<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>gHacks technology news &#187; security-scan</title>
	<atom:link href="http://www.ghacks.net/tag/security-scan/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ghacks.net</link>
	<description>A technology blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description>
	<lastBuildDate>Mon, 09 Nov 2009 09:34:23 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.5</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Adobe Flash Security Scan</title>
		<link>http://www.ghacks.net/2009/03/27/adobe-flash-security-scan/</link>
		<comments>http://www.ghacks.net/2009/03/27/adobe-flash-security-scan/#comments</comments>
		<pubDate>Fri, 27 Mar 2009 11:01:20 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[adobe flash]]></category>
		<category><![CDATA[adobe flash security]]></category>
		<category><![CDATA[flash]]></category>
		<category><![CDATA[flash security]]></category>
		<category><![CDATA[hp]]></category>
		<category><![CDATA[hp security]]></category>
		<category><![CDATA[hp software]]></category>
		<category><![CDATA[security-scan]]></category>
		<category><![CDATA[swf scan]]></category>
		<category><![CDATA[windows software]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2009/03/27/adobe-flash-security-scan/</guid>
		<description><![CDATA[While Adobe Flash offers many exciting possibilities to web developers and users alike it also introduces several additional security risks to computer systems. We already discussed the impact of so called Flash Cookies which are able to track a user even if he deletes the normal cookies regularly across multiple web browsers. 
The HP Security [...]]]></description>
			<content:encoded><![CDATA[<p>While Adobe Flash offers many exciting possibilities to web developers and users alike it also introduces several additional security risks to computer systems. We already discussed the impact of so called <a href="http://www.ghacks.net/2008/07/30/delete-flash-cookies/">Flash Cookies</a> which are able to track a user even if he deletes the normal cookies regularly across multiple web browsers. </p>
<p>The HP Security Laboratory has created the application SWF Scan which can be used by both developers and end users to analyse Adobe Flash files for more than 60 vulnerabilities. Usage is pretty simple and straightforward although interpretation of the findings might require a deeper understanding of Adobe Flash or extensive research on the Internet. The application works with both local Adobe Flash files or those embedded in websites.</p>
<p>Users will first have to find out the direct url to the embedded flash file on the website. All web browser provide those capabilities. <a href="http://www.ghacks.net/tag/firefox/">Firefox</a> users for instance right-click the page and select Page Info from the context menu to get a list of objects that are embedded in the website. A click on the Media tab and a manual search for files of the type embed should be enough to find the url of the Adobe Flash file. A right-click on the flash object will open a menu with the option to copy the url to the clipboard.</p>
<p><span id="more-11491"></span><img src="http://www.ghacks.net/wp-content/uploads/2009/03/adobe_flash-500x245.jpg" alt="adobe flash" title="adobe flash" width="500" height="245" class="alignnone size-medium wp-image-11489" /></p>
<p>Once the url has been copied to the clipboard it can be pasted into the interface of the HP SWF Scan application. A click on the get button next to the url bar will initiate a connection attempt of the Adobe Flash security scanner. If the file is a valid Adobe Flash file it will automatically try to decompile it displaying the findings in the sidebar and the actual source in the right window.</p>
<p>A proficient Flash user can now analyze the code on his own. Everyone else is better of clicking on the Analyze button in the header of the security program. This will analyze the decompiled source code and provide a summary to the user.</p>
<p><img src="http://www.ghacks.net/wp-content/uploads/2009/03/hp_security-500x312.jpg" alt="hp security" title="hp security" width="500" height="312" class="alignnone size-medium wp-image-11490" /></p>
<p>The summary contains a list of vulnerabilities that have been found in the Adobe Flash file. This vulnerabilities mean that the Flash file might be vulnerable to certain exploits. Flash developers can then rewrite part of their application to fix the discovered vulnerabilities. End users on the other hand may be delighted to know that an Adobe Flash file does not contain any of the known vulnerabilities.</p>
<p>SWF Scan is a free <a href="https://h30406.www3.hp.com/campaigns/2009/wwcampaign/1-5TUVE/index.php?key=swf&#038;jumpid=go/swfscan">download</a> after a mandatory registration at the HP website. It is currently only available for the Microsoft Windows operating system.</p>

	Tags: <a href="http://www.ghacks.net/tag/adobe-flash/" title="adobe flash" rel="tag">adobe flash</a>, <a href="http://www.ghacks.net/tag/adobe-flash-security/" title="adobe flash security" rel="tag">adobe flash security</a>, <a href="http://www.ghacks.net/tag/flash/" title="flash" rel="tag">flash</a>, <a href="http://www.ghacks.net/tag/flash-security/" title="flash security" rel="tag">flash security</a>, <a href="http://www.ghacks.net/tag/hp/" title="hp" rel="tag">hp</a>, <a href="http://www.ghacks.net/tag/hp-security/" title="hp security" rel="tag">hp security</a>, <a href="http://www.ghacks.net/tag/hp-software/" title="hp software" rel="tag">hp software</a>, <a href="http://www.ghacks.net/tag/security-scan/" title="security-scan" rel="tag">security-scan</a>, <a href="http://www.ghacks.net/tag/swf-scan/" title="swf scan" rel="tag">swf scan</a>, <a href="http://www.ghacks.net/tag/windows-software/" title="windows software" rel="tag">windows software</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/09/04/mozilla-checks-flash-version-after-firefox-updates/" title="Mozilla Checks Flash Version After Firefox Updates (September 4, 2009)">Mozilla Checks Flash Version After Firefox Updates</a> (13)</li>
	<li><a href="http://www.ghacks.net/2008/05/28/vulnerabilities-in-latest-flash-version/" title="Vulnerabilities in latest Flash version (May 28, 2008)">Vulnerabilities in latest Flash version</a> (4)</li>
	<li><a href="http://www.ghacks.net/2008/05/29/new-information-about-latest-flash-vulnerability/" title="New Information about latest Flash Vulnerability (May 29, 2008)">New Information about latest Flash Vulnerability</a> (1)</li>
	<li><a href="http://www.ghacks.net/2009/09/19/mozilla-flash-upgrade-statistics/" title="Mozilla Flash Upgrade Statistics (September 19, 2009)">Mozilla Flash Upgrade Statistics</a> (3)</li>
	<li><a href="http://www.ghacks.net/2009/03/01/hp-usb-disk-storage-format-tool/" title="HP USB Disk Storage Format Tool (March 1, 2009)">HP USB Disk Storage Format Tool</a> (5)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2009/03/27/adobe-flash-security-scan/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>F-Secure Health Check</title>
		<link>http://www.ghacks.net/2008/04/20/f-secure-health-check/</link>
		<comments>http://www.ghacks.net/2008/04/20/f-secure-health-check/#comments</comments>
		<pubDate>Sun, 20 Apr 2008 12:43:27 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Browsing]]></category>
		<category><![CDATA[Online Services]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[ie]]></category>
		<category><![CDATA[f-secure]]></category>
		<category><![CDATA[health check]]></category>
		<category><![CDATA[security-scan]]></category>
		<category><![CDATA[vulnerability scan]]></category>
		<category><![CDATA[windows scan]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=3866</guid>
		<description><![CDATA[Many companies are producing tools that scan the computer for security vulnerabilities. Some provide their functionality on a website while others are applications that have to be installed on the computer. F-Secure Health Check is a product of the first category. It provides access to a scanner that checks the operating system and installed applications [...]]]></description>
			<content:encoded><![CDATA[<p>Many companies are producing tools that scan the computer for security vulnerabilities. Some provide their functionality on a website while others are applications that have to be installed on the computer. <a href="http://support.f-secure.com/enu/home/onlineservices/fshc.shtml">F-Secure Health Check</a> is a product of the first category. It provides access to a scanner that checks the operating system and installed applications for vulnerabilities and outdated versions. Unfortunately though the health check only runs on Microsoft <a href="http://www.ghacks.net/tag/internet-explorer/">Internet Explorer</a> 6 or newer with Active X enabled.</p>
<p>An Active X control has to be downloaded prior to the scan. A health report is generated in the end that is displaying red, yellow and green icons in various categories. Red items are critical, yellow medium and green safe. My test results have been mixed. I did receive several red icons in some categories because of programs that were not included in my security concept. The red icon in the security products category for instance was there because of the disabled Windows Firewall and no other firewall that was installed.</p>
<p>It did not detect the hardware firewall of my router. What I want to say is that even though some elements are marked as insecure they might not be in your special case. Another example was the yellow icon in the Sending Mail category which was there because of an old backup version of Eudora 5 which I do not use anymore. I think I did receive a yellow rating because of two up-to-date email applications (Thunderbird and Outlook Express).</p>
<p><span id="more-3866"></span><a href='http://www.ghacks.net/wp-content/uploads/2008/04/f-secure_health_check.jpg'><img src="http://www.ghacks.net/wp-content/uploads/2008/04/f-secure_health_check-300x238.jpg" alt="f-secure health check" title="f-secure health check" width="300" height="238" class="alignnone size-medium wp-image-3867" /></a></p>
<p>The most interesting categories in my opinion are the following two: Opening multimedia files and documents &#038; Using other programs.  It did detect some outdated applications (that I do not use regularly or forgot about). What I really like is the option to solve the issue right away by clicking on the solve button. This normally leads to a page where the updated application or patch can be downloaded.</p>
<p>It does not take long to update all the applications listed this way. F-Secure Health Check is an interesting service that excels in solving issues that have been found. A pity that it only works in Internet Explorer and that it requires Active X.</p>

	Tags: <a href="http://www.ghacks.net/tag/f-secure/" title="f-secure" rel="tag">f-secure</a>, <a href="http://www.ghacks.net/tag/health-check/" title="health check" rel="tag">health check</a>, <a href="http://www.ghacks.net/tag/security-scan/" title="security-scan" rel="tag">security-scan</a>, <a href="http://www.ghacks.net/tag/vulnerability-scan/" title="vulnerability scan" rel="tag">vulnerability scan</a>, <a href="http://www.ghacks.net/tag/windows-scan/" title="windows scan" rel="tag">windows scan</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/09/25/f-secure-health-check-2-0-beta-ditches-activex/" title="F-Secure Health Check 2.0 Beta Ditches ActiveX (September 25, 2009)">F-Secure Health Check 2.0 Beta Ditches ActiveX</a> (4)</li>
	<li><a href="http://www.ghacks.net/2009/10/12/twitter-account-suspended-be-careful-what-you-post/" title="Twitter Account Suspended? Be Careful What You Post (October 12, 2009)">Twitter Account Suspended? Be Careful What You Post</a> (3)</li>
	<li><a href="http://www.ghacks.net/2008/09/17/run-multiple-anti-spyware-tools-with-hitman-pro/" title="Run Multiple Anti-Spyware Tools With Hitman Pro (September 17, 2008)">Run Multiple Anti-Spyware Tools With Hitman Pro</a> (4)</li>
	<li><a href="http://www.ghacks.net/2007/12/08/infected-or-not-is-your-pc-infected/" title="Infected or Not: Is your PC Infected ? (December 8, 2007)">Infected or Not: Is your PC Infected ?</a> (4)</li>
	<li><a href="http://www.ghacks.net/2009/09/25/how-to-run-commercial-antivirus-software-without-paying-for-it/" title="How To Run Commercial Antivirus Software Without Paying For It (September 25, 2009)">How To Run Commercial Antivirus Software Without Paying For It</a> (21)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/04/20/f-secure-health-check/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Infected or Not: Is your PC Infected ?</title>
		<link>http://www.ghacks.net/2007/12/08/infected-or-not-is-your-pc-infected/</link>
		<comments>http://www.ghacks.net/2007/12/08/infected-or-not-is-your-pc-infected/#comments</comments>
		<pubDate>Sat, 08 Dec 2007 09:44:27 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Spyware]]></category>
		<category><![CDATA[The Web]]></category>
		<category><![CDATA[anitvirus]]></category>
		<category><![CDATA[security-scan]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[virus-scanner]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2007/12/08/infected-or-not-is-your-pc-infected/</guid>
		<description><![CDATA[I'm not that fond of online virus scanners because they always need special file access privileges and scan your files which could be a privacy issue as well. Infected or Not from Panda Antivirus however catched my attention by providing interesting statistics about infected computers on a worldwide and country wide scale. ]]></description>
			<content:encoded><![CDATA[<p>I&#8217;m not that fond of online virus scanners because they always need special file access privileges and scan your files which could be a privacy issue as well. Infected or Not from Panda Antivirus however catched my attention by providing interesting statistics about infected computers on a worldwide and country wide scale. </p>
<p>According to their statistics which are updated when scanning computers 10.90% of all PCs scanned were infected. PCs with Antivirus installed had a infection rate of 8.62% while PCs without Antivirus were infected 14.56% of the times. </p>
<p><a href="http://www.infectedornot.com/">Infected or Not</a> displays the rate of infected PCs using a Google Maps mashup. France for instance is the country in Europe with the highest amount of infected PCs (16.41%) while Sweden (4.17%) and Germany (5.33%) have the least amount of infections. The United States has an infection rate of 10.34 btw.</p>
<p><span id="more-2463"></span><img src='http://www.ghacks.net/wp-content/uploads/2007/12/infection-map.jpg' alt='pc worldwide virus infection map' /></p>
<p>The scan works with <a href="http://www.ghacks.net/tag/firefox/">Firefox</a> after installing an add-on which can only be uninstalled from the default installation location which is at C:\Program Files\Panda Security\NanoScan. Execute the file nanounst.exe to uninstall it again.</p>
<p>Antivir reported a trojan during installation and execution which can be considered a false positive. In case you are wondering why I have Antivir installed, I did not test this from my main computer.</p>

	Tags: <a href="http://www.ghacks.net/tag/anitvirus/" title="anitvirus" rel="tag">anitvirus</a>, <a href="http://www.ghacks.net/tag/security-scan/" title="security-scan" rel="tag">security-scan</a>, <a href="http://www.ghacks.net/tag/trojan/" title="trojan" rel="tag">trojan</a>, <a href="http://www.ghacks.net/tag/virus-scanner/" title="virus-scanner" rel="tag">virus-scanner</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2007/12/29/why-hackers-take-advantage-of-global-events/" title="Why Hackers take advantage of global events (December 29, 2007)">Why Hackers take advantage of global events</a> (0)</li>
	<li><a href="http://www.ghacks.net/2005/12/02/clam-win-antivirus/" title="Clam Win Antivirus (December 2, 2005)">Clam Win Antivirus</a> (3)</li>
	<li><a href="http://www.ghacks.net/2009/05/20/what-you-should-do-after-buying-a-new-computer-system/" title="What You Should Do After Buying A New Computer System (May 20, 2009)">What You Should Do After Buying A New Computer System</a> (18)</li>
	<li><a href="http://www.ghacks.net/2008/03/14/virus-total-uploader/" title="Virus Total Uploader (March 14, 2008)">Virus Total Uploader</a> (2)</li>
	<li><a href="http://www.ghacks.net/2007/01/01/test-your-anti-virus-program/" title="Test your Anti-virus program (January 1, 2007)">Test your Anti-virus program</a> (10)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2007/12/08/infected-or-not-is-your-pc-infected/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Hijack This 2.0 beta</title>
		<link>http://www.ghacks.net/2007/03/12/hijack-this-20-beta/</link>
		<comments>http://www.ghacks.net/2007/03/12/hijack-this-20-beta/#comments</comments>
		<pubDate>Mon, 12 Mar 2007 12:57:27 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Operating Systems]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[hijack]]></category>
		<category><![CDATA[hijack-this]]></category>
		<category><![CDATA[hijackthis]]></category>
		<category><![CDATA[registry]]></category>
		<category><![CDATA[security-scan]]></category>
		<category><![CDATA[security-software]]></category>
		<category><![CDATA[trojans]]></category>
		<category><![CDATA[virii]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2007/03/12/hijack-this-20-beta/</guid>
		<description><![CDATA[HiJack This is a very sophisticated security analyzer that generates an advanced report of various registry settings and files in your computer. The difference to many other security analyzers such as trojan scanners is that Hijack This makes not difference between "good" and "bad" settings but displays everything that it founds in its security log. It is then up to the user to find potentially harmful files and settings and remove them from his computer.]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.trendsecure.com/portal/en-US/threat_analytics/hijackthis.php" target="_blank">HiJack This</a> is a very sophisticated security analyzer that generates an advanced report of various registry settings and files in your computer. The difference to many other security analyzers such as Trojan scanners is that Hijack This makes not difference between &#8220;good&#8221; and &#8220;bad&#8221; settings but displays everything that it founds in its security log. It is then up to the user to find potentially harmful files and settings and remove them from his computer.</p>
<p>It is no security software for beginners but excellent for advanced users and users who know someone who is able to draw the right conclusions from the security logs that have been generated. Another way to receive fast results would be to use the online script  <a href="http://www.hijackthis.de/en" target="_blank">Hijack This logfile analysis</a>. You can paste the logfile into the form field or upload the log from your computer and the script analyzes the logfile of Hijack This automatically.</p>
<p><span id="more-1295"></span></p>
<p>It uses user input to determine whether something is a potential threat or not. This works most of the time but leads sometimes to unjustified ratings. I installed AV Antivir in a custom directory and the analyzer used this to indicate a possible problem. I think the best way to cope with this situation would be to briefly analyze the elements that could be malicious and decided if that is really the case. To use the above example: I knew that I did install it in that directory and therefor decided that the warning was not justified in this case.</p>
<p>If you are insecure about a certain setting ask in the well frequented support forum or search the internet for clues on the subject. Hijack This has a similar analyze this button build in which takes you to the website of the developer of Hijack This. They display information about everything that was found on your computer and how frequent it was found in other computers. </p>
<p>This could be an indicator for safeness but I would suggest that you perform additional searches to be on the safe side. You can download the newest version of Hijack This from TrendSecure by following the link in the first paragraph.</p>

	Tags: <a href="http://www.ghacks.net/tag/hijack/" title="hijack" rel="tag">hijack</a>, <a href="http://www.ghacks.net/tag/hijack-this/" title="hijack-this" rel="tag">hijack-this</a>, <a href="http://www.ghacks.net/tag/hijackthis/" title="hijackthis" rel="tag">hijackthis</a>, <a href="http://www.ghacks.net/tag/registry/" title="registry" rel="tag">registry</a>, <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/security-scan/" title="security-scan" rel="tag">security-scan</a>, <a href="http://www.ghacks.net/tag/security-software/" title="security-software" rel="tag">security-software</a>, <a href="http://www.ghacks.net/tag/trojans/" title="trojans" rel="tag">trojans</a>, <a href="http://www.ghacks.net/tag/virii/" title="virii" rel="tag">virii</a>, <a href="http://www.ghacks.net/tag/windows/" title="Windows" rel="tag">Windows</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/02/08/hijackreader-analyse-hijackthis-results/" title="HijackReader analyse HijackThis results (February 8, 2008)">HijackReader analyse HijackThis results</a> (6)</li>
	<li><a href="http://www.ghacks.net/2008/07/05/gernova-keylock/" title="Gernova Keylock (July 5, 2008)">Gernova Keylock</a> (2)</li>
	<li><a href="http://www.ghacks.net/2006/03/12/windows-worms-door-cleaner/" title="Windows Worms Door Cleaner (March 12, 2006)">Windows Worms Door Cleaner</a> (2)</li>
	<li><a href="http://www.ghacks.net/2009/03/20/windows-registry-watcher/" title="Windows Registry Watcher (March 20, 2009)">Windows Registry Watcher</a> (5)</li>
	<li><a href="http://www.ghacks.net/2008/01/11/what-is-connecting-to-the-internet/" title="What is connecting to the Internet (January 11, 2008)">What is connecting to the Internet</a> (4)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2007/03/12/hijack-this-20-beta/feed/</wfw:commentRss>
		<slash:comments>8</slash:comments>
		</item>
	</channel>
</rss>
