need flash drive virus

Random717

Expert Member
Joined
May 30, 2006
Messages
2,121
Reaction score
24
I'm trying to break a system I've setup.

XP-sp3+patches
Non-propagating roaming profiles
Local profiles deleted on boot
User account is non-admin, with extra restrictions via group policy.
Autorun is disabled.
Internet access is through password protected proxy.

NO anti-virus...

Using IE7 I've gone to every dodgy crak and cerial site I could find, and installed everything on offer. Now I have 8 nasties running in memory, but they're doing nothing besides the odd unsuccessful attempt at connecting to the internet. I've plugged in several flash drives, none get infected with anything. Programs are functioning fine. Everything appears normal.

A reboot removes all trace of viruses.

The only thing I haven't been able to test is: plug in an infected flash drive, manually run whatever is on it, then insert a clean flash drive to see if it gets infected.

So, if anyone has any nasties in password protected archives and is willing to send them to me, drop me a pm...

Why am I doing this? The corporate types around here insist on antivirus being installed; I'm not liking the extra minute in boot time, and the delays when browsing the net while some server decides if the url is safe or not. I can't see a reason for running anti-virus on a highly restricted, well configured system, that restores itself at every boot. The only argument they have is the possible damage that can be done from the time of infection till the next shutdown. Network activity is barely noticable, and I've spent hours trying to infect my flash drive. Am I missing something?
 
I can't see a reason for running anti-virus on a highly restricted, well configured system, that restores itself at every boot. The only argument they have is the possible damage that can be done from the time of infection till the next shutdown. Network activity is barely noticable, and I've spent hours trying to infect my flash drive. Am I missing something?

i don't understand it either, mind you - unless they afraid it could spread to other pc's on the network, who don't use a ghosting setup?? (ive seen this in action, and it travels fast!)
 
Go to a university, my lord there is not a flash drive on campus without some form of nasty little thing.
 
Our university (was a technikon before but anycase...)

implemented a software called deep freeze.

Restored pc on every boot, no matter what we tried to break it.. :P

Not sure how virus proof it is though

http://www.faronics.com/
 
i don't understand it either, mind you - unless they afraid it could spread to other pc's on the network, who don't use a ghosting setup?? (ive seen this in action, and it travels fast!)
The funny thing is that I'm the only one around not ghosting, just using windows settings. I stopped using the "corp" image when I discovered viruses in the system restore...

Go here and download your own viruses
http://www.offensivecomputing.net/ *
Awesome!!!
If you can get your hands on a bootkit, you will regret you asked for it.
After reading up, that's exactly what I'm looking for :D
Our university (was a technikon before but anycase...)

implemented a software called deep freeze.

Restored pc on every boot, no matter what we tried to break it.. :P

Not sure how virus proof it is though

http://www.faronics.com/

I've played around with it, was a pain in the ass getting it to unfreeze to do Windows updates etc. besides the performance hit (some of the systems I come across are trying to run XP with 128MB ram, thank sweet jehosephat for nlite!).
 
Top
Sign up to the MyBroadband newsletter
X