Ultimativna antivirus tema - P&O izdvojena tema

poruka: 48.524
|
čitano: 14.103.627
|
moderatori: pirat, XXX-Man, vincimus
+/- sve poruke
ravni prikaz
starije poruke gore
14 godina
protjeran
offline
Re: Ultimativna antivirus tema - P&O
djigibao kaže...

 Tom logikom sam zakljucio da se ustvari bilo koji maliciozi fajl moze pokrenuti kroz neki "Trusted File" u Comodu, zar ne?

 

Da, nažalost je tako.

Death closes all: but something ere the end, Some work of noble note, may yet be done, Not unbecoming men that strove with Gods....Come, my friends, Tis not too late to seek a newer world
17 godina
offline
Ultimativna antivirus tema - P&O

Ako nekog interesira rasprava u vezi ovoga moze otici na Wilders forum - KLIK

http://av-gurus.blogspot.com/ | http://www.facebook.com/antivirusna.ekipa | http://www.youtube.com/user/TheDjigibao/videos
15 godina
offline
Ultimativna antivirus tema - P&O

Da, Cruelsister je uradio/la kak spada i SVE nepoznate datoteke su izolirane kao što i trebaju biti te je PC na kraju nakon čišćenja Sandboxa čist ko suza 

Some people are so poor... all they have is money!
17 godina
offline
New version of Petya Released

New version of Petya Released. Fixes bug in Encryption Algorithm

A new version of the Petya disc-encrypting ransomware has been released that fixes a bug that previously caused some weakness in its encryption algorithm. According to Hasherezade, a security analyst for Malwarebytes, prior versions of the Petya ransomware were not properly implementing the Salsa20 encryption algorithm, which was used by the ransomware to encrypt the drive and for verifying that a correct ransom key was entered.

With this new version, the Petya developer's implementation of the Salsa20 algorithm has been fixed, which removes the previously exploitable weaknesses.

 

It appears that Petya is still pretending to be a PDF file, but it is unsure how the ransomware is being distributed or what filename it uses.  Like the previous version, when installed Petya will attempt to gain administrative privileges in order to install the disc encryptor, and if it fails, will install theMischa file encrypting ransomware instead.

 

If Petya is still being distributed like previous versions, human resource departments for companies, especially German companies, should be wary of any applicants that request you download resumes that have a name like Bewerbungsmappe. In the past, this method was used to trick people into running the installer for Petya.

http://av-gurus.blogspot.com/ | http://www.facebook.com/antivirusna.ekipa | http://www.youtube.com/user/TheDjigibao/videos
15 godina
neaktivan
offline
Re: New version of Petya Released

Hmm... 

11 godina
odjavljen
offline
Ultimativna antivirus tema - P&O

Mogu li u File system shield nekako omogućiti kompatibilnost s Comodom firewalleom i je li real time shield sada file system shield?

Imam problem, a to je da Comodo firewall ne mogu nikako staviti u iznimke (exclusions).

 

Zemlja je kuća slika, a srce čovjeka je riznica prizora života koji poput slika prolaze ljudskom sviješću, te čovjek živi i pati poput glumca, a uči poput gledatelja.
Poruka je uređivana zadnji put pon 18.7.2016 18:52 (keyofdestiny13).
15 godina
neaktivan
offline
Re: Ultimativna antivirus tema - P&O

Kako ne možeš? Settings -> General -> Exclusions i tu dodaš mapu od Comodo Firewalla.

 

EDIT: Ti si instalirao Comodo Internet Security, znači i Comodo Antivirus i Comodo Firewall u jednom. Ne možeš imati instalirana dva antivirusna programa u isto vrijeme. Deinstaliraj taj Comodo Internet Security i instaliraj samo Comodo Firewall.

Poruka je uređivana zadnji put pon 18.7.2016 18:59 (Marko :D).
17 godina
offline
VoodooShield test by Cruelsister

Evo jedan brzi test VoodooShield-a by Cruelsister

 

http://av-gurus.blogspot.com/ | http://www.facebook.com/antivirusna.ekipa | http://www.youtube.com/user/TheDjigibao/videos
15 godina
offline
Re: Ultimativna antivirus tema - P&O
keyofdestiny13 kaže...

Mogu li u File system shield nekako omogućiti kompatibilnost s Comodom firewalleom i je li real time shield sada file system shield?

Imam problem, a to je da Comodo firewall ne mogu nikako staviti u iznimke (exclusions).

 

   

 

Ti imaš CIS a ne FW!!!

Some people are so poor... all they have is money!
17 godina
offline
Opera na prodaju kinezima???

Marko neka ne cita oovoo  .

 

===============================================

 

https://techcrunch.com/2016/07/18/opera-renegotiates-its-1-2b-sale-down-to-600m-for-browser-privacy-apps-chinese-jv/

 

Some more developments over at Opera, the browser company based out of Norway. The company announced that an offer to acquire the company for $1.2 billion has now been terminated, and in the meantime, the deal has been renegotiated: the same group will now pay $600 million to acquire only certain parts of Opera’s business.

Opera will sell the Qihoo 360-led consortium its mobile and desktop browser operations, its performance and privacy apps, its tech licensing not including Opera TV; and Opera’s 29 percent stake in Chinese JV nHorizon.

Opera’s remaining business that is not part of the sale will include Opera Mediaworks, Opera Apps & Games (including Bemobi) and Opera TV, along with about 560 employees. As of Q1, Opera had 1,669 employees in its full operation.

The Opera name and trademark will go the deal and the remaining company has some 18 months to find a new name, a company spokesperson told me. The new deal has already been approved by Opera’s board.

The news today caps off a difficult time at Opera. The company — which competes against the likes of Google and others in browsers, advertising, and related services — has been looking for an exit for years (at one point, Facebook was among those rumored to be interested but that never came to anything), but in the end, the deal that was struck last February did not manage to get regulatory approvals before a deadline (although shareholders supported it).

“We all tried very hard to close the public offer and are naturally disappointed that we were unsuccessful. However, we believe that the new deal is very good for Opera employees and Opera shareholders,” said Opera’s CEO, Lars Boilesen. (Boilesen had been outspoken about the original deal being struck by shareholders without much buy-in from Opera’s staff. Some believed the original deal undervalued Opera).

“The Consumer part has good fit with objectives and strategy of Consortium, and will become part of ecosystem with substantial investment capacity. For Opera shareholders we are selling approximately ¼ of the company for $600m, which is an attractive price for this part of our business.”

Boilesen will serve as CEO for both Opera and the Consumer Business until December 31, 2016.

“After this date, Lars will no longer hold the role as CEO for the Consumer Business, and will be solely dedicated to Opera,” the company said in its statement.

Although Opera’s most public face is its mobile browser business (augmented more recently by its performance and privacy apps), on a financial level, this deal appears more lucrative for the Norwegian company and its investors.

The parts of the business that Opera is keeping represented more than two-thirds of the company’s revenues in 2015, with sales of $467 million and adjusted Ebitda of $74 million (full company revenues for that year were $616 million and adjusted Ebitda of $108 million).

“Opera estimates that in 2016, the same three remaining business units will deliver revenues of $570-605 million (+22% to +30%) and an adj. EBITDA of $75-90 million (+2% to +22%),” the company said today.

That part of the business is due to be reorganized in the wake of this deal, Opera said. One big question I have is how the advertising business will be structured. While services like Opera’s browsers may not have generated much revenue, they were also the basis of a lot of advertising inventory for the Mediaworks division. Update: “The reorganisation is linked to the business being sold, and has nothing to do with Mediaworks. A very minor part of Mediaworks revenues was linked to the Opera browser business,” a spokesperson tells me.

The original, $1.2 billion deal had a deadline of July 15 to close, but it didn’t make the cut after failing to get regulatory approvals in time. This new deal now has a “drop-dead date” of October 31, 2016, with an automatic extension to December 31 if the two sides fail to get everything completed. The fact that the deal has a more flexible deadline date is a sign of how Opera is more willing to negotiate and look for a solution than the first time around.

There are also break fees if this one doesn’t go through: specifically $100 million from Golden Brick Capital (the name of the consortium that is backed by Kunlun Tech Limited, Future Holding L.P., Keeneyes Future Holding Inc, Qifei International Development Co. Limited and Golden Brick Capital Private Equity Fund I L.P.Beijing Kunlun Tech Co. Ltd., Qihoo 360 Software (Beijing) Co. Ltd., and Golden Brick Silk Road Fund Management (Shenzhen) LLP) if they fail to close the deal, but only $40 million if the holdup is related to regulatory issues.

The new transaction is expected to close during the second half of 3Q 2016, Opera said.

http://av-gurus.blogspot.com/ | http://www.facebook.com/antivirusna.ekipa | http://www.youtube.com/user/TheDjigibao/videos
15 godina
neaktivan
offline
Re: Opera na prodaju kinezima???

Zakasnio si, to sam pročitao prije sat vremena. 

11 godina
odjavljen
offline
Re: Ultimativna antivirus tema - P&O
keyofdestiny13 kaže...

Mogu li u File system shield nekako omogućiti kompatibilnost s Comodom firewalleom i je li real time shield sada file system shield?

Imam problem, a to je da Comodo firewall ne mogu nikako staviti u iznimke (exclusions).

 

@andi Ma nisam instalirao CIS, instalirao sam Firewall, a CIS je izbrisan iz control panela u potpunosti, tako da ne znam zašto se pojavljuje CIS. 

Zemlja je kuća slika, a srce čovjeka je riznica prizora života koji poput slika prolaze ljudskom sviješću, te čovjek živi i pati poput glumca, a uči poput gledatelja.
Poruka je uređivana zadnji put pon 18.7.2016 20:56 (keyofdestiny13).
15 godina
neaktivan
offline
Re: Ultimativna antivirus tema - P&O

Onda klikni na Skip pa Settings -> General -> Exclusions i tu dodaš mapu od Comodo Firewalla.

11 godina
odjavljen
offline
Re: Ultimativna antivirus tema - P&O
Marko :D kaže...

Onda klikni na Skip pa Settings -> General -> Exclusions i tu dodaš mapu od Comodo Firewalla.

 Ne znam kako je rješen problem, sad je Comodo firewall kompatibilan s Avastom pokretajući ponovno smart scan, vidim začudo piše compatibility check. Za ne povjerovati. Nisam ništa radio @Marko, samo sam pokrenuo smart scan.

Zemlja je kuća slika, a srce čovjeka je riznica prizora života koji poput slika prolaze ljudskom sviješću, te čovjek živi i pati poput glumca, a uči poput gledatelja.
Poruka je uređivana zadnji put pon 18.7.2016 20:09 (keyofdestiny13).
11 godina
offline
Ultimativna antivirus tema - P&O

Ima li još neki kvalitetni firewall, a da nije Comodo FW ili GlassWire.

Zadovoljan sam sa Comodom, al' bi htio na starijem kompu isprobavati GlassWire, kao i neki drugi možda FW vrijedan pažnje.

Preporuka?

Samo da nije ZoneAlarm...

Panzerkampfwagen.Unatoč svemu - Dinamo Zagreb.
17 godina
offline
Re: Ultimativna antivirus tema - P&O
Private Firewall
http://av-gurus.blogspot.com/ | http://www.facebook.com/antivirusna.ekipa | http://www.youtube.com/user/TheDjigibao/videos
12 godina
protjeran
offline
Re: Ultimativna antivirus tema - P&O
@pzkpfw

Zaviri u osnovne i napredne mogucnosti windowsovog vatrozida, i ako se snadjes vidjet ces da ga mozes vrlo detaljno iskonfigurirati. Već sama promjena iz private u public ogranici dosta toga...

Uz win defender i win fw si dosta siguran osim ako bas navaljujes po kockarskim ili porno sajtovima... Pa na zadnjem testu je defender bil na kolko ono , 97 % .... ?
17 godina
offline
Re: Ultimativna antivirus tema - P&O
bunkermax kaže...
@pzkpfw

Zaviri u osnovne i napredne mogucnosti windowsovog vatrozida, i ako se snadjes vidjet ces da ga mozes vrlo detaljno iskonfigurirati. Već sama promjena iz private u public ogranici dosta toga...

Uz win defender i win fw si dosta siguran osim ako bas navaljujes po kockarskim ili porno sajtovima... Pa na zadnjem testu je defender bil na kolko ono , 97 % .... ?

 

Evo malo o Win firewall-u:

https://www.wilderssecurity.com/threads/windows-firewall-with-advanced-security-guide-for-vista.239750/

http://av-gurus.blogspot.com/ | http://www.facebook.com/antivirusna.ekipa | http://www.youtube.com/user/TheDjigibao/videos
11 godina
odjavljen
offline
Re: Ultimativna antivirus tema - P&O
Marko :D kaže...

Kako ne možeš? Settings -> General -> Exclusions i tu dodaš mapu od Comodo Firewalla.

 

EDIT: Ti si instalirao Comodo Internet Security, znači i Comodo Antivirus i Comodo Firewall u jednom. Ne možeš imati instalirana dva antivirusna programa u isto vrijeme. Deinstaliraj taj Comodo Internet Security i instaliraj samo Comodo Firewall.

Opet Comodo Firewall nije kompatibilan s Avastom, ali ja sam skinuo ga sa službene stranice (slika 1) u kojem jasno piše da to Comodo free firewall, a Avast ga prepoznaje kao CIS (slika 2), a CIS je u potpunosti izbrisan sa mog računala, onda sam izbrisao u potpunosti Comodo firewall (slika 3). 

Slika+1 Slika+1
Slika+2 Slika+2
Slika 3 Slika 3
Zemlja je kuća slika, a srce čovjeka je riznica prizora života koji poput slika prolaze ljudskom sviješću, te čovjek živi i pati poput glumca, a uči poput gledatelja.
Poruka je uređivana zadnji put uto 19.7.2016 22:08 (keyofdestiny13).
15 godina
neaktivan
offline
Re: Ultimativna antivirus tema - P&O

Nemoj pokretati Smart scan. Jednostavno klikni Skip i u iznimke dodaj mapu Comodo Firewalla. Skeniranja unutar Avasta ne pokrećeš. Ako već hoćeš skenirati, skeniraj MBAM-om.

 

Ovo upozorenje je postavljeno iz razloga što se mogu pojaviti problemi s nekompatibilnosti kod Sigurnosti kućne mreže (Home network security, dio Avasta), ali i ne moraju. Ovu obavijest možeš zanemariti, ali u iznmke Avasta MORAŠ postaviti mapu Comodo Firewalla i u iznimke Comodo Firewalla mapu Avasta.

Poruka je uređivana zadnji put uto 19.7.2016 18:11 (Marko :D).
17 godina
offline
Defeating Sandbox Evasion

Najava predavanja (u octobru) o virtualizaciji.

 

============================================================

 

How to Increase Successful Emulation Rate in your Virtualized Environment

 

In the real world, special virtualized environments, called sandboxes, are used to analyse malware behaviour and prevent it from spreading and damaging real users' personal data, important corporate assets, etc. In our research, we focus on how to fight against the detection of sandboxes by malware and demonstrate some of the different techniques used by malware authors to detect virtual environments that are disregarded by leading vendors. We also present some solutions to counter these detection techniques.

We also discuss Cuckoo Sandbox, a leading open-source automatic malware analysis system that is widely used in the world of security. Cuckoo Sandbox is easy to deploy and contains features which perform many key aspects of malware analysis, such as collecting information about the malware behaviour, capturing network traffic, processing reports, and more. Nearly all the largest players on the market, including VirusTotal and Malwr, utilize Cuckoo Sandbox as a platform to perform automatic behavioural analysis. Cuckoo Sandbox can also be used as a backend for anti-malware-related projects. We describe Cuckoo Sandbox bugs, which allow malware to detect a sandboxed environment, as well as possible solutions for these issues.

Malware authors can use evasion techniques against a virtual environment simply by running some specially crafted code. If a sandbox is detected, then the malware may choose, for example, one of the following behaviours:

  1. Terminate the execution, so no information will be provided.
  2. Perform some non-malicious activity, so false information will be provided.
  3. Perform some activities by accessing, for example, fake domains or IPs, to generate artifacts which are not relevant.

If false information is received and used in products, the endpoint users are not protected against threats. Proposed solutions will lead to increased successful emulation rate and delivery of more relevant information as well as contributing to the overall improvement of virtual environments, especially ones that use Cuckoo Sandbox.

 

IZVOR: https://www.virusbulletin.com/conference/vb2016/abstracts/defeating-sandbox-evasion-how-increase-successful-emulation-rate-your-virtualized-environment

http://av-gurus.blogspot.com/ | http://www.facebook.com/antivirusna.ekipa | http://www.youtube.com/user/TheDjigibao/videos
17 godina
offline
Re: Ultimativna antivirus tema - P&O
keyofdestiny13 kaže...
Marko :D kaže...

Kako ne možeš? Settings -> General -> Exclusions i tu dodaš mapu od Comodo Firewalla.

 

EDIT: Ti si instalirao Comodo Internet Security, znači i Comodo Antivirus i Comodo Firewall u jednom. Ne možeš imati instalirana dva antivirusna programa u isto vrijeme. Deinstaliraj taj Comodo Internet Security i instaliraj samo Comodo Firewall.

Opet Comodo Firewall nije kompatibilan s Avastom, ali ja sam skinuo ga sa službene stranice (slika 1) u kojem jasno piše da to Comodo free firewall, a Avast ga prepoznaje kao CIS (slika 2), a CIS je u potpunosti izbrisan sa mog računala, onda sam izbrisao u potpunosti Comodo firewall (slika 3). 

 

U virtualnoj masini (Win 7 x64) stavljen Comodo Firewall i zatim stavljen Avast free.

Nikakvih problema sa kompatibilnosti ne pokazuje Avast.

 

http://av-gurus.blogspot.com/ | http://www.facebook.com/antivirusna.ekipa | http://www.youtube.com/user/TheDjigibao/videos
11 godina
odjavljen
offline
Re: Ultimativna antivirus tema - P&O
Marko :D kaže...

Nemoj pokretati Smart scan. Jednostavno klikni Skip i u iznimke dodaj mapu Comodo Firewalla. Skeniranja unutar Avasta ne pokrećeš. Ako već hoćeš skenirati, skeniraj MBAM-om.

 

Ovo upozorenje je postavljeno iz razloga što se mogu pojaviti problemi s nekompatibilnosti kod Sigurnosti kućne mreže (Home network security, dio Avasta), ali i ne moraju. Ovu obavijest možeš zanemariti, ali u iznmke Avasta MORAŠ postaviti mapu Comodo Firewalla i u iznimke Comodo Firewalla mapu Avasta.

 Comodo firewall je iznimka u Avastu (slika), e sad, iznimka u Comodu firewall, jel to ono kad ideš na, open advanced settings-> security settings-> file rating->file list?

slika slika
Zemlja je kuća slika, a srce čovjeka je riznica prizora života koji poput slika prolaze ljudskom sviješću, te čovjek živi i pati poput glumca, a uči poput gledatelja.
17 godina
offline
Re: Ultimativna antivirus tema - P&O

Avast je dodan u Trusted Vendors pa mislim da nije potrebno nista dodavati u Comodo.

 

http://av-gurus.blogspot.com/ | http://www.facebook.com/antivirusna.ekipa | http://www.youtube.com/user/TheDjigibao/videos
15 godina
neaktivan
offline
Re: Ultimativna antivirus tema - P&O

Da, to je u Avastu. Za Comodo ne znam.

17 godina
offline
Re: Ultimativna antivirus tema - P&O

Comodo folder se nalazi u Program Files i Program Data...

http://av-gurus.blogspot.com/ | http://www.facebook.com/antivirusna.ekipa | http://www.youtube.com/user/TheDjigibao/videos
11 godina
odjavljen
offline
Re: Ultimativna antivirus tema - P&O
Marko :D kaže...

Da, to je u Avastu. Za Comodo ne znam.

 

djigibao kaže...

Comodo folder se nalazi u Program Files i Program Data...

 Hvala vam, ljudi.

Zemlja je kuća slika, a srce čovjeka je riznica prizora života koji poput slika prolaze ljudskom sviješću, te čovjek živi i pati poput glumca, a uči poput gledatelja.
17 godina
offline
Ultimativna antivirus tema - P&O

Evp slika da vidite koliko Comodo Firewall (10sec) i Avast (20sec) uspore boot time na PC-u (ovo je samo okvirno)

 Slika koja prikazuje sta se sve pokrece pri startu:

http://av-gurus.blogspot.com/ | http://www.facebook.com/antivirusna.ekipa | http://www.youtube.com/user/TheDjigibao/videos
15 godina
neaktivan
offline
Re: Ultimativna antivirus tema - P&O

Budem ja izmjerio sutra kod sebe. U startupu mi je Avast!, GlassWire i MBAE. Meni boot time i nije toliko bitan jer mi je laptop većinom u hibernaciji pa mi se brzo 'upali'.

 

Ima li koji portable program za mjerenje boot timea, ne da mi se instalirati programe.

Poruka je uređivana zadnji put uto 19.7.2016 23:15 (Marko :D).
10 godina
odjavljen
offline
Re: Ultimativna antivirus tema - P&O
Marko :D kaže... 

Ima li koji portable program za mjerenje boot timea, ne da mi se instalirati programe.

 Naravno, jer instalacija je programa u najboljem slučaju dvotjedni posao. Ne bi valjalo potrošiti ostatak ljetnih praznika na takvo što.

http://informanka.blogspot.hr/ (Ili jednostavno pretražite Google s ključnom riječju ‘informanka’.)
E-mail:
Lozinka:
 
vrh stranice