HackAlert – 24×7 Remote Malware Monitoring Service
HackAlert is a 24×7 Website monitoring solution that alerts website owners and system administrators if the site has been compromised and injected with malicious code. Operating as a non?intrusive monitoring service, HackAlert leverages pattern?free behavioral analysis technology (combined with signature?based packing analysis) to provide detailed information related to website security status on a constant basis and represents the outermost layer of any comprehensive security program.
Static & Dynamic (Behavioral) Analysis
HackAlert leverages pattern-free behavioral analysis technology to detect and analyze malicious code injected into web pages. The service leverages a static HTML analysis engine which searches for illegal or potentially dangerous links injected into the webpage, and a unique behavioral analysis engine which identifies whether or not the suspicious link is in fact downloading malware to the client PC.
This behavior analysis engine is unique in its employment of a Spyware Behavior Extractor (SBE) which forces even those instances of malware that have been programmed with evasive onboard anti?detection methods to exhibit their malicious behavior. Thereby, HackAlert™ does NOT miss any instances of downloaded malware and provides accurate results, with information capable of proving the origin, destination and certain behavioral aspects related thereto.
Reporting
HackAlert can be used to scan a single URL or a complete website, depending on the user’s requirement.
Reporting Interface – Single URL Monitoring
The HackAlert reporting interface for single URL provides detailed information regarding the malware’s behavioral aspects, identifying the affected web site address and highlighting the injected malicious link or source of the malicious code. In the event of malware being successfully downloaded to the client-side, HackAlert provides details such as the source of the malware, its name and file type and the target directory on the affected computer.
Reporting Interface – Website Monitoring
The HackAlert system’s “Site Monitoring” function leverages a URL Crawler which is able to analyze an entire site’s URL tree to provide a convenient method for monitoring the site in question.The crawler analyzes the website page?by?page, extracting all possible URL links, while at the same time testing whether or not the URL link is in fact active.
The reporting provides complete information in terms of total URLs crawled, clean URLs, suspicious URLs, malware detected and defaced content.
Notifications
HackAlert’s real-time alerting capabilities provide immediate notification and details regarding malware activity. The notification can be sent via e-mail or as a SMS to the user mobile phone, depending on the user’s preference. This facilitates immediate reaction and remediation in the event of website poisoning.
An e-mail notification provides complete summary of the scan and lists the suspicious links and points out the malware injection.
Solution Delivery
The solution is delivered as a hosted Software?as?a?Service (SaaS) solution, providing a customizable user interface which allows the user to define the domain/URLs he or she wishes to monitor, schedule the scan frequency, and configure the reporting options. Users may access the solution simply by logging in over the internet.
Sign up for HackAlert’s Free Trial









October 19th, 2008 at 11:54 am
Third party scripts we install may lead our sites to become malicious, we need to take care that we install from reliable third party scripts