Archive

Archive for January, 2009

How To Tell You’re Infected

January 13th, 2009

Hello Again Readers,

So many people have come to me when I tell them they’re infected and said something like, “Oh, I thought that was normal!” Well I’m here today to tell you some of the signs that you’re infected with some sort of malware. By no means is this a complete list, but I tried to pick out some of the more common ones. If you`d like to discuss this further, feel free to e-mail me and we can talk.

So the first one is that most variations of the Smitfraud infection install something that tells you that you’re infected. The fake antivirus post from Dec 29, 2008 is part of it. Those programs that say you’re infected are the most obvious.

Another obvious sign is when your desktop background changes to something like this:
FakeBackground

BackgroundTakeover

Random shortcut icons like that look like virus or spyware removal programs also get added to your desktop. These icons are actually shortcuts to infected web pages that download more malware so your poor computer gets even more infected.

Tied in with this are random spam messages that pop up when you’re doing nothing. As seen below:

FakeAlert

Please don’t click “Ok” it will only harm your computer. It may look real, but consult a professional.

Another key thing to notice is that when you type in something into your address bar, you end up going somewhere else or instead of the web page you want coming up, you get a search of the words you put in. This is a good indication an infection corrupted your host file. To view or fix this you could find the hidden file in your Windows system folders but it`s a bit of a pain if you don’t know what you’re doing.

An example is let`s say you type in www.hotmail.com. Trend Micro shows an image of a fake Hotmail page:

fakehotmail

It’s a bit blurred but if you look carefully the page in the address bar is no longer “http://login.live.com/login.srf?wa=wsignin1.0&rpsnv=10&ct=1231879587&rver=5.5.4177.0&wp=MBI&wreply=http:%2F%2Fmail.live.com%2Fdefault.aspx%3Fn%3D1568145402&id=64855″ but instead something totally unrelated. Most people don`t even check to ensure that the address in the address bar is the same one they typed in once the page loads. Let this be a lesson to you, DOUBLE CHECK!

My next question to you is, if you look in the region of your address bar up at the top of this window, do you have a bunch of toolbars there? If so, uninstall them. If you can’t uninstall them, it’s an infection. Plain and simple. Also, when you’re installing software and it asks you to install something totally unrelated like the “Ask toolbar”, uncheck the box! They get annoying, take up a lot of space and memory, and are just plain useless. A common one that has been getting installed on users computers is called “Mirar” (Seen below) as described by Symantec, this toolbar needs to be manually installed and is a pain to remove.

mirartoolbar

Finally, a topic of consideration is when you think to yourself “Oh boy is my computer running slow!” This is a good indication that you have something else lurking in the background. Also, most computers have a little LED light on the front of the case that show when the hard drive is in use. If you`re not doing anything and that LED is going nuts, there`s a good chance something is going on in the background you can`t see.

So be safe, have a good antivirus program running, and remember to practice your safe surfing tips!

  • Share/Bookmark

malware , , , , , , , , ,

Jan 1 – Safe Surfing Tips

January 1st, 2009

Hello readers!

Happy 2009! I get a lot of questions about these “safe surfing” practices I often refer to. Therefore I thought I’d start off the new year with the following article explaining what exactly I’m talking about. I’m going to assume that most people are using a version of a Microsoft’s Windows operating system for the majority of these, however when there is something that applies to other operating systems, I’ll be sure to mention it.

Safe Surfing Tip #1: Applies to Apple and Microsoft
Always buy your operating system!

The first and foremost reason for this is that companies like Microsoft and Apple constantly provide software updates and patches that are vital to your protection as a user of their software. These major companies put lots of money into taking care of their customers. It may not always seem like it, but they do. Everytime there is a loophole, the programmers are hard at work to fix it. If you choose to use a cracked version, you are A: (In most countries) Doing something illegal and B: Are missing out on critical updates to prevent malware and other types of attacks.

Safe Surfing Tip #2: (Applies mainly to Microsoft products, but more and more to Apple as well)
Always buy and regularly update your antivirus software!

Same sort of theory applies to this tip. If you don’t buy the software and use a cracked version or nothing at all, you are subjected to not having the updates and proper proactive protection needed when surfing the internet.

Also, choose one program and stick with that. No need for more. They just get in each other’s way. I’m not going to recommend one over the other, there have been many comparisons that can be found online if you’re willing to do the research.

Safe Surfing Tip #3: (Applies to all users of antivirus software)
Just because you have antivirus software, doesn’t mean you won’t get infected.

The first statement I get when someone comes to me with a virus issue is “but I have antivirus software!”

The main reasons that the virus got through the protection are as follows:
1) You disabled it
2) The “allow” button was clicked one-too many times
3) You allowed some program like Limewire through to download illegal music and downloaded something you thought was music, but was really a virus!

Well either those or you got tricked into opening a “male enhancement” attatchment because it was sent by a spoofed address that you thought was someone you knew.

Safe Surfing Tip #4: (Applies to everyone)
If you should be paying for something but you’re not, there’s always a chance you’re not getting what you expect.

This applies for many things, the main one being those users of torrents and P2P sharing programs. Like I mentioned in my little Limewire rant above, often files thrown into the mix of mp3s are malicious files that are mistakenly downloaded onto the system and run, thus hitting your system pretty hard with a wide variety of infections. This applies even more with software programs and keygens. Countless times I’ll check the browsing history of an infected computer and I’ll see search history for a keygen.

I’ll also mention one thing here I really can’t stand and that is people searching for pornography. In both real life and the virtual world, it’s a great way to catch a little more than a cold. I’ll leave it at that.

Safe Surfing Tip #5: (Applies to All)
When in doubt, don’t do it.

This is a common tip you hear in all walks of life. Unless you’ve got some neuropsychological issues, instinct is your friend. That gut feeling you get when you’re going somewhere you’re not supposed to be is telling you something. Listen to it.

These are just a few of the ways to stay safe when browsing the internet. Remember common sense is a lost art. Learn to use it!

  • Share/Bookmark

General , , , , , , , , , , , , ,