The issue with McAfee, Sophos Symantec etc is they are all signature based AV detection and protection, which by its nature is reactive, if you look at something like Bit Defender they have behaviour-based heuristics technologies built in to their AV that picks up anomalies on sites and will block these amenities.
Hackers are now more that ever hacking into sites that are white listed sites (Not on a URL black lists) i.e YBW and placing Trojans, worms, keystroke loggers etc and only after these are detected by someone will a signature be added.
-------------------- Be Compliant, Green and Secure www.softwareseller.co.uk
|