How does a firewall work? Do you need an antivirus with a firewall? Or will just an antivirus be enough? Installing a firewall separately

I know that everyone, well... almost everyone, knows what antivirus and firewall are used for.

And I think one of them is on your computer. It seems that everything is fine and there will be no trouble.

But suddenly you notice that the computer began to slow down (before this the computer worked quickly and well), the Internet began to work much slower, and programs took longer to open than usual.

From the beginning you are patient, but everything is getting worse, applications have stopped working, they won’t start, and they give errors.

And you began to notice that when you are not doing anything and you see that your computer is actively exchanging traffic... the red or green diode is blinking, well, like someone else:

There is a possibility that your computer is infected with a virus.

I'll add...

Outgoing traffic detected. BUT in the case of incoming traffic, there is a possibility that some program is simply downloading an update. This is fine!

And so... it became clear to you that you had picked up a virus or a Trojan, or some other bad thing from the Internet and especially from sites with naked girls, torrents, and other types of file exchangers.

Well, I have some kind of antivirus!

What's the matter!

But the fact is that somewhere you made a mistake...

When you search for a program, antivirus firewall through a search engine, in most cases you will receive a link to the official website.

This is where you can download it from the official website (it is impossible to pick up a virus in the distribution of a program downloaded from the official website)

But the majority of people want the PRO version (full) well, the trouble is... it’s always paid, but oh how I don’t want to lay out money!!!

And so you start searching through various social networks, torrent, etc. then there is a high probability that instead of a link to the official website you will receive a link to a file, exchangers like Rapidshire, Depositfiles, etc.

It is on such sites that the probability of downloading a virus is highest, because the distribution kit is placed there not by developers, but by hackers who, under the guise of a free version, add a virus or Trojan program there.

As a result, you receive a free program, and along with it a malicious one, which can easily either crash the system, or begin to infect other computers on the network, or steal personal data, such as passwords for various resources, credit card numbers, etc.

And so... I think it’s clear that this is not the best option for your computer. What to do if your finances are bad?

Now we come to the main thing, selection of the best and free antivirus and firewall programs.

Microsoft Security Essentials and Windows Defender

For the vast majority of home users of Windows 7 and Windows 8, a standard antivirus product from Microsoft is quite suitable.

In the Windows 8 operating system, it is already built into the system called Windows Defender and does not need to be additionally downloaded and installed.

But for Windows 7 you will have to install it by downloading the Microsoft Security Essentials distribution from the Microsoft website.

This solution is quite capable of protecting your computer from malware, has very powerful basic functionality, and does not slow down the operating system at all.

That is why these solutions can be used as real-time protection on computers running Windows 7 and Windows 8.

Why do third-party antiviruses exist and what is the point of them?

The answer is simple…

There are different categories of users, complete beginners who do not know or understand their actions. You need to handle an antivirus with knowledge... to do this, you need to control all elements of the system so that your antivirus does not start to slow down the entire system.

Average users, who have already become comfortable using a computer and can quite easily distinguish bad from good, no longer need the help of a friend.

Very advanced users want to control everything and not let the computer make any decisions on its own.

This leads to the need to install a powerful solution that will allow you to comprehensively control the operation of the computer and allow it only those actions that the user wants to allow it.

In most cases, we are at the stage...average users. But Microsoft Security Essentials (for Windows 7) and Windows Defender (for Windows 8) are quite suitable and will cope with their tasks 100%, without distracting us from work or slowing down the computer.

In the case of Windows XP, things are worse... you will have to look for an antivirus solution on the side.

And so we download the free computer protector... Microsoft Security Essentials

All antiviruses and firewalls in this article lead to official manufacturers pages.

And so we continue... a selection of the best and free ones:

Kaspersky Virus Removal Tool

Kaspersky Lab has a free anti-virus scanner, Kaspersky Virus Removal Tool, which will scan your computer and, if malware is detected, will cure/remove infected objects.

The best thing about this scanner is that it is absolutely free.

But in order to use it with the latest anti-virus databases, it must be downloaded each time from the official website, since by itself it cannot update its databases.

It can scan your computer and rid it of malware. The program is updated several times a day and contains all the latest updates.

This can be a little inconvenient because to get the latest version you need to download a distribution package of about 100 megabytes.

Although all this is justified by being free and can be used in critical situations.
http://www.kaspersky.ru/antivirus-removal-tool

Dr.Web CureIt!

The Doctor Web company, which produces an antivirus of the same name, also has a similar solution called CureIt!.

With this healing utility, you can check and disinfect your entire computer without any problems. Each time you use the program, it is recommended to download its update from the website, since all anti-virus databases are built into the program and are not updated separately. Inconvenient!

This utility does not work constantly, preventing the appearance of malware on the computer. It allows you to cure an already infected PC from viruses, Trojan horses, rootkits, etc.

This feature of Dr.Web CureIt! determines the scope of application of this product. It can be used periodically to check the reliability of the antivirus installed on the computer, as well as in cases where, based on indirect signs, one may suspect that the computer is infected.

A feature of Dr.Web CureIt! is that there is no need for installation or updating.

While scanning Dr.Web CureIt! finds all infected files and disinfects them. If treatment is impossible, then the files are placed in quarantine (which will be available after scanning). After completion of the work, the program issues a report with the results of the test.
Dr.Web CureIt! does not conflict with other antiviruses, but works in parallel with them. Dr.Web CureIt! updated several times an hour. This means it can detect even the newest viruses and Trojans.
http://www.freedrweb.com/download+cureit

Avara AntiVir Personal

The free version of Avira AntiVir Personal includes an anti-virus scanner, a module for checking and installing updates to anti-virus databases, as well as a module for permanent anti-virus protection.

This antivirus hangs in memory and does everything on its own. Independently downloads and installs updates, independently checks files accessed by the operating system and various applications.
The free edition of Avira AntiVir Personal differs from its counterparts in having fewer additional security modules.

For example, the free edition does not have an anti-spam module, there is no ability to create a bootable recovery CD, there is no game mode, there is no built-in firewall and other modules that are present in paid editions.


Despite all this, Avira AntiVir Personal differs from its free competitors in that it does not need to be downloaded from the network every time, it downloads all the updates itself.

This is already quite a big plus. The only thing to be wary of is the penetration of malware through loopholes that Avira AntiVir Personal does not close (due to the lack of additional modules).

But some of these loopholes can be closed using other programs (the function of protecting your computer from attacks from the network can be entrusted to the COMODO Firewall program). And we download Avara AntiVir Personal using this snare:

http://www.avira.com/en/download/product/avira-free-antivirus

Comodo firewall (I recommend install )

This is a set of tools to protect your computer, which includes a firewall, antivirus and active protection module.

When configured correctly, the program allows you to secure your computer to the maximum.

Overall, this is a very good protection system that can protect your computer from external and internal threats.
http://www.comodo.com/home/internet-security/free-internet-security.php

avast! Free Antivirus

The program has a full-fledged Russian-language interface, it is quite difficult to get lost in it. You can get a key for it completely free of charge; to do this, you need to fill out a short form on the avast website! ...quite suitable for protecting a home computer.

With the help of avast, the problem of security in peer-to-peer networks is solved. When using uTorrent and similar programs, a P2P screen is activated that monitors insecure torrent connections.


Antivirus program avast! checks the system before a virus that has entered Windows is activated.

Users of slow Internet will greatly appreciate the reduction in the size of the antivirus update file. Now updating takes less time, and processor resources are used more efficiently.
http://www.avast.com/index

Results...

Market leaders only release free healing utilities (this applies to Kaspersky Lab and Doctor Web), which can scan the system and cure it of viruses, but cannot provide full anti-virus protection in real time.

Antiviruses (Avast! and Avira) provide functionality for real-time protection, but it is very limited.
Here is the conclusion that you should not ignore the built-in Microsoft Security Essentials in the latest versions of the operating system, which copes quite well with its protection without putting a strain on the system.

Good luck to YOU, in two words... Aantivirus and firewall!

Good luck, Friends!

Almost every modern person has access to the Internet. The Internet is not only a source of useful information, but also a threat to the security of your data. A firewall will help protect your computer from threats coming from the Internet.

Why do you need a firewall?

Firewall(Firewall, also known as firewall, also known as firewall) is a program that protects your computer from unauthorized access via the Internet.

If an attacker gains access to your computer, he can steal your data, infect you with a virus, or delete the necessary information.

A firewall is a kind of gate between your computer and the Internet. They prevent an attacker from getting into your computer, but allow harmless data through (for example, when you download music).

Thus, the firewall filters all incoming and outgoing data that enters the computer via the Internet.

The Windows operating system has a standard firewall. It is installed automatically along with the operating system. The firewall in the Windows operating system is called a firewall.

You can find it at “Control Panel\System and Security\Windows Firewall”.

The Windows firewall does not provide the most optimal protection. It is better to install a third-party firewall, which will provide a greater level of protection.

How to install a firewall

A firewall on a computer can be installed as a separate program or together with an antivirus.

Antivirus with firewall

Almost all paid antiviruses include a firewall. That is, when you install an antivirus on your computer, a firewall is installed along with it. It's definitely convenient. You install one program that provides comprehensive and comprehensive protection for your computer.

Before purchasing an antivirus, check whether it includes a firewall. Typically, such antiviruses are called Internet Security (for example, F-Secure Internet Security or Kaspersky Internet Security). You can choose a good antivirus with a firewall using the antivirus rating .

Installing a firewall separately

If you do not want to spend money on expensive antiviruses, you can install the firewall as a separate program.

Firewalls, like antiviruses, can be paid or free. If in the case of antiviruses it is better to install a paid one, then in the case of firewalls it is better to install a free one. Free firewalls are not only the most popular, but also provide an excellent level of protection.

  • Comodo Internet Security Free
  • Outpost Security Suite Free

These products provide an excellent level of security for your data. Free firewalls are best used in conjunction with free antiviruses, since free antiviruses do not have a firewall. Such a combination can provide a level of protection no lower than some paid antiviruses.

How to disable Windows firewall

If you have installed an antivirus with a firewall or just a third-party firewall, then there is no need for the Windows firewall to work. It makes no sense for two firewalls to work together; the level of protection will not increase, but this may affect the operation of the computer (especially on old and weak computers).

The best way to disable the standard Windows firewall is through services. Open the Start menu and right-click on the Computer folder. Select "Manage". Find the menu on the left side of the window that opens. Select the “Services and Applications” section – “Services”. In the table on the right side of the window, find the “Windows Firewall” service. Right-click - “Properties”.

In the “startup type” column, select “Disabled”. The services will be disabled the next time the system boots. If you need to disable the service immediately, then under the “startup type” list, click on the “Stop” button. The service will be disabled immediately.

Every more or less experienced user knows that the Internet is full of various surprises (not always pleasant). Therefore, only a reckless beginner can get into it without securing your computer with at least the simplest antivirus program. A wise user cares about his own security, so the doors of his computer are vigilantly guarded by at least three guards - an antivirus, an anti-Trojan and a firewall - protecting against various network dangers: malicious viruses and email worms, hacker intrusions, spyware, running bad scripts when accessing websites and much more. But, judging by the statistics of two serious epidemics of computer worms and one virus epidemic that hit the Internet in August of this year, there are still a lot of users who dare to access the World Wide Web without reliable protection. Symantec estimates that the latest version of the MS/Blast worm alone has infected more than a million computers, and the SoBig.F computer virus has infected tens of thousands of computers around the world, also causing an outbreak of spam.

How does an unprotected computer feel on the Internet? Let's try to experience this in our own skin, or more precisely, in relation to a machine, on our own interface.

Disable all protection

Let's try to unload all real-time protection by turning off the anti-virus and anti-Trojan monitors, and set the personal firewall to inactive mode. Just in case, we will take care of the possibility of restoring the system and data by creating full disk images using the wonderful program Acronis True Image, developed by Acronis. In anticipation of uninvited guests, we will launch a screen capture program in advance to capture this possible visit, and connect to the Internet.

There were doubts: what if no one needs my computer for nothing, and no one will encroach on its integrity? But not even ten minutes had passed before a system window appeared on the screen: "The system is shutting down. Please save your data and exit the system. Any unsaved changes will be lost. The system shutdown is caused by NT AUTHORITY\SYSTEM". It turns out that the system needs to restart Windows because the Remote Procedure Call (RPC) service stopped unexpectedly. It takes about a minute to close all windows and save your work. It’s good that the CPS13 program can quickly save screenshots to a file by pressing one key - take a screenshot and close the application. The system actually reboots.

This was a real hacker attack on my computer, which is called “Denial-of-Service” (DoS), as a result of which the victim’s computer (that is, my computer), running under the Windows 2000 or XP operating systems, may freeze "or reboot, as happened in our case. The attack was successful because there are holes in the Remote Procedure Call (RPC) service, which the virtual bully took advantage of. Of course, Microsoft releases patches for these vulnerabilities, and if they are downloaded and installed in time, then such an attack may not occur. The sad thing is that in the RPC process, attackers are finding more and more vulnerabilities. For example, just the other day it became known about a new “hole”, no less serious than the three previous ones, already blocked by patches. Therefore, it is unknown what will happen first - an attack on your computer or the release of a new patch from Microsoft, which still needs to be “pulled” over the Internet and installed in time.

The consequences of this attack should not be underestimated - due to an unexpected freeze or reboot of the system, not only the loss of important information may occur, but also damage to system files, after which the system may have to be reinstalled. But the most serious of the RPC vulnerabilities allows a hacker to run a malicious script on a victim's computer.

Let's try to connect to the Internet again and wait for just such a “guest”. This time, while waiting for it, we will launch an antivirus program in order to detect the moment of its appearance and avoid the possible unpleasant consequences of this phenomenon. Within an hour, the computer “slowed down” a couple of times and rebooted before the famous MS/Blast itself came to my system! His arrival, as usual, was accompanied by the appearance of a system message about the need to reboot, but, in addition, only a little later, the Panda Antivirus Platinum window “popped up”, in which it reported that it was in the folder \System32\ file msblast.exe and its successful neutralization. Unfortunately, there was not enough time to take a screenshot, since the system quickly rebooted, as in the previous case. In the same way, when trying to introduce the MS/Blast worm into the system, the “titanium” Panda also worked - it detected and destroyed a file with a virus in the system folder, and this time I even managed to “capture” its window with a message about it.

As you can see, the antivirus program saved my computer from being infected by a worm. However, it must be said that antiviruses can only find infections that are in virus databases. MS/Blast was known to Panda, so she neutralized it. If the virus database had not been updated in a timely manner, the computer would have been infected. The same can be said about “fresh” viruses, which antivirus developers have not yet managed to add to the lists of known ones.

Antivirus+firewall

Let's now try to add a firewall to help the antivirus and again go out onto the World Wide Web. The “platinum” Pand has its own firewall. And even though this firewall is not as multifunctional as specialized personal firewalls, it is able to provide a minimum of protection. After I activated this simple personal screen, all attempts to attack my computer stopped. In any case, I stopped seeing them.

As for the Platinum firewall settings, in principle, everything is already installed by default, and this is enough to protect against Blaster-type worms. The only thing that the head of technical support at Panda Software Russia advised was to uncheck the option Do not ask when common programs access the network in the Programs with access to the network window.

In addition, Panda's software products include a dedicated anti-virus server called GateDefender. It inspects all network traffic passing through sections of the network. This scans all the protocols that are most commonly used today - SMTP, HTTP, FTP, POP3, IMAP4, NNTP and SOCKS. GateDefender intercepts traffic passing through these protocols and inspects it. This is what allows this solution to detect malicious codes such as SQLSlammer.

Panda+Outpost

In the last experiment, the already configured Platinum firewall was turned on. How will the newly installed and “untrained” firewall behave during a similar RPC attack? And what happens if errors are made in the settings of this screen? Let's install Panda Antivirus Titanium on the computer and a full-fledged firewall Outpost Personal Firewall Pro, selecting “Learning Mode” as its operating policy.Let's connect to the Internet and see what happens.

Here comes a guest requesting a connection to some remote service. Outpost suggests creating a rule for this application. While you and I are thinking about what to do with this application: allow it to perform any actions, prohibit them, or create a rule based on the standard one, Outpost blocks this connection. Let's try to allow this strange protocol to perform the action once by clicking on the corresponding button in the rule creation window. A familiar system message appears on the screen, and after a minute the computer reboots. If the guest manages to write the virus file to the system folder, it is immediately deleted from there by the ever-watchful Panda. As you can see, it is better to block the action of all unfamiliar applications, and in case of an error, any rule can be easily changed.

It should be added that Agnitum specialists have already made most of the necessary and useful settings into the Outpost settings, which simply need to be accepted by default when installing the program. For example, regarding the notorious RPC, there are system rules in the program ("General Rules" in the "System" tab, in the "Options" menu), where the activity of this service is blocked. The main thing is not to spoil these settings with your inept actions. For example, you can easily negate the effect of existing rules by manually adding this RPC (svchost.exe) to the list of trusted applications. Outpost is a program that is so ready to use that in most cases it does not require additional settings.

As you can see, computer protection becomes impenetrable when using two programs simultaneously - antivirus and firewall. Outpost Firewall Pro monitors data flows entering and exiting the user’s system, and Panda Antivirus Titanium performs an internal “cleanup” of the system - it finds and neutralizes viruses that have somehow penetrated the external barrier (in the example above, we explicitly allowed the request that allowed virus to enter the system). Among other things, by turning on the "invisibility" mode in Outpost, you can avoid any attacks, since the computer actually becomes invisible from the outside.

From all that has been said, we conclude: the future of computer security is not only anti-virus programs. Users (both home and corporate) need other tools, such as personal firewalls, to maintain privacy. That is why leading developers of security systems began to offer their clients software packages that include both antiviruses and firewalls. More recently, such a package appeared from Kaspersky Lab - “Kaspersky Anti-Virus Personal Pro + Anti-Hacker”. It is interesting that different companies and even from different countries are joining their efforts in this direction. Thus, the Spanish company Panda Software and the Russian Agnitum provided users with a package of their programs: Panda Antivirus Titanium and Outpost Personal Firewall Pro. What the Russian user will especially like about this is that the price of each program in packages is approximately 20% less than when purchasing them separately.

Comodo Internet Security is one of the most powerful free programs to protect against Internet threats: firewall, antivirus, proactive protection Defense+. Comodo is one of the best firewalls in the world. It is known, first of all, as a powerful firewall, therefore, although it is an anti-virus complex, it is placed in the firewall category.

COMODO Internet Security is an excellent software package for ensuring Internet security. The composition includes all the necessary utilities for quiet work and safe surfing on the Internet. Comodo Internet Security provides comprehensive computer protection. Comodo Internet Security includes: Firewall, Antivirus and proactive Viruscope technology, based on behavioral file analysis and protecting critical system files, registry entries and personal data from internal attacks by rootkits, Key logger, Trojans and other malware. There is a web filter that blocks malicious sites. It is possible to use folders with protected data. In addition, Comodo Internet Security allows you to set up your own virtual secure desktop, as well as run applications using a secure virtual environment - Sandbox Technology, which is also included in the installation of individual Comodo components (firewall or antivirus only). Working in this environment does not allow viruses to change real system parameters, doing it virtually. Comodo Internet Security allows you to configure automatic launch of selected applications in the Sandbox, as well as configure many other settings as you wish.

According to the results of various tests, COMODO is superior to many paid analogues.

When using any firewalls, it is advisable to have at least a minimal understanding of the principles of firewall operation, although with COMODO there are no difficulties during installation and use.

There is also a paid version of the program without functional differences - the free version does not have round-the-clock technical support from COMODO specialists.

Comodo Internet Security supports several languages, including the Russian interface.

Install the Russian interface in Comodo Internet Security:

Go to the tasks window by clicking on the "tasks" icon in the upper right corner.

Expand the list of Advanced Tasks and open the Open Advansed Setting menu.


In the General Setting - User Interface - Language settings that open, select Russian.