Re: I am absolutely STUNNED, thanks to the NG Experts I've discovered a major security hole.

From: Steve Shattuck (steve_at_shattuck.net)
Date: 01/12/05


Date: Tue, 11 Jan 2005 22:29:13 -0500


> I'm STUNNED and SHOCKED.

A little reading before this could have prevented that.

> I previously thought I am "FINE" with regards to security issues. I have
> AVG allways fully maintained and believed I was invulnerable to attack, I
> used spybot and adaware and windows xp firewall.

Anyone that's one the Internet for any amount of time, especially those with
broadband always-on connections, should understand that viruses and spyware
are but two of many exposures. Backdoors, which can get installed on your
system, appear to be pre-approved since they operate from within, and this
necessitates a good firewallt that protects both in-bound and out-bound
threats. In fact, we often welcome these programs with open arms by
installing things like Kaaza, Real Audio and many others.

> Since comming to the group, I have now installed zone alarm and sygate,
> this lead me to find out some strange activity which upon further
> investigation lead me to take advise to install online virus scans.

Well, I would want to run both as the operation of two software firewalls
probably negates of one or the other since they use real-time hooks into the
OS. In fact I would argue that one software and one hardware firewall are
the recommended level of protection, not one or the other. Once the
firewalls are configured, go to www.grc.com and run ShieldsUp to test your
setup.

> Frankly I thought it was a bit pointless as I knew I already had got the
> best antivirus definitions from AVG antivirus which is world renowned and
> its free and easy to update every single day. However, I followed the
> advice of the experts here such as Vagabond software and the other
> regulars and low and behold I am amazed that I have found more than one
> virus on my system.

Are you absolutely sure they are viruses or that they were actually on your
system? Using an on-line virus checker from some companies is just an
excuse to sell you a security product you don't need. In fact, the biggest
abuser just this week agreed to stop alerting people to a security problem
that doesn't exist to sell their software, and is facing jail time for
fraud. Second of all, Backdoors, BHO's, Malware, trojans, etc. go way
beyond the protection of any virus checker.

> Just to show that you can be lulled into a false sense of security. At
> least I now know I have got a problem now I need to work out how to remove
> it.

Yes, and you must also remember to update all these programs frequently and
run them frequently. Think about adding MS's new spyware beta, BHODemon and
run HijackThis at least once to see the magnatude of you systems exposure.

-- 
.__
(__
__ )teve       www.steve.shattuck.net    steve@shattuck.net 


Relevant Pages


Loading