Security Boot Camp

Discussion in 'Reviews & Articles' started by Dashken, Feb 20, 2007.

  1. Dashken

    Dashken Administrator!

    If you are always worrying about the security of your computer but do not know what to do about it, then this is the boot camp for you.

    Join Empire23 as he goes through the simple ways of checking for malware and cleaning your PC of them.

    [​IMG]

    Link : Security Boot Camp
     
  2. repare

    repare Newbie

    Windows tools do not work at all times

    Hey fellow security investigators;

    Thank you for pointing to windows utilities that appear to work but do not in many situations.
    netstat lists many process ID's that are not addressed on Microsoft knowledge base articles..i.e; (UDP connections *.*)
    Various numbers of these when searched on Google return me to Microsoft's support page only to inform me that there is now data about these ports.

    My msconfig startup file has no startup programs checked.

    My task manager notebook has 26 processes running with Idle processes at 87% and taskmngr.exe averaging 7-8%.
    0% for all other processes. I then click on performance tab and it shows 50-98% CPU usage mostly red. This is on a dual Opteron processor rig. I click on processes tab and It shows the same CPU idle 87% and taskmngr.exe at 9%.

    The conclusion---taskmanager is unaware of hidden background CPU cache cycles and is not tagging all processes for viewing.

    System event viewer shows application error and warning events. Disregards BSOD kernel memory dumps to the event viewer. Lists other event errors, that when sent to Microsoft support center, return the help and support message We're sorry
     
  3. empire23

    empire23 BRB. Attacking Russia

    IIRC, taskmanager's system is unified, meaning that the numbers from both the performance tab and the processes tab should be the same, unless it's a smarter version of spyware that hides itself within metadata and is a latch on process (a parasitic one).

    Caches was never meant to be known, processor makers design it to be totally transparent, so i guess it is natural. Although i would garner that the likelihood of a piece of spyware (being spyware of course) hiding from the Task manager is really small, Viruses on the other hand, especially ones that load their execution payload into the stack or extended memory locations can hide from task manager, although this will be explained in the later sections.
     
  4. Dashken

    Dashken Administrator!

    We have just posted Part 2 of the article! :wave:

    If you are always worrying about the security of your computer but do not know what to do about it, then this is the boot camp for you.

    Join Empire23 as he goes through the simple ways of checking for malware and cleaning your PC of them.

    [​IMG]

    Link : Security Boot Camp Part 2
     
  5. Dashken

    Dashken Administrator!

    We have just posted Part 3 of the article! :wave:

    If you are always worrying about the security of your computer but do not know what to do about it, then this is the boot camp for you.

    Join Empire23 as he goes through the simple ways of checking for malware and cleaning your PC of them.

    [​IMG]

    Link : Security Boot Camp Parts 1, 2 & 3!
     
    Last edited: Mar 10, 2007
  6. hyper_raider

    hyper_raider shutdown -h now

    Heh with the wireless router as the icon i thought that you guys are talking about wireless security
     
  7. empire23

    empire23 BRB. Attacking Russia

    lol wireless security, maybe i'll write an addon piece which includes security and auditing. Auditing as in being a hax0r :p
     
  8. Dashken

    Dashken Administrator!

    We have just posted the Part 4 of the article.

    If you are always worrying about the security of your computer but do not know what to do about it, then this is the boot camp for you.

    Join Empire23 as he goes through the simple ways of checking for malware and cleaning your PC of them.

    [​IMG]

    Link : Security Boot Camp Part 1, 2, 3 & 4
     
  9. Dashken

    Dashken Administrator!

    Part 5 of the Security Boot Camp

    In this installment, we covered the topic of anti-virus software and the best practices you can adopt to make full use of them. Armed with regular updates and following the tips we set out, you can be assured of a much safer system. This is particularly important if your PC is open for public use.

    In the next part, we will take a look at spyware and how to remove them. This includes both basic and advanced spyware removal procedures. We will also take a look at various anti-spyware utilities and see how they can help us maintain the security of our systems. Finally, we will take a look at some tips that will keep you safe from getting hit by viruses, spyware and other malware.

    [​IMG]

    Link : Part 5 of the Security Boot Camp
     
  10. Dashken

    Dashken Administrator!

    Part 6 of the Security Boot Camp

    In this installment, we covered the topic of spyware and the best prevention and removal practices you can adopt to fix the problems. Armed with regular updates and following the tips we set out, you can be assured of a much safer system. This is particularly important if your PC is open for public use.

    In the next part, we will take a look at some tips that will keep you safe from getting hit by viruses, spyware and other malware. That will be the final part although we will continue to add and update this guide from time to time.

    Here's a quote from the guide :
    [​IMG]

    Link : Part 6 of the Security Boot Camp
     
  11. Dashken

    Dashken Administrator!

    Final Installment of Security Boot Camp

    In this installment, we covered the final topic of 'Prevention Is Better Than Cure' which sums up the series of topics we have in Security Boot Camp. Armed with regular updates and following the tips we set out, you can be assured of a much safer system. This is particularly important if your PC is open for public use.

    This will be the final part although we will continue to add and update this guide from time to time.

    Here's a quote from the final installment :
    [​IMG]

    Link : Security Boot Camp
     

Share This Page