This article reviews CrowdStrike Falcon, the College's new (as of 2023) antivirus solution!
What is CrowdStrike Falcon?
CrowdStrike Falcon is an antivirus solution that actively detects and prevents malicious files and behaviour.
How it's different from Sophos
CrowdStrike Falcon is configured such that there should be little to no performance impact on your computer.
Sophos was dependent on known virus signatures, essentially fingerprints, to identify and block malware. This was a tried-and-true method until you encounter malware that looks legitimate, but acts malicious.
CrowdStrike instead relies on behaviour-based detection, focusing on how software acts as opposed to how it appears. This allows it to quickly and efficiently block malware with an extremely low rate of false positives.
Detections and preventions
Anytime CrowdStrike Falcon blocks, kills, or quarantines a file or process, you will be notified via a pop-up. Any detection and prevention events are also logged in case they need to be reviewed further.
Finding CrowdStrike Falcon
CrowdStrike Falcon does not have an application or console that is accessible. Instead, a lightweight "sensor" is installed that actively detects and prevents malicious files/behaviour, while maintaining low false positives.
- Press the key on your keyboard
- Type in and click on Installed apps
- Scroll down to CrowdStrike Windows Sensor
- Open Finder
- On the left-hand pane, select the Applications folder
- Scroll down to find Falcon
Unfortunately CrowdStrike Falcon for personal devices is not available at this time. LITS is currently investigating options and, when available, this document and Software for Personal Devices will be updated.
Starting an antivirus scan
On-demand scans are no longer necessary due to CrowdStrike's detection and prevention policies, allowing it to actively detect malicious files and behaviour while reducing false positives.
- Right-click a file or your desktop
- Click Show more options
- Hover your mouse over CrowdStrike Falcon malware scan
- Select from one of the following options:
- Scan all drives
- Scan system drive
- See results of last scan
Unfortunately on-demand scanning for Apple devices is not available at this time.
If you have any additional questions or problems, don't hesitate to reach out to the Help Desk!