Archive for the ‘Security’ Category

No more Internet Explorer 6

Saturday, March 6th, 2010

As of March 1st, 2010, Google has dropped support for Microsoft longest standing web browser, the IE6. Meaning that Google docs, Google Apps, Gmail and all other Google services will no longer support the ageing browser in an effort to introduce new features to these services.

IE vulnerability exploit code released on the Internet

Saturday, January 16th, 2010

Exploit code for the zero-day hole in Internet Explorer linked to the China-based attacks on Google and other companies has been released on the Internet, Microsoft and McAfee warned on Friday.

Meanwhile, the German federal security agency issued a statement on Friday urging its citizens to use an alternative browser to IE until a patch arrives.

More on this issue here.

Microsoft Security Essentials available for free download

Tuesday, September 29th, 2009

Microsoft Security Essentials provides real-time protection for your home PC that guards against viruses, spyware, and other malicious software.

Now, it’s available for free download at : http://www.microsoft.com/Security_essentials/

Web Browser Market Share Report

Tuesday, September 15th, 2009

According to market research firm Net Applications, Internet Explorer had roughly 67 percent of the worldwide browser market in August, while the Mozilla foundation’s Firefox had 23 percent and Apple Inc’s Safari browser had 4 percent. This was true on Aug 2009.

web-browsers-share1

Using Clam AntiVirus to provide real-time protection for your iFolder 3 Server

Sunday, September 13th, 2009

“Because iFolder is a cross-platform distributed solution, there is a possibility of a virus infection on a platform migrating across the iFolder server to other platforms, and vice versa. You should enforce server-based virus scanning to prevent viruses from entering the corporate network.”

This solution applies for openSuSE 11.1 :

The following packages need to be installed :

clamav
dazuko
postfix

Execute modprobe dazuko (as root)

Run lsmod and check that dazuko is loaded:

Edit /etc/init.d/boot.local

  • Add:
    modprobe dazuko

Edit /etc/clamd.conf

Enable logging by activating :
LogFile /var/log/clamd

* Activate:
# Path to a local socket file the daemon will listen on.
LocalSocket /var/lib/clamav/clamd-socket

* Deactivate:
# TCP port address.
#TCPSocket 3310

* Deactivate:
# TCP address.
#TCPAddr 127.0.0.1

* Activate and edit:
# Execute a command when virus is found.
VirusEvent /bin/echo “iFolder VIRUS ALERT: %v” | /bin/mail -s “ClamAV - iFolder” -r ClamAV@server.domain ToUser@domain

* Deactivate:
# Run as a selected user (clamd must be started by root).
#User vscan

Note:
If not deaktivating “User vscan” you receive the error: “clamuko cannot connect to dazuko” in /var/log/clamd

* Clamuko settings, Activate the following :

ClamukoScanOnAccess yes
ClamukoScanOnOpen yes
ClamukoScanOnClose yes
ClamukoScanOnExec yes
ClamukoIncludePath /YOUR_PATH_TO_IFOLDER/ifolder/simias/SimiasFiles

Change any other settings in the file to reflect your needs (see ClamAV documentation).

Start clamd:
/etc/init.d/clamd start

Check that clamd was started without any errors:
tail -f /var/log/clamd

Download the EICAR test signature from:
http://www.f-secure.com/virus-info/eicar_test_file.shtml

Note!
This is not a real virus.

Run: tail -f /var/log/clamd

Save the test file (eicar.zip and/or eicar.com) in your iFolder and wait for sync.

When the virus pattern is detected you should see this (see below) in the log file
/var/log/clamd.

Check that a mail has been sent: tail /var/log/mail

Update ClamAV:
You can update ClamAV using the command: freshclam

A better way is to use the freshclam daemon for automatic updates.

Settings for freshclam: /etc/freshclam.conf

Edit /etc/freshclam.conf

  • Activate:
    # Path to the log file (make sure it has proper permissions)
    UpdateLogFile /var/log/freshclam.log
  • Activate and provide your country code:
    # Uncomment the following line and replace XY with your country code.
    DatabaseMirror db.se.clamav.net
  • Activate and provide update interval (e.g 24 for every hour):
    # Number of database checks per day.
    Checks 24

Create a log file for freshclam:
touch /var/log/freshclam.log

Set file rights:
chown vscan:vscan /var/log/freshclam.log

Start freshclam:
/etc/init.d/freshclam start

Check the log file:
tail /var/log/freshclam.log

Activate automatic start for clamd, freshclam and postfix from Yast –> System –> System Services (Run Level).

Now you have a real-time anti-virus scanning for your iFolder3 server.

Warning over Michael Jackson email virus

Friday, July 3rd, 2009

Computer security firm Sophos issued a warning about an Internet virus transmitted from a mass email claiming to contain secret songs and photos of Michael Jackson.

The email comes with the subject “Remembering Michael Jackson” and is sent from “sarah@michaeljackson.com”, Sophos said in a statement sent by its Asia office in Singapore.

It tells recipients that an attached file titled “Michael songs and pictures.zip” contains secret songs and photos of the pop music icon, who died of a heart attack in the United States on June 25.

Sophos warned computer users not to open the attachment.

“By opening the attachment, computer users are exposed to infection. Once infected, a computer will begin automatically spreading the worm onto other Internet users,” Sophos said.

“Besides spreading via email, Sophos experts note that the malware is also capable of spreading as an Autorun component on USB memory sticks.”

Graham Cluley, a senior technology consultant at Sophos, said many computer users are likely to be tempted to open the attachment because of the feverish interest in the King of Pop’s sudden death.

“But sensible computer users should by now be well aware that cybercriminals will be quick to exploit news events to spread malware and spam,” he said.

“Anyone who receives this email should delete it immediately to save themselves the embarrassment of infecting their email contacts.”

ESET Smart Security Wins CNET Editors’ Choice Award

Friday, May 8th, 2009

ESET, the leader in proactive threat protection, today announced that it received a CNET Editors’ Choice award for ESET Smart Security 4, the recently updated integrated security solution combining antivirus, anti-spyware and anti-spam functionality with a personal firewall. The coveted CNET Editors’ Choice award recognizes outstanding consumer electronics that represent the best available choice for quality, performance, design, service, value, and its logo is a mark of excellence denoting the best possible investment for consumers.

CNET Editors’ Choice winners are recognized as top products in their respective technology categories, and contribute to the standard by which all future products are judged. A key selection requirement is that it must also change the competitive landscape of its market, whether through innovative features, exceptional value for the price, remarkable ease of use, or a demonstrable boost to the lives of its users.

“ESET Smart Security is surprisingly light, consuming around 50MB of RAM when running, and ESET NOD32 has consistently scored near the top of several independent antivirus testing organization ratings for finding the most malware while encountering fewer false positives than most,” said Seth Rosenblatt, senior associate editor, CNET Downloads. “For getting all your security tools in one box, Smart Security is an effective and well-respected choice.”

“We are very excited about this honor from CNET as their Editors’ Choice award has become the hallmark of technology quality and innovation, and its logo is a symbol consumers know and trust,” said Anton Zajac, CEO, ESET LLC. “This is an exceptional achievement and we are very proud to be recognized for our dedication and commitment to providing users with the most advanced protection from evolving security threats.”

Built on the same engine that powers ESET NOD32 Antivirus, ESET Smart Security 4 also features anti-spam and firewall functionality, both of which received high marks in usability and effectiveness. ESET’s detection and diagnostic features safeguard users from deceptive forms of malware by digging deeper into the operating system, files and encrypted browser traffic to identify and eliminate hidden malware threats. ESET Smart Security 4 proactively blocks most new malware attacks before they can compromise systems or steal data.

For information on ESET Smart Security 4 and the CNET Editors’ Choice award, please visit http://www.cnet.com/editors-choice


ADAOX Launches ESET Smart Security 4 and ESET NOD32 4 In The Middle East

Friday, March 6th, 2009

ADAOX Middle East, the regional business development centre of ESET NOD32 Antivirus, today announced the launch of the latest versions of ESET’s award-winning security solutions - ESET Smart Security 4 and ESET NOD32 Antivirus 4 in the Middle East region. ESET’s new generation security solutions deliver its most effective protection against emerging threats. Built on the unique and time-tested ThreatSense technology that has made ESET into a leader in proactive protection - ESET Smart Security 4 and ESET NOD32 Antivirus 4 - were optimized for even greater protection and enhanced usability, while retaining their signature small system footprint.

“We are delighted to launch ESET Smart Security 4 and ESET NOD32 Antivirus 4 to our customers in the Middle East, who have come to trust ESET’s proactive protection immensely. Version 4 of these security solutions surpasses all previous versions and is the most effective software to combat malware and emerging threats.We are confident these new security solutions will be well received by our customers and partners in this region,” said Neo Neophytou, Managing Director of ADAOX Middle East.

Key benefits:

o Protection from the Unknown – Award-winning ThreatSense technology delivers the most effective protection against new attacks on the market.
o Built for Speed – ESET’s solutions are lightning fast, delivering superior scanning performance.
o Easy on System Resources – ESET typically uses only 35-40MB of system memory, a fraction of what other products consume. Laptop users will welcome the new automatic energy-conserving battery mode.
o Easy on You – more user friendly than ever before – from the compact and intuitive interface, the minimal use of alerts, to self-training firewall – you will be up and running in a snap, hardly noticing the solution quietly working in the background.

Users at home, but especially in SMB and large enterprises will come to appreciate dozens of useful new features and improvements in usability. On top of being faster and lighter, in ESET Smart Security 4 and ESET NOD32 Antivirus 4 include the following:

Self-Defense – a built-in technology to prevent malicious software from corrupting or disabling the system’s security.
SysRescue – allows user to create computer recovery medium on a CD and USB key for system boot-up.
Portable media access control, including USB, CD, flash disc, closing this vector of potential malware infiltration.
Encrypted communication – developed for Windows XP and Windows Vista to scan HTTPs and POP3s protocols for malware. Included is also the so-called “learning mode,” for the state-of-the-art firewall, affording even greater level of protection.
Support of More E-mail clients, including Windows Mail, Windows Live Mail and Mozilla Thunderbird
Non-Graphical User Interface with the option to switch automatically to high contrast mode when in Windows.
Smart Optimalization – function permitting increase in the scanning speed
Integrated ESET SysInspector – a powerful diagnostic tool for in-depth analysis of the operating system, including running processes, registry content, startup items and network connections.
Integrated Anti-Stealth – advanced technology to protect against rootkits
Support for CISCO Network Admission Control

“ESET Smart Security 4 is the result of ESET´s continuous quest for perfection in PC security. We´ve in essence created artificial intelligence that is incredibly efficient and fast in recognizing malware,” Miroslav Trnka, CEO of ESET.
ESET Smart Security 4 was developed as a highly streamlined solution integrating 4 functionalities: antivirus, antispyware, antispam, and a personal firewall.

ESET Smart Security 4 Business Edition includes a Remote Administrator and a LAN update “mirror” function to easily monitor and update workstations across large networks.

ESET NOD32 Antivirus 4 is the company’s flagship solution incorporating antivirus and antispyware functionalities.

ESET NOD32 Antivirus 4 Business Edition includes a Remote Administrator and a LAN update “mirror” to easily monitor and update workstations.

The Latest, 4th generation of ESET Smart Security and ESET NOD32 will be available starting March 2nd, 2009. License holders of previous versions can take advantage of a free update.

Please refer to the following URL for your free trial product download :
http://www.am4computers.com/main/viewProducts.php?Category=106