Overclockers Australia Forums
OCAU News - Wiki - QuickLinks - Pix - Sponsors  

Go Back   Overclockers Australia Forums > Software Topics > General Software

Notices


Sign up for a free OCAU account and this ad will go away!
Search our forums with Google:
Reply
 
Thread Tools
Old 9th August 2012, 10:08 AM   #16
JolyV
Member
 
JolyV's Avatar
 
Join Date: May 2012
Posts: 315
Default

Quote:
Originally Posted by Brianf1971 View Post
If your looking to demonstrate something in a safe non-distructive way download the EICAR file (used by all AV Vendors to test AV function) and email it to yourself. More info at http://eicar.org/86-0-Intended-use.html
is the fastest way
JolyV is offline   Reply With Quote

Join OCAU to remove this ad!
Old 9th August 2012, 2:01 PM   #17
puddjles
Member
 
Join Date: Nov 2011
Location: Ipswich
Posts: 5
Default

Quote:
Originally Posted by Brianf1971 View Post
If your looking to demonstrate something in a safe non-distructive way download the EICAR file (used by all AV Vendors to test AV function) and email it to yourself. More info at http://eicar.org/86-0-Intended-use.html
It should be noted that the EICAR virus doesn't do anything.. it just becomes detected

so for it's use it really depends if you want to show them what malicious software does or how you can scan for some
__________________
[ Intel i7 2600k @ 3.4GHz | 16gb Corsair Vengeance | ATi Sapphire 7970 HD ]
[ Gigabyte Z68XP-UD4 | 120gb OCZ Vertex 3 SSD | 60gb OCZ Vertex 2 SSD | WD 2tb Green HDD ]
[ 1x BenQ 24" 120hz | 2x LG 24" | Razer Mamba 4G 2012 | Razer Blackwidow Ultimate ]
puddjles is offline   Reply With Quote
Old 10th August 2012, 3:02 PM   #18
Sico Music
Member
 
Sico Music's Avatar
 
Join Date: Nov 2009
Location: Regional NSW
Posts: 332
Default

Just tell them the main ways to get a virus.

- Java driveby
- Running dodgy exe's
- USB's (Worm viruses which spread via USB's, usually really easy to detect on a USB though if you have hidden files on)
- Also running .com files, which essentially are .exe files
- You could also go into RATS, keyloggers, bots, worms, zombies, and good ol' SE.

Also tell them, you can still get a virus from an exe even if your AV shows its not a virus, it can easily just mean its FUD.
__________________
My grandmother once accidentally dragged her IE shortcut into the Recycle Bin and called me up telling me she'd deleted the Internet.
Sico Music is offline   Reply With Quote
Old 10th August 2012, 4:49 PM   #19
qwertylesh
Member
 
qwertylesh's Avatar
 
Join Date: Aug 2007
Posts: 7,028
Default

I agree with sico, + ransomware

also, so they have a better understanding I believe you should cover the why questions, why viruses are written, why they exist, why malware authors exist, purposes of scams, phishing, why botnets exist, how magnets work, so on and so forth.

A simple howto be more cautious/security conscious is one thing, but on its own doesn't give them a good understanding of why they need to practice it.
__________________
Quote:
Originally Posted by SupremeMoFo View Post
Stop posting
qwertylesh is offline   Reply With Quote
Old 10th August 2012, 5:13 PM   #20
Carcin0Genic
Member
 
Carcin0Genic's Avatar
 
Join Date: May 2012
Location: Sunshine Coast
Posts: 1,152
Default

Quote:
Originally Posted by qwertylesh View Post
snip...
also, so they have a better understanding I believe you should cover the why questions, why viruses are written, why they exist, why malware authors exist, purposes of scams, phishing, why botnets exist, how magnets work, so on and so forth.

snip...
Could someone teach me this? Except for the purposes of scams, i know that bit
__________________
Quote:
Originally Posted by Taceo Corpus View Post
You posted in the TGIF thread on a fucking Tuesday and got me all excited. Well done, asshole.
Carcin0Genic is offline   Reply With Quote
Old 10th August 2012, 6:29 PM   #21
Shepete
Member
 
Shepete's Avatar
 
Join Date: Jun 2001
Location: Bendigo
Posts: 1,719
Default

I know this girl.
__________________
I am not young enough to know everything.
Shepete is online now   Reply With Quote
Old 10th August 2012, 7:49 PM   #22
f3n1x
Member
 
f3n1x's Avatar
 
Join Date: Mar 2003
Location: Armadale, Melbourne
Posts: 1,653
Default

Im pretty sure you can fake a virus without actually needing to get a virus.

Use eicar, so simulate virus detection.

Then to stimulate windows to BSOD (this works for Win7 not sure about the others) kill the process named csrss.exe.

Best to do that programatically so it looks like your running a virused executable. If you try killing csrss in task manager it just shuts the pc down.

It's pretty easy in C# look at system.diagnostic.process.

So i'd say have it fake virus looking ui doing nasty stuff (pretend to erase files etc, and to stop the computer just rebooting and being fine have it add itself to the startup registry.

This is then easy to clean up and reset.
__________________
f3n.org|systems admin, graphics & foss software

Canon Eos 40D. Canon 50mm f1.8. Tamron SP AF28-75mm F/2.8 XR Di LD Aspherical (IF). Sigma EF 500 DG Super ETTL Flash(Broken! :/)

Last edited by f3n1x; 10th August 2012 at 7:56 PM.
f3n1x is offline   Reply With Quote
Old 10th August 2012, 8:09 PM   #23
rainwulf
Member
 
Join Date: Jan 2002
Location: bris.qld.aus
Posts: 2,663
Default

run a batch file that recursively does attrib +h on every file in the machine.

watch how everything is GONE.

This is how half the scamware out there actually works anyway.
__________________
derp

Last edited by rainwulf; 10th August 2012 at 8:13 PM.
rainwulf is offline   Reply With Quote
Old 10th August 2012, 8:19 PM   #24
m3k
Member
 
m3k's Avatar
 
Join Date: Dec 2007
Posts: 520
Default

man they're 5-6 u could just run a fullscreen flash movie of a virus/bsod

The best thing you can do to educate them after the flash movie tell them

there are naughty people out there creating viruses on computer to get money and information from you-

information that gives them power and control they don't deserve. You can stop them by being safe

follow x___ steps to stay safe on the computer and not break it.

i actually really admire that there are people teaching the new generation this- its important now that the world is very much dominated by computers lol
m3k is offline   Reply With Quote
Old 10th August 2012, 8:34 PM   #25
roamin
Member
 
roamin's Avatar
 
Join Date: Jan 2002
Location: melb / Crimebourne
Posts: 1,616
Default

Quote:
Originally Posted by Creekin View Post
your doing it wrong!
just give the pc to them and it will be infected in seconds!
guaranteed!
i dont know how they do it but they get them faster than i can remove them
thankfully $$$
odd really isnt it, i know piracy sites, keygen sites, porn sites, torrent sites and heaps of other VIRUS infected sites, yet i cant get one.

give my nephew a laptop for 3.2 minutes and BAM its infected. wtf is with that shit
__________________
Asus p8z68-Deluxe, i7 2600k, 2x GTX580, Corsair Dominator Gt's 8gb, 2x WD Black 1tb in raid 0, 2x OCZ Vertex 4 128gb in raid 0, Custom CNC Machined Acrylic Modulated Style Case, Enermax 1350w MDPC Sleeved, Samsung S27A950 120hz, Corsair M60 mouse and G19 keyboard, Soundblaster Titanium HD, Audio Technica AD700, Aquastream XT Ultra Pump, AquaGrafx Blocks, Aquacomputer Kryos HF, XSPC RX360 Radiator, Enzotech Compression Fittings, 120mm Gentle Typhoons 1850Rpm
roamin is offline   Reply With Quote
Old 11th August 2012, 4:03 PM   #26
Creekin
Member
 
Creekin's Avatar
 
Join Date: Jun 2003
Posts: 10,204
Default

Quote:
Originally Posted by roamin View Post
odd really isnt it, i know piracy sites, keygen sites, porn sites, torrent sites and heaps of other VIRUS infected sites, yet i cant get one.

give my nephew a laptop for 3.2 minutes and BAM its infected. wtf is with that shit
bloody kids getoffmydamnlaptop.rage
__________________
Quote:
Originally Posted by PapaRubbery View Post
My bespoke 911 was fast until someone put it in the dryer. Now it's shit.
Creekin is offline   Reply With Quote
Reply

Bookmarks

Sign up for a free OCAU account and this ad will go away!

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT +10. The time now is 6:32 PM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd. -
OCAU is not responsible for the content of individual messages posted by others.
Other content copyright Overclockers Australia.
OCAU is hosted by Internode!