查看: 20557|回复: 97
收起左侧

[分享] 带完整HIPS防护的冷门杀软——Custodia AntiVirus多图介绍

[复制链接]
Devy
发表于 2008-5-24 22:11:44 | 显示全部楼层 |阅读模式
软件名称:Custodia AntiVirus 2008 20.41.01
官网:http://www.custodiasoft.com
官网介绍:
Custodia AntiVirus description
A full-featured PC security software designed to provide cutting-edge antivirus protection
Custodia AntiVirus is a full solution for the complete protection of your computer. It offers advanced security functions and an intuitive, easy to use interface for facile configuration.
Here are some key features of "Custodia AntiVirus":
Virtual machine Unpacking Engine (VUE)
· Virtual machine Unpacking Engine (VUE) is new innovative technology featured in Custodia AntiVirus 2008. This new technology detects viruses even when disguised under multiple layers designed to evade detection by many of the anti-virus solutions in the market today.
Unknown Virus Scan & Clean Technology
· Unknown Virus Scan Technology scans unknown DOS, email, script, macro and Windows viruses, keeping you one step ahead of unknown future viruses.
Pre-Login Scan
· Some viruses are difficult to remove once you have logged into the Windows operating system. The Pre-Login Scan allows you to perform a virus scan and remove those viruses prior to launching Windows.
File Monitor
· This feature scans all files before you open them, thereby eliminating the opportunity for viruses to be opened and destroying them before they can infect your computer system. File Monitor now offers two new modes: Smart Monitor; and Forced Virus Deletion.
Smart Monitor: A user can choose to scan for viruses under one of three scenarios: file creation, modification, or execution. Scanning will occur automatically only when the scenario condition are met. Smart Monitor dramatically improves working efficiency and reduces the consumption of system resources.
Forced Virus Deletion: When a running virus cannot be deleted because the system is using the file infected by it, a standard solution was to restart the computer and then delete the virus. Unfortunately, many viruses cannot be removed in this way. Once “Forced Virus Deletion” is enabled, the system is able to delete the running virus program without the need to restart the computer, thus solving the problem and removing the virus.
File Monitor Whitelist
· File Monitor Whitelist is a feature that includes files and directories that are skipped and not scanned by Custodia AntiVirus. By adding trusted files and directories to the File Monitor Whitelist, you can improve the amount of time that it takes Custodia AntiVirus to scan your computer system.
Malicious Behavior Detection
· This feature monitors all running application programs in the system to detect and report the behavior patterns of malicious code. Allows the user to authorize or reject suspicious activity.
Email Scan
· Incoming emails (POP3) and outgoing emails (SMTP) are scanned for viruses and Custodia AntiVirus will alert you of any potential virus threats. Custodia AntiVirus currently only supports POP3 incoming and SMTP outgoing email protocols. The Email Scan feature helps to prevent certain Trojans from stealing your passwords and scans and cleans any outgoing emails before they are sent to ensure that you don't infect other computer users.
Script Blocking
· This feature helps to protect your computer system when you are browsing the Internet by blocking certain malicious web scripts. If you visit a web site that contains high-risk web scripts, you will be alerted by Custodia AntiVirus and prompted for action.
Boot Records Monitor
· This feature scans for viruses and other malicious files that reside in the boot records of floppy disks, CD-ROMs, or USB storage devices and blocks them from infecting your computer system.
System Reinforcement
· System Reinforcement monitors and reinforces operating system vulnerabilities to defend against attacks and intrusions by malicious programs. Its functions mainly cover the following:
· Monitors system behaviors as well as the use of SetHook and LoadDriver by all programs;
· Monitors the system registry to prevent any unauthorized changes by unknown programs;
· Monitors and protects key processes of the system;
· Protects system files and prevents them from damage by unknown programs.
Application Protection
· Application Protection can protect specified applications from attack by malicious programs. A user can apply rules to game software, instant messaging software, etc. to customize protection. Custodia AntiVirus provides users with eight rules:
· Anti-DLL Injection
· Anti-Code Injection
· Anti-Memory Modification
· Anti-Memory Read
· Prevent Suspension
· Prevent Termination
· Anti-Simulated Sending
· Anti-Simulated Key.
Application Access Control
· Application Access Control monitors suspicious programs to limit their access to computer resources.
Program Startup Control
· Program Startup Control allows users to monitor the startup process of programs, thus being able to intercept and prevent the execution of unknown malicious programs as well as detecting any modification of applications.
Hidden Process Detection
· Hidden Process Detection can detect processes that cannot be seen in the Windows Task Manager that may contain malicious code such as rootkits.
Vulnerability Defense
· If Windows updates are not installed and system vulnerabilities exist, Vulnerability Defense can help protect your computer system by alerting you of any potential attacks on any system vulnerabilities.
File Shredder
· File Shredder allows you to protect your privacy by permanently deleting unwanted sensitive files through Windows Explorer. To permanently delete a file, simply right-click on the file and select File Shredder. Any files deleted by File Shredder cannot be recovered.
Embedded Scan for Other Programs
· Custodia AntiVirus can provide added virus protection for third party applications such as instant messaging programs, download management tools, and compression tools. The following thirty party applications are supported by Custodia AntiVirus:
· Microsoft Office 2000 and 2003
· Internet Explorer 5.0 and higher
· MSN Messenger
· Yahoo! Messenger
· AOL Instant Messenger
· FlashGet
· NetAnts
· Net Vampire
· WinZip
· WellGet
· WinRAR
· Once Embedded Scan has been applied to these third party application programs, Custodia AntiVirus can automatically scan all files received through these programs for viruses and other malicious files.

Requirements:
· Processor: Minimum 500 MHz recommended (non Vista); Minimum 1 GHz recommended (Vista)
· RAM: Minimum 64 MB (non Vista); 512 MB (Vista)
· Hard Drive Space: 110 MB

Limitations:
· 30 days trial
· nag screen

Note
Email Scanning feature supports only POP3 and SMTP email clients.

评分

参与人数 1经验 +10 收起 理由
xffsfy + 10 感谢提供分享

查看全部评分

Devy
 楼主| 发表于 2008-5-24 22:12:18 | 显示全部楼层
一、安装

组件很多:

提示在安装前扫描内存:

开始安装:

安装完毕:

重启后会提示进行向导设置:

在这里可以设置安全等级(可以看到有高中低三档)、发现病毒后默认的处理方式(可以是询问、清除、删除以及忽略)以及扫描文件类型:

点击“Custom”可以自定义保护内容:

扫描任务设置和更新设置:


[ 本帖最后由 Devy 于 2008-5-24 22:28 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Devy
 楼主| 发表于 2008-5-24 22:12:39 | 显示全部楼层
二、主要界面
主界面:

扫描窗口:

自动保护:

HIPS,测试结果还不赖(一会儿会在HIPS区放出测试结果,并在这里贴出链接)。见此:http://bbs.kafan.cn/viewthread.php?tid=256993

丰富的工具:

当前主机的安全状态:

未注册时弹出的注册窗口:

下面是开始菜单目录:

托盘图标,最左边那个:

资源占用(最关键的RavMon.exe、RavMonD.exe,负责皮肤的RavStub.exe、负责任务管理的RavTask.exe以及主界面程序CCenter.exe,10多M的内存占用),很小巧:


[ 本帖最后由 Devy 于 2008-5-25 00:10 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Devy
 楼主| 发表于 2008-5-24 22:13:06 | 显示全部楼层
三、设置界面
扫描设置:

自定义任务设置:

Office、IE、Outlook扫描设置:

其它设置:

自动保护设置,包括文件监控(可以设白名单)、邮件监控以及脚本监控。

其它的设置项:


和HIPS有关的设置在稍后HIPS区测试贴中放出。见此:http://bbs.kafan.cn/viewthread.php?tid=256993

[ 本帖最后由 Devy 于 2008-5-25 00:09 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
ykz1991
发表于 2008-5-24 22:15:00 | 显示全部楼层
俺看着也像瑞星

[ 本帖最后由 ykz1991 于 2008-5-25 13:35 编辑 ]
choco_dove
发表于 2008-5-24 22:22:10 | 显示全部楼层
等图
tonylee
头像被屏蔽
发表于 2008-5-24 22:24:21 | 显示全部楼层
Rising.
yangrui5201
发表于 2008-5-24 22:31:32 | 显示全部楼层
好酷的LOGO
黑白君
发表于 2008-5-24 22:34:19 | 显示全部楼层
我晕,这不是瑞星吗?


而且还是08版的瑞星~


连“帐号保险箱”都有。。巨汗~


完整的HIPS???

[ 本帖最后由 朝闻道 于 2008-5-25 21:51 编辑 ]
pippo0423
发表于 2008-5-24 22:34:33 | 显示全部楼层
瑞X啊。。。国外OEM版?
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-13 08:08 , Processed in 0.135147 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表