Showing posts with label Malwares. Show all posts
Showing posts with label Malwares. Show all posts

Friday, February 1, 2013

My Article Feb - 2013 એન્ટીવાયરસ : સસ્તું નહિ ... વસ્તુ માંગો !!

એન્ટીવાયરસ : સસ્તું નહિ ... વસ્તુ માંગો  !!
સાયબર સફર આર્ટિકલ -ફેબ્રુઆરી -2013 


પ્રિય વાચકમિત્રો, 
લાંબા સમય ના અંતરાય બાદ ફરી એકવાર આપની સમક્ષ એક માહિતીસભર લેખ પ્રસ્તુત કરું છું। પરંતુ તે પહેલા આ સમય દરમિયાન આપના પ્રતિભાવો , ફોન કોલ્સ તથા ઈમેઈલ બદલ આપ નો ખુબ અભાર વ્યક્ત કરું છું। અને ખાસ તો એ વિદ્યાર્થીમિત્રો જેમને આમાંથી કૈક શીખવા મળે છે, કૈક પ્રેરણા મળે છે તેમના તરફથી કોઈપણ સૂચનો અથવા કારકિર્દી ને લગતા પ્રશ્નો આવકાર્ય છે। 

કોમ્પ્યુટર વાયરસથી તો આપ પરિચિત જ હશો । VIRUS સાચું પૂરું નામ :  Vital Information Resources Under Seize છે . પરંતુ આપને માત્ર સમજવા ખાતર કહી શકીએ  
V ery
I mmediate
R isk to
U ser
S ecurity 

ટુકમાં કહીએ તો કમ્પ્યુટર પર દેખાતા(ક્યારેક ના પણ દેખાતા) તમામ પ્રકાર ના નુકસાનકારક પ્રોગ્રામ્સ કે સોફ્ટવેર જેને માલ્વેર પણ કહેવાય છે। તેમાં કમ્પ્યુટર વાયરસનો પણ સમાવેશ થાય છે। આવા વાયરસથી આપના કમ્પ્યુટર ને સુરક્ષિત રાખવા માટે આપણે એન્ટીવાઈરસ સોફ્ટવેર વાપરીએ છીએ। 
મિત્રો , અપને કદાચ ખ્યાલ નહિ હોય પરંતુ એન્ટીવાઈરસ એ પણ એક જાતનો વાઈરસ જ હોય છે। ફરક માત્ર એટલો જ હોય છે કે તેમનું પ્રોગ્રામિંગ કમ્પ્યુટરને અવનવા ખતરાઓ થી બચાવવા માટે થયેલું હોય છે। અલગ અલગ કમ્પ્યુટર સીસ્ટમ માટે અલગ અલગ એન્ટીવાઈરસ હોય છે। આપ સૌ જાણો જ છો કે એન્ટીવાઈરસ બજાર માં 300-400 થી માંડી ને 10-12000 સુધીની રેંજ માં ઉપલબ્ધ છે। કેટલાક એન્ટીવાઈરસ સોફ્ટવેર આપ ઈન્ટરનેટ દ્વારા પણ ખરીદી શકો છો। હવે કેટલાક મિત્રો ને એવો વિચાર જરૂર આવ્યો હશે કે એન્ટીવાઈરસ તો ઇન્ટરનેટ પરથી મફત માં પણ ડાઉનલોડ  કરી લેવાય ને।।।!!! તો પછી ખોટો ખર્ચો શુ કામ કરવો।।।?? સાચી વાત છે ... આપણે રહ્યા પાક્કા ગુજ્જુ .... પૈસા નો હિસાબ તો પહેલો।! તો ચાલો આજે આપણે જાણીએ કે એન્ટીવાઈરસ ખરીદવો કે નહિ,બજાર માં ઉપલબ્ધ ઢગલાબંધ એન્ટીવાઈરસ સોફ્ટવેર માંથી કયો ખરીદવો ....??

એન્ટીવાઈરસ ખરીદવો જોઈએ કે ફ્રી માં ડાઉનલોડ કરી ને વાપરવો જોઈએ તેનો સાચો જવાબ તો સામે વાળી વ્યક્તિ પર આધારિત છે। એક રીતે જોઈએ તો ઈન્ટરનેટ પરથી ફ્રી માં મળતો એન્ટીવાઈરસ પણ સારો .. (ના મામા કરતા કાણો મામાં શું ખોટા।।।???) પણ આજ સવાલ જો કોઈ પ્રોફેશનલ બીઝનસમેન પૂછે ત્યારે તદ્દન વિપરીત જવાબ આપવો પડે। પેઈડ તથા એન્ટીવાઈરસ બંને ના પોતાના પ્લસ-માઈનસ પોઈન્ટ્સ છે। તે જાણવા માટે આપણે સમજવું પડશે કે એન્ટીવાઈરસ કેટલા પ્રકાર ના હોય છે અને આપણને ક્યાં ક્યાં ફીચર્સ પૂરા પાડે છે। 

એન્તીવાઈરસ મુખ્યત્વે ચાર પ્રકારના હોય છે।

  1. ફ્રીવેર 
  2. પેઈડ 
  3. સ્યુટ 
  4. પ્રીમીયમ સ્યુટ 

ફ્રીવેર એન્ટીવાઈરસ થી જેમ જેમ આગળ પ્રીમીયમ સ્યુટ તરફ જતા જઈએ તેમ તેમ એન્ટીવાઈરસ ના ફીચર્સ અને સુવિધાઓમાં  (સાથે સાથે ભાવમાં પણ ..) વધારો થતો જાય છે। 

ફ્રી એન્ટીવાઈરસ સોફ્ટવેર સામાન્ય રીતે મૂળભૂત સુવિધાઓ પૂરી પાડે છે જે આપને બેઝિક  લેવેલ ની સિક્યોરીટી આપે છે। દા . ત . સ્કેનીંગ , ... તો કેટલાક એન્ટીવાઈરસ માં બ્રાઉઝર સિક્યોરીટી તો કેટલાકમાં ફ્રી ફાયરવોલ ફીચર્સ આપવામાં આવે છે . પરંતુ મોટા ભાગના ફીચર્સ તેઓ પેઈડ એન્ટીવાઈરસ માટે અનામત રાખતા હોય છે . કેટલાક ફ્રી એન્ટીવાઈરસ માં તમારા કમ્પ્યુટર ની એક્ટિવીટી પરથી  માલ્વેર ડીટેકશન કરે છે। ફ્રી એન્ટીવાઈરસ સોફ્ટવેર ઓ ફાયદો એ છે કે આપને એ ગમે ત્યારે ઓનલાઈન કોઈપણ રજિસ્ટ્રેશન વગર અપના કમ્પ્યુટર પર આસાની થી ડાઉનલોડ કરી શકો છો। પરંતુ ફ્રી એન્ટીવાઈરસ માત્ર સેમ્પલ જેવું કામ આપે છે કે જેના દ્વારા એન્ટીવાઈરસ કંપની પોતાની સર્વિસનો ડેમો બતાવે છે .

પેઈડ એન્ટીવાઈરસ: પેઈડ એન્ટીવાઈરસ સોફ્ટવેર એ ફ્રીવેર અને  ફીચર-પેક પ્રીમીયમ સ્યુટ ની વચ્ચે આવે છે . જે વ્યાપક પ્રમાણ માં સિક્યોરીટી ટૂલ્સ ઉપલબ્ધ કરાવે છે . જેમ કે પેરેન્ટલ કંટ્રોલ , આઈડી થેફ્ટ પ્રોટેક્શન વગેરે . ફ્રીવેર એન્ટીવાઈરસ કરતા અન્ય ઘણી સુવિધાઓ તેમાં આપવામાં આવેલી હોય છે। આવા પેઈડ એન્ટીવાઈરસ હોમ એડીશન તરીકે પણ ઓળખાય છે કે જે કોઈ સિંગલ કમ્પ્યુટર સીસ્ટમ અથવા લેપટોપ માટે ઉપયોગી છે। પેઈડ પ્રોડક્ટ નો અન્ય એક ફાયદો છે તેની કસ્ટમર સર્વિસ .કેટલીક  કંપનીઓ  પોતાના ગ્રાહકોને ફોન અથવા ઈ-મેઈલ ની સર્વિસ પૂરી પાડે છે . ફ્રી એન્ટીવાઈરસ પ્રોડક્ટ્સ માં સામાન્ય રીતે વારંવાર પેઈડ પ્રોડકટ્સ ની જાહેરાતો નો ત્રાસ રહેતો હોય છે જે પેઈડ પ્રોડક્ટ્સ માં હોતો નથી। તો આ રીતે જેમ જેમ ફીચર્સ અને સિક્યોરીટી વધતા જાય તેમ તેમ એન્ટીવાઈરસ આપની સીસ્ટમ ને વધુ ને વધુ સુરક્ષિત બનાવતો જાય છે।  

આ ઉપરાંત એન્ટીવાઈરસમાં અન્ય કેટલાક ફીચર્સ ને લીધે પણ ગ્રાહકો તેમની પસંદગી કરે છે। પરંતુ તેમાં મુખ્ય 3 ફીચર્સ છે .
  • ઇન્ટરફેસ 
  • માલ્વેર ડીટેકશન અને 
  • સ્પીડ  

ઇન્ટરફેસ(સોફ્ટવેર ડીઝાઇન) : કેટલાક એન્ટીવાઈરસ સોફ્ટવેર ખૂબ સરસ ઇન્ટરફેસ અને આકર્ષક વિઝ્યુંઅલ ઈફેક્ટસ વડે ગ્રાહકો ને આકર્ષે છે। દા। ત। avast એન્ટીવાઈરસ પોતાની વોઈસ ઇન્ફોર્મેશન સિસ્ટમ વડે સ્કેનીંગ , અપડેટ, વાઈરસ ડીટેકશન વગેરે ની માહિતી તેના યુઝર ને આપે છે જે અન્ય એન્ટીવાઈરસ કરતા અલગ પડે છે અને યુઝર ને પણ મજા આવે છે .


ડીટેકશન : મોટા ભાગના એન્ટીવાઈરસ સોફ્ટવેર ની ગુણવત્તા તેના રેન્કિંગ સિસ્ટમ ને આધારે થતી હોય છે . પરંતુ " વર ને કોણ વખાણે ??? વર ની માં ... "- એની જેમ બધી જ એન્ટીવાઈરસ કંપનીઓ પોત-પોતાની વેબસાઈટ ને પોતે જ કોઈ ને કોઈ રીતે રેન્કિંગ અપાવે છે . તો આવા ભ્રામક રેન્કિંગ ને આધારે એન્ટીવાઈરસ ની પસંદગી ના કરવી। પરંતુ આપની જરૂરીયાત અને ઉપયોગીતા ના આધારે એન્ટીવાઈરસ પસંદ કરવો ." રીયલ વર્લ્ડ એન્ટીવાઈરસ સર્વે અનુસાર ફ્રીવેર કરતા પેઈડ એન્ટીવાઈરસ સોફ્ટવેર 96 % બેસ્ટ પર્ફોમન્સ આપે છે . "

સ્પીડ: એન્ટીવાઈરસ ની પસંદગી માટે નું અન્ય એક મહત્વ નું પાસું છે તેની પ્રોસેસ સ્પીડ . ફ્રીવેર કરતા પેઈડ એન્ટીવાઈરસ દસ ગણું ઝડપી પરફોર્મન્સ આપે છે .જો કે બંને પ્રકાર ના એન્ટીવાઈરસ સીસ્ટમના સ્ટાર્ટ-અપ ને 20 થી 50 સેકંડ જેટલો ઓછો કરી શકે છે . પરંતુ તેમ છતાં મહત્વ નો તફાવત તો સ્કેનીંગ સ્પીડ નો છે।  જેમ કે 4.5 જીબી નો ડેટા સ્કેન કરતા જે ફ્રીવેર એન્ટીવાઈરસ ને 2 મિનીટ લાગે છે તે જ ડેટા ને પેઈડ વર્ઝન 20-25 સેકંડ માં પૂરું કરી દે છે।  જેમ જેમ તેમાં વધુ ફીચર્સ તરફ જતા જઈએ તેમ તેની સ્પીડ અને અન્ય એડ-ઓન્સ માં પણ વધારો થતો જાય છે . 

તો આ છે  ફીચર્સ જે આપને કોઈપણ એન્ટીવાઈરસની પસંદગી આપની જરૂરિયાત મુજબ કરી શકો છો। આ સિવાય પણ અન્ય ઘણા ફીચર્સ છે જેના આધારે આપ પોતાને અનુરૂપ એન્ટીવાઈરસ ની પસંદગી કરી શકો છો . જે નીચે દર્શાવેલ ચાર્ટ માં દર્શાવેલ છે। જો આપનો બીઝનેસ મોટો છે તો આપને બધા જ ફીચર્સ પર ધ્યાન આપવું પડશે અને તે પ્રમાણે સૌથી સિક્યોર એન્ટીવાઈરસ ની પસંદગી કરવી પડશે। તે જ રીતે જો કોઈ સ્કૂલ - કોલેજ માટે થોડા ઘણા ફેરફાર સાથે જરૂરી એન્ટીવાઈરસ જરૂરી રહેશે। પરંતુ જો એન્ટીવાઈરસ ઘરના કમ્પ્યુટર પર વાપરવો હોય તો આપના માટે હોમ એડીશન -પ્રીમીયમ પેક બેસ્ટ રહેશે .


ઉપરોક્ત ચાર્ટ માં આપની વિવિધ જરૂરિયાત મુજબ આપનો એન્ટીવાઈરસ પસંદ કરી શકો છો . જેમ કે 
  • જો આપ ઈન્ટરનેટ બેન્કિંગ કે ઓનલાઈન શોપિંગ કરતા હો તો આપના માટે વર્ચુઅલ કીપેડ વાળો કાસ્પર સ્કાય ઉપયોગી રહેશે।
  • જો ઘરે બાળકો અથવા ઓફિસ ના કર્મચારીઓ પર આપની ગેરહાજરી માં વોચ રાખવા માંગતા હોય તો પેરેન્ટલ કન્ટ્રોલ ની સુવિધા આપતા એન્ટીવાઈરસ ની પસંદગી કરો .
  • કંપની આપને ક્યાં પ્રકાર ની કસ્ટમર સર્વિસ આપશે તેના આધારે પણ એન્ટીવાઈરસ પસંદ કરી શકો છો। જેમ કે કેટલાક લોકો ને ઈ-મેઈલ કરતા ટેલીફોનીક હેલ્પ વધુ ફાવતી હોય છે .

મોબાઈલ એન્ટીવાઈરસ સોફ્ટવેર : 
એન્ડ્રોઈડ , વિન્ડોઝ , બ્લેક્બેરી જેવા સ્માર્ટફોન્સ માં  પણ એન્ટીવાઈરસ દ્વારા અલગ અલગ ફીચર્સ આપવામાં આવે છે જેના દ્વારા મોબાઈલ ને વધુ સિક્યોર રાખી શકાય છે . અહી કરેલા સર્વેક્ષણ અનુસાર કંપની મોબાઈલ એન્ટીવાઈરસ માં ફ્રી તથા પેઈડ માં કઈ કઈ સુવિધા આપે છે તે દર્શાવ્યું છે . જેમાં આપની જરૂરિયાત મુજબનું સિલેકશન કરી શકો છો . 


 ( અત્રે પ્રસ્તુત ચાર્ટ માત્ર માહિતી માટે છે . અહી કોઈ કંપનીની જાહેરાત ના હેતુસર નથી . )

તો આ રીતે અલગ અલગ એન્ટીવાઈરસ સોફ્ટવેર ના ફીચર્સ વ્યક્તિગત કે વ્યવસાયિક હેતુ પાર પાડે છે . પરંતુ જ્યાં સિક્યોરીટી નો સવાલ છે ત્યાં ક્યારેય કિંમત સાથે બાંધછોડ ના કરવી। કારણ કે અંતે તો ખતરનાક સાયબર વર્લ્ડ માં આપણે એકલા જ નથી . તો રણમેદાન માં ઉતરતી વખતે જરાક હથિયારો ની પસંદગી અને ચકાસણી અતિ આવશ્યક છે .
આપના અભિપ્રાયો તથા સૂચનો આવકાર્ય છે .
 
મિલાપ ઓઝા
સાયબર સિક્યોરીટી એક્સપર્ટ 
એપિન ટેકનોલોજી લેબ - જુનાગઢ 
90330 18333

Monday, December 24, 2012

Non-Windows attacks will increase in 2013


Android devices are now the highest selling mobile devices in the Asia Pacific market and hackers will take advantage of that by developing mobile malware.As your work and play converges even more on a digital device - a tablet, smartphone or the laptop, beware of the increasing threats. Android devices are now the highest selling mobile devices in the Asia Pacific market and hackers will take advantage of that by developing mobile malware. Consumers aren't the only ones at risk of mobile threats.


Enterprises, particularly those embracing Bring Your Own Device (BYOD), are also at risk. Overall, non-Windows attacks will increase in 2013. Software security expert McAfee, an Intel company, in a release, looks at the threats to computers in 2013: 

Top 10 Enterprise Security Predictions 

1. Targeted Attacks: 2012 saw an increased growth in targeted attacks that proved successful in disrupting service and fraudulently obtaining significant amounts of intellectual property. We expect cyber criminals will continue to use this method and as a result, in 2013, we are likely to see significantly more targeted attacks and targeted malware. This type of attack is more difficult to protect against. Uniform attacks are still out there but as soon as they are identified and a security fix is released they are no longer effective. 

One disturbing development in this trend across 2012 was that we started to see more targeted attacks that destroyed evidence of the attack afterwards and we are likely to see this continue. We have seen attacks where 30,000 hard drives were left non-operational after an attack. Dealing with the clean-up distracts the IT administrators who don't immediately realize they have been hacked. It also adds to the difficulty in ensuring effective incident response as hackers literally attack any hardware on the way out. Protecting against this will be a major challenge - particularly for enterprise and government. 

2. Signed malware: Signed malware was prevalent in 2012 and this is likely to continue. Signed malware is present when a hacker obtains a digital certificate from an organization and appends it to malware, allowing the malware to pass through an organization's operating system. Stuxnet is a high profile example of this threat. There will be a large increase in this type of threat and it will be harder to stop because it appears more legitimate. 

3. Big business at risk: Enterprises can be at a higher risk of an attack as there is often a greater attack surface and more 'visibility gaps' in their security posture. With targeted attacks on the rise, the motives to target a large enterprise are often greater than a smaller organization. 

4. Non-Windows attacks: We suspect non-Windows attacks will continue to increase in 2013. Android devices are now the highest selling mobile devices in the Asia Pacific market and hackers will take advantage of that by developing mobile malware. Consumers aren't the only ones at risk of mobile threats.

Enterprises, particularly those embracing Bring Your Own Device (BYOD), are also at risk. Interestingly, the mobile malware growth rate is similar to what we saw for Windows malware some time ago, which shows it is a genuine threat. McAfee's Q3 Threat Report for 2012 showed mobile malware almost doubled when compared to the previous quarter's numbers. 

5. Ransomware: This will also be prevalent in 2013. Ransomware is operated by encrypting files on a victim's computer which can only be unlocked by paying the criminals a 'fine'. It has been a big issue in other countries around the world in the past. 
       

6. Impact of changing regulations: The Indian banking regulator (RBI) has generally been proactive in advising banks on issues relating to security and has acted as an important institution to drive the importance of this matter at the level of Board of Directors. According to the Reserve Bank of India report released in January 2011, the regulator acknowledges that given the increasing reliance of customers on electronic delivery channels to conduct transactions, any security related issues have the potential to undermine public confidence in the use of e-banking channels and lead to reputation risks to the banks.

The regulator has institutionalized a whistle-blowing system by means of a quarterly assessment of all banks towards their progress on these guidelines in the AFI (Annual Financial Inspection) cycle 2011-2012. To conform to these guidelines, financial services organizations in India will need to demonstrate compliance with RBI regulatory mandates, which include data protection, event collection and analysis, endpoint controls, and related security measures. 

7. Need for incident response: In 2013, organizations will have to review their processes for dealing with a targeted attack. If the organization falls foul from a targeted attack or Advanced Persistent Threat (APT) they will need to adopt a process of incident response and many organizations don't necessarily have the technologies in place to ensure timely investigation and remediation is possible. As such, solutions providing incident response capabilities will become a security infrastructure priority for many organizations over the next year. 

8. Security Process Automation: In many organizations cyber security function is one of the only IT functions that have not yet leveraged the speed, visibility and capabilities provided through automation. With an increasing number, variety and complexity of the threats faced by organizations, many security technologies still require hands-on management. We expect that IT managers will have to embrace security automation in order to keep up. 

9. Connected Devices: We also anticipate the growth in number and variety of new connected devices will provide additional gateways for hackers to access personal or business networks - these 'connected devices' include connected homes and connected cars. While the home or car may not be hacked, they are used as a vehicle to access other networks. 

10. Bring Your Own Application (BYOA): With BYOD comes Bring Your Own Applications where many employees are now downloading Apps within the organization. As a result IT administrators are losing control of what tools and applications are used inside the enterprise and business users (often lacking in an understanding of the potential security risks these applications can pose) are becoming their own system administrators.

There are many examples of Apps that transmit information with no security, Apps that leak sensitive information, through to Apps that are malicious and place the user and the information at risk. 


source:economictimes.com

Monday, December 17, 2012

Who Creates Computer Viruses?


Computer viruses are written by a variety of perpetrators. Historically they have been brilliant teenage kids or desperate people in search of attention. They are typically male and in their teens or early 20s. However, David L. Smith, author of the famous Melissa virus, was 30 when the FBI caught up with him.

Still, I like how Jack Sebbag, a vice president at the antivirus software companyMcAfee, characterizes virus writers: "They're 14-year-old kids who can't get a date, but have incredible talent and are looking for a challenge to bring (millions of) computers down just to get a little notoriety."
And some, as it turns out, are looking for work. In one variant of the MyDoom worm, there was a message to the antivirus software industry that said, "We [sic] searching 4 work in AV industry."

It's an ill-conceived strategy, of course. No one in the antivirus industry will go near them. Graham Cluley, senior technology consultant for Sophos, an antivirus company, said in a posting to the company website, "It's hard to tell if the creators of these new versions of the MyDoom worm are being serious, but there is no way that anybody in the anti-virus industry would touch them with a bargepole," adding, "It's very simpleif you write a virus, we will never ever employ you. Not only is it unethical to write malicious code, but it raises issues as to whether you could ever be trusted to develop the software which protects millions of users around the world from attack every day."

Nowadays, virus writers don't need much programming savvy to write a decent virus. They just modify existing viruses creating what are called variants. Theprogramming code is widely available on the Internet. Virus writers, hiding behind pseudonyms, even meet anonymously in chatrooms and swap tips, tricks, andbragging rights.

Ultimately, most motivations behind virus writing these days are financial. The virus turns your computer into a zombie, which is a computer that can be remotely controlled by a hacker or virus writer to do malicious tasks such as send spam or to attack another computer by sending a flood of data at it across the Internet in what are called distributed denial of service (DDoS) attacks.

Spam makes money for the virus writer by distributing massive volumes of junk email. DDoS attacks work via extortion. A wealthy corporation receives an email that demands a lump sum payment in return for protection. If the demand isn't paid, the perpetrator remotely commands all the zombies to attack and crash the company's server. Gambling web sites are often targets of these schemes. 

[Absolute Beginner's Guide To: Security, Spam, Spyware & Viruses, Andy Walker 2005]

Sunday, August 26, 2012

Gauss: 5 facts about new virus hacking bank accounts

 A new computer virus, dubbed Gauss, has been discovered in the Middle East. Researchers say can it steal banking credentials and hijack login information for social networking sites, email and instant messaging accounts.

Cyber security firm Kaspersky Lab said Gauss is the work of the same "factory" or "factories" that built the Stuxnet worm, which attacked Iran's nuclear program. Here are some key facts about Gauss, according to Kaspersky Lab.
 
What is its purpose? 
Gauss is a surveillance tool. It steals credentials for hacking online banking systems, social networking sites and email accounts; it also gathers information about infected PCs, including web browsing history, system passwords and the contents of disk drives.

Can it do anything else? 
There is a mysterious module, known as Godel, that copies malicious code onto USB drives when they are plugged into infected PCs. Godel's purpose is unknown because some of its code is compressed and scrambled using a sophisticated encryption method. It only activates when it infects a predetermined target. Researchers have not identified the target or figured out its mission. Kaspersky Lab senior researcher Roel Schouwenberg said he believes it may be a "warhead" designed to damage industrial control systems.
How many victims are there? 
Kaspersky Lab has uncovered more than 2,500 computers infected with Gauss since late May. It estimates the total number of victims is in the tens of thousands. The largest number of infections were found were in Lebanon, followed by Israel and the Palestinian Territories.

Is Gauss still a threat?   
Yes. Infected USB drives could still launch attacks. Servers that controlled infected machines were shut down in July, so it is unlikely that any more information will be stolen from the surveillance part of the operation.

Why is it called Gauss?
The virus is built using modules with internal names that appear to be inspired by famous mathematicians and philosophers, including Kurt Godel, Johann Carl Friedrich Gauss and Joseph-Louis Lagrange. Kaspersky named the entire operation after the Gauss component as it implements the data-stealing capabilities

Thursday, July 19, 2012

How to Scan Files for Viruses Before Using Them..?


To help avoid getting your computer infected by malicious software, it’s a good idea to scan files before executing them. Today we take a look at a couple of options that will let you scan files easily from your desktop.
Scan File with Your Antivirus Software
sshot-2010-06-04-[19-22-01]Most Antivirus software will put an option in the context menu so you can scan individual files. After downloading a file or email attachment, simply right-click the file and select the option to scan with your Antivirus software.
If you want to scan more than one at a time, hold down the Ctrl key while you clicking each file you want to scan. Then right-click and select to scan with your Antivirus software.
Here is our favorite Antivirus app, Microsoft Security Essentials scanning a couple of files.If a virus is found, your Antivirus app will delete it or put it in Quarantine so it cannot infect your system.

Using VirusTotal Uploader
To be very thorough and want a second opinion (actually 41), then you might want to check out the VirusTotal Uploader. This handy app will scan your files with 41 different Antivirus apps online. After installing VirusTotal Uploader, right-click the file, go to Send To, then VirusTotal.
Alternately you can launch VirusTotal Uploader and Get and upload the file.
It will send the file to VirusTotal.com and scan it with 41 different Antivirus apps and show you the results.
 
If you don’t want to install the Uploader, you can go to the VirusTotal site and upload a file from there to scan.
We’ve noticed that occasionally there will be a false positive detected on files we know are clean. Sometimes the definition database of an Anti-malware app isn’t current, or an obscure Antivirus App will find something questionable. If that is the case, use your best judgment when viewing the results.
Conclusion
Most Antivirus apps today have real-time scanning and should be able to detect possible infections before you’re able to execute them. However, if they don’t or when in doubt, following these tips can save you a lot of headaches in the long run.
If you use a lot of different flash drives throughout the day, check out our article on how to scan a thumb drive for viruses from the AutoPlay Dialog.

Friday, June 22, 2012

સાવધાન! ફેસબુક પર ચેટિંગથી તમારા કોમ્પ્યુટરને ખતરો

-steckt.Evl નામનો નવો વાયરસ શોધાયો
-વાયરસ ફેસબુક ચેટ દ્વારા ઇન્ટરનેટ પર ફેલાઇ રહ્યો છે અને કોમ્પ્યુટરને નિશાન બનાવે છે

 
જો તમે ફેસબુક પર ચેટિંગ કરો છો તો થોડા સાવધાન થઇ જાઓ. એક નવો કોમ્પ્યુટર વાયરસ ફેસબુસ ચેટ મેસેન્જર દ્વારા ફેલાઇ રહ્યો છે. આ વાયરસ તમારા કોમ્પ્યુટરના એન્ટી વાયરસ પર હુમલો કરીને તેને નિષ્ક્રિય કરી દે છે અને પછી તમારા મિત્રોને પોતાની જાતે લિંક પણ મોકલી આપે છે. 

ઇન્ટરનેટ સિક્યોરિટી એક્સપર્ટસ ગ્રુપ ટ્રેડ માઇક્રોએ steckt.Evl નામનો નવો વાયરસ શોધ્યો છે. 
 
આ વાયરસ ફેસબુક ચેટ દ્વારા ઇન્ટરનેટ પર ફેલાઇ રહ્યો છે અને કોમ્પ્યુટરને નિશાન બનાવી રહ્યો છે. તે તમારા ફેસબુક ચેટમાં કોઇ મિત્ર તરફથી આવેલા સંદેશાના રૂપમાં દેખાય છે. સંદેશામાં લિન્ક હોય છે જેના પર ક્લિક કરતા જ તે તમારી પ્રોફાઇલમાંથી અન્ય મિત્રોને પણ પહોંચી જાય છે. કોમ્પ્યુટરમાં આવતા જ તે સૌથી પહેલા કોમ્પ્યુટરમાં ઇન્સ્ટોલ એન્ટી વાયરસ પર હુમલો કરીને તેને નિષ્ક્રિય કરી દે છે. 

ટ્રેડ માઇક્રોએ જણાવ્યું છે કે આ વાયરસ અત્યારે ફેસબુક જેવી સોશિયલ નેટવર્કિંગ સાઇટના ઇન્સ્ટન્ટ મેસેજિંગ એપ્લિકેશન દ્વારા ફેલાઇ રહ્યો છે. આ એક લિન્કના રૂપમાં આવે છે અને ક્લિક કરતા જ પોતાની કોપીને ડાઉનલોડ કરી લે છે. 

એન્ટી વાઇરસને નિષ્ક્રિય કરતા જ તે કોમ્પ્યુટરમાં પોતાની જાતે નુકસાનકારક સોફ્ટવેર ડાઉનલોડ કરી લે છે. આટલું જ નહીં તે એવા એપ્લિકેશનની ફાઇલોને પણ ડિલીટ કરી દે છે જેમને તેણે નિષ્ક્રિય કરી હોય છે. આ વાયરસ દ્વારા ઇન્ટરનેટ પર તમારા કોમ્પ્યુટરનો દુરુપયોગ કરી શકાય છે અને કોમ્પ્યુટરમાં સેવ કરેલી અંગત માહિતીને પણ ચોરી શકાય છે. 
source:dainikbhaskar.com

Thursday, June 21, 2012

Lets Know what Spyware is...


What is spy-ware?


Spy-ware is Internet jargon for Advertising Supported software (Ad-ware). It is a way for shareware authors to make money from a product, other than by selling it to the users. There are several large media companies that offer them to place banner ads in their products in exchange for a portion of the revenue from banner sales. This way, you don't have to pay for the software and the developers are still getting paid. If you find the banners annoying, there is usually an option to remove them, by paying the regular licensing fee.

Known spywares

There are thousands out there, new ones are added to the list everyday. But here are a few:

Alexa, Aureate/Radiate, BargainBuddy, ClickTillUWin, Conducent Timesink, Cydoor, Comet Cursor, eZula/KaZaa Toptext, Flashpoint/Flashtrack, Flyswat, Gator, GoHip, Hotbar, ISTbar, Lions Pride Enterprises/Blazing Logic/Trek Blue, Lop (C2Media), Mattel Brodcast, Morpheus, NewDotNet, Realplayer, Songspy, Xupiter, Web3000, WebHancer, Windows Messenger Service.

How to check if a program has spyware?


The is this Little site that keeps a database of programs that are known to install spyware.
If you want to remove the "spyware" try these.
Try:Lavasoft Ad-Aware (http://www.lavasoftusa.com/) This program is Free

Info: Ad-aware is a multi spyware removal utility, that scans your memory, registry and hard drives for known spyware components and lets you remove them. The included backup-manager lets you reinstall a backup, offers and multi language support.


Wednesday, June 6, 2012

Spyware ? Methodology & Prevention



Often you can heard a word spyware. Is it important to know about spyware ? Yes! 


We are in advanced technology world. Day by day the technology is developing. At the same time crime is also increasing. One of the crime is spyware method.


Spyware:


        Spyware is software that resides on a computer and sends information to its creator. That information may include surfing habits, system details or, in its most dangerous form, passwords and log in information for critical applications such as online banking. Many spyware programs are more annoying than dangerous, serving up pop-up ads or gathering e-mail addresses for use in spam campaigns. Even those programs, however, can cost you valuable time and computing resources.
        According to a number of sources, the first use of the term spyware occurred in a 1994 posting that made light of Microsoft's business model. Later, the term was used to describe devices used for spying, such as small cameras and microphones. In 2000, a press release from security software provider Zone Labs used the current meaning of spyware for the first time and it's been used that way ever since.

How it comes to ur pc


Often, spyware comes along with a free software application, such as a game or a supposed productivity booster. Once it's downloaded to your computer, the functional element of the software works exactly as promised, while the information-gathering system sets up shop behind the scenes and begins feeding your personal data back to headquarters. 

Internet security


 The Best way to avoid and remove spyware is installing a best internet security software or spyware remover soft wares. Get a original internet security and update it properly. Scan daily your pc using internet security while scanning you better to avoid doing other things in your pc. My advice is use KASPERSKY INTERNET SECURITYfor better security.




other than internet security, you prevent your system from getting infect. Be careful when you download files from websites and mail.