[Log In ] [New Posts] []
Go Back   GotApex? Forums Forums > General Topics > Software, OS, and the Internet
User Name
Password

Reply
 
Thread Tools Search this Thread Display Modes
Old 07-12-2007, 08:54 AM   #1
mechmike0034
aka the keg killer
 
mechmike0034's Avatar
 
Join Date: Dec 2002
Location: Ala-effin'-bama!
Posts: 2,738
New free malware trapper...

http://www.heise-security.co.uk/news/92594

http://www.hautesecure.com/about.aspx

http://www.hautesecure.com/howitworks.aspx

Quote:
A new anti-malware tool is on offer from recent US start-up Haute Secure. The eponymous tool is described as offering a two-pronged technical defence against malware attempting to install itself via the user's web browser. Its first line of defence is apparently a heuristic mechanism using what the company describes as "behavior-based profiling algorithms" that are asserted to identify even previously unencountered malware on the fly by observing its attempts to penetrate the system.

The second line of defence is said to be a non-local database of recognised malware to which users' Haute Secure clients report their findings. This is described as "distributed", but no further information is given. A third notional line of defence described as a "unique community approach" apparently includes contributions from other sources in addition to users' clients, including "security experts and hobbyists", and the Haute Secure web site hosts a user forum in which the named directors participate. According to Haute Secure their software hooks around 70 system functions to monitor the web browser's behavior, effectively putting it into a sandbox. If it encounters suspect behavior it stops the apparent intruder before sending a report to the Haute Secure servers.

The company itself, launched in 2006, is of more than passing interest. Its board consists of four senior Microsoft veterans, three of whom were responsible for security there, and is lead by Iain Mulholland, the apparent architect of "Patch Tuesday".

Of course it remains to be seen how effective this tool will prove. Previous attempts to detect malware on the fly have met with only moderate long-term success as malware writers have rapidly come to terms with the limitations of successive detection methods. This has been highlighted recently by attacks triggered from legitimate web sites via inserted iframes which are capable of delivering rapidly changing malicious code. The combination of behaviour analysis and online databases seems like a promising concept to combat this -- provided of course that it turns out to be robust and you can accept the potential privacy implications. The Haute Secure client for IE under Windows, including a version for Vista64, is available for free download, and a Firefox version is promised "soon".

This is still beta, but it looks interesting. I'm gonna play with it and see how it does...
__________________
"The price of progress is trouble." (C. F. "Boss" Kettering)
"50% of the American public has below-average intelligence. 70% of the American public now has regular access to the Internet. Do the math." (unknown)
mechmike0034 is offline   Reply With Quote
Old 07-13-2007, 08:09 AM   #2
beatbox32
Lieutenant Junior Grade
 
beatbox32's Avatar
 
Join Date: Feb 2005
Location: Orange County, CA, USA
Posts: 159
Let us know how it is. My gf's mom's PC has been overtaken by adware, and man, is it hard to get rid of....

-beatbox32
__________________
-beatbox32



"Until and unless you discover that money is the root of all good, you ask for your own destruction. When money ceases to be the tool by which men deal with one another, then men become the tools of men. Blood, whips and guns--or dollars. Take your choice--there is no other--and your time is running out." - Atlas Shrugged
beatbox32 is offline   Reply With Quote
Old 07-14-2007, 08:41 AM   #3
mechmike0034
aka the keg killer
 
mechmike0034's Avatar
 
Join Date: Dec 2002
Location: Ala-effin'-bama!
Posts: 2,738
It won't remove anything - it is designed to prevent nefarious websites from installing malware.

The best method I've found for removing malware without a "nuke and pave" is by making a UBCD4WIN disc and using it to boot and clean the infected machine's installation of Windows.
mechmike0034 is offline   Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -7. The time now is 01:59 PM.