Virus and Antivirus

12
VIRUSES AND ANTI- VIRUSES SUBMITTED BY : RISHABH BHARADWAJ

Transcript of Virus and Antivirus

Page 1: Virus and Antivirus

VIRUSES AND

ANTI- VIRUSES

SUBMITTED BY : RISHABH BHARADWAJ

Page 2: Virus and Antivirus

VIRUS

1. DEFINITION- WHAT EXACTLY IS A VIRUS?

2. TYPES OF VIRUSES :

1. FILE OR PROGRAM VIRUSES

2. BOOT SECTOR VIRUSES

3. MULTIPARTITE VIRUSES

4. STEALTH VIRUSES

5. POLYMORPHIC VIRUSES

6. MACRO VIRUSES

Page 3: Virus and Antivirus

TOP 5 DESTRUCTIVE AND DANGEROUS VIRUSES

1. I LOVE YOU VIRUS (2000)

2. CODE RED VIRUS (2001)

3. SAPPHIRE (2003)

4. SASSER AND NETSKY (PRESENT)

5. STORMWORM NUWAR VIRUS (SINCE 2007 TO PRESENT)

Page 4: Virus and Antivirus

FUNCTIONAL ELEMENTS OF A VIRUS

TWO BASIC PARTS :

1.SEARCH ROUTINE

2. “.COM” AND “.EXE” FILES

TOOLS NEEDED FOR WRITING VIRUS

ASSEMBLY LANGUAGE

Page 5: Virus and Antivirus

VIRUSES - IN DETAIL

1. FILE OR PROGRAM VIRUSES

2. SIMPLE COM FILE INFECTOR

3. AN OUTLINE FOR A VIRUS – ITS TYPES :

1. AN EXECUTABLE VIRUS

2. BOOT SECTOR VIRUS

3. MULTIPARTITE VIRUSES

4. STEALTH VIRUSES

5. POLYMORPHIC VIRUSES

6. MACRO VIRUSES

Page 6: Virus and Antivirus

ANTIVIRUS

1. DEFINITION

2. SIGNATURE BASED DETECTION

3. HEURISTICS ANALYSIS

4. ROOTKIT DETECTION

5. REALTIME PROTECTION

Page 7: Virus and Antivirus

EFFECTIVENESS OF ANTIVIRUSES

1. STUDIES IN DECEMBER 2007

2. MAJOR VIRUS SCANNERS

3. NETWORK FIREWALL

4. SPECIALIST TOOLS

5. USAGE AND RISKS

Page 8: Virus and Antivirus

DRAWBACKS

1. IMPAIRS COMPUTER’S PERFORMANCE

2. LULLED INTO A FALSE SENSE OF SECURITY

3. ON EMPLOYING HEURISTIC APPROACH, IT MUST BE FINE

TUNED

4. RUNS AT THE HIGHLY TRUSTED KERNEL LEVEL, THUS

CREATING A POTENTIAL AVENUE OF ATTACK

5. VARIOUS METHODS TO IDENTIFY MALWARE

Page 9: Virus and Antivirus

NEW VIRUSES

1. ANTIVIRUS ARE NOT ALWAYS EFFECTIVE.

2. ARE PRETESTED BY THE VIRUS DESIGNERS

3. RANSOMWARE – USE POLYMORPHIC CODE TO AVOID

DETECTION

4. RESULT IN DAMAGED FILES.

5. FIRMWARE ISSUES – REQUIRE THE BIOS CHIP.

Page 10: Virus and Antivirus

PROBLEMS CAUSED BY FALSE POSITIVE

1. DEFINATION OF "FALSE POSITIVE“.

2. A FALSE POSITIVE HAS ADVERSE EFFECT ON OPERATING

SYSTEM.

3. BAD CONDITION OCCUR FROM FAULTY VIRUSES IN PAST YEAR.

4. PROBLEMS GENERATED DUE TO CONSCIENTIOUS ANTIVIRUS

IN YEAR 2010.

5. WINDOWS 7 DAMAGED DUE TO FAULTY UPDATE.

Page 11: Virus and Antivirus

CONCLUSION

1. COMPUTER VIRUSES ARE NOT EVIL AND THAT PROGRAMMERS HAVE A RIGHT TO CREATE THEM.

2. CARE SHOULD BE TAKEN ON CREATING A VIRUS, ELSE ONE CAN WIPE OUT ONE’S OWN SYSTEM.

3. IT IS NECESSARY TO HAVE A DEEP KNOWLEDGE OF THE WAY IN WHICH DIFFERENT VIRUSES EXPLOITS OUR SYSTEMS WEAKNESS.

4. IT IS ALSO IMPOSSIBLE TO CREATE ANTIVIRUS AGAINST A PARTICULAR VIRUS.

Page 12: Virus and Antivirus

THANKYOU…!!