<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Nasty Trojan Zeus Evades Antivirus Software</title>
	<atom:link href="http://www.darknet.org.uk/2009/09/nasty-trojan-zeus-evades-antivirus-software/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk/2009/09/nasty-trojan-zeus-evades-antivirus-software/</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 14 Feb 2012 00:17:07 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: nunya</title>
		<link>http://www.darknet.org.uk/2009/09/nasty-trojan-zeus-evades-antivirus-software/#comment-159481</link>
		<dc:creator>nunya</dc:creator>
		<pubDate>Tue, 06 Oct 2009 15:28:48 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2131#comment-159481</guid>
		<description>The 6.0 version of Evidence Eliminator by Robinhood software on its website contains the Zbot trojan and is not detected until after install. Steer clear of it.</description>
		<content:encoded><![CDATA[<p>The 6.0 version of Evidence Eliminator by Robinhood software on its website contains the Zbot trojan and is not detected until after install. Steer clear of it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: monstr-fan-boy</title>
		<link>http://www.darknet.org.uk/2009/09/nasty-trojan-zeus-evades-antivirus-software/#comment-159100</link>
		<dc:creator>monstr-fan-boy</dc:creator>
		<pubDate>Tue, 22 Sep 2009 16:33:47 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2131#comment-159100</guid>
		<description>There already is an removal tool out there. it</description>
		<content:encoded><![CDATA[<p>There already is an removal tool out there. it</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Little Mac</title>
		<link>http://www.darknet.org.uk/2009/09/nasty-trojan-zeus-evades-antivirus-software/#comment-159072</link>
		<dc:creator>Little Mac</dc:creator>
		<pubDate>Sun, 20 Sep 2009 12:51:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2131#comment-159072</guid>
		<description>Memory monitoring, kernel/whole-system protection is provided by some security products.  If the malware can&#039;t access the CPU, it can&#039;t infect the system no matter what it does.  Typically this comes from a powerful HIPS; then it doesn&#039;t matter about the AV (definitions are. Always behind the curve anyway).

My personal choice, Comodo CIS, is free (not Open-Source) and lightweight on the system.  There are many other good ones, some also free (Online Armour has paid and free versions).  The only downside to these apps is that they do require some user interaction.</description>
		<content:encoded><![CDATA[<p>Memory monitoring, kernel/whole-system protection is provided by some security products.  If the malware can&#8217;t access the CPU, it can&#8217;t infect the system no matter what it does.  Typically this comes from a powerful HIPS; then it doesn&#8217;t matter about the AV (definitions are. Always behind the curve anyway).</p>
<p>My personal choice, Comodo CIS, is free (not Open-Source) and lightweight on the system.  There are many other good ones, some also free (Online Armour has paid and free versions).  The only downside to these apps is that they do require some user interaction.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: senn</title>
		<link>http://www.darknet.org.uk/2009/09/nasty-trojan-zeus-evades-antivirus-software/#comment-159069</link>
		<dc:creator>senn</dc:creator>
		<pubDate>Sun, 20 Sep 2009 01:47:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2131#comment-159069</guid>
		<description>I&#039;ve seen lot of computers infected with this zbot. Some antivirus able to detect this virus behavior however failed to remove it. And some anti virus not able to detect it at all.</description>
		<content:encoded><![CDATA[<p>I&#8217;ve seen lot of computers infected with this zbot. Some antivirus able to detect this virus behavior however failed to remove it. And some anti virus not able to detect it at all.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: JibbaJabber</title>
		<link>http://www.darknet.org.uk/2009/09/nasty-trojan-zeus-evades-antivirus-software/#comment-159050</link>
		<dc:creator>JibbaJabber</dc:creator>
		<pubDate>Fri, 18 Sep 2009 20:44:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2131#comment-159050</guid>
		<description>&quot;I someone comes up with a tool or method to prevent and detect these infections.&quot;

I -hope- so too, only problem is most people who don&#039;t know jack and don&#039;t use antivirus anyways because of the &#039;hassle&#039; involved in it and the complexity of the task just won&#039;t get it, still. 

However, many of the whole security software suites that include Firewall, anti-virus, anti-phishing, anti-spyware, etc. protection do include system hooks and such for protecting themselves, and you know what happens? The protection becomes so bloated that it&#039;s as bad as the malware you&#039;re attempting to protect yourself from. Have you tried any of it? It&#039;s really hopeless from the end user perspective. The bad guys will always find a way to subvert the system for their illicit gains until everything is useless. Enjoy.</description>
		<content:encoded><![CDATA[<p>&#8220;I someone comes up with a tool or method to prevent and detect these infections.&#8221;</p>
<p>I -hope- so too, only problem is most people who don&#8217;t know jack and don&#8217;t use antivirus anyways because of the &#8216;hassle&#8217; involved in it and the complexity of the task just won&#8217;t get it, still. </p>
<p>However, many of the whole security software suites that include Firewall, anti-virus, anti-phishing, anti-spyware, etc. protection do include system hooks and such for protecting themselves, and you know what happens? The protection becomes so bloated that it&#8217;s as bad as the malware you&#8217;re attempting to protect yourself from. Have you tried any of it? It&#8217;s really hopeless from the end user perspective. The bad guys will always find a way to subvert the system for their illicit gains until everything is useless. Enjoy.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

