Software Design
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me
Go Back   Dev Shed ForumsProgramming Languages - MoreSoftware Design

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Dev Shed Forums Sponsor:
  #1  
Old June 14th, 2008, 03:41 AM
kyelzbub kyelzbub is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Jun 2008
Posts: 1 kyelzbub User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 12 m 19 sec
Reputation Power: 0
Writing Virus Protection

I was talking with a friend today about how it would be neat to develop a program that would detect someone trying to hack or infect your computer. Rather than just detect and deny or block the intrusion it would fight back and either infect or disable the intruders computer. The friend I was telling this to said that he thought people were writing programs like this on a personal level, but that it wasn't being produced or marketed. Has anyone heard of these types of programs, and if so, would you know any sites with reference material about writing this type of software. Would love to write something for my system.

Reply With Quote
  #2  
Old June 14th, 2008, 04:21 AM
NovaX NovaX is online now
Contributing User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Jul 2005
Location: Bay Area, California
Posts: 487 NovaX User rank is Captain (20000 - 30000 Reputation Level)NovaX User rank is Captain (20000 - 30000 Reputation Level)NovaX User rank is Captain (20000 - 30000 Reputation Level)NovaX User rank is Captain (20000 - 30000 Reputation Level)NovaX User rank is Captain (20000 - 30000 Reputation Level)NovaX User rank is Captain (20000 - 30000 Reputation Level)NovaX User rank is Captain (20000 - 30000 Reputation Level)NovaX User rank is Captain (20000 - 30000 Reputation Level)NovaX User rank is Captain (20000 - 30000 Reputation Level) 
Time spent in forums: 2 Weeks 4 m 10 sec
Reputation Power: 241
Send a message via ICQ to NovaX
I only know of three approaches: fingerprinting, detecting suspicious activity, and hueristics. Most scanners use the first approach by adding it to a dictionary of known viruses and the solution. Its manual, but easy process. Detection isn't too hard, but you need to know what's bad behavior. So its mostly just building it into the application itself. Heuristics are probably the best long-term approach, but are a pain to get working right.

The approach that is getting adopted is to use the above approaches, but sandbox every layer. The more restrictions you put around the process, the less damage you can do. Its the only approach that has worked well over the long haul, but is the most painful since users will always bump into the walls.

I think you need to figure out what exactly you want to prevent and try out one of the above methods.

Reply With Quote
  #3  
Old July 1st, 2008, 10:47 PM
Dekudude's Avatar
Dekudude Dekudude is offline
Contributing User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Dec 2007
Location: Tucson, AZ
Posts: 294 Dekudude User rank is Sergeant (500 - 2000 Reputation Level)Dekudude User rank is Sergeant (500 - 2000 Reputation Level)Dekudude User rank is Sergeant (500 - 2000 Reputation Level)Dekudude User rank is Sergeant (500 - 2000 Reputation Level)Dekudude User rank is Sergeant (500 - 2000 Reputation Level) 
Time spent in forums: 1 Day 16 h 55 m 7 sec
Reputation Power: 11
Send a message via ICQ to Dekudude Send a message via AIM to Dekudude Send a message via MSN to Dekudude Send a message via Yahoo to Dekudude Send a message via Google Talk to Dekudude
I think what he means, is if a computer is intruded, that computer (with the software installed) will automatically infiltrate the hacker's computer, shutting it down, or installing a virus of its own.

The way I see it, the system would have to hack the hacker's computer, which is just as illegal. Assuming the hacker had a firewall, they'd be beating you up, while keeping YOU out. :P It would be a one-way barrier.

Reply With Quote
Reply

Viewing: Dev Shed ForumsProgramming Languages - MoreSoftware Design > Writing Virus Protection


Thread Tools  Search this Thread 
Search this Thread:

Advanced Search
Display Modes  Rate This Thread 
Rate This Thread:


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
View Your Warnings | New Posts | Latest News | Latest Threads | Shoutbox
Forum Jump


Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
  
 





© 2003-2008 by Developer Shed. All rights reserved. DS Cluster 4 hosted by Hostway
Stay green...Green IT