<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>gHacks technology news &#187; security analysis</title>
	<atom:link href="http://www.ghacks.net/tag/security-analysis/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ghacks.net</link>
	<description>A technology blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description>
	<lastBuildDate>Tue, 24 Nov 2009 23:31:44 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Computer Security Software ESET SysInspector</title>
		<link>http://www.ghacks.net/2008/11/08/computer-security-software-eset-sysinspector/</link>
		<comments>http://www.ghacks.net/2008/11/08/computer-security-software-eset-sysinspector/#comments</comments>
		<pubDate>Sat, 08 Nov 2008 08:14:44 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Windows]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[Computer Security Software]]></category>
		<category><![CDATA[eset sysinspector]]></category>
		<category><![CDATA[risk level]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[security analysis]]></category>
		<category><![CDATA[security-software]]></category>
		<category><![CDATA[windows security]]></category>
		<category><![CDATA[windows software]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=8152</guid>
		<description><![CDATA[Scanning a computer system with a computer security software like ESET SysInspector can reveal security related problems in short time. Those security software programs are by far not the all-knowing and -seeing eye but they provide an in depth analysis of a computer system that can be used to find some of problematic files that [...]]]></description>
			<content:encoded><![CDATA[<p>Scanning a computer system with a computer security software like ESET SysInspector can reveal security related problems in short time. Those security software programs are by far not the all-knowing and -seeing eye but they provide an in depth analysis of a computer system that can be used to find some of problematic files that could be a security risk.</p>
<p><a href="http://www.eset.com/download/sysinspector.php">ESET SysInspector</a> does that by scanning the computer&#8217;s hard drive and Registry. It assigns a risk level to every item that has been analyzed which ranges from fine (1) to risky (9) with three always bundled together. Risk levels 1 to 3 are assigned to files that have passed the check, 4-6 for unknown files and 7-9 for files that have been identified as being risky. The different levels are also colored differently (from green to red) to make identification as quickly as possible.</p>
<p>The computer security software will build a report that provides access to eight different categories including Running Processes, Network Connections or Important Registry Files. Each category is displayed in the color of the item with the highest risk level that it contains. That&#8217;s excellent for identifying the highest risks with one glance without having to look at the actual items at that time.</p>
<p><span id="more-8152"></span><img src="http://www.ghacks.net/wp-content/uploads/2008/11/computer_security_software-500x286.jpg" alt="" title="computer security software" width="500" height="286" class="alignnone size-medium wp-image-8153" /></p>
<p>Opening a category can reveal subcategories or items. Each item is (again) listed in a color that depicts its risk level. Some categories can contain dozens of items and the risk level slider at the top helps reducing the amount of items displayed by selecting a minimum risk level to be displayed. Every item with a lower risk level will be hidden from the display so that the system administrator can concentrate on the higher risk items.</p>
<p>A higher risk level does not necessarily mean that an item is dangerous. That would be subject to further analysis. ESET SysInspector is providing some tools and shortcuts for this. A right-click on an item will open a context menu with options to open the path in the Windows Registry or to open the file&#8217;s location on the computer&#8217;s hard drive. There is also the possibility to perform an online search using the default web browser and the Google search engine.</p>
<p>A set of reports can be created that contain various level of information. One interesting feature is the ability to compare logs which can give additional clues on system changes in a time period.</p>

	Tags: <a href="http://www.ghacks.net/tag/computer-security-software/" title="Computer Security Software" rel="tag">Computer Security Software</a>, <a href="http://www.ghacks.net/tag/eset-sysinspector/" title="eset sysinspector" rel="tag">eset sysinspector</a>, <a href="http://www.ghacks.net/tag/risk-level/" title="risk level" rel="tag">risk level</a>, <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/security-analysis/" title="security analysis" rel="tag">security analysis</a>, <a href="http://www.ghacks.net/tag/security-software/" title="security-software" rel="tag">security-software</a>, <a href="http://www.ghacks.net/tag/windows-security/" title="windows security" rel="tag">windows security</a>, <a href="http://www.ghacks.net/tag/windows-software/" title="windows software" rel="tag">windows software</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/03/16/secure-windows-services-configuration/" title="Secure Windows Services Configuration (March 16, 2009)">Secure Windows Services Configuration</a> (2)</li>
	<li><a href="http://www.ghacks.net/2008/12/06/ghacks-christmas-giveaway-sandboxie/" title="Ghacks Christmas Giveaway: Sandboxie (December 6, 2008)">Ghacks Christmas Giveaway: Sandboxie</a> (123)</li>
	<li><a href="http://www.ghacks.net/2009/03/20/windows-registry-watcher/" title="Windows Registry Watcher (March 20, 2009)">Windows Registry Watcher</a> (5)</li>
	<li><a href="http://www.ghacks.net/2009/03/22/windows-process-blocker-spkiller/" title="Windows Process Blocker SPKiller (March 22, 2009)">Windows Process Blocker SPKiller</a> (1)</li>
	<li><a href="http://www.ghacks.net/2009/03/18/windows-process-blocker/" title="Windows Process Blocker (March 18, 2009)">Windows Process Blocker</a> (9)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/11/08/computer-security-software-eset-sysinspector/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Identify And Analyze Malicious Webpages</title>
		<link>http://www.ghacks.net/2008/10/19/identify-and-analyze-malicious-webpages/</link>
		<comments>http://www.ghacks.net/2008/10/19/identify-and-analyze-malicious-webpages/#comments</comments>
		<pubDate>Sun, 19 Oct 2008 13:58:29 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[javascript]]></category>
		<category><![CDATA[malicious websites]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[malware analysis]]></category>
		<category><![CDATA[malzilla]]></category>
		<category><![CDATA[security analysis]]></category>
		<category><![CDATA[webpages]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=7724</guid>
		<description><![CDATA[Malicious webpages make often use of a series of redirects and code obfuscation to make it difficulty for somebody to identify and analyze the threat. Malzilla is an open source software program for Windows that steps in and aids the researcher in identifying and analyzing JavaScript code on webpages.
The name stems from the fact that [...]]]></description>
			<content:encoded><![CDATA[<p>Malicious webpages make often use of a series of redirects and code obfuscation to make it difficulty for somebody to identify and analyze the threat. Malzilla is an open source software program for Windows that steps in and aids the researcher in identifying and analyzing JavaScript code on webpages.</p>
<p>The name stems from the fact that <a href="http://malzilla.sourceforge.net/index.html">Malzilla</a> is based on the <a href="http://www.ghacks.net/tag/firefox/">Firefox</a> JavaScript engine SpiderMonkey. It basically provides opportunities to load a webpage in the program using custom referrers, User-Agents, cookies and proxies. </p>
<p>The application will display the source code and the http header of the webpage in the interface. The user can view the webpage in text mode, hex view, cookie mode and using a links parser. Single or multiple scripts can be send to a script decoder.</p>
<p><span id="more-7724"></span><img src="http://www.ghacks.net/wp-content/uploads/2008/10/malzilla-500x393.jpg" alt="malzilla" title="malzilla" width="500" height="393" class="alignnone size-medium wp-image-7725" /></p>
<p>Some of the interesting features:</p>
<ul>
<li>JavaScript decoder</li>
<li>Decode Hex, USC2 and Base64</li>
<li>Link Parser</li>
<li>Clipboard Monitor</li>
<li>Hex Viewer</li>
<li>Note taking</li>
<li>IP Converter</li>
</ul>
<p>Malzilla is not a tool for just anyone but it can be very helpful for analyzing webpages. It definitely eases the process of analysing and identifying webpages.</p>

	Tags: <a href="http://www.ghacks.net/tag/javascript/" title="javascript" rel="tag">javascript</a>, <a href="http://www.ghacks.net/tag/malicious-websites/" title="malicious websites" rel="tag">malicious websites</a>, <a href="http://www.ghacks.net/tag/malware/" title="malware" rel="tag">malware</a>, <a href="http://www.ghacks.net/tag/malware-analysis/" title="malware analysis" rel="tag">malware analysis</a>, <a href="http://www.ghacks.net/tag/malzilla/" title="malzilla" rel="tag">malzilla</a>, <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/security-analysis/" title="security analysis" rel="tag">security analysis</a>, <a href="http://www.ghacks.net/tag/webpages/" title="webpages" rel="tag">webpages</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2007/08/04/monitor-your-pc-with-winpatrol/" title="Monitor your PC with WinPatrol (August 4, 2007)">Monitor your PC with WinPatrol</a> (4)</li>
	<li><a href="http://www.ghacks.net/2008/11/08/computer-security-software-eset-sysinspector/" title="Computer Security Software ESET SysInspector (November 8, 2008)">Computer Security Software ESET SysInspector</a> (3)</li>
	<li><a href="http://www.ghacks.net/2008/06/27/you-better-stop-using-internet-explorer-for-now/" title="You better stop using Internet Explorer for now (June 27, 2008)">You better stop using Internet Explorer for now</a> (18)</li>
	<li><a href="http://www.ghacks.net/2008/05/07/yahoo-marks-dangerous-search-results/" title="Yahoo marks dangerous search results (May 7, 2008)">Yahoo marks dangerous search results</a> (4)</li>
	<li><a href="http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/" title="Wordpress Remote Admin Password Reset Vulnerability (August 11, 2009)">Wordpress Remote Admin Password Reset Vulnerability</a> (13)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/10/19/identify-and-analyze-malicious-webpages/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
