Epinions.com 
Join Epinions | Learn More! | Sign In   

HomeMediaBooksDeveloping Computer Skills

Read Advice   Write an essay on this topic. 

Virus Studies 101

Mar 25 '00



Virii (The Actual Plural Of Virus, Viruses is not the correct Plural)
What are they? Computer Bugs, Password Stealers? or just unwanted software? They are these and much more. Programmers who make virii spend hours racking their brains to find the best way to access your computer. Why would they do this? Profit, a name, because they can. There are some basic types. I will explain these in this review so you can understand how they work, and what virus checkers (if any) you should use to find them.

Basic Design:
• Virii are designed to either embed themselves at the front or end of an exe or com file, or set themselves up to run when your OS starts.
• They will run with as little an amount of system resources as needed.
• You won't know its happening.

Basic Types:
• Polymorphic - This type hides itself and tries to blend in with other executes, it will conceal itself at the base and even shift forms to prevent a successful detection
• Trojan Horse - This type hides itself with the appearance of something
great to download. Many Trojans are gateway virii. They eather steal your password and grant thier author access to your accounts or they are the gateway for RAT Servers (Remote Access Trojans)
• RATs (Remote Access Trojans) - Such as Back Orfice(bo), and Sub Seven they grant user(s) access to your system. All its IO functions (input/output) Such as Keyboard, Instant Messages, Chats, Web Cams and your hard drive. They can track your Windows System messages and what you are running
• Bombs/Time bombs/Deltrees - These are virii that cause actual damage to your system. They can "blow up" and destroy drive sectors, Software, files and even crupt your BIOS, (such as the CHI virus does). Time Bombs go off on a certain date. Deltrees delete your whole hard drive viva DOS. Hence the name "Deltree" as in the DOS command deltree.
• Beacons - These are virii with a preset date to go off. They will use your machine to rapidly ping a website at a given time, provided your online at the time. This is used to cause Server Crashes.

How to Discover the Traitor in your Mist:
These Virii, although designed and updated not to be found can be. Some ways are:

• Know your hard drive. Try to be firmilar with all the files you have on there. If something looks unfirmilar then check into where it orginated from
• Watch for strange system fails. Such as lock ups, system being busy, extended responce times.
• White Flashes (Especially on America Online) or blank outs.
• Resource Burn ups. Check your Resource Meter and watch for excessive RAM usage.
• Download Free Specific Virus Detectors. (Such as For Sub Seven, BO, etc.)
• Find the Actual virus and firmilarize yourself with it. *(Not Suddgested for Newbie computer users or those without backed up hard drives, as always be cautious you can infect yourself on accident. Read all help information that comes with it, or you can find about it)
• Research New Virii and Virus Reports. Check watch lists.

The Straight up on Virus Checkers:
Virus checkers only work if the virus is currentally known. That is to say, that you have your virus checker updated regularly (Atleast once a week).

• Case Study: Subseven 2.1 Gold (Latest Subseven version) •
Now this is the most up to date version of subseven. Ten-One no virus check can detect it. Now why is this?
Reason 1: Someone has to find it and get it to the R&D lab of the virus company.
Reason 2: Subseven has counter measures to prevent this, its melts itself, it hides itself as a different executable, as well as hiding itself in your systems registery.
Reason 3: it comes in a packed version and an unpacked version. This means a user can pack it themselves which make billions of strands that are non comparable to each other
Reason 4: its highly efficent. Little is Wasted.

how can you find out if you have it on your PC? Find the Virus Client and run it on your PC. The client will allow you to scan computers IP addresses to find if they have the client. Put in your IP address and give it a buzz. Download Subseven Sniper. This is an antidote for Subseven.

This gives you on simple example. Some virii can easily be detected by virus checkers, such as AOL PWS Trojan horse virii, Others cannot.


 Read all comments (1)
 Write your own comment
Epinions.com ID:
EMIES_Mage
Member: "Mage"
Location: Melbourne, Florida
Reviews written: 6
Trusted by: 1 member


Help | Member Center | Message Boards | Site Rules | User Agreement | Privacy Policy | Site Index | Topic Index  
About Epinions | Careers | Contact Epinions | Advertising  

Epinions | Shopping.com | Rent.com | Free Classifieds | Price Comparison UK

Shopping.com Network © 1999-2009 Shopping.com, Inc. Trademark Notice

Muze: Copyright 1995 - 2009 Muze Inc. For personal non-commercial use only. All rights reserved.

Epinions.com periodically updates pricing and product information from third-party sources,
so some information may be slightly out-of-date. You should confirm all information before relying on it.