Welcome Guest ( Log In | Click here to Register a free account now! )
Welcome to Bleeping Computer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.| Important Announcement: The winners of the BC Million Post contest have been announced. You can read who the winners are at this post. - BleepingComputer Management |
![]() ![]() |
Aug 7 2008, 04:24 PM
Post
#1
|
|
|
New Member ![]() Group: Members Posts: 2 Joined: 7-August 08 Member No.: 228,325 |
Questions... 1. Is there anything published that outlines a foolproof way to prevent these types of infections? What is the entry point and how can it be secured? 2. Has anything been documented on just where users are catching it? Is it truly a drive-by? Are there known sites that are passing this on and can be tested? Thanks for any known info; we are trying to make our users as protected as possible. ron |
|
|
|
Aug 7 2008, 06:53 PM
Post
#2
|
|
![]() Bleepin Elf ![]() ![]() ![]() ![]() ![]() Group: HJT Team Coach Posts: 821 Joined: 11-November 04 From: Missouri, USA Member No.: 4,912 |
Hello computerworks,
Frankly prevention starts at the user level. No matter how tight you secure the holes, the malware writers will find new ones to go through. If you really want to prevent, you need to educate. I know that's not what you were looking for, but it's the bottom line. Simple steps to keep your computer secure! Antivirus, Antimalware, And Antispyware Resources Suggested Safe Practices How did I get infected? Best Practices - Internet Safety For 2008 And these are just basics. But that's where prevention begins. -------------------- I amar prestar aen. Han mathon ne nen. Han mathon ne chae. A han noston ne 'wilith. - Galadriel
'The world is changed; I can feel it in the water, I can feel it in the earth, I can smell it in the air.' |
|
|
|
Aug 8 2008, 04:03 PM
Post
#3
|
|
|
New Member ![]() Group: Members Posts: 2 Joined: 7-August 08 Member No.: 228,325 |
Thanks...those are all good practices.
I am particularly interested in these Vundo variants and how to conclusively block them. I have seen systems infected by these that are "fully-equipped" with FW, AV and active-monitored Anti-Malware products.... ...and still get penetrated. |
|
|
|
Aug 8 2008, 04:33 PM
Post
#4
|
|
![]() Bleepin Elf ![]() ![]() ![]() ![]() ![]() Group: HJT Team Coach Posts: 821 Joined: 11-November 04 From: Missouri, USA Member No.: 4,912 |
A lot of the Vundo variants infect through Java exploits. A lot of other nasties also use Java as a portal.
Read this in addition to the rest. -------------------- I amar prestar aen. Han mathon ne nen. Han mathon ne chae. A han noston ne 'wilith. - Galadriel
'The world is changed; I can feel it in the water, I can feel it in the earth, I can smell it in the air.' |
|
|
|
Aug 8 2008, 04:47 PM
Post
#5
|
|
![]() Bleepin' Janitor ![]() ![]() ![]() ![]() ![]() ![]() Group: Global Moderator Posts: 13,432 Joined: 9-July 05 From: Virginia, USA Member No.: 26,513 |
You should also tell those you are helping to avoid gaming sites, underground web pages, pirated software sites, and peer-to-peer (P2P) file sharing programs. They are a security risk which can make your computer susceptible to a smörgåsbord of malware infections, remote attacks, exposure of personal information, and identity theft. Many malicious worms and Trojans spread across P2P file sharing networks, gaming and underground sites. Users visiting such pages may see innocuous-looking banner ads containing code which can trigger pop-up ads and Flash ads that install viruses, Trojans and spyware. Ads are a target for hackers because they offer a stealthy way to distribute malware to a wide range of Internet users. The best way to reduce the risk of infection is to avoid these types of web sites and not use any P2P applications.
Read P2P Software User Advisories and Risks of File-Sharing Technology. -------------------- "THE BAD GUYS DON'T NEED A SEARCH WARRANT. ARE YOU PROTECTED?"
Microsoft MVP - Windows Security 2007-2008 ![]() |
|
|
|
![]() ![]() |
| Lo-Fi Version | Time is now: 22nd November 2008 - 03:32 PM |