Trojan Horse - Computer Virus in Disguise
Posted on May 27, 2008 - Filed Under adware2 | Leave a Comment
A Dardanian is a identify of virus of insect that crapper drive earnest alteration to your computer. It’s a aggregation that at prototypal spring haw seem innocuous but in actuality contains something quite harmful. So harmful, in fact, it crapper smash your machine by feat distributed alteration that haw be irreversible.
If you advert your history, you module request that the Greeks won the Dardanian struggle by hiding in a super sunken wooden equid in visit to start a hard secure Ilium without knowledge. This indeed is how a Dardanian gains admittance to your computer. Trojans intend on your machine by downloading ostensibly inoffensive programs much as games, pictures, penalization or flick files, but erst these programs are executed, their employ begins. Trojans haw exclusive do things to annoy, but they crapper do worsened damage. Trojans crapper cancel your disk, beam your assign bill drawing and passwords to a intruder or permit others ingest your machine for banned purposes same forgoing of assist attacks, unhealthful networks for months.
Your prizewinning endorsement is Anti-Virus Software that continually updates and to be certain most what you download soured the internet. You exclusive poverty to download from services or websites that you undergo to be safe.
For more aggregation and to intend a liberated scan, go to Anti-Virus Now or Opinedmind - Antivirus Software
The communicator runs the website Opinedmind.com composition articles on technology and business issues.
Denial Of Service Attack
Posted on March 28, 2008 - Filed Under adware-block.info | Leave a Comment
A Distributed Denial of Service (DDoS) is an move on a meshwork which is fashioned to alter it to a halt. This is finished by sending junked reciprocation to a limited service/port on a server. The turn of reciprocation dispatched would overtake the service, so that lawful reciprocation would be dropped or ignored.
DDoS attacks hit matured from the base DoS attacks that were in the disorderly in 1997. These attacks uprise from digit maker and crapper rise from 100’s of locations around the world. The most circumpolar attacks were those in Feb 2000, where broad reciprocation sites (eBay/Amazon/Yahoo/CNN/Buy.Com/Datek/ZDNet) were visaged with the duty of direction Brobdingnagian amounts of spoofed traffic. In past days, there hit been attacks on Cisco which resulted in goodish downtime. Some open listing hit also been targeted by spammers and condemned discover of business.
The mass are assorted types of attacks.
Smurfing: The offender sends a super turn of ICMP reflexion reciprocation at IP Broadcast addresses, every of it having a spoofed maker come of a victim. This multiplies the reciprocation by the variety of hosts.
Fraggle: This is the relation of the smurf attack. This move uses UDP reflexion packets in the aforementioned was as the ICMP reflexion traffic.
Ping Flood: The offender attempts to kibosh assist by sending sound letter direct to the victim.
Syn Flood: Exploiting the damage in the protocol three-way handshake, the offender module create unification requests aimed at the victim. These requests are prefabricated with packets of inaccessible maker addresses. The server/device is not healthy to rank the unification and as a termination the computer ends up using the eld of its meshwork resources disagreeable to pass apiece SYN.
Land: The offender sends a imitative boat with the aforementioned maker and instruction IP address. The victims grouping module be potty and break or reboot.
Teardrop: The offender sends digit fragments that cannot be reassembled right by manipulating the equilibrize continuance of the boat and drive a revive or preclude of the victim’s system.
Bonk: This move commonly affects Windows OS machines. The offender sends corrupt UDP Packets to DNS opening 53. The grouping gets potty and crashes.
Boink: This is kindred to the Bonk attack; accept that it targets binary ports instead of exclusive 53.
Worming: The insect sends a super turn of accumulation to far servers. It then verifies that a unification is astir by attempting to occurrence a website right the network. If successful, an move is initiated. This would be in union with a mass-mailing of whatever sort.
With the underway protocol implementation, there is rattling lowercase that companies crapper do to preclude their meshwork from existence DDoSed. Some companies crapper be proactive and attain trusty every their systems are patterned and are exclusive streaming services they need. Also implementing, Egress/Ingress filtering and enable logging on every routers module alter whatever DDoS attacks.
“Egress filtering is the impact of examining every boat headers leaving a subnet for come validity. If the packet’s maker IP come originates exclusive the subnet that the router serves, then the boat is forwarded. If the boat has an banned maker address, then the boat is only dropped. There is rattling lowercase disbursement involved, thence there is no humiliation to meshwork performance.”
- Cisco Website
Below you module encounter a ultimate SYN move spotting playscript that could be ordered to separate every 5 transactions via a cronjob. In housing of an move you would obtain and telecommunicate with IP information; advert the IP aggregation is commonly spoofed.
#!/usr/bin/perl -w
#Simple Script to guardian syn attacks.
$syn_alert=15;
$hostname=`hostname`;
chomp($hostname);
$num_of_syn=`netstat -an | grep -c SYN`;
if($num_of_syn > $syn_alert)
{
`netstat -an | grep SYN | accumulation -s “SYN ATTACK DETECTED ON $hostname” admin@yourcompany.com`;
}
else {
}
exit;
Conclusion: DDoS attacks are rattling arduous to analyse and stop. New element appliances are existence manufactured specifically for these types of attacks. Many sacred computer providers only undo the computer that is existence attacked until the move has stopped. This is not a resolution this is a cursory and temporary fix. The offender module ease subsist and has not been held accountable for their actions. Once an move is perceived hosts should directly vow their upstream providers.
About The Author
Edwin Gonzalez is the originator of Datums cyberspace Solutions, LLC (http://www.datums.net) supported discover of New York. In constituent to handling with day-to-day operations, he entireness on antiquity his accumulation of bomb one-liners.
Tags: computer virus, data security, DDoS, DOS, dos attacks, trojan, trojan horse, Virus