Essential Technology: A GCS Blog

A Blog About Business Technology Systems

About GCS

GCS Technologies provides technology services and solutions. You can read more about GCS at http://www.gcsaustin.com. GCS is available for project work covering the topics in this blog and other IT systems.

Fed Compliance

I know all of this stuff because I sell all of this stuff. I call it real-world experience, the FCC thinks it might be a conflict-of-interest.

Is Antivirus Software Good Enough or is it a Broken Model?

by Marquis Calmes 22. September 2009 02:32

Running antivirus has become standard practice on home computers and corporate desktops alike. It is required by a number of security certifications and most IT security policies.  Yet I’m willing to bet that almost every company has still seen an increase in the number of computers infected with some form of malware.  And cleaning up the havoc malware reeks is becoming more and more difficult. It would seem antivirus is letting us down when we need it most. This is backed up by recent research that shows that of 10,000 computers infected with a common Trojan virus, 55% were running fully updated, fully functional AV software.  

So, if you are running antivirus why doesn’t that protect your computer?  In my view the problem with antivirus is that it is far too reactive and not proactive.  To explain, let’s look at how antivirus works:

·         Antivirus companies scour the internet looking for new malware. The problem with this is that some poor soul is already infected at this point.

·         The antivirus company then has to build a signature of this particular malware. This takes time during which your computer is potentially vulnerable.

·         The signature is than packaged and pushed out to the antivirus client.  While this is a proactive action, any IT admin will tell you that keep AV signatures up to date is a hassle with the best products out there.

·         Now your computer thinks it knows what to look for. The problem is that if the malware is modified, the signature can become worthless and the process has to react again.

·         Even if you have the right signature, many AV products won’t find an infected file until they perform a scan of your computer. It then tries to quarantine and clean the infection. Again, this is reactive. Real-time scanning might catch some malware before it lands on your computer, but if this method is reliable than why do AV companies still advise full scans on a regular basis.

There was time when user education could do as much to prevent an infection as the best antivirus.  But when high profile, trusted sites become compromised, and drive-by downloads can infect your computer without any user interaction the ability of end-users to protect themselves diminishes greatly.

So, what is the solution? Home users will probably just have to hope for improved antivirus products and fewer vulnerabilities in their software. But to business the pain and expense of dealing with malware infection has made the concept of Application Whitelisting an attractive way to keep computers clean.   In my next post I’ll explain exactly what this is and talk about a few of the options out there.

Digg It!DZone It!StumbleUponTechnoratiRedditDel.icio.usNewsVineFurlBlinkList

Comments

9/22/2009 5:37:14 AM #

Pingback from bigb.mazti.com

Is Antivirus Software Good Enough or is it a Broken Model? | BigB

bigb.mazti.com |

11/10/2009 3:10:56 PM #

Great post! I am just starting out in community management/marketing media and trying to learn how to do it well - resources like this article are incredibly helpful. As our company is based in the US, it?s all a bit new to us. The example above is something that I worry about as well, how to show your own genuine enthusiasm and share the fact that your product is useful in that case.

wholesale bling bling |

11/11/2009 6:01:02 PM #

Great post! I am just starting out in community management/marketing media and trying to learn how to do it well - resources like this article are incredibly helpful. As our company is based in the US, it?s all a bit new to us. The example above is something that I worry about as well, how to show your own genuine enthusiasm and share the fact that your product is useful in that case.

kids soccer |

11/12/2009 6:50:07 PM #

Thank you for another great article. Where else could anyone get that kind of information in such a perfect way of writing? I have a presentation next week, and I am on the look for such information.

christian dating |

11/13/2009 5:15:59 PM #

Excellent read, I just passed this onto a colleague who was doing a little research on that. And he actually bought me lunch because I found it for him smile So let me rephrase that: Thanks for lunch!

Photo Booth Rental |

12/25/2009 12:16:18 AM #

Thank you for your help!

payday loans |

Powered by BlogEngine.NET 1.5.0.7
Theme by Mads Kristensen