|
Emsi Software Mamutu 2.0 3 User 1 Year Full Windows Download
# Monitors live all active programs for dangerous behavior (Behavior Blocking). # Recognizes new and unknown Trojans, Worms and Viruses (Zero-Day attacks), without daily updates. # Small but very powerful. Saves resources and does not slow the PC down.
ow safe is your PC really?
To put it succinctly: Why signature-based security software is not enough
Normal security software recognizes Malware using Signatures, a type of digital fingerprint. What is problem with this? No fingerprint means no recognition. This means that the Malware must first be known to the manufacturer of the security software before it is possible to create a fingerprint allowing it to be recognized. The fingerprint database on your PC is then updated online on a daily basis. Only then can the Malware be recognized.
You are probably now thinking: "What about new Malware that manufacturer of the security software has never seen? They have no way of making a fingerprint of this...". Exactly!
This is where the behavior-based Malware defense of Mamutu comes into play. It does not use a fingerprint to recognize dangerous software but rather on the basis of the behavior of the software. This allows Mamutu to recognize new Malware long before the signature databases have been updated. These types of Malware attacks are known as Zero-Day attacks. In addition to this, behavior-based Malware recognition is the only efficient way of recognizing Malware that has been built for a single specific attack, e.g. for industrial espionage.
Mamutu - Protects against completely new pests in seconds!
The Mamutu Background Guard is clever. It recognizes and blocks all potentially dangerous programs before they can cause any damage. The new Malware Intrusion Detection System (Malware-IDS) is unique worldwide and immediately warns you when a program attempts to perform a potentially dangerous or suspicious operation.
The advantages to you:
New behavior-based protection technology Mamutu permanently monitors all active programs on your PC. As soon as suspicious behavior of a process is detected you receive a warning message and can react accordingly. Block Malware before it can cause any damage, by using the unique a-squared behavior analysis technology that has been tried and tested for years.
Lower resource consumption Mamutu has been conceived to require the smallest possible amount of your computer power. This makes it ideal for users who require high computing performance, e.g. graphics or video applications and especially games.
Quarantine in case of emergency Always place a suspicious program in quarantine before finally deleting it. Suspicious behavior can also be exhibited by usually benign applications. Mamutu helps you to decide what do do with a suspicious program.
Stay protected - it is easier than you think Regardless of whether you are a computer expert or a beginner, you will quickly come to grips with Mamutu. You do not have to be a specialist to free yourself from Malware.
The perfect security enhancement
Mamutu recognizes and reports the following types of behavior:
* Backdoor related behavior * Spyware related behavior * HiJacker related behavior * Worm related behavior * Dialer related behavior * Keylogger related behavior * Trojan Downloader related behavior * Injection of code into other programs * Manipulation of programs (patching) * Invisible installations of software * Invisible Rootkit processes * Installation of services and drivers * Creation of Autostart entries * Manipulation of the Hosts file * Changes of the browser settings * Installation of debuggers on the system * Simulated mouse and keyboard activity * Direct disk sector access on harddisk [NEW!]
Full control over internal system activities
You can now decide for yourself what programs are allowed to start on your PC and what actions may be performed. Detailed application rules are now available, allowing you to individually specify the permitted behavior of every application:
* Monitor application, but allow specific activities Select this option to always allow particular specific behavior of a program. In certain situations a benign program can contain a function that is very similar to a damaging function and is thus reported. If you are sure that this action is actually not dangerous then you can allow it. All other types of dangerous behavior are still reported. * Always block this application Select this option to permanently block a particular program. You can also use this feature to provide child protection by preventing other PC users from starting a particular application. * Exclude from protection Select this option to completely exclude an application from the monitoring process. Use this when you always trust an application and are sure that it does not execute any damaging actions.
Bonus feature: Application protection
You can use the application rules to protect specific programs from third-party manipulation. For example, this feature is used to prevent Mamutu from being terminated by Malware in order to disable the protection. You can also make use of this feature. You can protect your Browser and other important programs from being illegally terminated.
New in version 1.5: Community based alert reduction
With the community feature Mamutu makes use of the "Intelligence of the masses" and provides a recommendation based on the decisions of other users when an alert is raised: A clearly understandable graphic illustrates the percentage of users that have performed each possible action (see illustration). This allows you to quickly decide whether to allow the behavior of the alerted program (other behavior types will be alerted), exclude it from monitoring (completely trusted), block it (shut down process) or place it in quarantine (shut down process and put exe file into quarantine so it can't be started anymore).
You can also define a particular percentage value at which the application is automatically permitted. For example: If (e.g.) 90% of the users have classified a background updater as not damaging, then the application is automatically permitted to run. This ensures a smooth workflow without annoying popups and you no longer need to make sometimes difficult decisions about unknown processes. The transfer of your own decisions to the Emsi Software Anti-Malware Network is of course voluntary and can be deactivated at any time.
Malware-IDS What is the Malware-IDS? How does it work?
Malware protection without signatures?
The a-squared Anti-Malware Background Guard scans all running programs with a signature scanner the same as all other antivirus guards. The scan can only detect the malware if it has the correct signature. Although the Emsi Software Team wish to create signatures for new malware and provide them as fast as possible via the online update, the process of creating a new signature can take a while. During this time you are not protected against new malware.
This is where our Malware Intrusion Detection System (Malware-IDS) comes in. This is a special system which is able to detect and block malware without the need for signatures. The Malware-IDS is part of a-squared Anti-Malware and Mamutu (without a disk scanner)
Behavior Analysis
Usually, Malware is detected with the help of heuristics. Heuristic scanning analyses the code in a file and decides whether or not it is harmful. The Malware-IDS works differently, as it watches any active program and stops it if it notices anything suspicious. If a program is trying to change something, you will be told immediately, and given the chance to authorize this change. If the Malware-IDS pops up a warning when you are not doing anything on your computer, you can be fairly sure that the program is working without your approval.
And this is the way it works..
Malware always wants to achieve a particular result. A virus always infects, a worm always spreads, a trojan always sends files and a dialer always dials. Their methods may differ, but the result is the same.
It is at this point that Malware-IDS interrupts the program. It analyses the behavior of all active programs, and alerts you if anything harmful is detected. The program is stopped and cannot continue until you decide whether or not to authorize the behavior.
All this probably sounds too good to be true, and there is one disadvantage: the Malware-IDS only recognizes behavior, and cannot give you the actual name of the malware in question. In other words, you will know if it's a worm, but not if it's the NetSky or Bagle worm. Of course, this doesn't really matter - the important thing is that you know it's there, and you can run the appropriate removal program. What does it detect?
Currently the Malware-IDS can detect the following malware types:
* Email worms * Spyware/Adware * HiJackers * Backdoor trojans * Trojan downloader with reverse connection logic * Dialers * Keylogger * Rootkits * Viruses
In addition, the Malware-IDS can monitor and stop any of the following actions:
* Installation of new drivers and services * Any kind of process manipulation like DLL-injection, code-injection, patching, termination, etc. * Installation of new BHOs (Browser Helper Objects) * Changes to your Internet Explorer configuration * Hidden installations of software * Changes to your Hosts file (redirects domains) * Installations of debuggers on the system
What should I do if it gives me an alert?
The Malware-IDS is a system which was designed to detect suspicious behavior. The behavior of programs and malware is sometimes very similar, so the system may give you a false alert from time to time. It is important to consider what you are doing with your computer at the time of the alert and whether you recognize the program the alert is about before clicking allow or terminate. If you are unsure you should close the program and send it to us for further analysis.
A general tip for using the Malware-IDS:
After installing the software, please ensure that the background guard is running. Then start your most used programs one by one so that you can tell IDS that these programs are allowed. This procedure only takes a few minutes to correctly configure IDS on your PC.
Platforms: Windows Media Center Edition 2005 , Windows Vista , Windows XP , Windows2003 , Windows Tablet PC Edition 2005 , Windows Vista Business , Windows Vista Enterprise , Windows Vista Home Basic , Windows Vista Home Premium , Windows Vista Starter , Windows Vista Ultimate , WinXP
System requirements: 20 MB HDD, 512 MB RAM
|