Do You Use Protection?您使用的保護呢?
May 2nd, 2008 · by David Bradley 2008年5月2日,由大衛布拉德利
I’m not trying to get a sneak peak into your private life, but am interested in your privacy and safety.我不是要得到潛入山頂到您的私人生活,但很感興趣,在您的隱私和安全。 If you are only using a conventional antivirus (AV) package whether that’s AntiVir (recommended), AVG (recommended) or any of the myriad other AV products, such as McAfee, f-Prot, or Norton, then you may not know that you are wide open to attack from malware particularly in between AV updates.如果您只使用常規的防病毒(影音)封裝,無論是antivir (推薦) ,平均(推薦)或任何的無數其他影音產品,如McAfee的,架F - prot ,或Norton ,那麼您可能不知道您是敞開的攻擊,從惡意軟件特別是在之間的AV更新。 How come, you ask?如何來,你問?
Well, the answer lies in understanding how conventional AV software works, and how new viruses, trojans, and other nasties can circumvent it.那麼,答案就在於如何理解傳統的AV軟件工程,以及如何利用新的病毒,木馬,及其他nasties可以規避它。 To detect a viral attack on your computer, your standard AV package monitors computer activity against an internal database of signatures.檢測到病毒攻擊您的電腦上,您的標準AV包監測計算機活動對內部數據庫的簽名。 These signatures are the “digital fingerprints” of viruses, trojans, and spyware.這些簽名是“數碼指紋”的病毒,木馬及間諜軟件等。 If the AV program spots one of these signatures being loaded into memory on your computer, it kicks into action and blocks any ensuing activity, protecting you from known malware.如果視聽節目景點之一,這些簽名被載入到記憶體在您的計算機上,它踢轉化為行動和攔截任何隨後的活動,保護你從已知惡意軟件。
However, although every threat has a unique fingerprint, your AV software can only intercept it if it has a copy of that fingerprint in its internal database.不過,雖然每一種威脅有其獨特的指紋,您的AV軟件只能攔截,如果它有一個副本說,指紋圖譜在其內部數據庫。 You can update your AV software on a daily business, but what happens if a new virus emerges, which is very likely, between updates when no signature has yet been identified or added to the AV update?您可以更新您的AV軟件對一的日常業務,但會發生什麼,如果一個新的病毒出現,這是非常有可能,之間的更新時,沒有簽名至今尚未確定或添加到的AV更新?
There are some rare AV programs that use heuristics to spot activity that might be associated with viral activity, as well as monitoring signatures, but the most commonly used repeatedly misses new viruses and can lead to false positives.有一些罕見的AV程序使用啟發式,以現貨的活動,可能與病毒活性,以及監測簽名,但最常用的一再錯過了新的電腦病毒,並可能導致假陽性。 ThreatFire threatfire , is apparently different. ,是明顯不同。 It labels itself as zero-day protection (zero-day referring to the fact that a virus can appear before standard AV software gets updated).它的標籤本身作為零天保護(零天是指這樣一個事實,即病毒可以出現之前,標準AV軟件得到更新) 。
ThreatFire’s ActiveDefense technology closes those protection gaps. threatfire的activedefense技術關閉這些保護方面的差距。 It uses behavioral analysis instead of signatures to detect malicious activity. 它使用行為分析,而非簽名來偵測惡意的活動。 This means it can protect you from threats so new your AV doesn’t even know about them yet. 這意味著它可以保護你不受威脅,使新您的AV甚至不知道他們還。
ThreatFire’s creators, PCTools, suggest that while its software can catch those attacks between AV updates, it’s probably a good idea to run a standard security suite with AV updating at least once daily on your system. threatfire的創作者, pctools ,建議的同時,其軟件可以趕上這些襲擊之間的AV更新,這可能是一個好主意,運行一個標準的安全套件的AV更新至少一次,每天在您的系統上。 One might say it’sa case of wearing both belt and suspenders, but perhaps more appropriately for the initial tone of this piece it’s more like using a double layer of, ahem, latex.一會說,這案件都身穿帶和吊桿,但也許更恰當地為初步的語氣,這一塊它更喜歡使用雙層的, ahem ,乳膠。






















4 responses so far ↓四反應到目前為止↓
Systeme D'alarme systeme -警報系統 // / / May 2, 2008 at 7:16 pm 2008年5月2日在下午7點16分
sure, i use protection for one night stand…當然,我使用保護一晚的立場…
David Bradley 大衛布拉德利 // / / May 2, 2008 at 7:35 pm 2008年5月2日在下午7點35分
If you’re having electronic intercourse of any kind you should use protection at all times.如果您有電子性交任何形式的你應該使用保護在任何時候。 That’s not to say full latex body armor, but AV software and firewall with regular spyware checks.這並不是說充分乳膠防彈衣,但AV軟件和防火牆與間諜軟件定期檢查。
db分貝
seo 徐 // / / May 3, 2008 at 8:11 pm 2008年5月3日在下午8時11分
I trust my computer as we have been togeather for a long time now.我相信我的電腦,因為我們已togeather相當長的時間。
seos last blog post.. seos最後的博客帖子.. A few quick updates數快速更新
Hilary Rogers 希拉里羅傑斯 // / / May 5, 2008 at 1:29 pm 2008年5月5日在下午1時29分
Hi there,喜有,
As a first line of defence, our tools at作為第一道防線,我們的工具 http://www.processlibrary.com could be useful:可能是有用的:
1. 1 。 ProcessScanner is a free download that scans a user’s PC and tells them exactly what’s running, what each process does, what program it’s associated with and measures resource usage. processscanner是一項免費下載的掃描用戶的PC上,並告訴他們究竟的運行,每一個過程,什麼程序,它的相關措施和資源的使用。 You can get it here:你可以在這裡:
http://www.processlibrary.com/processscan/
2. 2 。 ProcessQuickLink is a free plug-in for the Task Manager - it gives you click through info about each process in the list. processquicklink是一個免費的插件中的任務管理器-它可以讓您通過點擊信息每個進程在清單中。 http://www.processlibrary.com/quicklink
If you need any more info, please let me know - you can email me at如果您需要任何更多的信息,請讓我知道-您可以發送電子郵件給我在 hilaryr@uniblue.net
Leave a Comment留下意見