2005-11-01
Abstract
Is the boot on the other foot? (comment); Criss-cross (virus analysis); IME as a possible keylogger (feature); The false positive disaster: anti-virus vs. WinRar & co. (feature); In Dublin’s fair city (conference report); NOD32 for Windows NT/2000/XP/2003/x64 with centralized management (product review)
Comment
Is the boot on the other foot?
It adds insult to injury when the major media outlets misrepresent the facts.
Virus analysis
Criss-cross
Cross-infector viruses demonstrate the flexibility of certain file formats. While some of these viruses have clearly been written to maximise their replication potential, most seem to have been written simply to show that it can be done. Peter Ferrie takes a look at three of the latest Cross-infector viruses on the scene
Features
IME as a possible keylogger
Using components of Windows multilingual support, it is possible to create a file that will capture keystrokes on a target system while using the OS to protect that file from removal or deletion. Masaki Suenaga explains how an IME could be used as a keylogger.
The false positive disaster: Anti-Virus vs Winrar & Co
Andreas Marx reports on his extensive false positive testing of anti-virus software.
Letters
In response to review comments
Kaspersky's David Emm comments on the KAV 5.0 writeup from last month's comparative review. Virus Bulletin's Matt Ham responds.
Conference report
In Dublin's fair city
VB2005 was a double record breaker - Virus Bulletin's longest and largest conference to date. We were delighted to welcome well over 360 delegates to The Burlington hotel in Dublin for the debut of the event's new longer format - and, for the second year in a row, the conference was described by delegates as the best VB conference they had attended.
Product review
NOD32 for Windows NT/2000/XP/2003/X64 with centralized management
Matt Ham Reviews the latest offering from Eset - NOD32 for Windows NT/2000/XP/2003/X64 with centralized management
Poll
Should anti-virus software be free for personal use?Leave a comment
View 21 comments
Malware Prevalence
| Agent |
|
|---|---|
| Zbot |
|
| Suspect packers |
|
| Dropper-misc |
|
| Delf |
|
Virus Bulletin currently has 143,018 registered users.


