<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Clark Computer Consulting Port Jervis, NY &#187; Malware</title>
	<atom:link href="http://rootaid.com/category/malware/feed/" rel="self" type="application/rss+xml" />
	<link>http://rootaid.com</link>
	<description>Your Local Computer Guy</description>
	<lastBuildDate>Thu, 29 Jul 2010 22:00:00 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Java and Adobe Flash, oh my!</title>
		<link>http://rootaid.com/2010/06/20/java-and-adobe-flash-oh-my/</link>
		<comments>http://rootaid.com/2010/06/20/java-and-adobe-flash-oh-my/#comments</comments>
		<pubDate>Sun, 20 Jun 2010 13:56:49 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Update]]></category>
		<category><![CDATA[Windows Update]]></category>
		<category><![CDATA[Important]]></category>

		<guid isPermaLink="false">http://rootaid.com/?p=2378</guid>
		<description><![CDATA[With all the talk about Java and Adobe Flash allowing malware into our systems, I figured it might be time to comment. Let&#8217;s start by framing out the discussion to get a better understanding of what&#8217;s actually going on with &#8230; <a href="http://rootaid.com/2010/06/20/java-and-adobe-flash-oh-my/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p><a href="http://java.com/en/download/help/testvm.xml" target="_blank"><img class="alignleft size-full wp-image-2389" title="java" src="http://rootaid.com/wp-content/uploads/2010/06/java.bmp" alt="" width="184" height="136" /></a><a href="http://www.adobe.com/software/flash/about/" target="_blank"><img class="alignright size-full wp-image-2402" title="flash" src="http://rootaid.com/wp-content/uploads/2010/06/flash.png" alt="" width="136" height="127" /></a></p>
<p style="text-align: left;">With all the talk about Java and Adobe Flash allowing malware into our systems, I figured it might be time to comment. Let&#8217;s start by framing out the discussion to get a better understanding of what&#8217;s actually going on with this crazy Internet of ours. The Internet is just like the world around you and it&#8217;s filled with people with good and bad intentions.   Some programs are written to defend you against the bad guys. Some programs are written by the bad guys themselves and meant to cause damage or steal your data. The current latest, greatest, most popular applications are used by both the good and the bad guys. Whenever  an application becomes very popular and the masses flock to it, malicious hackers tend to focus on that application and look for vulnerabilities. Windows is attacked more often than the Mac or Linux mostly because of the shear number of computers running Windows. Unless a Mac or Linux computer is a very high value target, hackers are typically not interested in hacking the computer. Most new web-based attacks are &#8220;drive by&#8221; attacks aimed at  un-patched Windows computers that are missing the latest Windows and third party updates. Some new attacks have the potential to infect or compromise multiple operating systems through common third party applications like Java, Adobe Flash Player and Adobe Reader . So, is there a way to defend against attacks on your Computers? There is currently no perfect solution that will defend against all attacks while you are still connected to the Internet. Can you help prevent an attack against your computer?  Yes, you can do regular updates on your computer and use a current Anti-Malware application.  You need to do your operating system updates and you need to make sure you have all your third party applications up to date. The following links will help update your computer and  defend against the onslaught of creative hackers and sometimes inept programmers that make up our beloved Internet.</p>
<p>Check your version of Java <a href="http://java.com/en/download/help/testvm.xml" target="_blank">http://java.com/en/download/help/testvm.xml</a></p>
<p>Check your version of Adobe Flash <a href="http://www.adobe.com/software/flash/about/" target="_blank">http://www.adobe.com/software/flash/about/</a></p>
<p>Check your Browser Plugins <a href="http://www.mozilla.com/en-US/plugincheck/" target="_blank">http://www.mozilla.com/en-US/plugincheck/</a></p>
<p>Update Checker <a href="http://www.h-online.com/security/services/Scan-Now-885585.html" target="_blank">http://www.h-online.com/security/services/Scan-Now-885585.html</a></p>
<p><a href="http://send.onenetworkdirect.net/z/147456/CD138209/"><img src="http://show.onenetworkdirect.com/digitalriver/147456.gif?e=dxrobmwcxykyhs" border="0" alt="Kaspersky Internet Security 2010, 3 Users, 1 Year" /></a></p>
<p>Before you go, check out some of our other links.</p>
<p>Free Stuff and Great Deals <a href="../deals/" target="_blank">http://rootaid.com/deals/</a></p>
<p>Follow Me on Twitter <a href="http://twitter.com/scccpj" target="_blank">http://twitter.com/scccpj</a></p>
<p>Follow me on Facebook <a href="http://www.facebook.com/home.php?ref=home#/pages/Port-Jervis-NY/Clark-Computer-Consulting/133104913979?ref=ts" target="_blank">http://www.facebook.com/home.php?ref=home#/pages/Port-Jervis-NY/Clark-Computer-Consulting/133104913979?ref=ts</a></p>
<p>Use the following link to get an extra 250MB of storage when  you sign  up for Dropbox.<a href="https://www.getdropbox.com/referrals/NTEyODQxMjE5" target="_blank">https://www.getdropbox.com/referrals/NTEyODQxMjE5</a></p>
<p><a href="http://www.sunbeltsoftware.com/sap/c/?aff_id=68971&amp;p=405&amp;b=405a" target="_blank"><img class="alignleft" style="border: 0pt none;" src="http://www.sunbeltsoftware.com/sap/i/405a.jpg" border="0" alt="VIPRE   Antivirus   Premium" width="75" height="113" /></a></p>
<p>VIPRE Antivirus Premium is high-performance antivirus +  antispyware  software with an integrated firewall. It doesn’t slow down  your PC like  other security products. The press loves it, and it’s  antivirus  certified. Protect your PC from ‘being owned’ by bad guys  with our free  (registered) full-function 30-day trial!</p>
<p>Have a blessed day, be safe <img src='http://rootaid.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
]]></content:encoded>
			<wfw:commentRss>http://rootaid.com/2010/06/20/java-and-adobe-flash-oh-my/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Black Hats Use SEO To Poison Search Results</title>
		<link>http://rootaid.com/2009/05/23/black-hats-use-seo-to-poison-search-results/</link>
		<comments>http://rootaid.com/2009/05/23/black-hats-use-seo-to-poison-search-results/#comments</comments>
		<pubDate>Sat, 23 May 2009 17:42:55 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[Malware]]></category>

		<guid isPermaLink="false">http://rootaid.com/?p=540</guid>
		<description><![CDATA[Black Hat hackers continue to use SEO &#8220;Search Engine Optimization&#8221; to poison search results.  I was recently called over to my wife&#8217;s PC because she clicked a link in a Google search for swine flu.  The Firefox 3 window now &#8230; <a href="http://rootaid.com/2009/05/23/black-hats-use-seo-to-poison-search-results/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft size-full wp-image-626" title="blackhat" src="http://rootaid.com/wp-content/uploads/2009/05/blackhat.jpg" alt="blackhat" width="258" height="258" />Black Hat hackers continue to use <a href="http://en.wikipedia.org/wiki/Search_engine_optimization" target="_blank">SEO</a> &#8220;Search Engine Optimization&#8221; to poison search results.  I was recently called over to my wife&#8217;s PC because she clicked a link in a Google search for swine flu.  The Firefox 3 window now had a warning saying that the site was a &#8220;Reported Attack Site!&#8221;   We clicked the &#8220;Get me out of here!&#8221; link and then I explained SEO and search poisoning to my wife.</p>
<p class="post-title">Black Hat hackers use the latest breaking news or most popular stories to draw users to their malicious links.  Using <a href="http://en.wikipedia.org/wiki/Search_engine_optimization" target="_blank">SEO</a> they have the malicious  link elevated in the search results and then wait for the unsuspecting end user to click the link.   The website will then typically do a drive by install of the latest rouge virus application.</p>
<p class="post-title">OK, so now that you know a little more about the new risks presented by search engine poisoning, should you still search the web?</p>
<p class="post-title">The simple answer is &#8220;yes&#8221;; but  you need to always be cautious.  Make sure you keep your system updated including all your 3rd party applications and always run a current Anti-Virus product with updated signatures.  Never use an old browser to access the web.  I see in my site stats that some of you are still running Internet Explorer 6.  Running an old, insecure browser is a major cause of website borne malware infections.  If you need to run IE6 for some legacy application, you can still install the latest version of Firefox and browse the web with Firefox instead of IE6.</p>
<p class="post-title">Check the following links for more info on search engine poisoning:</p>
<p class="post-title">
<p class="post-title"><a href="http://sunbeltblog.blogspot.com/2009/05/swine-flu-search-poisoning.html" target="_blank">http://sunbeltblog.blogspot.com/2009/05/swine-flu-search-poisoning.html</a> Swine flu search poisoning</p>
<p><a href="http://www.securityfocus.com/brief/701" target="_blank">http://www.securityfocus.com/brief/701</a> <span class="headline">SEO poisoning attacks growing</span><a href="http://securitylabs.websense.com/content/Alerts/3322.aspx" target="_blank"><br />
</a></p>
<p><a href="http://websitehelpers.com/seo/blackhat.html" target="_blank">http://websitehelpers.com/seo/blackhat.html</a> Black Hat SEO<a href="http://news.softpedia.com/news/Google-Video-SEO-Poisoning-103470.shtml" target="_blank"><br />
</a></p>
<p><a href="http://www.avertlabs.com/research/blog/index.php/2009/03/10/democratsorg-blog-spam-contributes-to-google-search-poisoning/" target="_blank">http://www.avertlabs.com/research/blog/index.php/2009/03/10/democratsorg-blog-spam-contributes-to-google-search-poisoning/</a> Democrats.org Blog Spam Contributes to Google Search Poisoning</p>
<p><a href="http://ddanchev.blogspot.com/2008/03/massive-iframe-seo-poisoning-attack.html" target="_blank">http://ddanchev.blogspot.com/2008/03/massive-iframe-seo-poisoning-attack.html</a> Massive IFRAME SEO Poisoning Attack Continuing</p>
<p><strong><strong><strong><strong>Before you go, check out some of our other  links.</strong></strong></strong></strong></p>
<p><strong>Check out our Amazon Mac Store</strong> <strong> </strong> <a href="http://astore.amazon.com/rootaidstore-20?_encoding=UTF8&amp;node=4" target="_blank">Amazon Mac Store</a></p>
<p><strong><strong><strong><strong>Free Stuff and Great Deals <a href="http://rootaid.com/deals/" target="_blank">http://rootaid.com/deals/</a></strong></strong></strong></strong></p>
<p><strong><strong><strong><strong>Follow Me on Twitter <a href="http://twitter.com/scccpj" target="_blank">http://twitter.com/scccpj</a></strong></strong></strong></strong></p>
<p><strong><strong><strong><strong>Follow me on Facebook <a href="http://www.facebook.com/home.php?ref=home#/pages/Port-Jervis-NY/Clark-Computer-Consulting/133104913979?ref=ts" target="_blank">http://www.facebook.com/home.php?ref=home#/pages/Port-Jervis-NY/Clark-Computer-Consulting/133104913979?ref=ts</a></strong></strong></strong></strong></p>
<p><strong><strong><strong><strong>Use the following link to get an extra 250MB  of  storage  when   you sign up for Dropbox. <a href="https://www.getdropbox.com/referrals/NTEyODQxMjE5" target="_blank">https://www.getdropbox.com/referrals/NTEyODQxMjE5</a></strong></strong></strong></strong></p>
<p><strong><strong><strong><strong><a href="http://www.sunbeltsoftware.com/sap/c/?aff_id=68971&amp;p=405&amp;b=405a" target="_blank"><img class="alignleft" style="border: 0pt none;" src="http://www.sunbeltsoftware.com/sap/i/405a.jpg" border="0" alt="VIPRE  Antivirus        Premium" width="75" height="113" /></a></strong></strong></strong></strong></p>
<p><strong><strong><strong><strong>VIPRE Antivirus Premium is high-performance  antivirus  +    antispyware software with an integrated firewall. It  doesn’t slow   down   your PC like other security products. The press  loves it, and   it’s   antivirus certified. Protect your PC from ‘being  owned’ by bad   guys with   our free (registered) full-function 30-day  trial!</strong></strong></strong></strong></p>
<p><!-- Added by WP-DragToShare-eXtended Plugin --></p>
]]></content:encoded>
			<wfw:commentRss>http://rootaid.com/2009/05/23/black-hats-use-seo-to-poison-search-results/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Conficker Removal Tools</title>
		<link>http://rootaid.com/2009/03/31/conficker-removal-tools/</link>
		<comments>http://rootaid.com/2009/03/31/conficker-removal-tools/#comments</comments>
		<pubDate>Tue, 31 Mar 2009 23:10:03 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[AntiMalware]]></category>
		<category><![CDATA[Important]]></category>
		<category><![CDATA[Malware]]></category>

		<guid isPermaLink="false">http://rootaid.com/?p=381</guid>
		<description><![CDATA[Links to my recommended Conficker removal tools. http://www.foundstone.com/us/resources/proddesc/confickerdetectiontool.htm Conficker Detection Tool 1.0.8 http://www.sunbeltsecurity.com/DownLoads.aspx Download the Sunbelt Conficker/Downadup Removal Tool http://download.eset.com/special/EConfickerRemover.exe ESET conficker removal tool http://www.bdtools.net/how-to-remove-downadup.php Remove Downadup (aka Conficker or Kido) http://vil.nai.com/vil/stinger/default.aspx Stinger Conficker removal tool http://www.sophos.com/products/free-tools/conficker-removal-tool.html Sophos Conficker clean-up tools &#8230; <a href="http://rootaid.com/2009/03/31/conficker-removal-tools/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft size-full wp-image-385" title="400px-circle-style-warningsvg1-150x1501" src="http://rootaid.com/wp-content/uploads/2009/03/400px-circle-style-warningsvg1-150x1501.png" alt="400px-circle-style-warningsvg1-150x1501" width="60" height="60" />Links to my recommended Conficker removal tools.</p>
<p><a href="http://www.foundstone.com/us/resources/proddesc/confickerdetectiontool.htm" target="_blank">http://www.foundstone.com/us/resources/proddesc/confickerdetectiontool.htm</a> <span>Conficker Detection Tool 1.0.8</span></p>
<p><a href="http://www.sunbeltsecurity.com/DownLoads.aspx" target="_blank">http://www.sunbeltsecurity.com/DownLoads.aspx</a> Download the Sunbelt Conficker/Downadup Removal Tool</p>
<p><a href="http://download.eset.com/special/EConfickerRemover.exe" target="_blank">http://download.eset.com/special/EConfickerRemover.exe</a> ESET conficker removal tool</p>
<p><a href="http://www.bdtools.net/how-to-remove-downadup.php" target="_blank">http://www.bdtools.net/how-to-remove-downadup.php</a> Remove <a href="http://download.eset.com/special/EConfickerRemover.exe" target="_blank">D</a>ownadup (aka Conficker or Kido)</p>
<p><a href="http://vil.nai.com/vil/stinger/default.aspx" target="_blank">http://vil.nai.com/vil/stinger/default.aspx</a> Stinger Conficker removal tool</p>
<p><a href="http://www.sophos.com/products/free-tools/conficker-removal-tool.html" target="_blank">http://www.sophos.com/products/free-tools/conficker-removal-tool.html</a> Sophos Conficker clean-up tools</p>
<p><a href="http://www.shadowserver.org/wiki/pmwiki.php/Stats/Conficker#toc5" target="_blank">http://www.shadowserver.org/wiki/pmwiki.php/Stats/Conficker#toc5</a> ShadowServer Conficker Remediation and Stats</p>
]]></content:encoded>
			<wfw:commentRss>http://rootaid.com/2009/03/31/conficker-removal-tools/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What is Conficker and are you ready for its April 1st surprise</title>
		<link>http://rootaid.com/2009/03/29/what-is-conficker-and-are-you-ready-for-its-april-1st-surprise/</link>
		<comments>http://rootaid.com/2009/03/29/what-is-conficker-and-are-you-ready-for-its-april-1st-surprise/#comments</comments>
		<pubDate>Mon, 30 Mar 2009 02:21:13 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[AntiMalware]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[Update]]></category>
		<category><![CDATA[Windows Update]]></category>

		<guid isPermaLink="false">http://rootaid.com/?p=331</guid>
		<description><![CDATA[OK so I keep hearing about Conficker and some bad thing that is going to happen on April 1st. What is Conficker anyway? Conficker aka Downadup is one of the many worms that are prevalent on the Internet these days. &#8230; <a href="http://rootaid.com/2009/03/29/what-is-conficker-and-are-you-ready-for-its-april-1st-surprise/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p><a href="http://upload.wikimedia.org/wikipedia/commons/5/53/Conficker.svg" target="_blank"><img class="alignleft size-medium wp-image-339" title="800px-confickersvg" src="http://rootaid.com/wp-content/uploads/2009/03/800px-confickersvg-300x212.png" alt="800px-confickersvg" width="300" height="212" /></a>OK so I keep hearing about Conficker and some bad thing that is going to happen on April 1st. What is Conficker anyway? Conficker aka Downadup is one of the many worms that are prevalent on the Internet these days.</p>
<p>Wikipedia defines a computer worm as&#8230;A self-replicating computer program. It uses a network to send copies of itself to other nodes (computers on the network) and it may do so without any user intervention. Unlike a virus, it does not need to attach itself to an existing program. Worms almost always cause at least some harm to the network, if only by consuming bandwidth, whereas viruses almost always corrupt or modify files on a targeted computer.</p>
<p>OK so is the world going to end on April 1st? Probably not. Is someone in your office going to do something really stupid and say April fools? Probably. Is the entire Internet going to crash and then turn your laptop into a toaster or turn your Mac into a PC? Probably not. Should you actually care about this new nasty worm? Well&#8230;if you have not run your Windows updates and you do not have a currently updated Antivirus program running then yes you need to worry.</p>
<p>There are a few very simple things that you can do that will actually keep your computer clean and safe. Drumroll please&#8230;and the 5 PC safety steps to not get infected are&#8230;.</p>
<p>1.Do your Windows updates. Do not ignore the Windows updates. Take the time off your busy schedule to actually click the annoying yellow shield at the bottom right side of your screen and install the current set of updates. You will find it takes far less time to keep your system updated than it takes to recover your data that has been destroyed by a virus.</p>
<p>2. Update Adobe Flash and Adobe Reader frequently from the Adobe site and not from some web-page that says your Flash player is outdated. Always go to the official website to get the most current version of Flash and frequently check Acrobat for updates by using the update menu in Acrobat.</p>
<p>3. Keep your Internet Security Software updated. If your Personal Computer AV software is expired then uninstall it and install the freely available  <a title="Avira Anti Virus" href="http://www.free-av.com/" target="_blank">Avira Antivirus</a> instead. If your office PC has expired Anti-virus software you really need to get an updated license ASAP. My current favorite Anti-virus is Vipre from Sunbelt <a href="http://rootaid.com/2009/03/19/vipre-antivirus-takes-a-bite-out-of-malware/" target="_blank">http://rootaid.com/2009/03/19/vipre-antivirus-takes-a-bite-out-of-malware/</a></p>
<p>4. Use <a title="Firefox" href="http://www.mozilla.com/" target="_self">Firefox</a> as your main browser instead of Internet Explorer. Only use Internet Explorer on sites that require Internet Explorer.</p>
<p>5. Do not open links or attachments in email. Do not plug your flash drive in someone else&#8217;s computer or let them plug their flash drive into your computer. Flash drives have become the modern floppy disk which was the original way of spreading viruses back in the day. <a href="http://www.eset.eu/press-threatsense-report-february-2009" target="_blank">http://www.eset.eu/press-threatsense-report-february-2009</a></p>
<p>F-Secure has an excellent Q and A on Conficker at the following link.  <a rel="nofollow" href="http://tinyurl.com/cdlqlp" target="_blank">http://tinyurl.com/cdlqlp</a></p>
<p>Using a modern updated AntiMalware product will prevent infection from Conficker and other similar malware. I recommend Vipre Antivirus for home or small-business use. <a href="http://rootaid.com/2009/03/19/vipre-antivirus-takes-a-bite-out-of-malware/" target="_blank">http://rootaid.com/2009/03/19/vipre-antivirus-takes-a-bite-out-of-malware/</a></p>
<p>So before the clock rolls to 12:00 AM on the April 1st  you have some homework to do. Install your windows updates and update Adobe Flash and Adobe Acrobat from the Adobe website <a href="http://www.adobe.com/" target="_blank">http://www.adobe.com/</a>. Make sure you have an updated AntiVirus application running on your computer.</p>
<p>So now it&#8217;s time to go and do your homework. Don&#8217;t be an update slacker&#8230;go already. Update, this means you. Why are you still here.</p>
<p>Have a good day and come back soon for more<a href="http://rootaid.com/" target="_self"> </a><a href="http://rootaid.com/" target="_self">rootaid.com</a> ramblings <img src='http://rootaid.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
]]></content:encoded>
			<wfw:commentRss>http://rootaid.com/2009/03/29/what-is-conficker-and-are-you-ready-for-its-april-1st-surprise/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
