Help - Search - Members - Calendar
Full Version: How to defend yourself?
Get Paid Forum - Get Paid Discussion > Get Paid To Programs > Sites Allegedly with problems of hacking/virus/0-iframes, autosearches etc ... > Sites hit by virusses or hacked
dave_johnson
Let's talk something about viruses/trojans.

Certainly Antivirus(Norton,Kaspersky,NOD32,etc) is very good thing to defend yourself,but we must remember that Antivirus couldn't catch a new virus,because the antivirus laboratory doesn't know its code.

So to defend yourself you need to do the next :

1.Install antivirus and always update it.Once a week scan your system.
2.Install firewall(Outpost,etc).
3.Close ports that you aren't using.
4(main). EDIT INTERNET OPTIONS -> SECURITY -> INTERNET(For example ActiveX control must be always turned off).
5. NEVER!NEVER!NEVER OPEN PROGRAMS LIKE : MONEY DOUBLER,GET MONEY,etc.!!!!

If you will have some questions,you could ask me : mr_dave_johnson@yahoo.com

wagdoll
As I have said inhttp://getpaidforum.com/forums/index.php?showtopic=480054&view=findpost&p=4679883(MASKED LINKS NOT ALLOWED) an up to date antivirus is not always enough. Zero day vulnerabilities are hitting which there is no protection for and it takes time for the windows updates to release patches, and for AVs to come up with cures.

For people doing GPT sites especially, weekly updating your AV is not enough, you should do this daily and preferably also use an online scanner too. Familiarising yourself with a variety of online scanners like trend micro housecall is a good idea, other AV companies also have online scanners so googling for some of those I think is a good idea.

Use of noscript can be a good defence if you use firefox, most viruses I have seen have been encoded at some point inside JS tags, so the noscript should prevent anything in those tags from running.

Putting malware domains into hosts file or at least into adblock and keeping this list updated - not just from places like MVPS but also the GPT specific lists that include domains like stelaartois and doggystyles - is also a wise precaution. New malware domains are coming up daily though so this is an ongoing fight to recognise these domains.

No matter what protections you have on your system I would not be complacent with viruses and trojan threats. You may end up with a broken PC, or a keylogger or adware or other problem that you could do without.

Also I would like to see more GPT program owners being pro-active on behalf of their members. Many of these threats are visible/noticable. We can find the majority of them by searching source code and using tools like Jutaky's detektor, mvent's detector, adblock, firebug and being up to date on what we are looking for and how to find it and stop many of those affected sites from reaching members of GPT sites.

These virus and trojan threats can come from the outside, through 3rd party network ads, but they are increasingly coming from the inside too. GPT sites are being hacked with trojan codes. GPT sites are springing up that pay members to promote their sites and their sites contain trojans; examples of these would be iframemoney, xbanners, xtraff, kamilet, ptpads.us. The hacked sites contain trojans as opposed to viruses but that does not mean they don't spread. They have a non-viral spread in that a program owner might see an ad on your site for an affected site, they will pick up the keylogger and the hacker will find their way into the other program owner's site and the code will turn up there. Program owners need to protect themselves as well as their members.

Noscript is not enough

Sometimes where there's sites who are knowingly or uncaringly sending out sites covered in 0 iframes, people complain in here of system resource hogging and viruses and are told to get noscript. This may help protect that person, but it doesn't protect all the other members of that site. Stopping 0 iframe ads is a more effective protection for more people.

0 iframe ads can do a lot of damage, both to the person viewing the page with 0 iframes and to others. They can do autosearches, using your PC and IP address to steal from unwitting advertisers, they can drop homepage hijackers, they can drop trojans and viruses onto your PC. The more levels of 0 iframes, the harder it will be for the program owner to detect the problem on the page. It is a lot easier if you just send one page that is visible and don't send invisible 0 iframes that contain who knows how many other websites with who knows what junk on them.

You may not care about the advertisers affected by the autosearching, you may not mind the lockups caused by the heavy 0 iframe autosearching pages. But what if one of those autosearches searches for a porn site and leaves a trojan or dialler on your PC and you never saw anything happen? What if one of the sites you view has 20 zero iframes on it and just one of them contains xtraff code or a popup for ptpads.us. What if one of those 0 iframes contains a hacker trojan and you just think it's another autosearch locking up your system?

More POs are finding not enough revenue in 0 iframe autosearches and are being caught by the gangs who spread trojan keyloggers for profit.

There's more to picking a GPT site than looking to see if they currently are paying their members.
sinimarttonen
if you have some extra space on your hard drive I would recommend installing an easy linux distribution such as opensuse or ubuntu. That will save you from all the trouble with viruses and other nasties. aa.gif
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2012 Invision Power Services, Inc.