This morning I've been fighting with our SEPM server, and every support doc I for the issue I'm having find has different information on it. I keep running in circles.
Oh and I love that bug in v11 and v12 where it creates a temp file in an xfer folder before it quarantines a file, but then it keeps scanning that temp folder and creating new files to quarantine over and over. It's been a known issue for years and they haven't fixed it. The only thing that truly fixes it is uninstalling the client, deleting the xfer folder and reinstalling the client.
Also, when they changed the find unmanaged process in v12, the product became pretty much useless to me. In v11 I used to just find unmanaged computers and push the client out to them, now v12 uses "unmanaged detectors" and it just gives you a list, which you can't do anything with (other than manually typing in each computer name or creating a csv list to deploy to). This product is a mess.
Luckily we already pay for Microsoft Forefront, so once I get some time I'll be pushing that out and we are done renewing symantec.
At work we use the Sophos suite (forced upon us by global HQ).
Our IT department found the solution... they gave us all SSD's.
A friend of mine admins a network with Sophos, he says he loves it. I hear it works correctly with AD and it's simple to monitor, update and deploy clients. Which is all I really care about.
To be honest, in the environments I work in, the viruses are really not a big deal...it's about staying in compliance if there was an audit that is important. These days if there is a virus, we just remotely re-image the computer anyhow, everything is stored on the network drives. I can't remember the last time I actually spent a lot of time troubleshooting a computer with a virus.