Tuesday, April 7, 2009

All about Trojan Horse

Trojan horse

A Trojan is a program that appears to be legitimate, but in fact does something malicious. Quite often, that something malicious involves gaining remote, surreptitious access to a user's system. Unlike viruses, a Trojan does not replicate (i.e. infect other files), nor does it make copies of itself as worms do.

There are several different types of Trojans. Some of these include: remote access Trojans (RATs), backdoor Trojans (backdoors), IRC Trojans (IRCbots), and keylogging Trojans. Many Trojan encompass multiple types. For example, a Trojan may install both a keylogger and a backdoor. IRC Trojans are often combined with backdoors and RATs to create collections of infected computers known as botnets.

But why is it important to know the difference between a virus, a worm, and a Trojan? Because a virus infects legitimate files, thus if antivirus software detects a virus, that file should be cleaned. Conversely, if antivirus software detects a worm or a Trojan, there is no legitimate file involved and action should be to delete the file.

Type of Trojan horse

• Remote Access Trojans
• Data Sending Trojans
• Destructive Trojans
• Proxy Trojans
• FTP Trojans
• security software disabler Trojans
• denial-of-service attack (DoS) Trojans


1.Abbreviated as RATs, a Remote Access Trojan is one of seven major types of Trojan horse designed to provide the attacker with complete control of the victim's system. Attackers usually hide these Trojan horses in games and other small programs that unsuspecting users then execute on their PCs

2. A type of a Trojan horse that is designed to provide the attacker with sensitive data such as passwords, credit card information, log files, e-mail address or IM contact lists. These Trojans can look for specific pre-defined data (e.g., just credit card information or passwords), or they could install a keylogger and send all recorded keystrokes back to the attacker.

3. A type of Trojan horse designed to destroy and delete files, and is more like a virus than any other Trojan. It can often go undetected by antivirus software.

4. A type of Trojan horse designed to use the victim's computer as a proxy server. This gives the attacker the opportunity to do everything from your computer, including the possibility of conducting credit card fraud and other illegal activities, or even to use your system to launch malicious attacks against other networks.

5. A type of Trojan horse designed stop or kill security programs such as an antivirus program or firewall without the user knowing. This Trojan type is normally combined with another type of Trojan as a payload.
Easy way to test antivirus scanner



Protection against Trojan

The most effective option for protecting against a Trojan horse may be installing a firewall if you do not already have one. A good software firewall is usually the best type for a personal computer. It can be configured to keep intruders out while also keeping your system, or programs within your system, from sending out personal or confidential data.
If you are unsure, test drive a trial version of a firewall or download a free one to check it out. Run it for one day and examine the log file
Probably the biggest line of defense for helping prevent having your computer infected with a Trojan Horse or other malicious software is being careful what you do online. Avoid using file sharing sites using the Gnutella network to download free movies, MP3 music files, etc. These sites are notorious for containing files infected with malware, including Trojan Horses. Use caution when downloading files off Usenet. Also, be careful what you freeware you download. That cool game could very well contain more than you bargained for - a Trojan Horse or other malicious software. Only download programs from reputable sources. Never accept programs transferred by instant messaging applications. Finally, never open an email attachment from someone you don't know. In fact, never open an email attachment from even someone you know that is unfamiliar and/or unexpected, as their system could be infected with a Trojan Horse or other malware. Confirm that the sender did actually send you the email before opening.
Ensure that you have anti-spyware software installed on your computer. Maximum PC actually recommends you have Spybot Search & Destroy as well as two other anti-spyware programs installed on your computer. It is good to know that there are free anti-spyware programs, including Spybot Search & Destroy, to download online. Windows Vista actually includes Windows Defender, a free anti-spyware program.


How to remove Trojan


1. If you are using and operating systems such as Windows XP or ME, you MUST disable your System
Restore before attempting any removal! After successful removal, you can re-enable System Restore. Here is how to turn off System Restore:

Log on as Administrator.
Right-click the My Computer icon on the desktop and click Properties.
Click the System Restore tab.
Select Turn off System Restore.
Click Apply > Yes > OK.
Continue with the scan/clean process. Files under the _Restore folder can now be deleted.
Re-enable System Restore by clearing Turn off System Restore.

2. Make absolutely sure you have the latest "paid for" versions of removal tools such as Ad-aware and Spybot Search & Destroy.

3. Reboot your system in "safe mode". Here is how:

• If the computer is running, shut down Windows, and then turn off the power

• Wait 30 seconds, and then turn the computer on.

• Start tapping the F8 key. The Windows Advanced Options Menu appears. If you begin tapping the F8 key too soon, some computers display a "keyboard error" message. To resolve this, restart the computer and try again.

• Ensure that the Safe mode option is selected.

• Press Enter. The computer then begins to start in Safe mode.
• When you are finished with all troubleshooting, close all programs and restart the computer as you normally would.

4. In "safe mode", run Ad-aware, and if still needed, Spybot. If you have the "paid for" versions of these products, make sure you install the "add-ons" they have. For example, Ad-Aware has a special add-on to help remove a very nasty Trojan named VX2 (or Transponder).

5. Reboot your system in normal mode and rerun Ad-Aware and Spybot. Hopefully you will get a clean report...

6. Once your get a clean report, use the same System Restore procedure as above, but this time turn System Restore back on.

Sunday, April 5, 2009

Easy way to test antivirus scan

If you are worry that your antivirus scanner is working properly or not. There is a very easy way to test your PC antivirus scan. I have find out very simple code to test scanner, thers is no virus included into the code. I have tested on my laptop first before telling you guys. Just follow the simple step given below with screenshot.

1)RIGHT CLICK ON YOUR DESKTOP AND CLICK ON "NEW" THEN CLICK ON "TEXT DOCUMENT



2)COPY THE CODE BELOW IN THE TEXT DOCUMENT (HAS TO ALL BE ON ONE LINE OR IT WILL NOT WORK).

Code:
X5O!P%@AP[4\PZX54(P^)7CC)7}$EICAR-STANDARD-ANTIVIRUS-TEST-FILE!$H+H*


3)ONCE YOU HAVE DONE THAT CLICK "FILE AND THEN CLICK "SAVE".

4)YOUR VIRUS SCANNER SHOULD PICK IT UP AS SOON AS YOU SAVE .






Finally you should always ensure that your PC 's antivirus definition is always updated with latest patch.

Tuesday, March 31, 2009

Sanjay Dutt will not be able to contest Lok Sabha elections.

Sanjay Dutt's plea to contest the upcoming Lok Sabha elections was on Tuesday rejected by the Supreme Court. The court said Dutt was convicted for 'serious offence' under the Arms Act by a Mumbai TADA court.

The bench said that Dutt was disqualified from contesting the elections under Section 8 (3) of the Representation of People Act, which debars a person sentenced to two or more years of imprisonment, from standing for polls.

It’s a very good judgment by a Supreme Court. This judgment will also be made applicable to all politicians with criminal back ground. Probably it will help us flush out corrupt / convicted / Criminal minded and politicians with Criminal back ground from the political system.

Unless the constitution is changed that any citizen even has a smallest crime record whether he is convicted or not, should be barred from contesting any election whatsoever, whether it is panchayat election, legistative assembly or parliament election. then only the politics of India will become clean.

Judiciary system should be up and above the individual personality, judgment should not be effected by the person position and power in the system. The judgment by the supreme court is very correct, the judge were stand to there judgment without considering his position and reputation in society, it will show good image of Indian Law to people of India.

Monday, March 30, 2009

What is Ghostnet and how it works.?

On 29th march cyberespionage investigation has found that 1,295 computers in 103 countries and belonging to international institutions have been spied on by some spyware program.

Report describes it as network which researchers have called GhostNet, which primarily uses a malicious software program called gh0st RAT (Remote Access Tool) to steal sensitive documents and control system remotely.

The system disseminates malware to selected recipients via computer code attached to stolen emails and addresses, thereby expanding the network by allowing more computers to be infected. Once infected, a computer can be controlled or inspected by its hackers. The malware even has the ability to turn on the camera and audio-recording functions of an infected computer.

How It works.?


Ghostnet spyware has used technology called RAT - Remote admininstration Tool (RAT).
It is a software application which provides an attacker with the
capability to control your computer system remotely whenever you are online. The attacker can perform operation such as programs and/or files adding/deleting, ,file tansfers, capturing screenshot, etc.Attacker may use captured computer for different personal needs such as to send malicious attacks.

RAT Trojan Horses

Many trojans and backdoors now have remote administration capabilities allowing an individual to control the victim's computer. Many times a file called the server must be opened on the victim's computer before the trojan can have access to it. These are generally sent through email, P2P file sharing software, and in internet downloads. They are usually disguised as a legitimate program or file. Many server files will display a fake error message when opened, to make it seem like it didn't open. Some will also kill antivirus and firewall software. RAT trojans can generally do the following:
• Download, upload, delete, and rename files
• Format drives
• Open CD-ROM tray
• Drop viruses and worms
• Log keystrokes, keystroke capture software
• Hack passwords, credit card numbers
• Hijack homepage
• View screen


The Trojan horse in the context of computing and software, describes a class of computer threats (malware) that appears to perform a desirable function but in fact performs undisclosed malicious functions that allow unauthorized access to the host machine, giving them the ability to save their files on the user's computer or even watch the user's screen and control the computer


A Trojan Horse Virus is also usually capable of stealing important information from the user's computer. It will then send this information to Internet servers designated by the developer of the virus. The developer will then be able to gain a level of control over the computer through this Trojan virus. While these things take place, the user will notice that the infected computer has become very slow or unexpected windows pop up without any activity from the user.

How to remove Trojan from system:

In order for the trojan to be completely removed from your system, you need to remove its registry entries. This way it will not be able to re-install itself. The Trojan is a "exe" process so you can find int the RUN folder of your registry.
The registry key: HKEY_LOCAL_MACHINE> SOFTWARE>Microsoft>Windows>CurrentVersion>RUN

This action will help you eliminate and chance of it reinstalling itself. Here is how:

1. Click Start

2. Click Run

3. Type regedit

4. Find this registry key:


HKEY_LOCAL_MACHINE/SOFTWARE/Microsoft/Windows/CurrentVersion/RUN/

5. In the right section click the process. For example is the trojan is "rusvdgpo". Delete all exe and dlls associated with the trojan names .

6. Delete the value.

This is how you can remove trojan from your computer

For more information about Ghostnet and removal process please follow the link of Symantec site

Thursday, March 19, 2009

Inflation is at two decade low but price no price down

Inflation is at 20 year low of 0.44%, but it doesn’t seem that it is low at all time because still vegetable, fruit, cereals and house rent is on there high. Recession effect can be seen everywhere, there are lay-off and salary cuts are going on every company. Still in commodity, reality and food market no one is ready reduce the price. Everyone is in amused state that why prices are not coming down even if inflation is at two decade low of 0.44%.

There are some reasons which affect the inflation rate which need to be considered before coming to conclusion. Drastic fall in inflation is also attributed to high base effect as it stood at 7.78 per cent during the corresponding week last year. It’s a misconception that falling inflation means falling prices.

DK Joshi, Principal economist at CRISIL explains, "Falling inflation rates doesn’t mean falling of prices, it only implies the rate at which the prices of goods are growing is low." Inflation rate has fallen to .44 per cent, the lowest in seven years, after breaching the 12 per cent mark in August ‘08. That means, at present, the prices of goods are higher than .44 per cent than last year. An example will make it clearer. Let’s say, the price of an item is Rs 100. It increases to Rs 106 with inflation at 6 per cent. Now, if inflation has slipped to .44 per cent, the price of the same good will move to Rs 108.57 from Rs 106, that is, 0.4 per cent higher than Rs 106. So simply put, inflation is a general rise in the prices of goods and services. When inflation rises, the prices of the goods rise. When inflation reaches zero, the prices on goods will become stagnant. And when inflation turns negative, you will see the actual fall in prices.By when is it likely to happen?"We can expect to see inflation close to zero by March-end and by May-June in negative. It is when we will see actual fall in prices of goods," says Joshi.

So we will have to still wait that inflation will get down to negative and we will see the old reduce price everywhere in market.

Sunday, March 15, 2009

Truth about Career in SAP

There are so many is people wishing to break into the SAP world for no reason other than 'money', or just because they want to change there IT domain. There are also so many people those who doesnt have SAP expierence, but want to become consultant and keep asking which module should i go for?.

This is practically the same as a student who has not even start medical school asking the question of 'how do I avoid an entry level residency and all the schooling and go straight to a doctor?'

Here i want to say that anyone seeking to break into SAP needs to and must start with a company who is willing to train them and help them gain SAP experience under their belt before becoming a consultant. I have also seen many post in SAP forum peolpe keep asking 'hello I have a totally different background and want to get into SAP, what module to go for?' . Many of these people dont get proper guidance on those forum. They are suggested by many go for this module or that module. Suggestion given by people should show honesty and bluntness, for most of the people seeking an SAP career in this forum do it for the wrong reasons, or automatically think a certification course or some third party weak training gives them the project experience they need. Trust me, people who tell it like it is save many of these people time and money...both of which are just as important as the other in today's economy.

Everybody should need to understand that there is also a significant difference between a professional consultant and a professional user of SAP, regardless of module. A user may know only a few transactions (up to about 25 max.) but doesn't understand how to configure the application and adjust settings for data import and export. A consultant may not know all of the transactions in a module (few do), but knows how to configure SAP to support a business process or multiple processes. Advanced users can often become effective consultants once their understanding of end-to-end processes are restored.

The key to a successful consulting career is to be able to take experience in a series of correlated business processes and be able to craft a solution for a client that solves a business problem. This is not easily done by anyone with little business process experience. I won't say it is impossible, but it is difficult.

So, if you are comfortable dealing with real-world problems, understand how to decompose those problems to basic elements, can overlay the SAP transactions and business flows to address the identified problems within a process, understand what SAP can and more important CANNOT do, then you can be a consultant. The big firms such as IBM-GBS, Accenture, BearingPoint, Deloitte, and Cap-Gemini often hire "freshers" to so the most simple config. work and testing. However, the number of available slots for this technically skilled, but business unaware personnel is small these days as few organizations have not already implemented an ERP solution for ERP. Beware of taking a position that your experience has not equipped you to handle. If you ignore this advise, then you'll find yourself in more trouble career-wise than you can possibly imagine.

Go first to help.sap.comwhich will give you an overview how all the SAP environment fits together. However, if you are NOT currently a consultant, I'd recommend doing at least 2 years with a company that uses SAP while taking a broader look at the product, its structure, master data requirements, and how the integration works. This will prepare you for the challenges of consulting. Remember that most competent consultants also know some of the technical side of Basis and ABAP/4 development. This is essential for working with R/3 and still useful in the ECC environment.
At the end i would like to say that please be realistic before choosing career in SAP. To make a start now in SAP you would have to throw away all experience gained and start at the bottom, on a beginner's salary and work for several years to gain some relevant experience. Then you MIGHT be able to break into the SAP market in 4 or 5 years. I am sure that is not what you want or expect to hear, but that is how it is.

Wednesday, March 4, 2009

Free webcam chat site

There are lots websites available on internet where you can have chat on webcam. Some of these sites are free and some them allow you to use there basic features. Higher feature are available after upgrade of profile by paying minimal amount to them. Maximum of doesn’t required any download. Video chat can be done directly from browser even some of them allowed to chat without any registration.
List of sites are given below

http://www.camchatting.com : Live Streaming Webcams and Chat


http://www.ivideochat.com : No downloads no sign up is required

http://www.room7.com : A free webcam chat. Instant access with no downloads

http://www.woome.com : Meet people online in free webcam chat and live video. WooMe is the fun, fast and free way to meet new people in LIVE voice and and video speed sessions

http://www.vagipe.com : Free high quality webcam chat.

http://www.camfrog.com : Free live webcam video chat room software for Windows XP, Vista, and Mac OS X.

http://www.youcams.com : YouCams provides a free instant video chat room. Very good webcam site must use.

http://www.yapchat.com : A free webcam chat room. Instant access with no software downloads.

http://www.iwebcam.com : Scirpts and code for free live video chat room. Free hosted chat room solutions. Communicate in real-time using video, audio and text.

http://www.jmeeting.com : Cross platforum video chat for all tastes