration is more difficult than that of most of the other products.

About our Reviews and Scoring Methodology



Sunbelt CounterSpy Enterprise 1.5

Sunbelt Software, sunbelt-software.com

Very Good  8.5
criteria score weight
Effectiveness 8 50%
Management 9 20%
Reporting 9 10%
Setup 9 10%
Value 9 10%

Cost:
For 100 users, $17.95 per user

Platforms:
Server: Windows 2000 and later; client: NT4 SP6a, Windows 98SE and later

Bottom Line:
CounterSpy Enterprise was one of the easiest products to install and maintain. Its real-time protection allows spyware to install before terminating it, but its on-demand detection and remediation is very good. Reporting is good, but not as strong as that of some others in this roundup.

About our Reviews and Scoring Methodology



SurfControl Enterprise Protection Suite - Enterprise Threat Shield

SurfControl, surfcontrol.com

Very Good  8.3
criteria score weight
Effectiveness 8 50%
Management 9 20%
Reporting 8 10%
Setup 9 10%
Value 8 10%

Cost:
For 100 users, $1,530 for a perpetual, one-time purchase. Annual subscription to the Threat Shield databases, $1,874

Platforms:
Server: Windows Server 2000/2003; client: Windows 98/ME and later

Bottom Line:
SurfControl Enterprise Threat Shield is straightforward to install, and administration isn’t overly complex. Real-time protection proved better than average. It relies, however, on being connected to a management server, so disconnected users lose some protection. It has a very small memory footprint, even during an on-demand scan. Its reporting engine is very capable.

About our Reviews and Scoring Methodology



Tenebril SpyCatcher 4.0 Beta

Tenebril, tenebril.com

Beta  

Cost:
For 100 users, $26.40 per user.

Platforms:
Server: Windows 2000/XP/20003; client: Windows 2000/XP/2003

Bottom Line:
SpyCatcher is an easy-to-deploy-and-administer anti-spyware solution with great detection and remediation. Real-time protection doesn’t block spyware installations but does stop any process from launching. Reporting is good, but it lacks customization.

About our Reviews and Scoring Methodology



Trend Micro Anti-Spyware for Small and Medium Business 3.0

Trend Micro, trendmicro.com

Very Good  8.1
criteria score weight
Effectiveness 8 50%
Management 8 20%
Reporting 8 10%
Setup 9 10%
Value 8 10%

Cost:
For 100 users, $17.85 per user

Platforms:
Server: Windows XP/2000/20003; client: Windows XP/2000/2003

Bottom Line:
Anti-Spyware for Small and Medium Business likely will be one of the best anti-spyware products available, once it matures a little more. Real-time protection allows spyware to install before clamping down on it. On-demand scans and cleans work well and remove any traces of spyware from a PC. Reporting could be made a little stronger if there were customization options.

About our Reviews and Scoring Methodology



Webroot Spy Sweeper Enterprise 2.5

Webroot, webroot.com

Excellent  8.8
criteria score weight
Effectiveness 9 50%
Management 9 20%
Reporting 8 10%
Setup 9 10%
Value 8 10%

Cost:
For 100 clients, $25.97 per client

Platforms:
Server: Windows NT 4.0 and later; client: Windows 98SE and later

Bottom Line:
Spy Sweeper is one of the best all-around anti-spyware tools. It offers good real-time protection and excellent detection and remediation. Spy Sweeper is flexible enough that administrators can easily create policies based on specific needs. Reporting would be better if it allowed for customizable reports.

About our Reviews and Scoring Methodology



 


 
Keith Schultz is president of NetData Consulting Services.
 

TOP NEWS:


»  You don't know tech: The InfoWorld news quiz
Match your weekly tech news wits against our snarky quiz master

»  Antitrust review of Google-Yahoo deal no surprise
While serious antitrust problems are unlikely, both Google and Yahoo expected their partnership to be subjected to instense DOJ scrutiny

»  Top 10: Coreflood, more Microsoft-Yahoo, iPhone plans
This week's wrapup of the top tech news stories includes more Microsoft-Yahoo rumors, iPhone updates, Flash searches, Oracle's BEA roadmap, and more

»  Four 'important' Microsoft patches due Tuesday
Not rated "critical," fixes apply to "Elevation of Privileges" and "spoofing" bugs for Windows, Exchange, and SQL

»  Judge grants RIM a stay in Visto patent trial
Trial delayed from beginning next week while patent office studies validity of certain parts of e-mail provider Visto's patents as requested by RIM

»  Developers satisfied with Apple's enterprise work
Mac developers feel that Apple shouldn't try to make a broad attempt to win over enterprises and should instead focus on certain areas within the enterprise




Are you ready for event-driven business?
"Faster than a speeding bullet" doesn't just refer to superheroes anymore, it's the velocity your business needs to compete. In this webcast you will learn strategies you can implement today that will keep your systems ahead of the increased business velocity. Sponsor: Progress Sonic

»  Click here to view this Webcast
  The Silver Lining: Cloud Computing
This IT Strategy Guide digs deep into cloud computing helping put you ahead of the curve on this hot topic. It explores the differences between cloud computing, grid computing and utility computing and then helps you see where and how each applies to your business. Sponsored by Box.net

»  Click here to download now

- Special Advertising Partners -
WHITE PAPERS
 

» Technology White Papers Library

Technology White Papers by Topic

Technology White Papers E-mail Alert

Find out when the latest white paper is available:
 
 
INFOWORLD MARKETPLACE
 
» BUY A LINK NOW
 

FIND PRODUCTS AND COMPANIES
» COMPLETE PRODUCT GUIDE



TECHNOLOGY INDEX
• Applications
• Application Development
• Security
• Networking
• Wireless
• Platforms
• Hardware
• Data Management
• Storage
• Web Services
• Business
• Telecom
• Professional Services
• Standards

TECH WATCH 


What's the 411 on GOOG-411?
Just as Google has become synonymous with "performing a Web search," 411 is understood to mean "information" -- as in "what's the 411?" I was thus surprised to discover, from a billboard, no less, that the king of search is taking on the ...

Apple HTML source reveals 'iPhone Extreme'
"This one's a stretch..." reports AppleInsider. Um, yeah. Reporting on HTML code sightings of product names could be called a stretch, but iPhone Extreme has a ring to it. Now, that sounds like the product Apple should have released first, rather ...

COLUMNISTS

Unified under law
Ephraim Schwartz's Column and Blog (InfoWorld) - In the litigious world we live in, deploying a unified communications platform in your enterprise could...
» MORE COLUMNISTS

MORE INFOWORLD BLOGS


Open Sources 
Product Management
When I joined MySQL four years ago, there was quite a lot of debate about product management. We didn't actually have ...

Zero Day 
Botnet herders tending smaller flocks
New research backs up the theory that botnet operators are keeping their networks smaller in a continued effort to keep ...



• Advice Line
• Database Underground
• The Deep End
• Enterprise Mac
• Geeks in Paradise
• Grid Meter
• The Gripe Line
• InfoWorld Daily
• Inside IT
• IT Troubleshooter
• ITXtreme
• Open Sources
• ProdBlog
• Real World SOA
•