<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
> <channel><title>gHacks Technology News &#124; Latest Tech News, Software And Tutorials &#187; System Safety Monitor</title> <atom:link href="http://www.ghacks.net/tag/system-safety-monitor/feed/" rel="self" type="application/rss+xml" /><link>http://www.ghacks.net</link> <description>A technology news blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description> <lastBuildDate>Fri, 10 Feb 2012 20:51:26 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <atom:link rel="hub" href="http://pubsubhubbub.appspot.com"/><atom:link rel="hub" href="http://superfeedr.com/hubbub"/> <item><title>System Safety Monitor 2</title><link>http://www.ghacks.net/2006/09/28/system-safety-monitor-2-2/</link> <comments>http://www.ghacks.net/2006/09/28/system-safety-monitor-2-2/#comments</comments> <pubDate>Thu, 28 Sep 2006 17:27:56 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Tools]]></category> <category><![CDATA[System Safety Monitor]]></category> <category><![CDATA[Windows]]></category> <guid
isPermaLink="false">http://www.ghacks.net/2006/09/28/system-safety-monitor-2-2/</guid> <description><![CDATA[System Safety Monitor 2 is available in a free version from the developers website. The tool basically works as a firewall preventing malicious software to be started automatically. The free version runs in paranoid mode which means you have to allow or disallow every process and get nagged quite a bit at the beginning. Once the majority of rules are established the software runs a lot smoother and seems to come forth only when you tend to install a new program or change existing ones.]]></description> <content:encoded><![CDATA[<p>System Safety Monitor 2 is available in a free version from the developers website. The tool basically works as a firewall preventing malicious software to be started automatically. The free version runs in paranoid mode which means you have to allow or disallow every process and get nagged quite a bit at the beginning. Once the majority of rules are established the software runs a lot smoother and seems to come forth only when you tend to install a new program or change existing ones.</p><p>Once installed you need to reboot your system to be able to run the software, you notice a green icon with an S inside in your system tray once you&#8217;ve restarted the system. Double-clicking that icon opens the program in process viewer mode. It displays all running processes on your system and you will have to define some rules here. Right-clicking an entry makes it possible to block, allow or terminate a process as well as to take a look at the processes properties and modules.</p><p><span
id="more-813"></span></p><p>Switching to the applications tab displays a list of applications that are allowed and it is easy to add applications that are blocked or allowed. The default list contains few applications and you might want to add the most commonly used ones on your system.</p><p>You have some pretty advanced possibilities in this tab, you can take a look at special permissions for those applications that allow you define in detail what the application may do and what it may not do on your system, some interesting ones are:</p><ul><li>allow process suspending and termination</li><li>allow driver installation</li><li>allow shutdown system</li><li>allow global hooks</li><li>allow remote code control</li><li>allow remote data modification</li></ul><p>Possible properties depend on the type of file (application, library, system). You could for example add a setting that disallows everyone to terminate your firewall which would include you, the system admin unless you change the setting in system safety monitor. Allowed values are : allow, disallow and ? for asking the user everytime this action should be performed.</p><p>On the Modules tab of the main program window you can configure auxiliary  modules which track out changes of important operating system settings Every module has a number of configuration settings, where you can select what  system settings the module will track and what actions will be performed if  these settings are changed. The Registry and INI-Files modules have additional  configuration section &#8211; Information, where the names and values of the  appropriate tracked settings are displayed. In the Information section of the  Registry and INI-Files modules you can modify real values in the Registry and  INI-files.</p><p>Last but not least you have a large options tab which regulates when and how system safety monitor will be started, the logging of events, highlighting colors, hot keys, a master password and many more. It is just to much to write about every setting, everything seems highly configurable.</p><p>System Safety monitor 2 is also available as a commercial version, if you want to know about the differences between those versions check out the product page and scroll down to the bottom of that screen.</p><p><strong>Read More:</strong></p><p>System Safety Monitor</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2006/09/28/system-safety-monitor-2-2/feed/</wfw:commentRss> <slash:comments>1</slash:comments> </item> <item><title>System Safety Monitor 2</title><link>http://www.ghacks.net/2005/11/25/system-safety-monitor-2/</link> <comments>http://www.ghacks.net/2005/11/25/system-safety-monitor-2/#comments</comments> <pubDate>Thu, 24 Nov 2005 23:06:39 +0000</pubDate> <dc:creator>admin</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Tools]]></category> <category><![CDATA[malware]]></category> <category><![CDATA[monitor]]></category> <category><![CDATA[Spyware]]></category> <category><![CDATA[System Safety Monitor]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=174</guid> <description><![CDATA[System Safety Monitor (SSM) allows you to track down Microsoft Windows operating system activity in real-time and to prevent undesirable actions from various malware and spyware programs. SSM's main goal is to discover and block malicious actions of any application. ]]></description> <content:encoded><![CDATA[<p>System Safety Monitor (SSM) allows you to track down Microsoft Windows operating system activity in real-time and to prevent undesirable actions from various malware and spyware programs. SSM&#8217;s main goal is to discover and block malicious actions of any application.</p><p><img
src="http://freeware.deny.de/screenshots/200511/systemsafe.gif" alt="system monitor security real time" /></p><p><span
id="more-174"></span>features:</p><p>SSM keeps track of the activity of all applications already started or being started and allows you to control:<br
/> -which application can be started;<br
/> -which child application can be started by a selected one;<br
/> -which parent applications are allowed to start a selected one;<br
/> -whether a selected application is allowed to start if it was modified;<br
/> -whether a selected application is allowed to install a driver;<br
/> -whether a selected application is allowed to perform code-injection or DLL-injection;<br
/> -create/terminate a process (application);<br
/> -suspend a process and resume it afterwards;<br
/> -watch the list of DLLs loaded by a selected application.</p><p>Tracking and blocking changes in the following important operating system parts:<br
/> -Windows registry;<br
/> -drivers and services state;<br
/> -INI-files;<br
/> -&#8221;Startup&#8221; item of Start menu;<br
/> -Microsoft Internet Explorer settings.</p><p>Window management:<br
/> -watches running applications windows;<br
/> -runs &#8220;black list&#8221; of applications windows, closes &#8220;unwanted&#8221; applications windows automatically;<br
/> -browses the list of applications windows created in the system;<br
/> -shows invisible applications windows, hides visible ones, enables user input for &#8220;locked down&#8221; applications windows.</p><h3>System Safety Monitor Version 2.3</h3><p>System Safety Monitor 2 beta version was released in 2005.  It originally started as a behavior blocker project for home users in 2002.  Syssafety Company purchased the software in April 2005 and released the aforementioned beta series in September.  The latest freeware version 2.3 has been released and is similar to the previous version yet features some interesting upgrades.  It still offers process filtering along with parent-child control of processes.  Specific rules can be applied to mediate the start of a process by another process at a particular instance.</p><p>System Safety Monitor (SSM) 2.3 continues to be effective against spyware, adware, rootkits, Trojans, keyloggers, dialers, hijackers, and surveillance software.  This is conditional on proper user response to the prompts, so beginners take note.</p><p><img
src="http://www.ghacks.net/wp-content/uploads/2005/11/system-safety-monitor.jpg" alt="system safety monitor" title="system safety monitor" width="600" height="380" class="alignnone size-full wp-image-51368" /></p><p>This is a screenshot of the latest version.  From this GUI, you can set specific preferences as needed.  SSM is a Host Based Intrusion Prevention System designed to protect operating systems from both known and unknown malware including “zero-day” attacks, something that antivirus software updates will not do.  SSM will monitor all programs and prevent malware attacks or any suspicious actions.</p><p>The new GUI design features a Learning mode to assist with proper configuration.  SSM 2.3 is compatible with most anti-malware security suites, though you may want to check just to be sure.  SSM 2.3 works at the Windows Kernel level, monitoring in real-time and includes the following features, all of which have been updated:</p><ul><li>Malware and Rootkit Installation</li><li>Driver Loading</li><li>Program Execution</li><li>NT Services Installation and State Change</li><li>Program State and Memory Modification</li><li>Thread and Process Suspension and Termination</li><li>Direct Physical Memory Access</li><li>Low Level Disk Access</li><li>Low level keyboard access (anti-keylogger protection)</li><li>Global Hooks Installation</li><li>System Registry Modification</li><li>Window Opening</li><li>Startup Menu Modification (a definite plus for improving startup speed)</li></ul><p>Now the question is: What is new in version 2.3?  As stated, the existing features have been updated and the software is easier for beginners to use with the Learning mode feature.  New additions include the following:</p><ul><li>New Log Viewer</li><li>Added protection against DirectInput based logging (a recently developed keylogging method)</li><li>New application setting: “Registry access” on application Registry tab (unrestricted access / Checked access / Read Only access)</li></ul><p>DirectInput is part of a Microsoft API and it collects input from the user.  This input is collected form input devices such as the mouse, game controllers and the keyboard.  All data input through these devices is stored for to provide a system for action mapping.  Action mapping enables the user to designate particular actions through a particular sequence of inputs from any given device.  This data can be recalled easily.  Keyloggers that use DirectInput logging are able to extract this data.  This means that anything you do with your mouse or keyboard will be recorded and can be stolen.  The protection included in SSM prevents this.</p><p>Additional improvements and general debugging have been included as well.  This new version of SSM has all of the features of the previous version and boasts added protection against new malware innovations.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2005/11/25/system-safety-monitor-2/feed/</wfw:commentRss> <slash:comments>1</slash:comments> </item> </channel> </rss>
