查看: 7050|回复: 18
收起左侧

新俄罗斯反病毒工具 AVZ antivirus(无须安装直接使用)

[复制链接]
起点
发表于 2006-11-1 13:30:47 | 显示全部楼层 |阅读模式
转自wilderssecurity论坛: 新俄罗斯反病毒工具 AVZ antivirus(无须安装直接使用)

The AVZ antivirus utility is intended for searching and deleting the following malicious programs:

· Spyware and Adware programs and modules (this is the main goal of this utility)
· Network and mail worms
· Trojan horses (including all their variations, in particular, Trojan-PSW, Trojan-Downloader, and Trojan-Spy) and backdoor programs (programs intended for remote control over the infected computer)
· Trojan horses intended for dialing purposes (Dialer, Trojan.Dialer, Porn-Dialer)
· Keyloggers and other programs that can be used for tracking user activities

This utility is a direct analogue of such programs as Trojan Hunter and LavaSoft Ad-aware 6. Its main goal is finding and removing adware and spyware modules, as well as Trojan horses.

It is necessary to mention that programs belonging to Spyware and Adware categories by definition are not viruses or Trojan horses. The track user activities and download information and program code to the infected computer mainly for the marketing goals. This means that the information being transmitted does not contain critical data, such as passwords, credit card numbers, etc. At the same time, the information that they download is mainly made up of promotion materials and updates. Nevertheless, the difference between Spyware and Trojan roses is very subtle, because of which accurate classification is hardly possible. My approach to malware classification and criteria used for this purpose are described in this on-line Help system.

The main feature of AVZ is the possibility of configuring the program reaction to the presence of any types of malicious programs. For example, it is possible to choose the mode in which the program will destroy viruses and Trojans detected, but deletion of Adware programs will be blocked.

Another specific feature of AVZ consists of multiple heuristic system checks, which are not based on the signature search mechanism. These include searching for rootkits, keyloggers, and various backdoors based on typical TCP/UDP ports. Such techniques of searching allow for finding new variants of malicious programs.

In addition to typical signature-based file searching, AVZ provides the built-in database containing digital signatures of tens of thousands of system files. Using this database allows for reducing the number of false actuations of heuristics and allows for solving a range of other problems. In particular, the file searching system provides a filter for excluding known files from the search results, the manager of running process and SPI settings highlights known processes with color, and when adding files to quarantine addition of trusted files known to AVZ is blocked.

As my experience has shown, Spyware programs can often be classified as Adware and vice versa. The reason for this is straightforward, because in most cases espionage aims at targeted promotion. Especially for such cases, I have introduced a generalized Spy category, which can be interpreted as Adware+Spyware. This is a convenient approach when dealing with programs of this class.

Program limitations:

1.Because the utility is mainly intended for eliminating Adware and Spyware modules, it currently does not support check of several types of archives, PE packers and documents. When eliminating Spyware these features are simply unneeded. Nevertheless, this utility is constantly being improved, and I plan to implement such functions.
2.The utility does not heal programs infected with computer viruses. For high quality and correct healing of infected programs specialized antivirus programs are needed (such as, for example, Kaspersky Antivirus Monitor, DrWeb, Norton Antivirus, Panda, etc.). I do not intend to re-invent the wheel trying to implement direct analogues of such programs. This is even truer, if you recall that viruses of this type are gradually becoming rare.

AVZ antivirus官方主页
http://z-oleg.com/secur/avz/avzguard.php
AVZ antivirus英语版本下载
http://z-oleg.com/avz4en.zip

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
bidianyang
头像被屏蔽
发表于 2006-11-1 13:41:50 | 显示全部楼层
觉得不安装还是不放心
起点
 楼主| 发表于 2006-11-1 16:47:41 | 显示全部楼层
就是个辅助查毒的
ngh55
发表于 2006-11-1 16:59:35 | 显示全部楼层
原帖由 navigateqd 于 2006-11-1 16:47 发表
就是个辅助查毒的


应该是这样,免安装就不会有它的服务,也就是不会有实时监控。只能是个扫描器之类的东西。
ilxmf1993
发表于 2006-11-1 17:46:51 | 显示全部楼层
还是支持一下吧
jerryzzq
发表于 2007-3-27 09:15:08 | 显示全部楼层
可以升级病毒库吗?
jpzy
发表于 2007-3-27 09:33:13 | 显示全部楼层
是自己的引擎吗?
木棉花开
发表于 2007-3-27 11:09:51 | 显示全部楼层

关注一下,如果确实好,就用用看

kpantivirus
发表于 2007-3-27 13:17:04 | 显示全部楼层
关注中。。。。。
dousee
发表于 2007-3-27 13:21:34 | 显示全部楼层
引擎?免费?病毒库可不可以更新?
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-21 02:06 , Processed in 0.133026 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表