Monday, 4 January 2016

Zip bombs!!

Zip it - it's a bomb!! 

 Not actually. It is not going to blow up something. I guess you must have heard about these mischievous zip files which can really irritate you by freezing  your computer. Apart from just ireitating you they can do something really big. They can pave a way for a bigger attack on ypur computer. They are used mostly for turning down your antivirus software and thus clear the way for bigger players. Oncethey shutdown or actually crash down ypur antivirus program, the virus which was till now waiting behind it unreveals itself.
So How does a zip file does that? 
For knowing how a zip file works, we first need to know what is a zip file. You guys muat have compressed some data at some point of time in your life. Zip files are mere compressed data files. But hiw can they turn off our antivirus program? For that we need to get them a little more.
How a zip bomb is made: Have you guys used Notepad? I am sure you have. Just open that. Type 0000000000000 as much time as you can. Copy paste them juat keep doing. When your notepad starts delaying the processing work, it is a signal that u need to stop now. So stop there and save the file by any name ypu want. You would be surprised to see the size of the file which you have just made uaing just some innocent 0's in your innocent notepad. Well these zeros are not that innocent as these are the main culprit. You can even make files with Gbs of size. Once ypu have your file ready make its copies. Now select all these and zip them or rar them. After doing that you amy delete the original file now as we no more need it. Now make copies of the zip that we just made and archive these new copies again. Keep dping this and increasing the layers as much as you wish.
At the end what u get is nothing but a very small file like in mbs. Copy this file in a pendrive and insert in the computer( don't try it for bad purposes). When the antivirus software tries to unzip it to scan, it is surprised as the file for scanning it keeps presenting new layers we made and it overloads the memory of antivrus and it crashes. New ipdated antivirus softwares have inside them the feature in which they scan only upto 2 or three layers after which they mark the file as suspicious. But still this process works on old versions of antivrus.
Mail me at gulshanweew@gmail.com if you liked this post. 

No comments:

Post a Comment