Feature | Description |
|---|
Integrated antivirus and antispyware engine | Single engine enhances client machine performance and detection capabilities by minimizing end-user disruptions. |
Real-time protection with the Windows Filter Manager | By using “mini-filter” technology with the Windows Filter Manager, Forefront Client Security is able to scan virus and spyware files before they run, providing better security against spyware and blended threats (for example, spyware that infects a PC through backdoor Trojans or other means). The other benefit to using the Windows Filter Manager is that end-user disruption (system slowdowns) is minimized during real-time scans for both viruses and spyware. |
Scheduled and on-demand scans | Quickly scan in-memory processes, targeted directories, and common malware extensibility points to ensure that the client machine is malware-free at all times. |
Malware removal and system recovery | The Microsoft anti-malware engine removes malware and runs cleaning scripts to help ensure that the machine is still in a usable state. |
Archives and packers scans | Archives and packers are a common way for malware authors to try to hide from anti-malware technologies, but the engine is able to look inside archives and packers and remove infected files. |
Advanced protection mechanisms | The engine includes advanced protection mechanisms to find user-mode rootkits, polymorphic viruses based on behavior analysis, tunneling signatures, and heuristic detection mechanisms that find new malware and variants. |
Compatible with Windows Security Center and Windows Vista Network Access Protection (NAP) | Forefront Client Security provides customers the ability to see whether Forefront Client Security is running and up to date. IT administrators are able to configure NAP on Windows Server 2008 servers so that Forefront Client Security–managed machines attempting to connect to the network are checked to ensure that the security agent is up to date and actively protecting clients. If the client machine does not have the Forefront Client Security agent or is not up to date, the user is not allowed to connect to the network and is notified within Windows Security Center. If the user installs the security agent for Forefront Client Security with updated signatures, he or she can then connect to the network. |
FCS Virtualization Security | The Forefront Client Security agent is installable on Windows Server 2008 host and virtualized operating systems to protect against malicious threats. The FCS Management Server can also be installed on Hyper-V virtualized machines to consolidate management server roles. |
Windows Server Core and Cluster Services Protection | The Forefront Client Security agent as well as the Forefront Client Security Management Console both support Windows Server 2008. The FCS agent also protects Windows Server Core and Microsoft Cluster Services. |