Skip to main content

Defending against Viruses


Windows XP Service Pack 2 has many new features that make Windows XP the most secure Microsoft operating system to date. One of the new features, called execution protection, takes advantage of a new hardware protection found in the latest CPUs of modern computers.

One of the most common types of computer break-ins and virus exploits has to do with buffer overflows. These occur when data is being sent to a buffer faster than the CPU can process it. When the buffer becomes filled, the system can become unstable and sometimes can execute code that was placed in the buffer. This is how many types of viruses spread. They take advantage of an unchecked buffer and can get the CPU to execute their malicious code. One easy solution to solve this problem is to include a feature in the CPU that will disable executing of
data in all buffers. By doing this, a virus might be able to get its code into the buffer, but because of limitations of the CPU, the code would never be executed, rendering the virus useless and unable to spread.

The new CPU level security can be found on the AMD Athlon 64 processor and new versions of the Intel Pentium 4 Prescott. If you have one of these chips with the execution protection feature, this feature is enabled by the operating system. However, having this feature enabled for all programs may cause some application errors because some need to be able to execute data in their buffers. To allow for this, Microsoft has created an exception list for such programs. You are advised to make sure every once in a while that no application has automatically added itself to the exception list. You really need to make
sure that only the applications that truly need to be there are there. To do this, follow these steps:

1. Right-click the My Computer icon located on the desktop or Start Menu and select Properties.

2. When System Properties loads, click the Advanced tab.

3. Then, click the Settings button under the Performance section.

4. Next, click the Data Execution Prevention tab and make sure that Help Protect All Programs Except: is selected.

5. Then, review the list and remove any apps except for the ones that you are 100 percent positive should be there.

6. Click OK to save your changes.

7. Select OK once more to close System Properties.

Comments

Popular posts from this blog

Using the quick boot feature of the BIOS

All systems initialize in more or less the same way. During the power on self-test mentioned earlier, the BIOS checks the hardware devices and counts the system memory. Out of all of the different types of system memory, the random access memory, better known as RAM, takes the longest to be counted. Counting the RAM takes time, and on a machine that has large amounts of RAM, this calculation can take several seconds. For example, a machine that has 512MB of RAM may take up to 3 seconds just to count the memory. On top of the RAM counting, a few other tests need to be done because your computer wants to make sure that all of the hardware in your computer is working properly. All of these system tests are not needed every time you boot, and can be turned off to save time. Most BIOS's offer a feature called quick boot. This feature will allow the user to turn off these tests. Other BIOSs only allow you to turn off the memory check, which will still cut down on a lot of time....

File and Folder Permissions

Windows XP Professional boxes running the NTFS file system have the capability to set indi vidual file permissions on both files and folders. File and folder permissions allow you to specify exactly who will be able to read, write, execute, and even list or access a folder. So, file and folder permissions can be a very powerful tool to protect your data from others' eyes. If your file system is FAT32, then you will not be able to set permissions. Fortunately, an easy way exists for you to convert your FAT32 file system to NTFS. Do a search in the Windows Help and Support Center for Convert to NTFS and you will be shown directions on how you can go about converting your drive's file system. Setting the permissions on with a lot of control requires you to disable simple file sharing and security. To do so, follow these steps: 1 . Open up any folder on your computer and expand the Tools menu and select Folder Options. 2 . Click the View tab and scroll to the bottom of the Adv...

Rapidshare Timelimit

Directions Rapidshare traces the users IP address to limit each user to a certain amount of downloading per day. To get around this, you need to show the rapidshare server, a different IP address. You can do this one of multiple ways. Requesting a new IP address from your ISP server. Here's how to do it in windows: 1. Click Start 2. Click run 3. In the run box type cmd.exe and click OK 4. When the command prompt opens type the following. ENTER after each new line. ipconfig /flushdns ipconfig /release ipconfig /renew exit 5. Erase your cookies in whatever browser you are using. 6. Try the rapidshare download again. Frequently you will be assigned a new IP address when this happens. Sometime you will, sometimes you will not. If you are on a fixed IP address, this method will not work. To be honest, I do not know how to do this in linux/unix/etc. If this works for you, you may want to save the above commands into a batch file, and just run it when you need it.