Blocks most viruses as "spam" that should be deleted.
39% of viruses are stopped this way. | Most viruses are generated and sent out in large waves of emails, so they exactly resemble spam.
The messages are classified at our highest level of spam, as Spam-D and immediately deleted or quarantined.
|
Layer 2:
Zero Hour Pattern Detection |
Identifies viruses in the wild before they are
"named".
42% of viruses are stopped this way. |
The Zero Hour approach does not rely on file scanning but provided malware detection based on identifiable patterns such as:
- Sender IP addresses
- Malicious code in attached malware
- Combinations of characters from the subject and body of the email
- Email distribution patterns – such as senders (how many, location) and the volume of the emails sent over a period of time.
- Structure patterns – in the email messages and attachments.
|
Layer 3:
Traditional Anti-Virus Scanning |
Identifies viruses based on known signatures.
15% of viruses are stopped this way. | SpamSentinel Antivirus looks specifically at the file attachments to accurately detect:
- Malware hidden in PDF files, HTML and Java scripts, and archive files
- Full anti-malware detection of worms, Trojans, spyware, adware and other potentially unwanted applications types
Malware detection is based on:
- Heuristics – basic and emulator-based.
- Algorithmic scanning methods – using an internal detection language.
- Signature-based scanning – for exact malware file identification.
- Emulation – for encrypted and polymorphic virus detection.
- Full support for all types of ZIP, Bzip2, RAR, 7zip, NSIS and CAB compression techniques
|
Layer 4:
Restricted Attachments |
Stops missed viruses by stopping and quarantining executable files.
4% of viruses are stopped this way. | Most viruses exploit the ability to launch right from the email message. That means they prefer to be executable files (EXE files). New variations are sent every day. Restricting EXE and other attachments is the last layer preventing viruses from entering your organization. |
Layer 5:
Scan Microsoft Office documents for macros. | Malicious macros can download and execute malware/viruses in the background without the user's knowledge. SpamSentinel now creates safe copies of these documents for viewing and password protects the original file to prevent accidental opening. |
| |