Quick Heal

Producer Information

Quick Heal is an Indian-origin company with over 30 years of experience in providing antivirus and security solutions for individuals and businesses. Their flagship product is Quick Heal Total Security, which protects you from all types of digital threats.

Key features of Quick Heal

It uses GoDeep.AI, a cloud-based technology that analyzes and blocks threats in real time. Through a combination of behavior analysis and deep learning, the system effectively identifies both known and new types of malware. GoDeep.AI learns and remembers the threat, allowing it to quickly identify even new malware variants.

Quick Heal has an advanced firewall that monitors network traffic and blocks unauthorized connections. In addition, an intrusion detection system (IDS/IPS) identifies and neutralizes intrusion attempts and attacks on vulnerabilities in network protocols such as SMB and RDP. This function protects against ARP poisoning attacks, fake PING queries and modification of DNS entries.

The “Secure Banking” feature provides protection during online transactions, guarding against phishing and fake websites. In addition, the browser running in sandbox mode isolates browsing sessions from the operating system, minimizing the risk of malware infection.

The software provides all-around protection by combining different modules, like AntiVirus, AntiSpyware, AntiMalware, AntiRootkit, Firewall, and Intrusion Detection and Prevention System (IDS/IPS). This combination guarantees effective defense against a variety of threats, including viruses, worms, spyware, and rootkits.

Selected Awards

Certificates that confirm the high quality of software and effectiveness in protecting against threats and attacks in real time.

The certificate is awarded to solutions that achieve a high level of security throughout the year in the Advanced In-The-Wild Malware Test.

The TOP Remediation Time award reflects the quick response to threats through the complete neutralization of the entire “life cycle” of malware in the year-round Advanced in-The-Wild Malware Test.

We award developers who perfectly respond to cyberattacks reproducing the theft of payment data, or even the manipulation of information by banking Trojans.

Advanced In-The-Wild-Malware Test

Recent Results in November 2024

Tested on default settings + browser protection

Quick Heal Total Security
PRE-LAUNCH:
78.91%
POST-LAUNCH:
21.09%

Blocked: 958/958
Total: 100%

PRE-LAUNCH: This classification references the detection of malware samples before they are launched in a live system.

POST-LAUNCH: This indicates an analysis level, i.e., an attack has executed and has been blocked by a tested product.

FAIL: This classification indicates a detection failure, i.e., an attack has NOT been blocked and has infected a system.

Remediation Time in a Nutshell

November 2024

42

seconds

Average Remediation Time of active threats

99

seconds

Fastest Remediation Time of one single threat

345

seconds

Longest Remediation Time of one single threat

45

data breaches

or active threats
after Remediation

Remediation Time (RT) Legend
The time expressed in seconds from the introduction of malware into the system by a browser, through the launch, to detection and reaction by product on a security incident. The Remediation Time may depend on the real activity of the malware, which may increase calculated time.

remediation time

Example indicators

We can completely automate security tests carried out. For instance, we are able to record events of blocking an attack by a specific technology implemented in a product. If a product reacts to a malicious modification of the system, this kind of information is saved in the Windows event log or the local logs of the protection solution. We can capture such modification using the Windows API. For example, the activity of moving a virus to quarantine or running malware in a sandbox will cause the reading of a relevant key from the Windows registry or executing an action by a process. Then, we can mark recorded indicators as a detected attack, a blocked network connection, or an infected file removal. Here are some example indicators:

 ESET Internet Security:

ANTIVIRUS INDICATORSDESCRIPTION
C:\ProgramData\ESET\ESET Security\Logs\virlog.datMalware was removed or cured
*AppData\Local\ESET\ESET Security\QuarantineMalware was quarantined
C:\ProgramData\ESET\ESET Security\epfwlog.datBlocking of traffic by a firewall
C:\ProgramData\ESET\ESET Security\Logs\urllog.datBlocking of malware on a website