Viruses, Spyware, Malware. What do all these have in common? They all wreck havoc on a computer or worse your network. The most important thing is protection from these infections.
I am going to go over 3 software products M86Security, Malwarebytes, and Spywareblaster. I use all three in the field and all three work very well in preventing and securing your PC from infections.
M86Security
M86Security is great product that works with Internet Explorer, Firefox (Firefox 3.x and 4.0), and Google Chrome (Version 10). There is not much to configure on this product. In fact there are only 3 options after you install this product.
Show unsafe/red URLs only
Allow access to unchecked URLs
Add check icons to Email
By default the last two are checked in the box above but I normally check the top option "Show unsafe/red URLs only" This will just flag the bad links so it doesn't fill your web page full of green check marks. Check out the screen shots the website.
Malwarebytes
Malwarebytes by far is much better than Spybot will ever be. Some people swear by Spybot but I have came to the conclusion that Malwarebytes does a far better and more thorough job. Malwarebytes seems to find things that Spybot can't. Screen shots of Malwarebytes are on the website.
The free version does not have the ability to auto update and schedule a scan. Nor does it have the ability to run in memory. But the cost to enable this functionality and upgrade to the PRO version is worth every penny at 25 bucks with no subscription requirement.
Spywareblaster
Javacool Software's Spywareblaster is one of the most clever and simple products ever designed. It not only works on all the major web browsers but it will prevent you from going to those sites that are infected with spyware. The free version does not have the ability to update automatically but works just fine if you remember to update it at least once per week. But should you desire to purchase the autoupdate feature you can get a yearly subscription for 10 bucks a year. There is a network version of this product as well for a reasonable cost if you use it fore a business. This software product will prevent you from getting most spyware, adware and browser highjacks.
The importance of PC security should never be overlooked and taken for granted. Taking shortcuts will get you in to trouble really quick, especially in this day and age where information is vital and those that have the most information wins.
With Blue Springs computer repair True Technologies is an important part to securing your PC's both business and private. Malware, spyware and virus protection is vital for protecting your PC and vital information.
Imagine your closest friend standing next to you. Now imagine your closest friend betraying all of your secrets. And making a handsome profit whilst doing so. Now picture your smartphone inside your handbag or pocket. Picture your smartphone sending your passwords, banking information, e-mails, and private information to some stranger. And picture that stranger making a handsome profit. That is mobile malware.
What is mobile malware, really?
In more technical terms, mobile malware is the spread of malicious software (hence "mal-ware") among wireless devices. Mobile Malware is unpleasant stuff. It could compromise the information on a mobile device, and there have even been cases of compromised devices used to pull information from Personal computers (hijacking USB synchronization). Mobile malware is yet another growing fraud category which involves infecting mobile devices with viruses and Trojan horses that may force a mobile phone to do unauthorized activities,like making phone calls and deleting or stealing information.
Once installed on a device, mobile malware replicates itself and performs undesired activities, such as using network services like SMS or voice to make calls to PRS numbers or to subscribe to unwanted billing schemes; data theft, where the user's personal phone records such as contact lists and account details are stolen, sent to a third-party, and erased on the handset; and launching distributed DoS attacks intent on forcing a legitimate service to fail.
Not only is mobile malware a threat to individuals, it is also a huge security risk to businesses. It has the potential to commandeer a corrupted smartphone and use it as a proxy or gateway into an organization's central network. By commandeering a handheld device, cyber criminals can waltz past a standard firewall program and make their way onto a company's email server, client database, Customer relationship management tools, and other essential parts of the network. Damage of this magnitude can grow from something very small, such as a member of staff getting a message to download a free game or software update.
Mobile Malware is rapidly increasing
Mobile malware is on the rise for several reasons and it is following the Law of Computer Virus Evolution:
The Law of Computer Virus Evolution
In order for malicious programs targeting a particular operating system or platform to emerge, three conditions need to be fulfilled:
1. The platform must be popular
2. There must be well-documented development tools
3. The presence of vulnerabilities or coding errors
The widespread adoption of 3G (and soon 4G) and Wi-Fi connectivity and huge hard drives are other factors contributing to the increase of mobile malware infection. In fact, malware activity in 2010 increased 46 per cent over 2009.
The good news is that practically all mobile malware threats call for some type of effort on the part of the user. Malware can't magically appear on your phone. It usually happens after a user downloads a malicious app and the recent DroidDream incident reveals that mobile malware is more advanced than ever before.
How to stop mobile malware and protect yourself
Keeping a close eye on the app stores is a must, as Google proved. Google banished about 50 free applications from its app store immediately after it was found out that the titles hid a Trojan horse designed to steal users' information. The applications, which included pirated and copycat versions of legitimate Android titles, had been downloaded tens of thousands of times before Google took corrective action.
The best way to protect your mobile device (and yourself) is to take a layered approach to mobile security. Before you download that shiny new app, look at its permissions. An app shouldn't receive more permissions that what it needs. For example, a simple notepad app shouldn't need unrestricted access to the internet. Also, don't download apps from unauthorized or illegitimate app stores.
The second layer should be a very good antivirus app on your phone, and the third layer should be a firewall. If you choose wisely, the second and third security layers can be found wrapped up in a mobile security app.
How to choose an effective mobile security app
An typical mobile security solution will have capabilities that assist in operating the program and efficiently protecting the device. A very good mobile security application will include things like antivirus, antispam and firewall protection with realtime security. An exceptional mobile security application will have all of the preceding, as well as sms protection, remote wipe (in case your smartphone is stolen), and gps location (again, in case your smartphone is stolen).
What is the best mobile security app?
Ask ten experts and you'll get ten different answers. This question is almost as hotly debated as "what's the best antivirus software for my computer?" In order to narrow down my choices, I used the criteria mentioned above to come up with a list of mobile security applications. As you can see, many of the desktop giants of antivirus software have developed mobile versions of their software. The list isn't comprehensive, but it will give you a good starting point.
AVG
AVG Mobile Security is specifically available for Android. It comes with anti-virus and SMS anti-spam features that give protection to your mobile against all unwanted messages and advertising. Price: $9.99
ESET
ESET Mobile Security brings a new level of protection to Symbian and Windows Mobile smartphones, so you can be confident in the safety of your device -- even if you lose it. Price: Free for thirty days.
Dr. Web
Dr Web Mobile Security Suite is an anti-virus security solution for Android, Symbian OS, and Windows Mobile. However, they aren't sold separately and are bundled with Dr. Web products for workstations.
Lookout
Lookout mobile security is also a multi-platform mobile device software that has a user-friendly, simple and in-depth virus scanning abilities. Lookout Mobile Security is currently available on Android, Blackberry and Windows Mobile.
Price: Free, with a Premium version at $29.99/yr.
F-Secure
F-Secure Mobile Security allows smartphone users to experience the full potential of their devices without the fear of mobile threats. F-Secure Mobile Security automatically retrieves the newest updates whenever any data connection is used. An additional SMS update mechanism patented by F-Secure ensures that critical malware fingerprints are received even when a data connection is not available.
Price: Subscriptions begin at $3.31/month (approximately).
Kaspersky
Kaspersky Mobile Security is currently available on Microsoft Windows Mobile 5.0, 6.0, 6.1, 6.5 and Symbian OS (Nokia smartphones only).
Price: $29.95/unit/yr.
BullGuard
BullGuard Mobile Security is one of the better mobile security applications. It is one of the very few that supports all major mobile OSes like Android, Blackberry, Symbian and Windows Mobile.
Price: $29.99/license/yr
Mobile malware is a scary thought, and the problem is likely to get worse, especially since smartphone adoption is skyrocketing. Using the tips and advice in this article you can protect yourself (and your personal information) against the rising tide of mobile malware.
John Wright is a Computer Consultant who has been successfully removing malware from personal and business computers for several years. Visit http://www.johnscomputerconsulting.com to ask questions and learn more.
Imagine your closest friend standing next to you. Now imagine your closest friend betraying all of your secrets. And making a handsome profit whilst doing so. Now picture your smartphone inside your handbag or pocket. Picture your smartphone sending your passwords, banking information, e-mails, and private information to some stranger. And picture that stranger making a handsome profit. That is mobile malware.
What is mobile malware, really?
In more technical terms, mobile malware is the spread of malicious software (hence "mal-ware") among wireless devices. Mobile Malware is unpleasant stuff. It could compromise the information on a mobile device, and there have even been cases of compromised devices used to pull information from Personal computers (hijacking USB synchronization). Mobile malware is yet another growing fraud category which involves infecting mobile devices with viruses and Trojan horses that may force a mobile phone to do unauthorized activities,like making phone calls and deleting or stealing information.
Once installed on a device, mobile malware replicates itself and performs undesired activities, such as using network services like SMS or voice to make calls to PRS numbers or to subscribe to unwanted billing schemes; data theft, where the user's personal phone records such as contact lists and account details are stolen, sent to a third-party, and erased on the handset; and launching distributed DoS attacks intent on forcing a legitimate service to fail.
Not only is mobile malware a threat to individuals, it is also a huge security risk to businesses. It has the potential to commandeer a corrupted smartphone and use it as a proxy or gateway into an organization's central network. By commandeering a handheld device, cyber criminals can waltz past a standard firewall program and make their way onto a company's email server, client database, Customer relationship management tools, and other essential parts of the network. Damage of this magnitude can grow from something very small, such as a member of staff getting a message to download a free game or software update.
Mobile Malware is rapidly increasing
Mobile malware is on the rise for several reasons and it is following the Law of Computer Virus Evolution:
The Law of Computer Virus Evolution
In order for malicious programs targeting a particular operating system or platform to emerge, three conditions need to be fulfilled:
1. The platform must be popular
2. There must be well-documented development tools
3. The presence of vulnerabilities or coding errors
The widespread adoption of 3G (and soon 4G) and Wi-Fi connectivity and huge hard drives are other factors contributing to the increase of mobile malware infection. In fact, malware activity in 2010 increased 46 per cent over 2009.
The good news is that practically all mobile malware threats call for some type of effort on the part of the user. Malware can't magically appear on your phone. It usually happens after a user downloads a malicious app and the recent DroidDream incident reveals that mobile malware is more advanced than ever before.
How to stop mobile malware and protect yourself
Keeping a close eye on the app stores is a must, as Google proved. Google banished about 50 free applications from its app store immediately after it was found out that the titles hid a Trojan horse designed to steal users' information. The applications, which included pirated and copycat versions of legitimate Android titles, had been downloaded tens of thousands of times before Google took corrective action.
The best way to protect your mobile device (and yourself) is to take a layered approach to mobile security. Before you download that shiny new app, look at its permissions. An app shouldn't receive more permissions that what it needs. For example, a simple notepad app shouldn't need unrestricted access to the internet. Also, don't download apps from unauthorized or illegitimate app stores.
The second layer should be a very good antivirus app on your phone, and the third layer should be a firewall. If you choose wisely, the second and third security layers can be found wrapped up in a mobile security app.
How to choose an effective mobile security app
An typical mobile security solution will have capabilities that assist in operating the program and efficiently protecting the device. A very good mobile security application will include things like antivirus, antispam and firewall protection with realtime security. An exceptional mobile security application will have all of the preceding, as well as sms protection, remote wipe (in case your smartphone is stolen), and gps location (again, in case your smartphone is stolen).
What is the best mobile security app?
Ask ten experts and you'll get ten different answers. This question is almost as hotly debated as "what's the best antivirus software for my computer?" In order to narrow down my choices, I used the criteria mentioned above to come up with a list of mobile security applications. As you can see, many of the desktop giants of antivirus software have developed mobile versions of their software. The list isn't comprehensive, but it will give you a good starting point.
AVG
AVG Mobile Security is specifically available for Android. It comes with anti-virus and SMS anti-spam features that give protection to your mobile against all unwanted messages and advertising. Price: $9.99
ESET
ESET Mobile Security brings a new level of protection to Symbian and Windows Mobile smartphones, so you can be confident in the safety of your device -- even if you lose it. Price: Free for thirty days.
Dr. Web
Dr Web Mobile Security Suite is an anti-virus security solution for Android, Symbian OS, and Windows Mobile. However, they aren't sold separately and are bundled with Dr. Web products for workstations.
Lookout
Lookout mobile security is also a multi-platform mobile device software that has a user-friendly, simple and in-depth virus scanning abilities. Lookout Mobile Security is currently available on Android, Blackberry and Windows Mobile.
Price: Free, with a Premium version at $29.99/yr.
F-Secure
F-Secure Mobile Security allows smartphone users to experience the full potential of their devices without the fear of mobile threats. F-Secure Mobile Security automatically retrieves the newest updates whenever any data connection is used. An additional SMS update mechanism patented by F-Secure ensures that critical malware fingerprints are received even when a data connection is not available.
Price: Subscriptions begin at $3.31/month (approximately).
Kaspersky
Kaspersky Mobile Security is currently available on Microsoft Windows Mobile 5.0, 6.0, 6.1, 6.5 and Symbian OS (Nokia smartphones only).
Price: $29.95/unit/yr.
BullGuard
BullGuard Mobile Security is one of the better mobile security applications. It is one of the very few that supports all major mobile OSes like Android, Blackberry, Symbian and Windows Mobile.
Price: $29.99/license/yr
Mobile malware is a scary thought, and the problem is likely to get worse, especially since smartphone adoption is skyrocketing. Using the tips and advice in this article you can protect yourself (and your personal information) against the rising tide of mobile malware.
John Wright is a Computer Consultant who has been successfully removing malware from personal and business computers for several years. Visit http://www.johnscomputerconsulting.com to ask questions and learn more.
Titanium strength technology is a must for combating malware, malicious software that is hostile, intrusive, or annoying program code designed to infiltrate your computer system without your consent. It includes computer viruses, spyware, Trojan horses, worms, adware, rootkits, botnets, crimeware, and other unwanted software.
The US Federal Deposit Insurance Corporation says that malware involves organized Internet crime. In 2009, businesses lost $120 million in the third quarter to phishing and Trojan-based online banking scams. $25 million was lost by small businesses. Basically a cyber-criminal's objective is to make money from invading computers. There are less computer viruses or worms but we are seeing more phishing attacks and spam numbers are exploding with organized crime and more pieces of malware.
Although tracking browsing habits and advertising are part of the crimes, primarily these are targeted attacks that use computer systems for criminal activities. Anti-virus software has been retired in lieu of more savvy in-the-cloud technology geared to automatically stop viruses and spyware for complete Internet security.
In an annual report of the FBI-backed Internet Crime Complaint Center, Internet crime loss complaints in the United States have almost doubled in value from $265 million in 2008 to $560 million in 2009. The total dollar loss from all referred cases was $559.7 million with a median dollar loss of $575. At 65.4 percent, the U.S ranked highest for the number of perpetrators. These statistics are why Internet security and safety is critical today. The Center also reported that the unit handled 336,655 complaints in 2009.
The challenge is that malware works fast in stealth mode, and data-stealing malware can cause damage via one click which can compromise a company's reputation or personal confidential data.
Here are some basic guidelines for safe computing online:
1.) Always install Microsoft's critical updates - the monthly software updates designed to patch security vulnerabilities and threats. It is critical to install monthly updates from Microsoft.
2.) Make sure you have installed anti-virus/spyware/malware protection. Watch for cloud technology to automatically stop viruses and spyware before they reach your computer.
3.) Add a Firewall to block a hacker's attempts to access your computer. Windows XP, Windows Vista and Windows 7 all have firewalls which block and filter Internet traffic so harmful programs like viruses and spyware don't have access.
4.) Install Opera,Firefox, or Chrome as a second browser because most spyware and viruses target Internet Explorer. Often a virus is designed to keep Internet Explorer from accessing the Internet when a computer becomes infected with spyware.
5.) Always disable Java Script - viruses and spyware are using Java script to launch attacks so you should disable or at least change the browser setting to ask before running Java script.
6.) Do not ever open email attachments from someone you don't know - as it is a fact that most all viruses infect computers through email attachments. One should click on the attachment and delete the email immediately whenever you get an email from someone you do not know.
7.) Do not install programs off the Internet. The Internet is full of websites designed to trick you into downloading spyware and viruses. When you see random pop-ups from an Internet site asking you to install something, especially a ".exe" file - just say no.
8.) Don't forget to back up all your critical data - bills, banking or tax information, school work, email or other critical information on your computer. Create a weekly backup by using an external hard drive, a flash drive or subscribe to one of the many online backup services.
Traditional content security solutions are simply not fast enough to keep pace with the thousands of new attacks being created on an hourly, basis. But there are exciting new technologies that can assist consumers and enterprises alike in fighting the war against cybercrime.
Kristin Gabriel is a marketing professional working with Trend Micro Titanium Internet Security for Netbooks which uses cloud technology to automatically stop viruses and spyware before they reach your computer. Real-time updates keep PCs protected from the latest online threats. Using less than half the disk space and memory of traditional security products, Titanium is light on system resources so computers run faster. Visit: http:/www.trendmicro.com.
Titanium strength technology is a must for combating malware, malicious software that is hostile, intrusive, or annoying program code designed to infiltrate your computer system without your consent. It includes computer viruses, spyware, Trojan horses, worms, adware, rootkits, botnets, crimeware, and other unwanted software.
The US Federal Deposit Insurance Corporation says that malware involves organized Internet crime. In 2009, businesses lost $120 million in the third quarter to phishing and Trojan-based online banking scams. $25 million was lost by small businesses. Basically a cyber-criminal's objective is to make money from invading computers. There are less computer viruses or worms but we are seeing more phishing attacks and spam numbers are exploding with organized crime and more pieces of malware.
Although tracking browsing habits and advertising are part of the crimes, primarily these are targeted attacks that use computer systems for criminal activities. Anti-virus software has been retired in lieu of more savvy in-the-cloud technology geared to automatically stop viruses and spyware for complete Internet security.
In an annual report of the FBI-backed Internet Crime Complaint Center, Internet crime loss complaints in the United States have almost doubled in value from $265 million in 2008 to $560 million in 2009. The total dollar loss from all referred cases was $559.7 million with a median dollar loss of $575. At 65.4 percent, the U.S ranked highest for the number of perpetrators. These statistics are why Internet security and safety is critical today. The Center also reported that the unit handled 336,655 complaints in 2009.
The challenge is that malware works fast in stealth mode, and data-stealing malware can cause damage via one click which can compromise a company's reputation or personal confidential data.
Here are some basic guidelines for safe computing online:
1.) Always install Microsoft's critical updates - the monthly software updates designed to patch security vulnerabilities and threats. It is critical to install monthly updates from Microsoft.
2.) Make sure you have installed anti-virus/spyware/malware protection. Watch for cloud technology to automatically stop viruses and spyware before they reach your computer.
3.) Add a Firewall to block a hacker's attempts to access your computer. Windows XP, Windows Vista and Windows 7 all have firewalls which block and filter Internet traffic so harmful programs like viruses and spyware don't have access.
4.) Install Opera,Firefox, or Chrome as a second browser because most spyware and viruses target Internet Explorer. Often a virus is designed to keep Internet Explorer from accessing the Internet when a computer becomes infected with spyware.
5.) Always disable Java Script - viruses and spyware are using Java script to launch attacks so you should disable or at least change the browser setting to ask before running Java script.
6.) Do not ever open email attachments from someone you don't know - as it is a fact that most all viruses infect computers through email attachments. One should click on the attachment and delete the email immediately whenever you get an email from someone you do not know.
7.) Do not install programs off the Internet. The Internet is full of websites designed to trick you into downloading spyware and viruses. When you see random pop-ups from an Internet site asking you to install something, especially a ".exe" file - just say no.
8.) Don't forget to back up all your critical data - bills, banking or tax information, school work, email or other critical information on your computer. Create a weekly backup by using an external hard drive, a flash drive or subscribe to one of the many online backup services.
Traditional content security solutions are simply not fast enough to keep pace with the thousands of new attacks being created on an hourly, basis. But there are exciting new technologies that can assist consumers and enterprises alike in fighting the war against cybercrime.
Kristin Gabriel is a marketing professional working with Trend Micro Titanium Internet Security for Netbooks which uses cloud technology to automatically stop viruses and spyware before they reach your computer. Real-time updates keep PCs protected from the latest online threats. Using less than half the disk space and memory of traditional security products, Titanium is light on system resources so computers run faster. Visit: http:/www.trendmicro.com.
Before we start, I would like to explain a couple of terms to users not familiar with DDoS attacks and botnets. A botnet is a network of software robots controlled remotely by crackers. A software robot in this specific case is a compromised computer (also called a "zombie computer"), infected with specific malware types like Trojan horses and worms. In other words, a botnet is a collection of compromised or "zombie" computers. I am not going into the details of a DDoS attack, but it is basically when a botnet sends thousands, even millions, of communication requests to a web server. This results in a bottleneck of incoming traffic, causing the server to crash, or making it so slow that it cannot serve the website to normal visitors anymore. An attack from a big botnet will therefore have a much larger impact on a web server than an attack from a smaller one. Okay, now that we have the jargon out of the way, lets delve deeper into the impact of malware infections on the Internet as a whole, but also for the individual Internet user.
The Internet is often referred to as the information superhighway. Off course the Internet as we know it today, is much more than just an information superhighway, the Internet has become a digital world where many offline tasks can be done online as well. You can work, play, recruit, date, shop, chat, watch TV, listen radio and do many other things online. But for the sake of this article I will stick to the term information superhighway, because the rules of the road is perfect for what I want to illustrate. According to Wikipedia, it is estimated that up to one quarter of all personal computers connected to the Internet, are part of a botnet. This estimate is not that hard to believe, I will even go so far to say that this figure may even be bigger than a quarter of the Internet's population, especially if you take into account the rate at which malware infections spread through the Internet. Ignorance plays a big role in malware infections, but don't leave negligence out of the equation. If it only stopped at ignorance and negligence, large and influential companies are able to address the problem, but they are unwilling to sacrifice profit for the safety of other Internet users.
Internet Service Providers are in pole position to address the increasing threat of malware infections, the one thing that's making botnets grow larger and larger by the day. Unfortunately they are only interested in making money instead of providing a safe and quality service to their loyal and honest customers. No they would rather keep the clients distributing malware, sending out spam or taking part in Denial of Service attacks, because it means loss of revenue for them if they decide to suspend the services or terminate the accounts of these clients. Most ISPs will state in their Terms of Service that they do not tolerate this kind of behaviour, but it is only done to make them look great on paper, they seldom enforce these terms. John Masters, anti-spam activist and a dedicated supporter of Cyber Top Cops, sent me an e-mail the other day, suggesting that we should roll out penalties against people who use unprotected computers connected to the Internet. Although I realise the difficulty of getting something like this into place, I personally think it is a great idea and I wholeheartedly agree, but before we start to punish the user, start with the ISP for not taking action against the user.
It makes a lot of sense to fine people who use unprotected computers on the Internet. This is why I referred to the information superhighway earlier in this article. The Internet can be compared to a real highway, where several road safety rules apply. Driving on a highway with a vehicle that's not roadworthy does not only put your own safety at risk, but also the safety of other road users. If a traffic officer pulls you off the road and find that your vehicle is not roadworthy, you will most probably receive a fine (unless you bribe the traffic officer). If you continue to drive like this you may end up with a suspended driver's licence. The same principle applies to computer security. If you use an unprotected computer on the Internet you're not only putting your own safety at risk, but the safety of other Internet users as well. If your ISP becomes aware of the fact that you're connecting to the Internet without appropriate, up to date anti-malware software installed on your computer, you are supposed to be fined for putting the safety of all other Internet users at risk. They should suspend your services if you continue to connect to the Internet with an unprotected computer.
Your computer may be distributing malware, spam, phishing e-mails or advance fee fraud scams. It may even be used in Denial of Service attacks. So you end up becoming an accomplice in Internet crime. You unknowingly become a spammer, a scammer or a malware distributor. By using an unprotected computer you contribute to cyber crime instead of fighting it. That's not all, the malware may be monitoring your keystrokes, capturing everything you type, stealing passwords, e-mail addresses, account numbers, social security numbers, credit card numbers, names, telephone numbers, physical addresses... can you see where I'm going with this? These programs are able to compile a complete profile about yourself, this information is then transmitted back to the operator of the malware, who may use it to commit fraud in your name, in other words steal your identity. The perpetrator may even clean out your bank account, open credit cards or take out loans in your name and guess who is going to receive the bills at the end of the month, you!
What are the practical implications of implementing a penalty system for reckless Internet users? First of all, the ISP needs to have solid evidence, proving that the guilty party was really using an unprotected computer. Secondly, if the user had anti-malware software installed on his/her computer, they need to prove that the software was outdated. Finally, if the user had up to date anti-malware software installed, they need to prove that the software was not appropriate for preventing malware infections. This means that anti-malware software needs to comply with certain safety standards before they can be accepted as approved anti-malware solutions. This will effectively force all anti-malware developers to put their software through specific tests, conducted by a computer security standards authority. It will also cause anti-malware application prices to rise, which may pull the plug on the development of free anti-malware solutions, unless the developers certify these free applications as well. ISPs should use special software to check whether these approved anti-malware applications are installed on the client's computer. The software should send out several warnings to the clients who do not comply with these standards, giving them a reasonable amount of time to attend to the problems and providing detailed instructions on how to resolve them. Access to the Internet should only be terminated if the user fails to respond to these warnings.
Many people might ask, how should I update my anti-malware application if my Internet access is terminated? Access should only be terminated if you fail to respond to the warning notifications sent to you. If you end up with a terminated account, it means you ignored the notifications and you should have thought about the implications of your actions before you decided to ignore them. Others may claim that they are computer illiterate and cannot install software or keep them up to date. Most anti-malware applications update themselves and it does not take a rocket scientist to install them. With most of these installations you simply need to click on the "Next" button until you see a "Finish" button. If you can surf the Internet, then I'm sure you know how to click a button. I understand that not every Internet user is a computer expert, so if you find it difficult to install software, join an online forum like BleepingComputer.com, GeeksToGo.com or TechGuy.org and ask for assistance. It is extremely important to secure your computer before it gets infected with malware.
I just painted a pretty grim picture, didn't I? The burden placed on Internet Service Providers to check up on clients, to prove that clients are using unprotected computers, to penalise those who disobey the rules and to close down the accounts of regular offenders. Then there is the problem of high anti-malware prices and no more free anti-malware solutions for the people who cannot afford expensive anti-malware protection. But this is where the Internet is heading if we do not take action now. Online fraud is causing consumers to loose confidence in Internet shopping. Phishing scams are making users afraid of signing up for Internet banking services. People are weary of online payment and trading services like PayPal and eBay, no matter how safe they claim to be. Spammers are stealing bandwidth and the Internet user have to cough up for the costs. Expensive hardware and software is needed to fend off Denial of Service attacks. Malware is at the root of all these problems. It is the biggest contributor to cyber crime and eliminating malware is like removing a species from the food chain. This will be a big blow to spam and bot networks, resulting in less spam and phishing scams, fewer DDoS attacks and fewer stolen identities, passwords and credit card numbers. All the money saved through proper prevention of malware and malware related problems, can be utilised to build better anti-malware protection and assist companies to continue the development of free anti-malware solutions for home users.
So what is the bottom line? Internet Service Providers need to take responsibility for their networks. Customers are paying for Internet access, free from spam and malware attacks. It is the responsibility of the service provider to keep spam and malware infections within acceptable limits. Proper legislation needs to be put into place and governments need to take action against service providers if they allow these threats to rise beyond acceptable limits. How can they keep these threats within acceptable limits? Listen to the complaints sent through to your abuse departments, stop ignoring them, terminate the services of regular offenders and publish these actions for everyone to see. Make examples of those who do not want to listen and soon enough you will have people sticking to the rules. People will continue to do what they want if they know there is no punishment for their wrongdoing.
About the Author
Coenraad is webmaster and founder of Cyber Top Cops, providers of free malware removal assistance and helpful Internet security tips for the novice user. In the next installment of the PC Security DIY article series, we will look at the foundation of Internet Security, using a secure browser and e-mail client and getting into safe browsing and e-mail reading habits.
Imagine your closest friend standing next to you. Now imagine your closest friend betraying all of your secrets. And making a handsome profit whilst doing so. Now picture your smartphone inside your handbag or pocket. Picture your smartphone sending your passwords, banking information, e-mails, and private information to some stranger. And picture that stranger making a handsome profit. That is mobile malware.
What is mobile malware, really?
In more technical terms, mobile malware is the spread of malicious software (hence "mal-ware") among wireless devices. Mobile Malware is unpleasant stuff. It could compromise the information on a mobile device, and there have even been cases of compromised devices used to pull information from Personal computers (hijacking USB synchronization). Mobile malware is yet another growing fraud category which involves infecting mobile devices with viruses and Trojan horses that may force a mobile phone to do unauthorized activities,like making phone calls and deleting or stealing information.
Once installed on a device, mobile malware replicates itself and performs undesired activities, such as using network services like SMS or voice to make calls to PRS numbers or to subscribe to unwanted billing schemes; data theft, where the user's personal phone records such as contact lists and account details are stolen, sent to a third-party, and erased on the handset; and launching distributed DoS attacks intent on forcing a legitimate service to fail.
Not only is mobile malware a threat to individuals, it is also a huge security risk to businesses. It has the potential to commandeer a corrupted smartphone and use it as a proxy or gateway into an organization's central network. By commandeering a handheld device, cyber criminals can waltz past a standard firewall program and make their way onto a company's email server, client database, Customer relationship management tools, and other essential parts of the network. Damage of this magnitude can grow from something very small, such as a member of staff getting a message to download a free game or software update.
Mobile Malware is rapidly increasing
Mobile malware is on the rise for several reasons and it is following the Law of Computer Virus Evolution:
The Law of Computer Virus Evolution
In order for malicious programs targeting a particular operating system or platform to emerge, three conditions need to be fulfilled:
1. The platform must be popular
2. There must be well-documented development tools
3. The presence of vulnerabilities or coding errors
The widespread adoption of 3G (and soon 4G) and Wi-Fi connectivity and huge hard drives are other factors contributing to the increase of mobile malware infection. In fact, malware activity in 2010 increased 46 per cent over 2009.
The good news is that practically all mobile malware threats call for some type of effort on the part of the user. Malware can't magically appear on your phone. It usually happens after a user downloads a malicious app and the recent DroidDream incident reveals that mobile malware is more advanced than ever before.
How to stop mobile malware and protect yourself
Keeping a close eye on the app stores is a must, as Google proved. Google banished about 50 free applications from its app store immediately after it was found out that the titles hid a Trojan horse designed to steal users' information. The applications, which included pirated and copycat versions of legitimate Android titles, had been downloaded tens of thousands of times before Google took corrective action.
The best way to protect your mobile device (and yourself) is to take a layered approach to mobile security. Before you download that shiny new app, look at its permissions. An app shouldn't receive more permissions that what it needs. For example, a simple notepad app shouldn't need unrestricted access to the internet. Also, don't download apps from unauthorized or illegitimate app stores.
The second layer should be a very good antivirus app on your phone, and the third layer should be a firewall. If you choose wisely, the second and third security layers can be found wrapped up in a mobile security app.
How to choose an effective mobile security app
An typical mobile security solution will have capabilities that assist in operating the program and efficiently protecting the device. A very good mobile security application will include things like antivirus, antispam and firewall protection with realtime security. An exceptional mobile security application will have all of the preceding, as well as sms protection, remote wipe (in case your smartphone is stolen), and gps location (again, in case your smartphone is stolen).
What is the best mobile security app?
Ask ten experts and you'll get ten different answers. This question is almost as hotly debated as "what's the best antivirus software for my computer?" In order to narrow down my choices, I used the criteria mentioned above to come up with a list of mobile security applications. As you can see, many of the desktop giants of antivirus software have developed mobile versions of their software. The list isn't comprehensive, but it will give you a good starting point.
AVG
AVG Mobile Security is specifically available for Android. It comes with anti-virus and SMS anti-spam features that give protection to your mobile against all unwanted messages and advertising. Price: $9.99
ESET
ESET Mobile Security brings a new level of protection to Symbian and Windows Mobile smartphones, so you can be confident in the safety of your device -- even if you lose it. Price: Free for thirty days.
Dr. Web
Dr Web Mobile Security Suite is an anti-virus security solution for Android, Symbian OS, and Windows Mobile. However, they aren't sold separately and are bundled with Dr. Web products for workstations.
Lookout
Lookout mobile security is also a multi-platform mobile device software that has a user-friendly, simple and in-depth virus scanning abilities. Lookout Mobile Security is currently available on Android, Blackberry and Windows Mobile.
Price: Free, with a Premium version at $29.99/yr.
F-Secure
F-Secure Mobile Security allows smartphone users to experience the full potential of their devices without the fear of mobile threats. F-Secure Mobile Security automatically retrieves the newest updates whenever any data connection is used. An additional SMS update mechanism patented by F-Secure ensures that critical malware fingerprints are received even when a data connection is not available.
Price: Subscriptions begin at $3.31/month (approximately).
Kaspersky
Kaspersky Mobile Security is currently available on Microsoft Windows Mobile 5.0, 6.0, 6.1, 6.5 and Symbian OS (Nokia smartphones only).
Price: $29.95/unit/yr.
BullGuard
BullGuard Mobile Security is one of the better mobile security applications. It is one of the very few that supports all major mobile OSes like Android, Blackberry, Symbian and Windows Mobile.
Price: $29.99/license/yr
Mobile malware is a scary thought, and the problem is likely to get worse, especially since smartphone adoption is skyrocketing. Using the tips and advice in this article you can protect yourself (and your personal information) against the rising tide of mobile malware.
John Wright is a Computer Consultant who has been successfully removing malware from personal and business computers for several years. Visit http://www.johnscomputerconsulting.com to ask questions and learn more.
In case of the latest attack, the malicious link reportedly displays a pop-up window on a click and urges the target victims to download a file, which appears as an image or video file. Unsusceptible users who click on the link inadvertently download a malware and compromise their computer systems. The malware designed to extract user login credentials on financial sites, also mines the details of the affected computer. While it appears that the latest malware is targeting Portuguese language speakers, the malware writers may devise similar schemes to target English and other European-language speaking users.
Earlier in the year, Symantec had identified spam e-mails targeting Hindi speaking users. Attackers apparently disseminated messages written in Devnagari script. Scammers always look out for ways to deceive Internet users through devising new schemes or redesigning the old schemes. Scammers act swiftly to design fraudulent schemes based on latest happenings. Internet users must not respond to e-mails appearing from strangers, containing links that promise to display images or video. Even in case of e-mails that appear to arrive from legitimate institutions, they must verify the authenticity of the e-mail address, check for broken links, prefixes or suffixes appended to URLs, and spelling mistakes in the message to verify the authenticity of the e-mail. Internet users must scan their computers with legitimate security software at regular intervals and prevent malware infections. Internet users may improve cyber security awareness and online computing practices through online degree programs and e-tutorials.
Professionals qualified in masters of security science, IT degree programs and security certifications attempt to create awareness on security issues through blogs and forums. IT professionals may follow the security advisories offered by cyber security experts and improve the security practices in their organizations.
Educational institutions must update cyber security courses and online university degree programs to incorporate evolving threats and enable students to devise new mechanisms to improve cyber security.