McAfee MTP08EMB3RUA Product Guide - Page 53

Virus and Spyware Protection, General Settings Tab, Option, Definition, Advanced Settings Tab

Page 53 highlights

Using the SecurityCenter Management of security policies 3 Virus and Spyware Protection No excluded files and folders or approved programs are configured. With the default advanced settings for virus and spyware protection, it is possible for an on-demand scan to detect threats in archived files that are not detected during an on-access scan. This is because on-access scans do not look at compressed archives by default. If this is a concern for your organization, you should create a new policy where this option is enabled. General Settings Tab Option Scheduled Scan Settings Definition Off: No on-demand scan is scheduled. On-access scans still occur every time users run, open, or download files. Spyware Protection Prompt: Spyware scanning is enabled. When potentially unwanted programs are Mode detected, virus and spyware protection asks users how to respond. To prevent prompts from displaying, create a new policy with a different setting. For maximum protection, we recommend selecting Protect mode to automatically delete potentially unwanted programs. Advanced Settings Tab Option Definition Virus Protection Settings Enable outbreak response Enabled: Client computers check for an outbreak detection definition (DAT) file every hour. Enable buffer overflow protection Enabled: Detect code starting to run from data in reserved memory and prevent that code from running. Enable script scanning Enabled: Detect harmful code embedded in web pages that would cause unauthorized programs to run on client computers. Scan email (before delivering to the Outlook Inbox) Enabled: Look for threats in email before it is placed into the user's Inbox. Scan all file types during on-access scans Enabled: Look for threats in all types of files, instead of only default types, when they are downloaded, opened, or run. (Default file types are defined in the DAT files.) Scan within archives during on-access scans (e.g., .zip, .rar, .tat, .tgz) Disabled: Do not look for threats in compressed archive files when the files are accessed. Scan within archives during on-demand scans Enabled: Look for threats in compressed archive files when files (e.g., .zip, .rar, .tat, .tgz) are scanned manually and during scheduled scans. Enable Artemis heuristic network check for suspicious files Enabled: Send information about unrecognized threat detections to McAfee Labs for analysis. Scan mapped network drives during on-access Disabled: Do not look for threats in files on mapped network scans drives when they are accessed. Enable on-access scanning (if disabled) the next Enabled: If on-access scanning is disabled on a client computer, time client computers check for an update it is re-enabled when the computer checks for updates. Maximum percentage of CPU time allocated for on-demand and scheduled scans High: These scans are allowed to use a high percentage of CPU time. (Scans should be requested during non-peak hours, when users are not performing tasks on their computers.) McAfee Total Protection Service 5.1.5 Product Guide 53

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175

Virus and Spyware Protection
No excluded files and folders or approved programs are configured.
With the default advanced settings for virus and spyware protection, it is
possible for an on-demand scan to detect threats in archived files that
are not detected during an on-access scan. This is because on-access
scans do not look at compressed archives by default. If this is a concern
for your organization, you should create a new policy where this option
is enabled.
General Settings Tab
Option
Definition
Scheduled Scan
Settings
Off
: No on-demand scan is scheduled.
On-access scans still occur every time users run, open, or download files.
Spyware Protection
Mode
Prompt
: Spyware scanning is enabled. When potentially unwanted programs are
detected, virus and spyware protection asks users how to respond.
To prevent prompts from displaying, create a new policy with a different setting. For
maximum protection, we recommend selecting Protect mode to automatically delete
potentially unwanted programs.
Advanced Settings Tab
Option
Definition
Virus Protection Settings
Enable outbreak response
Enabled
: Client computers check for an outbreak detection
definition (DAT) file every hour.
Enable buffer overflow protection
Enabled
: Detect code starting to run from data in reserved
memory and prevent that code from running.
Enable script scanning
Enabled
: Detect harmful code embedded in web pages that
would cause unauthorized programs to run on client
computers.
Scan email (before delivering to the Outlook
Inbox)
Enabled
: Look for threats in email before it is placed into the
user’s Inbox.
Scan all file types during on-access scans
Enabled
: Look for threats in all types of files, instead of only
default types, when they are downloaded, opened, or run.
(Default file types are defined in the DAT files.)
Scan within archives during on-access scans
(e.g., .zip, .rar, .tat, .tgz)
Disabled
: Do not look for threats in compressed archive files
when the files are accessed.
Scan within archives during on-demand scans
(e.g., .zip, .rar, .tat, .tgz)
Enabled
: Look for threats in compressed archive files when files
are scanned manually and during scheduled scans.
Enable Artemis heuristic network check for
suspicious files
Enabled
: Send information about unrecognized threat
detections to McAfee Labs for analysis.
Scan mapped network drives during on-access
scans
Disabled
: Do not look for threats in files on mapped network
drives when they are accessed.
Enable on-access scanning (if disabled) the next
time client computers check for an update
Enabled
: If on-access scanning is disabled on a client computer,
it is re-enabled when the computer checks for updates.
Maximum percentage of CPU time allocated for
on-demand and scheduled scans
High
: These scans are allowed to use a high percentage of CPU
time. (Scans should be requested during non-peak hours,
when users are not performing tasks on their computers.)
Using the SecurityCenter
Management of security policies
3
McAfee Total Protection Service 5.1.5 Product Guide
53