HFN ReSOFT Malware Protection

Loading...

Flash Player 9 (or above) is needed to view presentations.
We have detected that you do not have it on your computer. To install it, go here.

0 comments

Post a comment

    Post a comment
    Embed Video
    Edit your comment Cancel

    Favorites, Groups & Events

    HFN ReSOFT Malware Protection - Presentation Transcript

    1. ReSOFT Scalable, Real-time Malware Protection
    2. Malware Profile
      • Motivated by financial gain
      • Parasitic
      • Persistent
      • Pervasive
      • Mutating
      • Stealthy
      Oct 7, 2009 Proprietary and Confidential to HandsFree Networks
    3. Malware – How It Works
      • Multiple entry points
      • Multi-layered execution
        • Cascading executables trigger execution of each other
      • Multiple hooks
        • Changes to start-up environment
        • Browser start/search page hijacking
        • Browser helper objects
        • Executable hijacking
      Oct 7, 2009 Proprietary and Confidential to HandsFree Networks
    4. Malware Protection
      • Close the entry points
      • Remove the hooks
      • Stop and prevent execution
      • File deletion
        • Real-time deletion of malware files less reliable because files are not actions
        • The last step
      Oct 7, 2009 Proprietary and Confidential to HandsFree Networks
    5. Malware Protection Approaches
      • Signature based
        • Works if the signature database is COMPLETE, and UP-TO-DATE
        • Signature database cannot be COMPLETE and UP-TO-DATE
          • There is no clear definition of malware
          • Malware is motivated by financial gain
            • It mutates constantly
            • It is highly persistent and pervasive
      Oct 7, 2009 Proprietary and Confidential to HandsFree Networks
    6. Malware Protection Approaches
      • Behavior based
        • Protects systems from intruders based on actions that they take
        • Works against both known and new malware
          • Effectiveness depends on real-time detection and neutralization action capabilities
        • Avoids legal issues related to what is and is not malware
        • Long-term success depends on flexibility and extensibility of underlying architecture
          • Neutralize new behaviors
      Oct 7, 2009 Proprietary and Confidential to HandsFree Networks
    7. Malware Protection Phases
      • Protection against new and known malware
        • Close all entry points
      • Neutralization of malware that may have infected a system
        • Identify malware
        • Remove hooks
        • Stop and prevent execution
        • Delete files (optional as long as real-time behavior based protection is in place)
      Oct 7, 2009 Proprietary and Confidential to HandsFree Networks
    8. File Deletion
      • One element of malware protection
        • Independent of real-time neutralization
      • Not necessary for real-time malware neutralization
        • Can be performed as batch operation
      • Insurance policy
      • Behavior based file deletion is new territory
      Oct 7, 2009 Proprietary and Confidential to HandsFree Networks
    9. Oct 7, 2009 Proprietary and Confidential to HandsFree Networks
    10. ReSOFT Malware Protection
      • Behavior based
        • Rea-time malware actions detection and neutralization
      • Real-time protection of areas targeted by intruders
      • Stops and prevents malware execution
      • Built-in extensibility
        • Keep up with evolving threats
      • Highly scalable
        • Centralized management and control
        • Local actions not dependent on server
      Oct 7, 2009 Proprietary and Confidential to HandsFree Networks
    11. ReSOFT Malware Protection
      • Malware clean-up – more effective than other solutions
        • Direct access to, and control of targeted areas
        • Centralized operation – automated propagation of malware neutralization actions
      • File deletion
        • Not in real-time
        • Automated execution – requires manual configuration
        • Centralized operation – automated propagation of file deletion actions
      Oct 7, 2009 Proprietary and Confidential to HandsFree Networks
    12. ReSOFT Malware – The Bottom Line
      • Today – proven to be more effective than other solutions
      • Over time – More likely to stay ahead of malware because of the power of the underlying architecture
      • Don’t believe, try it at no cost or obligation
      Oct 7, 2009 Proprietary and Confidential to HandsFree Networks
    SlideShare Zeitgeist 2009

    + HandsFree NetworksHandsFree Networks Nominate

    custom

    53 views, 0 favs, 0 embeds more stats

    HandsFree Networks is helping IT Industry think bey more

    More info about this document

    © All Rights Reserved

    Go to text version

    • Total Views 53
      • 53 on SlideShare
      • 0 from embeds
    • Comments 0
    • Favorites 0
    • Downloads 0
    Most viewed embeds

    more

    All embeds

    less

    Flagged as inappropriate Flag as inappropriate
    Flag as inappropriate

    Select your reason for flagging this presentation as inappropriate. If needed, use the feedback form to let us know more details.

    Cancel
    File a copyright complaint
    Having problems? Go to our helpdesk?

    Categories