Your current antivirus program may offer plenty of protection, but new, unknown threats still could slip through. That's where PC Tools' ThreatFire comes in. Now in version 3.5, this free utility adds an extra layer of protection to the security software you already have. It blocks an impressive number of threats through behaviour-based analysis. As can sometimes happen with security tools, however, it caused some system lockups in our testing.
The new edition of this popular free security program, released in May, adds an on-demand signature-based scanner, a mostly just-for-fun world map that shows detected threats, and a useful system-activity monitor that provides a good deal of information on the programs and services running on your PC.
To identify a malware threat based on a positive signature match--which is still the primary method that most antivirus programs use — a lab must first obtain a sample of the malware and create a full signature for it. It that window of time, before a signature is available, your machine could be infected with the virus. By contrast, proactive detection such as behavioural analysis can detect and block brand-new threats without signatures, thereby providing immediate protection. Most antivirus programs supplement signature scanners with some type of proactive detection, but not all are as effective as ThreatFire.
In independent tests conducted for PC World by AV-Test.org, a German security-program testing operation, ThreatFire's performance was outstanding. It correctly identified 18 of 20 new, relatively unknown malware samples by looking purely at factors such as where the program came from, what changes it made to files or the system Registry, and whether the program attempted to send information to the Internet. It successfully blocked 17 of those 18 (one sample stopped ThreatFire before the block could occur), and it successfully cleaned 16 of those blocked (it left part of one infection behind).
What's more, ThreatFire didn't register any false alarms in AV-Test.org's run-throughs; this is a definite plus, since proactive, non-signature protection is often prone to false alarms.
Version 3.5 adds PC Tools' signature-based scanner, formerly available only in the $US30-per-year Pro version. Since it isn't real-time protection, it won't scan every new saved file, so you will need to schedule it or activate the scan manually. The free version also requires that you keep its community features (which send anonymous detection info to PC Tools) enabled in order to continue receiving no-cost updates; doing so improves threat detection for all users, and there's no good reason to disable it. The Pro 3.5 version allows you to disable the feature, but unless you're running a business, you have no need to shell out for Pro. The free version of ThreatFire 3.5 is for home use.
The anonymous detection data also provides info for the utility's new Threat Detection display. Red dots on a global map show infection points for selected malware and adware threats.
Though the map is interesting, the new system-activity monitor is more useful. For the programs and services that are currently running, the monitor displays in-depth background info, such as the author, the command line, a list of open windows and modules, and other details for all processes. You can stop a process, or kick off a Google search for more information on it, with a right-click on the process name.
Other changes in 3.5 include better default options for handling alerts. For one thing, you can now instruct the tool to automatically quarantine, allow, or prompt whenever it encounters a suspected threat or potentially unwanted program (known threats are always quarantined). This version of ThreatFire also has improved master boot record scanning.
While you don't have to pay for ThreatFire, installing it entails another kind of cost. The lightweight ThreatFire service and system tray process didn't noticeably impact our test system while we surfed the Web and performed common tasks, and together they used less than 10MB of system memory. But security programs by nature have to reach far into your PC, and as a result they can often conflict with other software and cause trouble. In our tests on one heavily used PC with a wide range of installed programs and utilities, the computer locked up each time we attempted to run an on-demand scan using ThreatFire's signature scanner. You don't need to run the signature scanner to get ThreatFire's worthwhile behavioral protection, but such lockups are a good example of why you should be careful about installing too many security extras.
ThreatFire's thorough behavioral protection provides a worthwhile additional layer of security, particularly for shared or other at-risk PCs. It's all the more impressive for being free. As always, however, be careful about loading your computer down with security programs.
-
Microsoft Security Essentials (beta)
RRP: Free -
Safe Calculator
RRP: Free -
G-Data InternetSecurity 2010
RRP: $29.95 -
Comodo Internet Security Pro 3.8
RRP: $39.00 -
CheckPoint ZoneAlarm Extreme Security 8.0
RRP: $85.70
-
G-Data InternetSecurity 2010
RRP: $29.95 -
CheckPoint ZoneAlarm Extreme Security 8.0
RRP: $85.70 -
AVG Internet Security 8.5
RRP: $89.99 -
SafeHouse Explorer
RRP: Free -
McAfee Internet Security Suite 2009
RRP: $99.95
Windows 7 Games Campatibility
My question is simple. With the coming of Windows 7 will effect the games that run ...
Cannot boot Vista Ultimate at Normal start or Safe Mode ?
Hi, I have been using 'Vista Ultimate' for last 10 months. Three to four weeks back ...
Problems after Vista SP2 install
I've had no end of problems with my HP laptop after downloading Vista SP2 software.(I ...
default show the 'more information' when copying
Anyone know how to default show the 'more information' when copying/moving/deleting ...
Upgrading to XP
I currently am running windows 98 second edition and was wondering about updating ...
-
Sony Bravia KDL40E4500 LCD TV
RRP: $2499.00 -
LG Xenon (GR500f) mobile pyhone
RRP: $589.00 -
BlazBlue: Calamity Trigger
RRP: TBA -
Topaz Simplify
RRP: $39.99 -
Trine
RRP: TBA
-
Panasonic TH-50VX100W plasma panel
RRP: $7138.00 -
Lenovo ThinkPad T400s notebook
RRP: $3599.00 -
QNAP TS-119 Turbo NAS device
RRP: $519.00 -
Sony Bravia KDL40ZX1 LCD TV
RRP: $7399.00 -
Belkin Powerline AV+ Starter Kit F5D4075
RRP: $269.95
-
Bush BR10DAB digital radio
RRP: $169.00 -
Panasonic LUMIX DMC-FS7 digital camera
RRP: $389.00 -
Sapphire HD 4770 graphics card
RRP: $184.00 -
Canon PowerShot SX200 IS digital camera
RRP: $649.00 -
Samsung 2243BWX LCD monitor
RRP: $449.00
-
BlazBlue: Calamity Trigger
RRP: TBA -
Trine
RRP: TBA -
Plantronics .Audio 995 wireless headphones
RRP: $199.95 -
The BIGS 2
RRP: $99.95 -
Genius Traveler 915BT Laser mouse
RRP: TBA















