|
|
|||||||
| Register | Projects | Blogs | FAQ | Search | Today's Posts | Mark Forums Read |
|
|
#1 |
|
Security Expert
Join Date: Oct 2005
Location: The Netherlands
Posts: 133
|
You usually get infected because your security settings are too low.
Here are a number of recommendations that will help tighten them, and which will contribute to making you a less likely victim: 1.) Watch what you download! Many freeware programs, and P2P programs like Grokster, Imesh, Kazaa and others are amongst the most notorious, come with an enormous amount of bundled spyware that will eat system resources, slow down your system, clash with other installed software, or just plain crash your browser or even Windows itself. If you insist on using a P2P program, please read File Sharing, otherwise known as Peer To Peer. (P2P) 2.) Go to IE > Tools > Windows Update > Product Updates, and install ALL High-Priority Security Updates listed. If you're running Windows XP, that of course includes the Service Pack 3! If you suspect your computer is infected with Malware of any type, we advise you to not install SP3 if you don't already have it. UPDATED WINDOWS If a personal computer is infected you may post a DDS log in the Malware Removal Forum to receive free assistance from our volunteer analysts. Please read the FAQ first: "BEFORE you POST"(READ this Procedure BEFORE Requesting Assistance) It's important to always keep current with the latest security fixes from Microsoft. Install those patches for Internet Explorer, and make sure your installation of Java VM is up-to-date. Sun Microsystems~Java. Security vulnerability in older versions left on system 3.) Open IE and go to Internet Options > Security > Internet, then press "Default Level", then OK.
Now you will be asked whether you want ActiveX objects to be executed and whether you want software to be installed. Sites that you know for sure are above suspicion can be moved to the Trusted Zone in Internet Option > Security. So why is ActiveX so dangerous that you have to increase the security for it? When your browser runs an activex control, it is running an executable program. It's no different from doubleclicking an exe file on your hard drive. Would you run just any random file downloaded off a web site without knowing what it is and what it does? 4.) Install Javacool's SpywareBlaster It will protect you from most spy/foistware in it's database by blocking installation of their ActiveX objects. Download and install, download the latest updates, and you'll see a list of all spyware programs covered by the program (NOTE: this is NOT spyware found on your computer) Press "Enable All Protection", and you're done. The spyware that you told Spywareblaster to set the "kill bit" for won't be a hazard to you any longer. Although it won't protect you from every form of spyware known to man, it is a very potent extra layer of protection. Don't forget to check for updates every week or so. 5.) Let's also not forget that Spybot Search & Destroy has the Immunize feature which works roughly the same way. Another feature within Spybot is the TeaTimer option. This option immediately detects known malicious processes wanting to start and terminates them. TeaTimer also detects when something wants to change some critical registry keys and gives you an option to allow them or not. *It is important to note that all of the above programs/files can be run simultaneously on your system. They will work together in layers, so to speak, to help protect your computer. However, the following suggestions are designed to only run one of each. It is not a good idea to run more than one firewall, and one anti-virus program. Running more than one of these at a time can cause system crashes, high system usage and/or conflicts with each other.* 6.) It is critical that you use a firewall to protect your computer from hackers. We don't recommend the XP firewall that comes built in to Windows. It doesn't block everything that may try to get in, and the entire firewall is written to the registry. As various kinds of malware hack the Registry in order to disable the Windows firewall, if using XP it's far preferable to install one of the excellent third party solutions. If you do choose to install a third party software Firewall remember to disable the native XP one at that time. This study on firewall leaktests may be of interest before making a decision. Also the Firewall Challenge. 7.) An Anti-Virus product is a necessity. There are many excellent programs that you can purchase. However, we choose to advocate the use of free programs whenever possible. Some very good and easy-to-use free A/V programs are Avast and AntiVir. It's a good idea to set these to receive automatic updates so you are always as fully protected as possible from the newest virus threats. Happy safe computing!! Last edited by tashi; 2010-08-03 at 18:07. Reason: Updated |
|
|
|
|
#2 |
|
Member of Team Spybot
Join Date: Oct 2005
Location: USA
Posts: 23,454
Rated LASSHes: 16
|
The Java SE Runtime Environment (JRE) allows end-users to run Java applications.
Vulnerabilities in old Sun Java versions may be partly responsible for Vundo/Winfixer/Virtuemonde infections. It is very important not only to keep Sun Java up to date, but also to remove older versions which have security holes and can be exploited by malware. After installing the latest Sun Java if previous versions still show in "Add/Remove Programs", uninstall them from there. The latest version: Sun Java JRE Version 6 Update 21 Download from: http://www.java.com/en/download/manual.jsp Java Help Center: http://www.java.com/en/download/faq/...7&user_jre=6.0
__________________
UNITE-ASAP Microsoft MVP. Consumer Security 2006-2010 Please help us improve Spybot, download our distributed testing client Last edited by tashi; 2010-08-03 at 18:18. Reason: update |
|
|
|
|
#3 |
|
Member of Team Spybot
Join Date: Oct 2005
Location: USA
Posts: 23,454
Rated LASSHes: 16
|
14 ways to get Infected without trying
A little bit of humour but also based on fact. ![]() 1) Look for cracks, subdivided in illegal software and ..... 2) Practice unsafe hex, browse the web for free pOrn 3) Look for software that adds smileys to your posts, mail etc 4) Look for kewl skins, screensavers etc 5) Look for spyware removers, concentrate on the kind that makes you pay before it removes anything 6) Install a P2P program and repeat all of the above 7) You always want the best; use p2p to download anti-virus/firewall software. 8) Do NOT pay for anything, the internet is a place where you can steal anything from everyone without even saying as much as thank you 9) Don't have/use/update antivirus/security software 10) Look for pokergames, slotmachines and other gambling outfits 11) Look for ringtones and other stuff to bling your phone 12) Click on those unexpected links and attachments in email, because you're curious... 13) Do loan your laptop to the next door neighbour for the weekend and give him your Admin account login so he can get his project done with no hassles 14) Let the Babysitter use your laptop for 'schoolwork' Thanks to Metallica for most of those and CalamityJane, bitman, Lonny, shelf life.
__________________
UNITE-ASAP Microsoft MVP. Consumer Security 2006-2010 Please help us improve Spybot, download our distributed testing client |
|
|
|
|
#4 | |
|
Member of Team Spybot
Join Date: Oct 2005
Location: USA
Posts: 23,454
Rated LASSHes: 16
|
Quote:
Practice safe hex, protect your computer, other netizens and yourself.
__________________
UNITE-ASAP Microsoft MVP. Consumer Security 2006-2010 Please help us improve Spybot, download our distributed testing client |
|
|
|
|
|
#5 |
|
Member of Team Spybot
Join Date: Oct 2005
Location: USA
Posts: 23,454
Rated LASSHes: 16
|
Secunia Online Software Inspector (OSI)
http://secunia.com/vulnerability_scanning/online/ Run the free online software inspector to check if your computer has a minimum security baseline against known patched vulnerabilities.
WOT's safe browsing tool for Internet Explorer or Firefox http://www.mywot.com/ The WOT community has rated millions of websites and while not infallible it is a useful barometer to assist in avoiding sites that host malware, on-line scams and spam. Process Explorer http://technet.microsoft.com/en-us/s.../bb896653.aspx Process Monitor http://technet.microsoft.com/en-us/s.../bb896645.aspx
__________________
UNITE-ASAP Microsoft MVP. Consumer Security 2006-2010 Please help us improve Spybot, download our distributed testing client |
|
|
|
|
#6 |
|
Member of Team Spybot
Join Date: Oct 2005
Location: USA
Posts: 23,454
Rated LASSHes: 16
|
Registry Cleaners, not recommended
USB/thumb/pen/flash drives/removable media - Autorun UPDATED WINDOWS - Your first line of defense, links and tips
__________________
UNITE-ASAP Microsoft MVP. Consumer Security 2006-2010 Please help us improve Spybot, download our distributed testing client Last edited by tashi; 2009-07-18 at 01:57. Reason: Update |
|
|
![]() |
| Thread Tools | |
| Display Modes | |
|
|