Multibooting and AV software


  1. Posts : 9,582
    Windows 8.1 Pro RTM x64
       #1

    Multibooting and AV software


    When creating a multi-boot system, as I will be doing when I install W7 Beta alongside Vista, does each OS require its own AV and how is it set up so as not to interfere with the other OSes?
    Would the answer be the same for a triple boot of XP, Vista and W7 (which I intend to do when W7 is released out of Beta)?
      My Computer


  2. Posts : 18,404
    Windows 7 Ultimate x64 SP1
       #2

    Hi Dwarf,

    When you have another partition/new volume that you install 7 on then yes, you would have to put an AV on it, it will not interact with your other partition/OS.
      My Computer


  3. Posts : 4,364
    Windows 11 21H2 Current build
       #3

    Umm, a point of clarification:

    If you install and AV program / suite and you do not *restrict* it from scanning other partitions or drives on your system, then it very well may scan those partitions and drives as well.

    You'll have to be careful of what you do and how you do it.

    Generally speaking, if nothing malicious is detected on a partition in one AV program then nothing *should* be detected by another program - however, stranger things have happened. This gets even worse for programs that might have a weak quarantine system, thus allowing other programs to actively scan inside their quarantine.

    You *best* bet is to use the same AV every time - but that is no always possible, neither feasibly nor physically.
      My Computer


  4. Posts : 9,582
    Windows 8.1 Pro RTM x64
    Thread Starter
       #4

    Thanks, John. So if I were to use, say Kaspersky (because I am already running it, and also because I know that you can get versions licensed for 3 machines) and install the SAME AV on each OS on my system, would it eliminate the problem of false positives being generated if the full disk is scanned in any of the OSes as opposed to just the partition that the OS is on?
      My Computer


  5. Posts : 5
    WIN 2k Xp WIN 7
       #5

    Anybody else had this both a-squared and remove-IT pro identify
    c:windows\sytems32\mfplay.dll as malware but seems to be a false positive?
      My Computer


  6. Posts : 9,582
    Windows 8.1 Pro RTM x64
    Thread Starter
       #6

    Hi Ziggy,

    Can you please not hijack threads - this one is specifically for AVs and multi-boot systems. In your case your query, whilst being security related and therefore in the correct section of the forums, bears no relation to the topic of the thread and should be posted as a new thread. This will make it easier for you and others to keep track of the threads that you post, and will ensure that replies to a thread are kept to the topic of the thread without going off on a tangent.
      My Computer


  7. Posts : 4,364
    Windows 11 21H2 Current build
       #7

    Dwarf said:
    Thanks, John. So if I were to use, say Kaspersky (because I am already running it, and also because I know that you can get versions licensed for 3 machines) and install the SAME AV on each OS on my system, would it eliminate the problem of false positives being generated if the full disk is scanned in any of the OSes as opposed to just the partition that the OS is on?
    Well, not eliminate, but would greatly reduce. See, the problem is that AV programs and suites have gotten a lot more sophisticated then they were back in the 90s - today, they analyze files on the fly (aka real time protection) and analyze what the file is attempting to do, where it is attempting to be written to (or where it is attempting to write to), etc. So, you could potentially see a FP from Kaspersky in, say, Vista, if it scanned a file that resides on your W7 partition, and does not recognize it / does not like it / etc. Similarly, you might get a FP in W7 when it scans a file on the Vista partition....

    And either can give a FP if a file fails any sort of verification tests - for example, a hash check, an integrity check, etc.

    That being said, though, the chances for these occurring decreases dramatically when you use the *same* AV in all OSs.

    So, end result - yes, you're better off using the same one in all three, with respect to cross-OS replication and / or FP detection.

    As to whether you're better off using Kaspersky over other AVs...that i8s all a matter of opinion. And I am not going there.
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 04:17.
Find Us