Six security updates for Windows in March

March has a relatively quiet pleisterdag for Microsoft.

The software giant gives every second Tuesday of the month of security updates for Windows. This time six, of which only one criticism.

The critical flaw is in the Remote Desktop Protocol (RDP), which allows users to access other computers, for example, to offer remote assistance. RDP is disabled by default, so the vulnerability affects only PCs running the service on.

Microsoft warns that the leak may have very serious consequences and that a PC can be taken over completely. Quick update is therefore desirable.

Furthermore, there are four security updates this month for “important” vulnerabilities in Windows components.

This includes DNS Server, Windows Kernel Drivers, Visual Studio and Expression Design.

Finally, there is a leak of average severity poem in the Windows component Direct Write.

The flaw in Internet Explorer during the Pwn2Own hacker contest was discovered is not yet repaired.

The monthly patches through Automatic Updates or Windows Update for Windows XP, Vista and 7. Go – like every month – a new edition of Microsoft’s ” Windows program for the removal of malicious software “check your computer off at some of the worst threats.

Posted in Antivirus News | Tagged , , , , , , , | Leave a comment

Microsoft Antivirus removed Chrome

A recent update of the antivirus software from Microsoft’s Internet browser Google Chrome, a short time as a virus seen.

The program was blocked and in some cases the computer thrown.

That has Microsoft on Friday. The software maker said the problem have been solved with a new update.

The update, consumers and businesses through the antivirus program can download, makes all changes from previous undo.

About three thousand customers have suffered from the problem, said a spokeswoman from Microsoft.

In the new virus definitions were updated, including one that saw a danger in Chrome. Affected customers should reinstall Chrome.

Bank details

The antivirus thought Chrome was a virus that embeds itself surreptitiously on computers to steal users’ bank details.

The software giant is not the first accidental false virus definition ban. Companies such as McAfee, Symantec and Trend Micro also happened to al.

Posted in Antivirus News | Tagged , , , , , | Leave a comment

How viruses fight back?

“The GoldBug virus has extensive anti-anti-virus routines. It can install itself while several resident anti-virus monitors are running. It will prohibit most popular anti-virus programs from running, and will also by-pass several integrity checking programs”
-from the original source code of the GoldBug virus

Abstract

This paper will discuss methods viruses use or might use in the future to attack anti-virus programs. Attacks of this kind are becoming more common, as virus writers seem to be constantly looking for ways to make their viruses more efficient and vigorous. This paper also suggests how to make anti-virus products more resistant against such attacks. The scope of this paper is limited to PC compatible machines.

1. Introduction

There is a constant battle going on between computer virus authors and virus fighters. Virus writers are looking for methods to create more complicated, more difficult-to-analyse and more inconspicuous viruses. At the same time the anti-virus people are building methods to address these threats.

It’s not surprising that virus authors have realised that anti-virus tools are one of the worst enemies for their creations. The logical step for them was to make …their viruses fight back, either directly or indirectly..

Several viruses explicitly target anti-virus programs. The attack routines might be generic or targeted against a specific program. Obviously many virus authors consider attack to be the best defence, when the objective is to keep the virus alive in order to spread as widely as possible. Continue reading

Posted in Antivirus Article, Virus Protection Tips, Virus Research/white papers | Tagged , , , , , , , , | Leave a comment

Norton Ghost™ Version 15.0 Review

If you work with large amounts of data, or any amount of data for that matter, it is absolutely essential that you backup your computer on a regular basis. There are so many things that can go wrong in an instant that can cause you to lose large amounts of data – if you are not performing backups, you are just asking for trouble. Luckily, Norton has released yet another version of their popular Ghost software suite, Norton Ghost 15.

It’s an elegant, lucid, and mature program that’s easy enough for alert non-technical users, but packed with fine-grained options for advanced users, including the ability to convert backed-up images into “virtual disks” that can be run as “virtual machines” by VMware software or by Microsoft’s Hyper-V technology.

Norton Ghost has come a long way; once a simple disk-cloning tool, it now combines imaging features with incremental backup at the disk, partition and file level, to deliver what Symantec calls “professional grade backup”.

With Norton Ghost, lost or damaged files can be recovered and restored in the event of a system failure, even if the computer’s operating system does not start. It also allows backup of an entire system or specific files and folders while saving recovery points to offsite locations using FTP. Norton Ghost is also flexible, allowing users to decide when to back up their system, either on a schedule or based on an event.

System Requirements

Windows XP SP2 Home / Professional:

  • 300MHz processor or higher.
    512MB RAM (1 GB recommended).
    430MB free hard disk space.
  • Windows Vista Home Starter / Home Premium / Business / Ultimate:
  • Must meet the minimum system requirement of Windows Vista.
  • Windows 7 Starter / Home Basic /Home Premium / Professional / Enterprise / Ultimate:
  • Must meet the minimum system requirement of Windows 7.

Required for all installations:

  • CD-ROM or DVD drive for software distribution on media..
  • Super VGA (800×600) resolution or higher video adapter and monitor.

Supported File Systems and Devices:

  • FAT16, FAT16X, FAT32, FAT32X.
  • NTFS, GUID Partition Table (GPT).
  • Dynamic Disks.

Supported Hard Drives and Removable Media.

  • CDR/RW, DVD+-R/RW, Blu-Ray drives.
  • USB and FireWire (IEEE 1394) devices.
  • Iomega Zip and Jaz drives.

Buy Now

Smooth, But Lengthy, Installation

Installation was smooth, but slow. After installing Ghost 15.0 and restarting my computer, the application downloaded and installed a new version of itself, and required me to restart a second time. After the second restart, it greeted me with a wizard that offered to create a backup of my complete system. The wizard also included options to limit the backup to one or more partitions instead of the complete system, plus an option to backup individual files, folders, or types of files.

I like Ghost 15.0′s spacious, up-to-date interface, which offers all the information that intelligent, but non-technical users need to create backups on local disks, remote network drives, or detachable USB drives. A well-designed Offsite Backup option, for example, guides you through the process of creating backups on USB drives or on writable optical disks, including CDs, DVDs, and even Blu-Ray disks. Drive image backups were reasonably quick but slower than rival products: Ghost 15.0 needed 32 minutes to back up a 38GB partition that ShadowProtect Desktop and Acronis Backup & Recovery 10 both imaged in 24 minutes.

Symantec Norton Ghost 15.0 Features

  • • Full backups are easy – with only a few clicks, you can backup your whole computer. If something goes wrong, a few more clicks will restore it to its original state!
  • • Event based backups – you can have Ghost backup your computer when specific events happen, or even on specific dates automatically
  • • Backup changed files only – instead of backing up your whole computer every time, Ghost can backup only files that have changed, saving time and space!
  • Benefits
  • • Automatically backup your files, photos and more
  • o Safeguards your photos, videos, music and other files with automatic backup
    o Takes periodic snapshots of your entire computer hard drive to be able to completely restore your computer system to a specific backup version in the case of hard drive failure
    o Automatically backs up when online threats raise an increased need to save the latest version of your system

Poor Help Page

Ghost 15.0′s dialog boxes are packed with clearly-written information suitable for casual users. Unfortunately, expert users who click on the “Advanced” button in some of Ghost 15.0′s dialog boxes may be less satisfied with the level of help provided. For example, when I defined a drive-image backup, an “Advanced” button opened a dialog with options for encrypting and password-protecting a backup, and also an option labeled “Perform full VSS backup.” A helpful-looking “Tell me more” button in the same dialog leads to a help page that explains every option on the Advanced dialog—except for “Perform full VSS backup.” Nothing else in the documentation explains what that option means. System administrators will know that it means that you can choose that option to backup Exchange Server and similar data even while the server’s database is active. Unfortunately, even the full-VSS option doesn’t fix Ghost 15.0′s refusal to back up cached Outlook data in an .OST file.

Posted in Antivirus Download, Antivirus Reviews, Norton | Tagged , , , , , , , , , , | Leave a comment

Win32.Elkern.A

Manually removing an infection from your computer can put your data at risk for damage that may or may not be recoverable. Central Command strongly recommends that you backup all of your data prior to attempting to remove an infection or repair any damage causes by an infection.

Details:
———-
Name: Win32.Elkern.A
Aliases: N/A
Type: File Infector, written in Assembly language
Size: N/A
Risk: Low
ITW: No

Description:
—————-
Win32.Elkern.A is a file infector that spreads with the help of Win32.Klez.A@mm, being included in this worm. It runs on Windows 98 and ME platforms.

When executed, the virus copies the host in the Windows system directory under the name wqk (extension .exe or .dll) and writes the following key in the registry:

Software\Microsoft\Windows\CurrentVersion\Run\Wqk

using as value the path to the copied file, allowing it to be reactivated every time Windows is started. Continue reading

Posted in Virus list & description | Tagged , , , , , , , , , , , , | Leave a comment

Avast Internet Security 2012 Review

Avast Internet Security is an excellent and powerful internet.

Avast an acronym for “anti-virus advanced set” was first designed and developed by Czech researchers.

It’s close to perfect core protection is solid and its intelligent virtualization processes are great features.

They envisioned a company called ALWIL software which was recently transformed into Avast Software.

It introduces the new WebRep website reputation get better.

There are certainly a lot of things to love about this internet security especially if they consider an upgrade to more complete Avast Internet Security.

System Requirements:

Keep your email inbox safe and clean

Internet Security’s antispam feature blocks both spam and sophisticated “phishing” attempts, to keep you from clicking “harmless” links that really can cause damage.

Operating Systems Supported

  • Windows 7 (any Edition, 32-bit or 64-bit)
  • Windows Vista (any Edition excl. Starter Edition, 32-bit or 64-bit)
  • Windows XP Service Pack 2 or higher (any Edition, 32-bit or 64-bit) Continue reading
Posted in Antivirus Download, Antivirus Reviews, Avast | Tagged , , , , , , , , , , , | Leave a comment

Win32.Klez.A@mm

Manually removing an infection from your computer can put your data at risk for damage that may or may not be recoverable. Central Command strongly recommends that you backup all of your data prior to attempting to remove an infection or repair any damage causes by an infection.

Details:
———-
Name: Win32.Klez.A@mm
Aliases: N/A
Type: Internet and Network Worm, written in Visual C language
Size: 57345 bytes
Risk: Medium
ITW: Yes

Description:
—————-
Win32.Klez.A@mm is an Internet worm capable of spreading through the local network. The infected e-mails include the virus as attachment with a random name (but with an .exe extension), and the subject of the e-mail is one of the following:

Hello
How are you?
Can you help me?
We want peace
Where will you go?
Congratulations!!!
Don’t cry
Look at the pretty
Some advice on your shortcoming
Free XXX Pictures
A free hot porn site
Why don’t you reply to me? Continue reading

Posted in Virus list & description | Tagged , , , , , , , , , , , , | Leave a comment

Worm/Klez-E

Manually removing an infection from your computer can put your data at risk for damage that may or may not be recoverable. Central Command strongly recommends that you backup all of your data prior to attempting to remove an infection or repair any damage causes by an infection.

Details:
———-
Name: W32/Klez-E
Aliases: Win32.Klez.E@mm
Type: Internet and Network Worm, written in Visual C language
Size: ~80Kb
Risk: High/Medium
ITW: Yes

Description:
—————-
W32/Klez-E is a slight modification of Worm/Klez-A is an Internet worm capable of spreading through the local network under Windows 32-bit systems and infected EXE Files. In order to be able to remain as a resident virus in the workspace, it infects the file KERNEL32.DLL.

The worm arrives through e-mail in the following format:

Subject Lines include (but not limited too):
- Fw: A nice game
- Re: A WinXP patch
- Re: Good removal tools
- Fw: A humour website
- how are you
- For more information, please visit

Body Text (examples):
- This is a nice game
This is my first work.
Your’re the first player. Continue reading

Posted in Virus list & description | Tagged , , , , , , , , , , , , | Leave a comment

Kaspersky Pure Review

Kaspersky has recently updated its range of security software to include the new Kaspersky PURE, an all-singing, all-dancing suite that does far more than simply protect against and remove threats.

Its been quite long until we did Kaspersky Pure review. Lets begin by saying that Kaspersky Pure’s advantage lies in its ease of use.

Packed with the entire range of network protection features, it is easy to manage as it simplifies and centralizes your entire home virus protection system.

Given its focus on combining functionality with simplicity vis-à-vis its use, the Kaspersky Pure is a full-fledged protection system that works well for professionals as well as occasional home users.

This Kaspersky premium security suite combines stalwart protection with a complete suite of tools designed to protect your family, your identity and your computers.

A single license purchase can protect up to three PCs, and you can remotely manage all PCs from one computer.

You can also remotely manage parental controls to protect your children and supervise their time spent online from anywhere.

It can even block your children from sharing sensitive information online, such as phone numbers, your home address or credit card numbers.

Unlike other all-in-one-security suites that also offer system tune ups like cleaning up the computer and defragmenting, it solidly focused on features that provide you with fool-proof security.

Kaspersky Pure is certainly worth checking out if you are a home user needing great protection in an all-in-one package. Continue reading

Posted in Antivirus Download, Antivirus Reviews, Kaspersky | Tagged , , , , , , , , , , , | Leave a comment

How do you catch a hacker?

That feature has been particularly useful for hackers, many of whom have developed a sense of invulnerability and even boast that they will never be captured.

However, as seen this year with the arrest of several hackers, authorities are not as powerless as many have believed.

The bluster of hackers is increasingly followed by a surprise visit from local police. How do researchers capture the criminals of the new era?

Internet addresses

To begin, you need to step back and understand how people can hide your identity online.

Many assume, correctly, that if you connect to the Internet is given a unique address (its IP, which stands for Internet Provider) and that can be used to track any activity that comes from that direction until you reach an individual. But not so simple, and certainly not as fast, for several reasons.

First, many years ago the number of devices on the Internet requesting IP address exceeded the number of possible directions. Continue reading

Posted in Hackers | Tagged , , , , , , , , , | Leave a comment