Help me choose software for security please!

Help me choose software for security please!

Secure Home | Search | About
 Networking Firewalls    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Help me choose software for security please! Olicaca 04-09-2008
Posted by Olicaca on April 9, 2008, 1:06 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Hi every one.
I'm trying to find some program help me in the security problems.
What things i need for?It must be a program that help me control all
hidden executive and installation.I need it help me to monitor and
report me if a program is being installed to my system,help me monitor
all of its activities(creat files,del files,add value to
registry,modified files) and i can stop any action of its installation
at anytime i want.And i want it log every thing of that to a log file
so that i can view after if it's a malware.
And the second i need is a folder and files security program.I need a
program can help me control the folder access permission of the
system.Some folder can be use and modify by these program but cannot
be use by other program.Example:I download a program from the
internet,save into the folder A,IDM can access the folder A,write to
it but other cannot write to the folder A.Folder FX can be access by
the program X but others program cannot access FX and contrary,the
program A cannot access any folder else A.
For the second purpose,i did try the Universal Shield but it not work
excellently as my mine,now i'm still looking for these.
Anyone have the experience please help me,just give me the name of
them.I will thank very much!

Posted by Sebastian G. on April 9, 2008, 2:14 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Olicaca wrote:

> Hi every one.
> I'm trying to find some program help me in the security problems.
> What things i need for?It must be a program that help me control all
> hidden executive and installation.


Wouldn't the first step be stop abusing MSIE as a webbrowser?

> I need it help me to monitor and

> report me if a program is being installed to my system


Huh? Unless you explicitly do that, this can't happen.

> help me monitor all of its activities(creat files,del files,add value to

> registry,modified files)


You mean something like Procmon? But this poses a huge performance impact on
the system, but no real security benefit.

> and i can stop any action of its installation at anytime i want.


Oh, that's trivial. Just take Process Explorer and suspend the relevant
process (which actually just suspends all non-suspended threads). But how is
this related to security?

> And i want it log every thing of that to a log file
> so that i can view after if it's a malware.


Huh? It's not like some malware would present itself like this. After all,
shouldn't you focus on not running the malware in first place?

> And the second i need is a folder and files security program.I need a
> program can help me control the folder access permission of the
> system.


You mean what Windows already does?

> For the second purpose,i did try the Universal Shield


Looks like scamware.

> but it not work excellently as my mine,now i'm still looking for these.


So what was your problem? Do you want a program that helps you managing the
ACLs in Windows more efficiently? Or what?

> Anyone have the experience please help me,just give me the name of
> them.I will thank very much!


Posted by Olicaca on April 10, 2008, 7:34 am
If you were  Registered and logged in, you could reply and use other advanced thread options

Wouldn't the first step be stop abusing MSIE as a webbrowser?
Huh? Unless you explicitly do that, this can't happen.
You mean something like Procmon? But this poses a huge performance
impact on
the system, but no real security benefit.
Oh, that's trivial. Just take Process Explorer and suspend the
relevant
process (which actually just suspends all non-suspended threads). But
how is
this related to security?

Huh? It's not like some malware would present itself like this. After
all,
shouldn't you focus on not running the malware in first place?

You mean what Windows already does?

Looks like scamware.

So what was your problem? Do you want a program that helps you
managing the
ACLs in Windows more efficiently? Or what?
-------------------------------------------
Sebastian,i don't understand really ur answer purpose here.I just ask
u some software u know,famous and useful and i don't underline about
my security problem here,i ask about the software and just the
software,don't care much about security knowlegde,so that let help
about software please(!),what program best and useful.Okie?
Ok,so i tell u more about my soft.
If you come a site and suddenly,a file down and install on ur
computer,so how do you
deal with?And if you install a file that bound with a virus,so beside
you install the soft,how do you know and treat with that malware?Some
month ago i get xorer virus from a CD-Rom(it is so unluck to me that
that time my antivirus not updated) and it inject to all exe
files....,after then i update and it del all my data.
Windows ACLs i know alitlle but as i know,if a folder write and delete
protected then no any program can write data to it,and if a folder can
be write by a program then virus can write to it.
Process Monitor i know but so slow down and not a installation monitor
tool ja,even i use it monitor my installation then i cannot control
anything aswell.Scamware i dont know.
Okie,so all your ever advice is not useful for me.Anyway thanks for
the care!(Ah,and what is "huh?" :D,my English not well ja,seemed u
often huh? on ur saying?? is that right?:D,just joke,ur style is
wonderful with me :D)


Kay,your knowlegde really nice,thank very much.But maybe i was
wrong,my problem seemed not really security,it just about some
tools.Anyway thanks!

Posted by Sebastian G. on April 10, 2008, 8:09 am
If you were  Registered and logged in, you could reply and use other advanced thread options
Olicaca wrote:


> Sebastian,i don't understand really ur answer purpose here.I just ask
> u some software u know,


Would you please write in proper English, like in any other formal letter?

> famous and useful and i don't underline about

> my security problem here,i ask about the software and just the
> software,don't care much about security knowlegde,so that let help


Sorry that I dared for actually addressing your problem... Anyway, this is a
newsgroup, not a support forum. Don't expect your questions to be answered
or even the discussion leading to a point you'd like.

> about software please(!),what program best and useful.Okie?


Your system is compromised, so no software can't help you. D'Oh, that's trivial!

> If you come a site and suddenly,a file down and install on ur
> computer,so how do you deal with?


Turn off the computer, boot from an offline media, create a backup and then
start verifying against a well-known safe backup, signature base etc.,
consequently restoring any modification. Then I'd login as admin, create a
new user account and shift over all data. Then I start verifying them in the
background while rebuilding all settings and reinstalling all relevant
programs from trusted media.

What else?

> And if you install a file that bound with a virus,

I simply don't do this. Period.

> so beside you install the soft,how do you know and treat with that
> malware?

I guess I'd recognize the misbehaviour pretty soon, and start investigating it.

> Some

> month ago i get xorer virus from a CD-Rom(it is so unluck to me that
> that time my antivirus not updated)


Even if it was, that generally wouldn't have stopped it.

> Windows ACLs i know alitlle but as i know,if a folder write and delete
> protected


That is, the effective write access of the user to the folder is denied.
That's what you mean? Since there's some scenarios where other permissions
might allow write access as well (f.e. being the owner, being able to change
the ACLs, delete child permissions on the upper folder).

> then no any program can write data to it,and if a folder can
> be write by a program then virus can write to it.


Yes, trivially. The access is enforced by the kernel, and everything has to
pass trough it for accessing hardware resources (other than CPU and RAM).

> Process Monitor i know but so slow down and not a installation monitor
> tool ja,even i use it monitor my installation then i cannot control
> anything aswell.


You cannot control other than by ACLs and capabilities. If you give write
access somewhere, then the installation is free to write there. if you don't
want this, set proper permissions.

> Scamware i dont know.

You know, it is security software that tries to implement a broken concept
in a broken way, so actually reduces the security.

> Okie,so all your ever advice is not useful for me.


Well, this might be because you didn't ask the proper questions? From what
you wrote it seems like you didn't even flatten and rebuild the system.

Posted by ana on April 10, 2008, 8:49 am
If you were  Registered and logged in, you could reply and use other advanced thread options
> Olicaca wrote:
> > Sebastian,i don't understand really ur answer purpose here.I just ask
> > u some software u know,
>
> Would you please write in proper English, like in any other formal letter?
>
> > famous and useful and i don't underline about
>
> > my security problem here,i ask about the software and just the
> > software,don't care much about security knowlegde,so that let help
>
> Sorry that I dared for actually addressing your problem... Anyway, this is a
> newsgroup, not a support forum. Don't expect your questions to be answered
> or even the discussion leading to a point you'd like.
>
> > about software please(!),what program best and useful.Okie?
>
> Your system is compromised, so no software can't help you. D'Oh, that's
trivial!
>
> > If you come a site and suddenly,a file down and install on ur
> > computer,so how do you deal with?
>
> Turn off the computer, boot from an offline media, create a backup and then
> start verifying against a well-known safe backup, signature base etc.,
> consequently restoring any modification. Then I'd login as admin, create a
> new user account and shift over all data. Then I start verifying them in the
> background while rebuilding all settings and reinstalling all relevant
> programs from trusted media.
>
> What else?
>
> > And if you install a file that bound with a virus,
>
> I simply don't do this. Period.
>
> > so beside you install the soft,how do you know and treat with that
> > malware?
>
> I guess I'd recognize the misbehaviour pretty soon, and start investigating it.
>
> > Some
>
> > month ago i get xorer virus from a CD-Rom(it is so unluck to me that
> > that time my antivirus not updated)
>
> Even if it was, that generally wouldn't have stopped it.
>
> > Windows ACLs i know alitlle but as i know,if a folder write and delete
> > protected
>
> That is, the effective write access of the user to the folder is denied.
> That's what you mean? Since there's some scenarios where other permissions
> might allow write access as well (f.e. being the owner, being able to change
> the ACLs, delete child permissions on the upper folder).
>
> > then no any program can write data to it,and if a folder can
> > be write by a program then virus can write to it.
>
> Yes, trivially. The access is enforced by the kernel, and everything has to
> pass trough it for accessing hardware resources (other than CPU and RAM).
>
> > Process Monitor i know but so slow down and not a installation monitor
> > tool ja,even i use it monitor my installation then i cannot control
> > anything aswell.
>
> You cannot control other than by ACLs and capabilities. If you give write
> access somewhere, then the installation is free to write there. if you don't
> want this, set proper permissions.
>
> > Scamware i dont know.
>
> You know, it is security software that tries to implement a broken concept
> in a broken way, so actually reduces the security.
>
> > Okie,so all your ever advice is not useful for me.
>
> Well, this might be because you didn't ask the proper questions? From what
> you wrote it seems like you didn't even flatten and rebuild the system.

You can try Secure Auditor, a new software for unified digital risk
management issues. It contain 30 embedded security tools along with
event log viewers. May be it works for you. Download it from

http://www.download.com/Secure-Auditor/3000-2653-10826743.html?part=dl-SecureAud&subj=uo&tag=button


Similar ThreadsPosted
What to choose for CheckPoint Firewall-1? May 13, 2005, 10:59 am
SE-"Quote:Zone Labs was purchased by the Israeli firm Checkpoint Software in December 2003, and the Israeli's immediately revamped Zone Alarm's True Vector Engine. Now there are few knowledgeable software security experts who trust that any new Zone Alarm December 23, 2004, 11:07 am
Security Software May 15, 2005, 3:41 pm
Security software September 5, 2007, 4:59 pm
New site dedicated to security conferences : www.security-briefings.com May 6, 2006, 11:17 am
Security programs 2005 - , Firewall programs 2005 -, Antivirus programs 2005 -, APPDEV DOT NET SECURITY, Linux Security and Firewall programs 2005 -, CiscoWorks ( CW ) Security programs 2005 - , February 25, 2005, 5:03 am
Home Security eBook - Home Security - How to Protect Your Family and Your Property - Home_Security.exe (0/2) November 5, 2004, 5:25 pm
best vpn software July 25, 2004, 1:10 pm
Which Software Firewall to Use? December 6, 2004, 6:38 pm
VPN Client Software November 26, 2005, 1:39 pm

The site map in XML format XML site map

Contact Us | Privacy Policy