antivirus and internet security software options?

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • seeric
    ..........
    • Aug 2004
    • 41917

    #1

    antivirus and internet security software options?

    i absolutely despise


    norton internet security. why does this program take up so much freaking ram to run it and protect you. i mean come on 130megs of ram just running the ccproxy.exe app within norton.

    are there any other options. anybody have any experience with mcaffe?

    or, what are the other options.

    i got a guy here at the office that is somewhat new to the internet and he owned a very expensive computer.

    norton is bogging down the machine i installed it on that he uses.

    input is appreciated.
  • Juicy D. Links
    So Fucking Banned
    • Apr 2001
    • 122992

    #2
    Woof hit me up I have solution

    Comment

    • Greg MissionD
      Confirmed User
      • Apr 2005
      • 4866

      #3
      Zone alarm works well, maybe just use norton for what is was good for (virus protection)
      ICQ:119936

      Comment

      • Pete-KT
        Workin With The Devil
        • Oct 2004
        • 51532

        #4
        Check out Mcafee very good program, Hit me up for a "demo" copy

        Comment

        • seeric
          ..........
          • Aug 2004
          • 41917

          #5
          koolio. thanks yo

          Comment

          • Deek
            Registered User
            • Nov 2005
            • 31

            #6
            Good Morning,

            norton internet security. why does this program take up so much freaking ram to run it and protect you. i mean come on 130megs of ram just running the ccproxy.exe app within norton.
            I apologize, i am new and unsure of what type of org you belong to/run. This is only my 2nd post here at GFY. I am assuming (so im likly wrong) that you are in an office type environment. When dealing with data security, you want to do an onion (some call this "Defense in depth").

            I am NOT bashing norton internet security suite. Norton makes fine products however hear me out.

            In todays internet climate you/we are exposed to new threats constantly. Especially in the world of virii. A lot of virii today will render the firewall/anti virus useless, this typically happens because the virus definitions of the user are out dated. And as you mentioned, these application suites take up a ton of resources. They will also typically get your pocketbook as well.. The bastards!

            Ok, now finally my solution, this is what i do at everyone one of my locations and the locations of my clients. I dont proclaim to be some uber export, but i have alot of field experience. Take this and all advice with a grain of salt.

            Invest into a hardware firewall, such as the Cisco pix firewall. The pix 501 comes with a 10 user license, and can be expanded to 50. I am going to assume you have 10 or fewer people at your office. If this is the case, the pix is only going to cost $419.

            Why do i support the hardware firewall? Theres several technical reasons which you will simply no care about regarding hardware vs software. The one reason you do care about is simple. Software firewalls such as the one by norton can be modified by the end user or by viruses, where the hardware firewall is not.

            Virii, ok the normal user is exposed to virii by two main factors. Email and downloading warez/copy writed software obtained with out paying for it. Worms is a huge one, but the new hardware firewall is going to protect against that.

            Contact your email provider and see what anti-virus solutions they provide. If they dont, and you host your own, look into the clamav sollution, their site is www.clamav.net. You could use this with sendmail/qmail for free anti-virus.

            We would still keep the AV running on each machine, so you would have two levels of defense against viruses coming in via email. The email server, and the AV running on the machine.

            Ok so we have a hard outer shell to your network... We do not want a liquid center (think egg). So go around to each machine and ensure the AV is configured for auto-updates nightly as well as windows updates (if you use windows). Also running the personal firewalls such as zone alarm is best practice and uses low resources. But typically people misconfigure them anyways, so... ;)

            I would remove the norton internet security and keep the anti-virus. Likly you signed up for a years worth of updates, when this expires, look at the corporate licensing for AV. This will allow you to setup a server which eache machine will "check in with". What this will allow you to do, is have 1 machine downloading all the updates, and passing it out to each machine on your network. It will conserve bandwidth, and it will ensure each machine is running the latest version. Not to mention, the enterprise versions are typically cheaper per seat. When in doubt, ask a friend to go in half with you.

            Ok i probally wrote down way more than you wanted but i hope it helps. Little bit about me, newb to the porn industry, but have been working in IT for a bit and my security experience dates back before my professional. Im the co-founder of the North East Ohio Information Security Forum (its a users group which meets physically, its NOT a web forum so dont ban me plz ), where i used to be a comittee member. I still present every now and again though. Theres a few videos available of my presentations if anyones interested.

            Heres an outbound ACLs i use. I can help you with your inbound ACLs if you wish, but im not going to post mine here =)

            access-list outbound line 1 permit udp any any eq domain
            access-list outbound line 2 permit tcp any any eq www
            access-list outbound line 3 deny tcp any any eq 8080
            access-list outbound line 4 deny tcp any any eq 6669
            access-list outbound line 5 permit tcp any any eq 6668
            access-list outbound line 6 permit tcp any any eq 6667
            access-list outbound line 7 deny tcp any any eq 6666
            access-list outbound line 8 permit tcp any any eq smtp
            access-list outbound line 9 permit tcp any any eq imap4
            access-list outbound line 10 permit tcp any any eq aol
            access-list outbound line 11 permit tcp any any eq ssh
            access-list outbound line 12 permit tcp any any eq https
            access-list outbound line 13 permit udp any any eq 443
            access-list outbound line 14 permit tcp any any eq 5223
            access-list outbound line 15 permit udp any any eq isakmp
            access-list outbound line 16 permit udp any any eq 10000
            access-list outbound line 17 permit esp any any
            access-list outbound line 18 permit ah any any
            access-list outbound line 19 permit tcp any any eq 10000
            access-list outbound line 22 permit tcp any any eq 3306
            access-list outbound line 25 permit tcp any any eq 23073
            access-list outbound line 26 permit udp any any eq 23073
            access-list outbound line 27 permit tcp any any eq pop3
            access-list outbound line 28 permit tcp any any eq 5010
            access-list outbound line 29 permit tcp any any eq 5100
            access-list outbound line 30 permit tcp any any eq 5000
            access-list outbound line 31 permit tcp any any eq 5001
            access-list outbound line 32 permit tcp any any eq 5050

            Remember, there is no panacea in data security... Not matter what if someone wants in, they will figure a way. All one can do is put in as many speed bumps possible. One must always balance confidentiality, integrity and availability in data security and never focus in one area.

            my icq is 3420164 if you/anyone needs some help...
            I use SplitInfinity Web Hosting and VOIP services
            ICQ: 3420164

            Comment

            • woj
              <&(©¿©)&>
              • Jul 2002
              • 47880

              #7
              zonealarm is pretty good
              Custom Software Development, email: woj#at#wojfun#.#com to discuss details or skype: wojl2000 or gchat: wojfun or telegram: wojl2000
              Affiliate program tools: Hosted Galleries Manager Banner Manager Video Manager
              Wordpress Affiliate Plugin Pic/Movie of the Day Fansign Generator Zip Manager

              Comment

              • snowpimp
                Confirmed User
                • Feb 2002
                • 1099

                #8
                Call me cheap, call me thrifty, but here's a link to the free stuff you need!




                Free firewall: Sygate Personal Firewall
                http://smb.sygate.com/products/spf_standard.htm

                Free Antivirus:
                http://free.grisoft.com/freeweb.php/doc/2/

                Free Adware Removal:
                http://www.snapfiles.com/get/adaware.html
                http://spybot.safer-networking.de/en...tsd/index.html

                Free Windows Startup Utility:
                http://www.windowsstartup.com/download.php

                Free Sites to Check your Port Vulnerability:
                https://www.grc.com/x/ne.dll?bh0bkyd2
                http://scan.sygate.com/tcpscan.html

                Free Popup Blocker:
                http://toolbar.google.com
                HIGH QUALITY ADULT AND NON-ADULT DESIGN/MARKETING WORK SINCE 1997!!

                Yan - ICQ # 4790444 - Phone: 530-544-7058

                Comment

                • seeric
                  ..........
                  • Aug 2004
                  • 41917

                  #9
                  Originally posted by Deek
                  Good Morning,



                  I apologize, i am new and unsure of what type of org you belong to/run. This is only my 2nd post here at GFY. I am assuming (so im likly wrong) that you are in an office type environment. When dealing with data security, you want to do an onion (some call this "Defense in depth").

                  I am NOT bashing norton internet security suite. Norton makes fine products however hear me out.

                  In todays internet climate you/we are exposed to new threats constantly. Especially in the world of virii. A lot of virii today will render the firewall/anti virus useless, this typically happens because the virus definitions of the user are out dated. And as you mentioned, these application suites take up a ton of resources. They will also typically get your pocketbook as well.. The bastards!

                  Ok, now finally my solution, this is what i do at everyone one of my locations and the locations of my clients. I dont proclaim to be some uber export, but i have alot of field experience. Take this and all advice with a grain of salt.

                  Invest into a hardware firewall, such as the Cisco pix firewall. The pix 501 comes with a 10 user license, and can be expanded to 50. I am going to assume you have 10 or fewer people at your office. If this is the case, the pix is only going to cost $419.

                  Why do i support the hardware firewall? Theres several technical reasons which you will simply no care about regarding hardware vs software. The one reason you do care about is simple. Software firewalls such as the one by norton can be modified by the end user or by viruses, where the hardware firewall is not.

                  Virii, ok the normal user is exposed to virii by two main factors. Email and downloading warez/copy writed software obtained with out paying for it. Worms is a huge one, but the new hardware firewall is going to protect against that.

                  Contact your email provider and see what anti-virus solutions they provide. If they dont, and you host your own, look into the clamav sollution, their site is www.clamav.net. You could use this with sendmail/qmail for free anti-virus.

                  We would still keep the AV running on each machine, so you would have two levels of defense against viruses coming in via email. The email server, and the AV running on the machine.

                  Ok so we have a hard outer shell to your network... We do not want a liquid center (think egg). So go around to each machine and ensure the AV is configured for auto-updates nightly as well as windows updates (if you use windows). Also running the personal firewalls such as zone alarm is best practice and uses low resources. But typically people misconfigure them anyways, so... ;)

                  I would remove the norton internet security and keep the anti-virus. Likly you signed up for a years worth of updates, when this expires, look at the corporate licensing for AV. This will allow you to setup a server which eache machine will "check in with". What this will allow you to do, is have 1 machine downloading all the updates, and passing it out to each machine on your network. It will conserve bandwidth, and it will ensure each machine is running the latest version. Not to mention, the enterprise versions are typically cheaper per seat. When in doubt, ask a friend to go in half with you.

                  Ok i probally wrote down way more than you wanted but i hope it helps. Little bit about me, newb to the porn industry, but have been working in IT for a bit and my security experience dates back before my professional. Im the co-founder of the North East Ohio Information Security Forum (its a users group which meets physically, its NOT a web forum so dont ban me plz ), where i used to be a comittee member. I still present every now and again though. Theres a few videos available of my presentations if anyones interested.

                  Heres an outbound ACLs i use. I can help you with your inbound ACLs if you wish, but im not going to post mine here =)

                  access-list outbound line 1 permit udp any any eq domain
                  access-list outbound line 2 permit tcp any any eq www
                  access-list outbound line 3 deny tcp any any eq 8080
                  access-list outbound line 4 deny tcp any any eq 6669
                  access-list outbound line 5 permit tcp any any eq 6668
                  access-list outbound line 6 permit tcp any any eq 6667
                  access-list outbound line 7 deny tcp any any eq 6666
                  access-list outbound line 8 permit tcp any any eq smtp
                  access-list outbound line 9 permit tcp any any eq imap4
                  access-list outbound line 10 permit tcp any any eq aol
                  access-list outbound line 11 permit tcp any any eq ssh
                  access-list outbound line 12 permit tcp any any eq https
                  access-list outbound line 13 permit udp any any eq 443
                  access-list outbound line 14 permit tcp any any eq 5223
                  access-list outbound line 15 permit udp any any eq isakmp
                  access-list outbound line 16 permit udp any any eq 10000
                  access-list outbound line 17 permit esp any any
                  access-list outbound line 18 permit ah any any
                  access-list outbound line 19 permit tcp any any eq 10000
                  access-list outbound line 22 permit tcp any any eq 3306
                  access-list outbound line 25 permit tcp any any eq 23073
                  access-list outbound line 26 permit udp any any eq 23073
                  access-list outbound line 27 permit tcp any any eq pop3
                  access-list outbound line 28 permit tcp any any eq 5010
                  access-list outbound line 29 permit tcp any any eq 5100
                  access-list outbound line 30 permit tcp any any eq 5000
                  access-list outbound line 31 permit tcp any any eq 5001
                  access-list outbound line 32 permit tcp any any eq 5050

                  Remember, there is no panacea in data security... Not matter what if someone wants in, they will figure a way. All one can do is put in as many speed bumps possible. One must always balance confidentiality, integrity and availability in data security and never focus in one area.

                  my icq is 3420164 if you/anyone needs some help...

                  wow man, thanks. that took a hell of a long time to type. i appreciate that.
                  i copied this to a notepad to read later on. i ended up blowing out the computer becasue the malware was sooooooo bad and took over the entire windows registry and system 32. normally i am pretty good at ferreting them out of some of my less experienced employees computers. this one owned the router and all the machines on it. the most nasty malware i ever saw.

                  Comment

                  • just a punk
                    So fuckin' bored
                    • Jun 2003
                    • 32385

                    #10
                    NOD32 is DA BEST!!! Norton and orhers are just a pile of shit. They are eating memory and CPU resources but can't detect and kill even old viruses. So here you go: http://www.eset.com/products/nt.htm
                    Obey the Cowgod

                    Comment

                    • Deek
                      Registered User
                      • Nov 2005
                      • 31

                      #11
                      Typically thats the best method to get rid of the malware in general, Format. Is it really worth the $$ to pay someone like myself or even your own time to use the multiple tools available to remove the BS? Typically by the time your finished your ready for a drink ( and im not talking lemonaide ).


                      Most of all i hope it helps =)
                      I use SplitInfinity Web Hosting and VOIP services
                      ICQ: 3420164

                      Comment

                      Working...