![]() |
St.PETERSBURG
| |||||
Safe web-surfingI know very many people considering, that for full safety for them is necessary most a little - "Kaspersky's" last version and competently adjusted firewall. The nonsense is all! We with you know, that the antivirus, a fireproof wall will not rescue from a smart infection. And, even simply wandering on the Internet by means of a browser, each of us risks to pick up an infection which purpose becomes both an electronic cash, and contents rigid a disk. Yes what there to speak, if to browsers not under force even to cover up stay traces on doubtful resources. And the majority of us about it at all does not suspect, piously trusting in the button "to Remove a cache and history of visitings". Force in the truthAlso what now? To be disconnected from the Network and to hit in low level coding? No, there are more democratic measures! To leave in an Internet without fear, it is completely not necessary to know a judo and to be Schwarz, simply enough to read this article. And before to put terribly heaped up alarm system or to cut the lock torn out from the safe, it is necessary to understand, that information safety is not the goods, and service. Any of products (both commercial, and free), present in the market, not in a condition it is reliable to protect the computer as on each artful idea there will be an idea more abruptly and more refined. It is possible to read very attentively releases of the numerous programs, promising to protect you from all and everything, but to rely it is possible only on itself. And for this purpose, whatever one may do, it is necessary to learn more about that software which daily you use. To secure itself against mass hearts and militant hooligans quite probably. Even easier to hide the compromising data, which browsers generate in such abundance, that people in epaulets would blur in ecstasy, having reached to your computer. But about all on-order. threat FactorsThe Quantity of hacker attacks steadily grows, and their considerable part is necessary on web-browsers. From all risk factors first of all it is possible to allocate following 3 rules: 1. Attack to a browser with sending of the Trojan program; 2. Data gathering about the user (from what page has come under what IP); 3. Preservation of compromising data about the visited pages on a hard disk; I Will explain told on concrete examples. Practically all browsers suffer defects of working out (or, in popular speech, holes). Through holes hearts, viruses and other vandals climb. Irrespective of the current policy of safety, in browser options at page visiting always, I repeat - always, there is a threat to pick up any infection getting through antiviruses and fireproof walls. And it concerns not only pornographic sites or demanded resources with keygens and cracks, but also to servers of rather respectable companies. The case of attack to a guest board of absolutely not sickly firm AMD, is known for which result of a steel of thousand infected users. And though it not a rule, and, more likely, the exotic exception to go by a browser full of holes not safely. Besides, fair browsers privately transfer to a server great volume of the information on the user: the version of the browser (together with regional options), the language coding, time zone, URL the previous visited page, the IP-address - a word, is enough to hand over of itself. Despite the fact that what de jure given information is not considered confidential, the fact of its disclosure essentially strains, especially if try to give out itself for girl Kee-Kee living on a legend in the Japanese city of Fukuoka who for any mystical reason uses the Russian version of a browser with Moscow Time-Zone in addition. So easy flirtation very quickly comes to an end. The Third factor - the most serious. The computer remembers all our steps, keeping on a hard disk a great lot of the compromising information, which not so simply to remove. Each citizen has the right to secret visiting of sites of the nonconventional orientation, guaranteed by the Constitution, but is far not to everyone it is possible to realise this right in practice. I any more do not speak about simply hacker sites and conferences, which should be visited, proceeding from professional necessity though to advertise similar activity it is completely not desirable. Moreover, passwords and the other information kept in cookies, becomes easy extraction of Trojan programs, odnogruppnikov/colleagues or even members of a family. Maintenance of own safety demands the whole complex of protective measures which share on server and client. To server the choice reliable anonymous proxy about what we in "Hacker" wrote more than once and not two first of all concerns. Therefore we will not repeat, and is better at once we will deal with a client problem, that is a browser. a browser ChoiceInternet Explorer The General safety: Internet Explorer is definitely most popular network observer of all times and the people. Simultaneously with it is the most unsafe and full of holes. Practically every week in it the fresh portion of new holes is found out, and how many errors remain not revealed, it is necessary to guess only! And it is exact they do not remain not noticed professional programmers. Time - and will appear at once exploit which victim we can become and we. Compromising data: But holes is yet all. Worst of all, that IE suffers a chronic incontience of the confidential information. First of all it concerns a cache, history, ActiveX-components and cookies. By default the cache takes places in the catalogue \Documents-n-Settings \ Hints: The problem Decision consists in manual removal of all contents of folder Temporary Internet Files, but thus it is necessary to leave system and to enter under other user as otherwise access to a part of files will be blocked. However it is necessary to remember, that physical removal of files thus does not occur also utilities of type GetDataBack (GetDataBack) can return them back while they will not be thoroughly jammed by new contents. To lower probability of restoration to zero will help wipers, for example BCWipe or Steganos Safe . The history of visiting of pages is stored in folder History, in the same catalogue, as Temporary Internet Files. Naturally, it is the better and most reliable to clear it manually. Cooks lay in folder Cookies, in subdirectory on one level above. And here ActiveX-elements (and files created by them) can be stored in any place of a disk where only will wish. And no possibility to follow them at us is present, after all actually it is ordinary executed programs! By the way, it is necessary to notice, that under certain circumstances Windows goes a roof and keeps all this economy at all in Local Settings, and it is direct in catalogue Windows! So it is necessary to be on the alert! And it is even better to replace a browser with more reliable! Opera The General safety: Widespread in narrow circles, this browser practically does not contain holes. Anyway, documentary confirmed attacks it has not been fixed. Even if someone also shouts about working exploit, most likely, impudently says lies or at all does not understand, about what speaks. Opera by the current moment it is unapproachable. Compromising data: All data arriving from the Network (a cache, cookies, history of visitings), are stored in a unique place - in folder Opera\profile. In the same place are stored skins and other options, therefore to delete this folder entirely it is not recommended. Unlike IE, it will not be automatically recreated at the subsequent start of a browser. Standard means of clearing of private contents also, unfortunately, not without a sin also contain a number of errors therefore quality of clearing leaves much to be desired. Nevertheless, wandering on the Network with the Opera, for hacker attacks it is possible not to worry. Hints: Profile Contents (together with the Opera) are very easy for transferring on a flash-charm. Then on a hard disk of any traces of our stay any more does not remain. Add to it possible enciphering of data on the replaceable carrier and you will feel in pampers. Besides the opera supports the developed and well thought over system of keyboard navigation providing much faster surfing, than simply Internet Explorer with one only a mouse. Other important advantage of the Opera - it is free. New versions IE any more are not a part of operational system as earlier, and are distributed only to legal users Windows, and in the future for them is planned to raise an additional payment. And here to you - Olympic calmness to hacker attacks, probably, the most bright productivity and excellent functionality! Firefox The General safety: Burning Foxes - spontaneously arisen on fragments Netscape, popular enough, but, alas, full of holes and categorically unsafe browser, and every day holes in it is found out more and more. Mass attacks on foxes till now it was not observed owing to that the overwhelming majority all the same sits under IE, and the Fox advanced enough users put to themselves basically, to cope with which 10 times more difficult. But threat to pick up a Trojan horse at web-page visiting is quite real, and whether here it is necessary to be considered or count with it at random, everyone should solve itself. Compromising data: Traces Firefox stores at once in two places. The folder \Documents-n-Settings\ Hints: For the Fox there is a large quantity of expansions, many of which remember some information in own places (for example, history of search inquiries, addresses of most often visited pages etc.). It is necessary to watch it. But plug-ins expand Firefox to absolutely unattainable for IE borders. If the department marketoids and designers IE smokes a good grass and invents baubles, "really necessary for each user" in the Fox everything, that is necessary, is realised at once as soon as in it there is a requirement or someone is lighted up by fresh idea. Heatseek The General safety: Unlike three previous, Heatseek is the browser initially focused on viewing of an adult-content (and other sites of the doubtful maintenance) and consequently possessing a number of doubtless advantages. But, despite attractive possibilities (about which you will read more low), it is subject to hacker attacks almost the same as and Internet Explorer. And all because impudently uses its cursor (a file mshtml.dll). Two news - bad and very bad From here follow: first, we should have IE, established on the computer; secondly, all attacks to which it is subject IE, automatically extend and on Heatseek, that does its use completely not safe! Therefore to be updated (to download patches with Microsoft Update) follows as it is possible is more often. Compromising data: I spoke about advantages. First, it is the powerful system of enciphering coding all information, written down on a hard disk. Thanks to it the full privacy and confidentiality is reached. Even if the hard disk will come into the hands of special services, without an iron and a soldering iron to decipher its contents for what will not be possible, and we should not clear each time a cache. All is ciphered: contents of pages, graphic representations, history, cookies and even bookmarks - well unless not a charm?! However it is necessary to remember, that the information which is physically passing through the computer of the provider, no less than a router of a local network, it is transferred in not ciphered kind. And if it is cashing (and usually it is cashing) can be used for the compromising evidence. That it has not occurred, it is necessary to use https a proxy-server or even more advanced protective mechanisms about which we will talk another time. Hints: If you are engaged in dirty affairs on work, study or in public places to you very opportunely there will be a key of emergency masking "Than it you here are engaged?!" . She together with suppression of all emerging windows and other muck gives the chance to enjoy pages without risk to be caught, even if behind the back continually walk everyones curious. In passing Heatseek allows to look through the video files protected DMR (Digital Management Right - "the Mechanism of the control of copyrights"), keeping them on a disk even then when they in every possible way resist to it and in all other browsers do not remain. Moreover, protection against any harmful espionage programs is provided, aspiring to find out about the user though any information or to throw to it a Trojan horse. The most important thing, that all this pleasure is not necessary copecks and can be downloaded with absolutely free of charge, and without everyone Adware or other disguised means of payment. Test browsers The General safety: Text browsers there is a huge set, but good only 2. One of them - classical Lynx, it , executed in the best traditions of terminals 60 and the editor vi. Another - c pseudo-graphic windows and the menu, forcing to recollect the youth spent together with MS-DOS. Both extend in initial tests and are absolutely free. Despite the fact that what the basic environment of their dwelling are UNIX-like systems, it is possible to find set of ports in a network and under Windows. However, overwhelming majority of users have so got used to graphic browsers, what even cannot imagine, that, besides them, there are text! And not only exist, but also develop! It would seem, in our century when 17-inch monitors stand on each table, and sites without a drawing can be counted on fingers of one hand, text browsers should disappear for a long time already. What use from pages if in them there are no pictures?! But here that I to you will tell. The drawing (especially in style of modern web-design) only complicates access to the information, disseminates attention and devours the traffic lion's share (and it is perfect in vain). And text browsers can give that and did not dream ordinary graphic colleagues - stunning level of safety. Being very simple programs, text browsers by the nature support a minimum of possibilities of HTML and do not contain fatal errors, allowing to wander on dirty back streets, without risk to pick up a network infection. Compromising data: The Cache of pages, history of transitions from page on page and cookies are by default stored in the same catalogue where it is located also itself the Lynx (by the way, occupying hardly more than two mbyte). It is not adhered to a certain site, to it the register, therefore for achievement of the maximum privacy is indifferent, it is recommended to be thrown on a flash-charm not to leave any traces on the screw. Browser Links (actually elinks) in last versions FreeBSD is established by the basic text browser by default (before there was Lynx). It supports JavaScripts and many other things of "improvement" of HTML ignored Lynx, than and growth of its popularity speaks. Depending on options Links keeps a cache, cookies and history or in a current directory (flowing, instead of own), or in the house catalogue of the user in folder.elinks. Hints: What can give a text browser? First, in comparison with graphic browsers, speed of perception of the information above on 2 order. On the screen the text and more than anything is visible only. Advertising together with information dust accompanying it leaves on a bottom. Secondly, initially calculated on the keyboard, text browsers show unsurpassed speed of web-surfing (whatever one may do, on the mouse nevertheless there are less than buttons, than on the keyboard). And thirdly, as practice shows, at work in a text mode eyes much less get tired and it is possible to sit without serious consequences at the monitor days and nights without a break without any damage for sight. That else it is possible to undertake for maintenance of own safetyThe Majority of personal fireproof walls is conducted by default by broad gulls that in case of attack it was possible to understand who has had us and where. Naturally, before visiting of sacramental places of the Network, recording is better for switching off. And in the presence of static IP it is not out of place to call the provider and to ask to exclude itself from area cashing (by default providers cash the information on the servers, saving on the entering traffic, after all the client pays for cashing data on a full price). It can slow down some speed of web-surfing, but will reduce quantity of left traces. the Double condom - double protection!Achievement of the highest safety (in respect of attack) should establish the virtual car of type VM Ware to adjust a virtual network (the blessing it it allows) and to leave in the Network only through it. Here it is possible to arrive doubly - or to give VM Ware physical access to a network card, the USB/COM-modem, or to establish on the basic operational system a proxy-server through which the virtual car will communicate with an external world. The Proxy-servers initially ground under house users, it is a lot of. Personally I prefer fast, compact and undemanding to resources Etlin HTTP Proxy (). Generally it is not absolutely free and after a trial period demands registration, but this circumstance still never stopped our user! For reasons of preservation of full confidentiality, virtual cars is better to create on demountable carriers (type of cards of flash-memory) or the ciphered disks (type PHP-Disk). Then on the basic hard disk no traces of our stay on pornographic servers remains. Naturally, it is fair only in the event that VM Ware has direct access to a network card or the modem, and at work through Proxy it can postpone in broad gulls everything, everything. Alles! Us had!After sex without a condom, in sense of wandering on the Network with IE (and after all we warned), vague doubts start to torment soul: "Instead of whether we have picked up that?!" The freshest versions of antiviruses which, naturally, find nothing from what suspicions only amplify are there and then established, extending a steady smell of a paranoia. It seems to us, that the computer behaves somehow not so, and any failure is treated as: " Well everything, the end, is a virus ". How to catch an infection? Simple enough, but the effective test for infection introduction was and there is a search in again created files. 99,9 % of Trojan and espionage components do not trouble themselves with updating of date of creation of a file (not to confuse to so-called MS-DOS-date) that is why are scorched on an end of trajectory. After visiting of suspicious corners of the Network it is as soon as possible pressed"Start-up"where it is visible" to Find - > Files and folders ". We search for the files created for last day on a disk With (for reliability it is possible to capture and other disks). There there will be much everything, but us executed files, dynamic libraries and the other program components located in Program Files and catalogue Windows first of all interest. Here, for example. To eyes at once rushes epinh.exe, located in C:\WINNT\System32. We there did not put it. For hiew32.exe and ka6.0.0.303ru.exe in folder "TEMP" it is possible not to be afraid are ourselves just them have downloaded. Other files represent files of data (a heap, contents of a cache of a browser, safety broad gulls) and to harmful components no any relation have. And here epinh.exe us all the same has had. What to do?! If there is an experience, disassembly if is not present, to send in "Kaspersky's Laboratory". On my supervision, it reacts to receipt of a new infection more operatively others. The Source: "Time of Russia" (allrunet.biz) [ Another articles ][MAIN PAGE] |
| |||||