John Ogness H+BEDV
Dazuko: an open solution to facilitate 'on-access' scanning
One of the most fundamental forms of virus protection is at the file access level. By scanning files as they are opened or executed, malicious code can be blocked before having an opportunity to cause damage. However, with the constant evolution and availability of various operating systems, there is a continual redundant effort by anti-virus organizations to implement file access monitoring. This results in variable performance and a lack of support for certain platforms. This paper presents an open source project, Dazuko, which provides a standard interface for handling file access control. The project aims at developing the Dazuko module to work with many different operating systems while maintaining a common interface. By providing the anti-virus community with an open file access control standard, a broad range of supported systems with reliable performance can be established.