Welcome to IT Taleem, please Register or Login
Home   UrduPad   IT Cafe   Urdu Books & Novels   Picture Gallery   Radio and TV    Quran
ITTaleem.com

IT Taleem - Your Knowledge Treasure


Go Back   ITTaleem - Pakistan's Biggest IT Education Forum > Webmasters Cafe > Chit Chat

Notices

Chit Chat Talk / Share / Discuss any thing with respect. Only English

Reply
 
Thread Tools Display Modes
Old 30th January 2008, 10:43 AM   #1
Saahil
Senior Student
 
Saahil's Avatar
 
Join Date: Jan 2008
Posts: 135
Saahil has a spectacular aura aboutSaahil has a spectacular aura about
Points: 7,138, Level: 12
Points: 7,138, Level: 12 Points: 7,138, Level: 12 Points: 7,138, Level: 12
Activity: 0%
Activity: 0% Activity: 0% Activity: 0%
Arrow So how did I get infected in the first place?

So how did I get infected in the first place?


You usually get infected because your security settings are too low.

Here are a number of recommendations to help tighten them, which will hopefully make you a less likely victim:



Safe Computing Practices


1.) Keep your Windows updated!
  • Go to Start > Windows Update or navigate to [Only registered users can see links. Registration is fast and easy.], and install ALL Critical security updates listed (you will need to use Internet Explorer to do this). If you're running Windows XP, that of course includes Service Pack 2 (SP2)!
  • If you suspect your computer is infected with Malware of any type, please do NOT install SP2 yet. Read the [Only registered users can see links. Registration is fast and easy.] and post a HijackThis log in our forums to get help cleaning your machine. Once you are sure you have a clean system, it is highly recommended to install SP2 to help prevent against future infections.
  • It's important always to keep current with the latest security fixes from Microsoft. This can patch many of the security holes through which attackers can infect your computer.
    Please either enable Automatic Updates under Start > Control Panel > Automatic Updates, or get into the habit of checking for Windows updates regularly.
2.) Watch what you download!
  • Many "freeware" programs come with an enormous amount of bundled spyware that will slow down your system, spawn pop-up advertisements, or just plain crash your browser or even Windows itself.
  • Peer-to-peer (P2P) programs like Kazaa, BearShare, Grokster, Imesh, and others are amongst the most notorious. If you insist on using P2P software, please read [Only registered users can see links. Registration is fast and easy.] written by Mike Healan of SpywareInfo. It is an updated and comprehensive article about which P2P programs are "safe" to use. Another good reference is [Only registered users can see links. Registration is fast and easy.].
  • Note also that even if the P2P software you are using is "clean", a large percentage of the files served on the P2P network are likely to be infected. Do not open any files without being certain of what they are!
3.) Avoid questionable web sites!
  • Many disreputable sites will attempt to install malware on your system through "drive-by" exploits just by visiting the site in your browser. Lyrics sites, free software sites (especially ones that target young children), cracked software sites, and pornography sites are some of the worst offenders.
  • Most of these drive-by attempts will be thwarted if you keep your Windows updated and your internet browser secured (see below). Nevertheless, it is very important only to visit web sites that are trustworthy and reputable.
  • In addition, never give out personal information of any sort online. And never click "OK" to a pop-up unless it is signed by a reputable company and you know what it is!
  • For more general information see the first section, "Educate yourself and be smart about where you visit and what you click on", in [Only registered users can see links. Registration is fast and easy.] by Grinler of BleepingComputer.
Must-Have Software

*NOTE*: Please only run one anti-virus program and one firewall on your system. Running more than one of these at a time can cause system crashes and/or conflicts with each other. The rest of the following programs can be run simultaneously and will work together in layers to protect your computer.


4.) Antivirus
  • An Anti-Virus product is a necessity. There are many excellent programs that you can purchase. However, we choose to advocate the use of free programs whenever possible. Some very good and easy-to-use free antivirus programs are [Only registered users can see links. Registration is fast and easy.], [Only registered users can see links. Registration is fast and easy.], and [Only registered users can see links. Registration is fast and easy.]. Please run only one antivirus resident at a time!
  • It's a good idea to set your antivirus to receive automatic updates so you are always as fully protected as possible from the newest threats.
5.) Internet Browser
  • Many malware infections install themselves by exploiting security holes in Microsoft Internet Explorer. It is strongly suggested that you consider using an alternate browser.
  • Both [Only registered users can see links. Registration is fast and easy.] and [Only registered users can see links. Registration is fast and easy.] are next-generation browsers that are more secure and faster than Internet Explorer, immune to most known browser hijackers, and outfitted with built-in pop-up blockers and other useful accessories.
6.) Firewall
  • It is critical that you use a firewall to protect your computer from hackers. We don't recommend the firewall that comes built into Windows. It doesn't block everything that may try to get in, it doesn't block anything at all outbound, and the entire firewall is written to the registry. Since most malware accesses the registry and can disable the Windows firewall, it's preferable to install one of these excellent third party solutions.
  • Two good free ones are [Only registered users can see links. Registration is fast and easy.] and [Only registered users can see links. Registration is fast and easy.]. The trial version of [Only registered users can see links. Registration is fast and easy.] will also work in "free mode" after the trial period expires. Please only use one firewall at a time!
7.) Install Javacool's [Only registered users can see links. Registration is fast and easy.]
  • This excellent program blocks installation of many known malicious ActiveX objects. Run the program, download the latest updates, "Enable All Protection" and you're done. Although it won't protect you from every form of spyware known to man, it is a very potent extra layer of protection.
  • Don't forget to check for updates every week or so. Also see [Only registered users can see links. Registration is fast and easy.] by Grinler.
8.) HOSTS file and IE-SPYAD
  • Another good program is [Only registered users can see links. Registration is fast and easy.]. This little program packs a powerful punch as it blocks ads, banners, 3rd party Cookies, 3rd party page counters, web bugs, and many hijackers.
  • For information on how to download and install, please read [Only registered users can see links. Registration is fast and easy.] by WinHelp2002.
  • [Only registered users can see links. Registration is fast and easy.] puts over 5000 malicious sites in your restricted zone, so you'll be protected when you visit innocent-looking sites that aren't actually innocent at all. See [Only registered users can see links. Registration is fast and easy.] by Grinler.
Other Cleaning / Protection Software

9.) Ad-Aware and Spybot
  • If you do not already have it, [Only registered users can see links. Registration is fast and easy.] is a must-have free scanner. See [Only registered users can see links. Registration is fast and easy.] for instructions on how to configure and run Ad-Aware.
  • [Only registered users can see links. Registration is fast and easy.] is another must-have free scanner. See [Only registered users can see links. Registration is fast and easy.] for instructions on how to run a scan with Spybot.
  • Spybot has an "Immunize" feature which works roughly the same way as SpywareBlaster above.
  • Another feature within Spybot is the TeaTimer option. TeaTimer detects when known malicious processes try to start and terminates them. It also detects when something wants to change critical registry keys and prompts you to allow this or not. See [Only registered users can see links. Registration is fast and easy.] by Grinler for more information.
10.) Ewido Anti-Spyware
  • An outstanding all-purpose anti-malware scanner and cleaner is [Only registered users can see links. Registration is fast and easy.]. Although this is commercial software, the 30-day trial version will continue to work after the trial period expires in "free mode", with automatic updates and real-time protection disabled. See [Only registered users can see links. Registration is fast and easy.] for instructions on how to run a scan with Ewido.
11.) Windows Defender
  • Microsoft now offers their own free malicious software blocking and removal tool, [Only registered users can see links. Registration is fast and easy.] (Not compatible with Windows 98 and ME.) It also features real-time protection.
12.) Lock down ActiveX in Internet Explorer
  • Even if you plan to use an alternate browser, you will have to use Internet Explorer for tasks like updating Windows or visiting any other site that requires ActiveX. Also, since Internet Explorer is integrated into the Windows core, keeping it locked down is very important.

  • Open IE and go to Internet Options > Security > Internet, then press "Default Level", then OK.
    • Now press "Custom Level."
    In the ActiveX section, set the first two options ("Download signed and unsigned ActiveX controls) to "Prompt", and ("Initialize and Script ActiveX controls not marked as safe") to "Disable".
  • Now you will be asked whether you want ActiveX objects to be executed and whether you want software to be installed. Sites that you know for sure are above suspicion can be moved to the Trusted Zone in Internet Option > Security.
  • So why is ActiveX so dangerous that you have to increase the security for it? When your browser runs an ActiveX control, it is running an executable program, no different from double-clicking an exe file on your hard drive. Would you run just any file downloaded off a web site without knowing what it is and what it does?
13.) Finally, after following up on all these recommendations, why not run [Only registered users can see links. Registration is fast and easy.]
They will provide you with an insight on how vulnerable you might still be to a number of common exploits.

Happy safe computing!
Saahil is offline   Reply With Quote
Old 5th May 2008, 01:53 PM   #2
Doctor
Bill Gates Of The Future
 
Doctor's Avatar
 
Join Date: Apr 2008
Qualification: Electrical Engineering
Location: Islamabad
Age: 20
Posts: 2,979
Doctor has much to be proud ofDoctor has much to be proud ofDoctor has much to be proud ofDoctor has much to be proud ofDoctor has much to be proud ofDoctor has much to be proud ofDoctor has much to be proud ofDoctor has much to be proud ofDoctor has much to be proud ofDoctor has much to be proud of
Points: 18,188, Level: 19
Points: 18,188, Level: 19 Points: 18,188, Level: 19 Points: 18,188, Level: 19
Activity: 0%
Activity: 0% Activity: 0% Activity: 0%
Re: So how did I get infected in the first place?

nice sharing!
__________________
Doctor is offline   Reply With Quote
Old 4th June 2008, 03:51 AM   #3
Mohd_Tanzeem
Member
 
Mohd_Tanzeem's Avatar
 
Join Date: Mar 2008
Location: Saudi arabia(riyadh)
Age: 28
Posts: 4,741
Mohd_Tanzeem has a reputation beyond reputeMohd_Tanzeem has a reputation beyond reputeMohd_Tanzeem has a reputation beyond reputeMohd_Tanzeem has a reputation beyond reputeMohd_Tanzeem has a reputation beyond reputeMohd_Tanzeem has a reputation beyond reputeMohd_Tanzeem has a reputation beyond reputeMohd_Tanzeem has a reputation beyond reputeMohd_Tanzeem has a reputation beyond reputeMohd_Tanzeem has a reputation beyond reputeMohd_Tanzeem has a reputation beyond repute
Points: 52,071, Level: 32
Points: 52,071, Level: 32 Points: 52,071, Level: 32 Points: 52,071, Level: 32
Activity: 0%
Activity: 0% Activity: 0% Activity: 0%
Re: So how did I get infected in the first place?

Quote:
Originally Posted by Monarro View Post
So how did I get infected in the first place?


You usually get infected because your security settings are too low.

Here are a number of recommendations to help tighten them, which will hopefully make you a less likely victim:



Safe Computing Practices


1.) Keep your Windows updated!
  • Go to Start > Windows Update or navigate to [Only registered users can see links. Registration is fast and easy.], and install ALL Critical security updates listed (you will need to use Internet Explorer to do this). If you're running Windows XP, that of course includes Service Pack 2 (SP2)!
  • If you suspect your computer is infected with Malware of any type, please do NOT install SP2 yet. Read the [Only registered users can see links. Registration is fast and easy.] and post a HijackThis log in our forums to get help cleaning your machine. Once you are sure you have a clean system, it is highly recommended to install SP2 to help prevent against future infections.
  • It's important always to keep current with the latest security fixes from Microsoft. This can patch many of the security holes through which attackers can infect your computer.
    Please either enable Automatic Updates under Start > Control Panel > Automatic Updates, or get into the habit of checking for Windows updates regularly.
2.) Watch what you download!
  • Many "freeware" programs come with an enormous amount of bundled spyware that will slow down your system, spawn pop-up advertisements, or just plain crash your browser or even Windows itself.
  • Peer-to-peer (P2P) programs like Kazaa, BearShare, Grokster, Imesh, and others are amongst the most notorious. If you insist on using P2P software, please read [Only registered users can see links. Registration is fast and easy.] written by Mike Healan of SpywareInfo. It is an updated and comprehensive article about which P2P programs are "safe" to use. Another good reference is [Only registered users can see links. Registration is fast and easy.].
  • Note also that even if the P2P software you are using is "clean", a large percentage of the files served on the P2P network are likely to be infected. Do not open any files without being certain of what they are!
3.) Avoid questionable web sites!
  • Many disreputable sites will attempt to install malware on your system through "drive-by" exploits just by visiting the site in your browser. Lyrics sites, free software sites (especially ones that target young children), cracked software sites, and pornography sites are some of the worst offenders.
  • Most of these drive-by attempts will be thwarted if you keep your Windows updated and your internet browser secured (see below). Nevertheless, it is very important only to visit web sites that are trustworthy and reputable.
  • In addition, never give out personal information of any sort online. And never click "OK" to a pop-up unless it is signed by a reputable company and you know what it is!
  • For more general information see the first section, "Educate yourself and be smart about where you visit and what you click on", in [Only registered users can see links. Registration is fast and easy.] by Grinler of BleepingComputer.
Must-Have Software

*NOTE*: Please only run one anti-virus program and one firewall on your system. Running more than one of these at a time can cause system crashes and/or conflicts with each other. The rest of the following programs can be run simultaneously and will work together in layers to protect your computer.


4.) Antivirus
  • An Anti-Virus product is a necessity. There are many excellent programs that you can purchase. However, we choose to advocate the use of free programs whenever possible. Some very good and easy-to-use free antivirus programs are [Only registered users can see links. Registration is fast and easy.], [Only registered users can see links. Registration is fast and easy.], and [Only registered users can see links. Registration is fast and easy.]. Please run only one antivirus resident at a time!
  • It's a good idea to set your antivirus to receive automatic updates so you are always as fully protected as possible from the newest threats.
5.) Internet Browser
  • Many malware infections install themselves by exploiting security holes in Microsoft Internet Explorer. It is strongly suggested that you consider using an alternate browser.
  • Both [Only registered users can see links. Registration is fast and easy.] and [Only registered users can see links. Registration is fast and easy.] are next-generation browsers that are more secure and faster than Internet Explorer, immune to most known browser hijackers, and outfitted with built-in pop-up blockers and other useful accessories.
6.) Firewall
  • It is critical that you use a firewall to protect your computer from hackers. We don't recommend the firewall that comes built into Windows. It doesn't block everything that may try to get in, it doesn't block anything at all outbound, and the entire firewall is written to the registry. Since most malware accesses the registry and can disable the Windows firewall, it's preferable to install one of these excellent third party solutions.
  • Two good free ones are [Only registered users can see links. Registration is fast and easy.] and [Only registered users can see links. Registration is fast and easy.]. The trial version of [Only registered users can see links. Registration is fast and easy.] will also work in "free mode" after the trial period expires. Please only use one firewall at a time!
7.) Install Javacool's [Only registered users can see links. Registration is fast and easy.]
  • This excellent program blocks installation of many known malicious ActiveX objects. Run the program, download the latest updates, "Enable All Protection" and you're done. Although it won't protect you from every form of spyware known to man, it is a very potent extra layer of protection.
  • Don't forget to check for updates every week or so. Also see [Only registered users can see links. Registration is fast and easy.] by Grinler.
8.) HOSTS file and IE-SPYAD
  • Another good program is [Only registered users can see links. Registration is fast and easy.]. This little program packs a powerful punch as it blocks ads, banners, 3rd party Cookies, 3rd party page counters, web bugs, and many hijackers.
  • For information on how to download and install, please read [Only registered users can see links. Registration is fast and easy.] by WinHelp2002.
  • [Only registered users can see links. Registration is fast and easy.] puts over 5000 malicious sites in your restricted zone, so you'll be protected when you visit innocent-looking sites that aren't actually innocent at all. See [Only registered users can see links. Registration is fast and easy.] by Grinler.
Other Cleaning / Protection Software

9.) Ad-Aware and Spybot
  • If you do not already have it, [Only registered users can see links. Registration is fast and easy.] is a must-have free scanner. See [Only registered users can see links. Registration is fast and easy.] for instructions on how to configure and run Ad-Aware.
  • [Only registered users can see links. Registration is fast and easy.] is another must-have free scanner. See [Only registered users can see links. Registration is fast and easy.] for instructions on how to run a scan with Spybot.
  • Spybot has an "Immunize" feature which works roughly the same way as SpywareBlaster above.
  • Another feature within Spybot is the TeaTimer option. TeaTimer detects when known malicious processes try to start and terminates them. It also detects when something wants to change critical registry keys and prompts you to allow this or not. See [Only registered users can see links. Registration is fast and easy.] by Grinler for more information.
10.) Ewido Anti-Spyware
  • An outstanding all-purpose anti-malware scanner and cleaner is [Only registered users can see links. Registration is fast and easy.]. Although this is commercial software, the 30-day trial version will continue to work after the trial period expires in "free mode", with automatic updates and real-time protection disabled. See [Only registered users can see links. Registration is fast and easy.] for instructions on how to run a scan with Ewido.
11.) Windows Defender
  • Microsoft now offers their own free malicious software blocking and removal tool, [Only registered users can see links. Registration is fast and easy.] (Not compatible with Windows 98 and ME.) It also features real-time protection.
12.) Lock down ActiveX in Internet Explorer
  • Even if you plan to use an alternate browser, you will have to use Internet Explorer for tasks like updating Windows or visiting any other site that requires ActiveX. Also, since Internet Explorer is integrated into the Windows core, keeping it locked down is very important.

  • Open IE and go to Internet Options > Security > Internet, then press "Default Level", then OK.
    • Now press "Custom Level."
    In the ActiveX section, set the first two options ("Download signed and unsigned ActiveX controls) to "Prompt", and ("Initialize and Script ActiveX controls not marked as safe") to "Disable".
  • Now you will be asked whether you want ActiveX objects to be executed and whether you want software to be installed. Sites that you know for sure are above suspicion can be moved to the Trusted Zone in Internet Option > Security.
  • So why is ActiveX so dangerous that you have to increase the security for it? When your browser runs an ActiveX control, it is running an executable program, no different from double-clicking an exe file on your hard drive. Would you run just any file downloaded off a web site without knowing what it is and what it does?
13.) Finally, after following up on all these recommendations, why not run [Only registered users can see links. Registration is fast and easy.]
They will provide you with an insight on how vulnerable you might still be to a number of common exploits.

Happy safe computing!
very fine share
__________________


Mohd_Tanzeem is offline   Reply With Quote
Old 23rd July 2008, 09:00 PM   #4
Aamir Mushtaq
Student
 
Aamir Mushtaq's Avatar
 
Join Date: Jun 2008
Location: U.A.E.
Posts: 2,589
Aamir Mushtaq is a splendid one to beholdAamir Mushtaq is a splendid one to beholdAamir Mushtaq is a splendid one to beholdAamir Mushtaq is a splendid one to beholdAamir Mushtaq is a splendid one to beholdAamir Mushtaq is a splendid one to beholdAamir Mushtaq is a splendid one to behold
Points: 10,886, Level: 15
Points: 10,886, Level: 15 Points: 10,886, Level: 15 Points: 10,886, Level: 15
Activity: 0%
Activity: 0% Activity: 0% Activity: 0%
Re: So how did I get infected in the first place?

very good
Aamir Mushtaq is offline   Reply With Quote
Reply

Bookmarks

Tags
infected, place


(View-All Members who have read this thread : 20
A.A.Yasir, Aamir Mushtaq, dilllkarishta, Doctor, Imran Baloch, imrannn, jalbani, mani_1, minioo1, Mohd_Tanzeem, nami_711, naveed iqbal, Rizwan Shaukat, Saahil, senators, Shahzad Amin, TANVEER-MEHAR, user55, Zahid Hussain
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump



All times are GMT +6. The time now is 02:05 AM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182