Thursday 31 May 2012

What’s New in 2012 Security Suites


More viruses, more protection? In the stress test we show how well the new security suites protect against the flood of malware.


You would have to look deep into the architecture of the security suites to understand the developments made in the 2012 version. Even though nothing much appears changed, it’s worthwhile to take a closer look. How will these antivirus programs with their improvements fare against the current malwares, we test just that in the AV test lab. We are very keen to see if the developers have ironed out the biggest weakness of the software that was seen in the 2011 version – poor system disinfection. 
           The biggest danger for computer users currently is the sheer number of newer variants of known malware that keep popping up. Symantec registered a total of 286 million different viruses, Trojans, backdoors and others in the last year. Most of these exist on the web for a very short while – 75 percent of the malware do not affect more than 50 computers worldwide.


Collected knowledge about viruses
There are two sets of solution to fight malware: Information about viruses should spread quickly over the cloud, unknown malware should be better recognized with real time protection. Kaspersky distributes updates for new viruses to users just after 90 seconds they are out. Even ESET, one of the few products till now without a cloud connection, has followed suit with Smart Security 5. The result is remarkable: the latter that was beaten last year, this year Smart Security 5 recognizes and blocks all unknown malware without any errors. ESET now effectively detects even the malware programmed in the laboratory (zoo malware) with which AV-test checks the recognition mechanism. Together with improved system performance, the program catapults itself from the last place directly into the top group. Even in real time protection, which recognizes threat with the help of behavioural detection technology, developers have beefed up security. According to Stefan Wesche, Technical Expert Norton Products, the latest version of Norton Internet Security, supervises over 120 new behaviours in the active processes in real time. G Data has integrated proactive protection against online banking Trojans like Zeus. Both programs are among the best in malware recognition last year. Microsoft’s free scanner Security Essentials cannot exactly keep up with them, however it’s more effective than other full suites and even pushes McAfee to the last rank. Its Internet Security 2012 recognized too few malware like its predecessor. Even when McAfee assured us that there will be technical innovations in the beginning of the year 2012, we do not recommend the program in its current state.

 Finally, better system disinfection? 
In comparison to last year, the cleaning of infected systems has improved.
System DISINFECTION :
In comparison to last year, the cleaning of infected
systems has improved.
However, Kaspersky holds the top spot in the malware analysis with a very high recognition rate of unknown malware, rootkits and zoo malware. In addition, the Internet Security 2012 cleans infected systems very thoroughly. From 24 malware, it managed to remove at least 21. Here, only ESET was a bit better and removed only 23 of the 24 malware. Other vendors like F-Secure have also improved the system cleaning visibly, which was the biggest drawback in the previous version that was released last year. Some exceptions: McAfee Internet Security 2012 undercut the unsatisfactory results of the last year. The suite did not recognize five of the malware at all, and in all it removed less than half of the total number of malware (11 out of 24). Even Microsoft’s free protection software managed better than that. Although the scanner did not keep up with the best commercial programs, if you want something without having to pay a paisa, this still provides solid protection. Only thing is that you cannot create a recovery CD with it. This would have been useful in case the system cleaning fails in Windows. Such a live system (mostly Linux based) can be created in other programs at any time and you can subsequently disinfect the system with this.

Stopped instead of removed
A cleaner and more secure computer is one thing, but it should also be fast. At least the security suite should not overly slow down the system. AV-test analysed the system load on a desktop PC running Windows 7 Ultimate, powered by a quad-core Intel Xeon CPU (2.83 GHz) and 4 GB of RAM. Typical tasks such as system startup, file transfer, download, website loading, application installation and launching were timed. Contrary to the widely spreading prejudice, Norton was the frontrunner in the overall performance test. This is not surprising since Norton was already at the second place last year in this assessment. What is remarkable is just the minimal lag in Windows startup in the range of milliseconds. Moreover, Norton scanned downloaded files faster than the competition and allowed programs such as Adobe Acrobat Reader or LibreOffice to install smoothly – only Avira and McAfee were better here. The activity for which the computer is most often used by many is very dangerous: surfing the web. According to Symantec, the number of web-based malware attacks has increased in the past year by 93 percent. Here, the security programs had to take a closer look without slowing down the browser. With the help of the information stored in the cloud database, the virus scanner analyses the reputation of the website you have opened. This is based on the experiences of the clients connected to the cloud – if the website has been identified as a source for viruses and malicious content, then it is directly blocked. For unknown sites, the scan engine analyses the downloaded HTML or Java Script code on the computer. The 2012 Internet Security suite from G Data seems to look even closer since it required a little more time to load sites such as Amazon, YouTube or Wikipedia – and that with a 100 Mbps dedicated line in the test laboratory. Neither the testers from AV-Test nor those from G Data could explain this. However, one reason could be the time-consuming scan with a second engine which had brought G Data to the last place in the performance assessment last year. For users who feel that the system should be fast with an antivirus installed, G Data shouldn’t be the first preference. However, for protection-oriented users, it offers the second best recognition rate in the test. 

Less added value through new extras
Some suites slow down the computer to a great extent during tasks like system start or downloading
System LOAD :
Some suites slow down the computer to a great extent
during tasks like system start or downloading

Panda offers an additional surfing protection. With the secure browsing feature which runs in a Sandbox, you can browse the web without worrying about being infected by malware. But this feature only works after you download and install the additional component called VirtualBox. Other manufacturers are also trying to make their products more attractive with additional features besides the virus weaponry. Symantec offers the option to manage all the computers on which Norton is installed via remote maintenance, something that is especially interesting for smaller networks. Kaspersky has once again integrated the File Advisor with which you can upload individual files for virus scan with a click. But as for most functions, there are many freeware tools that can do the same job just as well or even better. The free support that Avira offers for all users is however very helpful – including remote assistance. Through the automatically installed TeamViewer, Avira Support can solve many problems directly on the users’ computers. If you want to stay loyal to your current antivirus brand, you can upgrade to the 2012 version for free if you still have valid licenses. The improvements in the latest version provide better protection which no one should ignore.

Verdict
Kaspersky Internet Security 2012 uses a cloud-based reputation database for effective threat detection.
First Runner Up : Kaspersky Internet Security 2012 uses a cloud-based
reputation database for effective threat detection.
The security suites have improved overall, even if none of them offers you perfect protection. The package that offers by far the best protection and performance is F-Secure Internet Security 2012, and it wins just ahead of Kaspersky Internet Security 2012. Norton is the best at economically utilizing system resources, while ESET shines as the most improved product of the lot. McAfee remains disappointing, however, and still lags behind Microsoft's free security solution. 





Test winner
F-Secure offers the best protection and an easily understandable interface.
Test winner : The Online Safety module in F-Secure Internet Security 2012 allows limiting
 web access.