-
April 22nd, 2011, 10:00 AM
#12
Yes, I have seen Hosts files that have been modified and sometimes hidden by malware. What strikes me as odd is that Bob rebuilt the file.........surely Windows would complain if you try to create a file of the same name in the same directory.............or at least warn you if you were going to replace an existing file?
Also, in the cases I have seen, the users were pretty well aware of the redirects and complained about them? I suppose it could be some sort of bungled or incompatible malware though.
On XP machines I tend to use Tall Emu's Online Armor.............it requires you to give permission to modifications of the Hosts file as well as running new processes and other changes. It is basically a combined firewall and behavioral monitor and is free for private use.
Ordinary applications installation and updates are fine as it will remember authorised programs and even has an application installation mode. You need to turn it off before applying Windows updates though, or it gets very annoying
Similar Threads
-
By Irongeek in forum The Security Tutorials Forum
Replies: 0
Last Post: September 2nd, 2005, 05:23 PM
-
By xierox in forum Other Tutorials Forum
Replies: 0
Last Post: March 5th, 2005, 05:34 AM
-
By Nokia in forum Tips and Tricks
Replies: 0
Last Post: June 12th, 2004, 05:13 PM
-
By ali1 in forum The Security Tutorials Forum
Replies: 27
Last Post: January 1st, 2004, 11:59 AM
-
By xmaddness in forum The Security Tutorials Forum
Replies: 9
Last Post: August 6th, 2003, 09:57 AM
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|