Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Spyware cures may cause more harm than good
C/Net News.com ^ | 2/4/2004 | John Borland

Posted on 02/05/2004 7:40:54 AM PST by justlurking

Web surfers battling "spyware" face a new problem: so-called spyware-killing programs that install the same kind of unwanted advertising software they promise to erase.

Millions of computers have been hit in recent years by ads and PC-monitoring software that comes bundled with popular free downloads, notably music-swapping programs. The problem has attracted dozens of companies seeking to profit by promising to root out the offending software. But some software makers are exploiting the situation, critics allege, turning demand for antispyware software into a launch pad for new spyware attacks.

A small army of angry Web users has set up a network of Web sites where they post reports of antispyware programs said to prey on consumers by installing offending files. Some of these charges could get a hearing soon, as public-interest group The Center for Democracy & Technology plans to file complaints with the Federal Trade Commission against specific companies.

"If people feel as though their privacy has been violated by a company that claims to be protecting them, that clearly is an unfair and deceptive practice," said Ari Schwartz, an associate director of Washington-based CDT. "You would think that an antispyware company would hold itself up to the highest standards."

The boom in spyware, adware and other PC hijackers has led to increasing calls for regulation from lawmakers, including presidential candidate Sen. John Edwards, D-N.C., and from public-interest groups.

Many software makers have turned to advertising as a way to make money from consumers who are reluctant to purchase programs. The same approach has been taken by some antispyware companies, even though they promise that their products will root out unwanted advertising from others. But the failure of some to disclose their practices has raised the greatest outcry.

Like viruses, adware and spyware programs can sneak into a user's computer hard drive with little or no warning and can hide their tracks in ways that make it difficult for even the most sophisticated computer users to find and permanently delete.

As adware and spyware have spread, demand for applications that clean up infected hard drives has grown, drawing a large group of competitors eager to profit. More than 50 programs claiming to erase adware and spyware are available online, and many of these are offered as free downloads. Several major Internet service providers, including EarthLink and America Online, have also moved to provide spyware-removal applications to their subscribers.

But as these programs proliferate, some software makers face mounting criticism that their products install the very things they promise to defend against. Some antispyware companies have pointed fingers at rivals and have added competing programs to their list of applications that contain adware or spyware. These lists are used to identify and sweep out offending software during antispyware scans.

Keeping track of spyware
One such tool facing allegations of abuse is SpyBan, an antispyware program that has been downloaded some 44,000 times in the last four months, according to Download.com, a software download site owned by CNET Networks, the publisher of News.com. Download.com removed the software this week, noting that SpyBan had failed to disclose and explain all the software components included in its installation, a violation of the Web site's policies.

Numerous competing antispyware companies, including Spybot-Search & Destroy parent PepiMK Software and Sweden-based Kephyr.com, have identified SpyBan as a potential source of unwanted spyware--notably a program listed by many spyware cleaners as Look2Me. Download.com had also independently warned that Look2Me might be installed along with SpyBan.

"I classified SpyBan as a Trojan Horse, since it gives the impression that it will protect your privacy, but does the opposite--installs spyware," alleged Kephyr's Roger Karlsson in an e-mail interview.

A CNET News.com test of SpyBan on Jan. 29 found that the software did remove some adware components but also confirmed that it led to the installation of a file that Spybot and security firm Symantec identified as Look2Me. Symantec lists Look2Me as a spyware application, while its rival PestPatrol defines the same application as an adware program.

"Look2Me is a spyware program that monitors visited Web sites and submits the logged information to a server," Symantec reports on its Web site. According to PestPatrol, Look2Me is categorized as "software that brings ads to your computer. Such ads may or may not be targeted."

Who is SpyBan?

Information and links on SpyBan's Web site disappeared late on Monday, following inquiries from a CNET News.com reporter. An e-mail to a generic "info" address at the SpyBan Web site elicited an initial reply, but the company did not reply to questions about its software.

Prior to going dark, the SpyBan Web site contained no information about its corporate parent, and the domain name database--Whois--that typically contains contact information for companies contained none for SpyBan.

A Look2Me license agreement found on a cached Google Web page identified Minneapolis-based NicTech Networks as the software's "owners/authors."

A trace of SpyBan.net's Web domain name late on Tuesday showed that the site was hosted at the same Internet address as NicTech Networks. The SpyBan e-mail also originated from that IP address. Repeated calls to NicTech were not returned.

A question of trust
The effects of spyware and adware programs vary. Some spyware programs run quietly in the background, sometimes capturing what a computer user types or what Web sites are visited. Some of these applications, which are called keystroke loggers, are so potent that they can record user names and passwords for the most closely guarded Web sites, including online banks.

Far more common are "adware" programs, which can operate unseen in the background. These periodically pop up windows with advertisements, change a Web browser's home page, install unwanted search toolbars or add bookmarks to a browser. Many of these software programs track Web surfers' habits online and send the data to their parent companies.

Security experts say it is difficult to keep up with spyware programs, which constantly shift their way of working inside a computer to evade detection and which generally contain many times more programming instructions than an average virus. The confusion is underscored by differences in how security firms describe specific programs.

"I doubt anyone knows precisely what these things do, apart from the authors," PestPatrol researcher Roger Thompson said. "They are really complex. Viruses are easy compared to these things."

There is little doubt that millions of PCs have been infected with spyware and adware programs.

A recent unscientific EarthLink survey gives some indication of the spread of the problems. The company offered its subscribers a free online spyware-scanning tool, similar to an antivirus scan program. In the course of 426,500 scans, EarthLink found more than 2 million adware files installed and more than 9 million "adware cookies"--a type of cookie that tracks people's surfing habits.

A few independent antispyware companies, such as Lavasoft's Ad-Aware and Spybot, have been around long enough and have been used by enough people to have gained a reputation as safe.

For the most part, Net experts warn consumers simply to be careful, to make sure that they trust the source of any software they install on their computers and to contact authorities such as the Federal Trade Commission if they think that their privacy has been violated.

"My first advice, if you get spam advertising a piece of software: You should really think twice before downloading that program," the CDT's Schwartz said.


TOPICS: Technical
KEYWORDS: adaware; advertising; adware; computersecurity; cookies; dontusespyban; hijackedcomputer; internet; lando; lowqualitycrap; microsoft; personalsecurity; privacy; registrychanges; searchanddestroy; spyban; spybot; spyware; usespybot; virus; viruses; webbrowsers; webbrowsing; windows; worldwideweb; www
Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-80 ... 141-152 next last
To: Terpfen
I have been using Spybot for about a year now and have been pleased.

However, I have recently started to wonder if it is not also the source.

Explain to me how it can find new spy-ware after it's last run, when I have had my computer off-line since then?

It may still be an outstanding program and I am most likely wrong.

41 posted on 02/05/2004 8:48:14 AM PST by Hunble
[ Post Reply | Private Reply | To 2 | View Replies]

To: Terpfen
False logic, thats like saying if 95% of cars were Volvo's they would be just as dangerous as any other car. sometimes something is safer because of its design..
42 posted on 02/05/2004 8:51:55 AM PST by N3WBI3
[ Post Reply | Private Reply | To 12 | View Replies]

To: dts32041
Agree with all of that. My security summary:

1) updated MS patches on OS and IE
2) regularly updated anti-virus software and definitions
3) hardware router on Internet connection
4) Spybot Search&Destroy and Lavasoft Ad-Aware updated and run, preferably weekly, but at least bi-weekly
5) Google toolbar, high privacy install, to block pop-ups. (603 and counting)
6) never open suspicious email attachments (just about any *.exes, no matter who from)



43 posted on 02/05/2004 8:56:39 AM PST by FreedomPoster (This space intentionally blank)
[ Post Reply | Private Reply | To 5 | View Replies]

To: El Gran Salseron; justlurking
I regularly run Adware and Spybot, but I still have an annoyance with my home computer (kids, you know). When online, I have incessant white background with print pop-ups that jump in every 5-10 seconds. To counteract them I have installed a pop-up killer but I still get the annoying visual blip of the pop-up. I am 99.9% certain there is malware on my machine that is causing the headache. Suggestions?

Lando

44 posted on 02/05/2004 8:56:50 AM PST by Lando Lincoln (GWB in 2004)
[ Post Reply | Private Reply | To 32 | View Replies]

To: N3WBI3
If she wants total security, yep. A car is sold as 'driveable', but you have to learn how to use it and be licensed.
45 posted on 02/05/2004 9:00:23 AM PST by xrp
[ Post Reply | Private Reply | To 39 | View Replies]

To: FreedomPoster
That about sums it up.
46 posted on 02/05/2004 9:03:20 AM PST by dts32041 (Will Kerry ever call his wife an African American?)
[ Post Reply | Private Reply | To 43 | View Replies]

To: discostu
Really? at the system registry level? Linux and Mac prevent user accounts from mucking around with the global libraries.. In addition they come *with* a firewall, you dont need to install third party software to get one..
47 posted on 02/05/2004 9:04:09 AM PST by N3WBI3
[ Post Reply | Private Reply | To 40 | View Replies]

To: xrp
THan I guess the old 'Linux is hard to use and windows is easy to use' is only true if you dont want a secure box..
48 posted on 02/05/2004 9:05:24 AM PST by N3WBI3
[ Post Reply | Private Reply | To 45 | View Replies]

To: robertpaulsen
Couldn't that be accomplished without running any software? A search for the file index.dat and then delete will do the same.
49 posted on 02/05/2004 9:09:05 AM PST by JSteff
[ Post Reply | Private Reply | To 18 | View Replies]

To: dts32041
Use Good Anti-Virus Software.

Use a good reg. monitor like Spybot Search and Destroy.

Use A good Firewall Product. Like ZoneAlarm Pro 4

If you are running a wireless network, use AIRSnare also.

Clean your caches regularly for best performance. There is a freebie called disk cleaner that works well, and supports Opera. Get it here. Disk Cleaner.

Defrag your drives once a week, or once every two weeks if you have minmal computer use.

DO NOT DOWNLOAD LOTS OF CRAP you don't really need. Don't load your 'puter with pirated software, half of it can have viruses, bots and trojans. Do not open attachments without scanning them first. Go to this site below if you want to learn just how secure (or not) your box is:

Steve Gibson Gibson Research Co.. Check out Shields Up! on his site, to test your security for free. Also has free security-related goodies.

50 posted on 02/05/2004 9:10:50 AM PST by wolicy_ponk
[ Post Reply | Private Reply | To 23 | View Replies]

To: Lando Lincoln
Use Mozilla/Opera/or Firebird all of which have pop-up killing built in as an option, there is no window or flash indicating it is blocking it..
51 posted on 02/05/2004 9:12:11 AM PST by N3WBI3
[ Post Reply | Private Reply | To 44 | View Replies]

To: N3WBI3
Windows can be setup to keep user accounts from mucking with the registry and system folders too. Problem for all three OSes is that if you want to install software you're going to have to do it from an account that has administrative priviledges, once you're in that mode they could piggyback spyware. That's how most spyware gets in: while you're installing something else.
52 posted on 02/05/2004 9:12:13 AM PST by discostu (but this one has 11)
[ Post Reply | Private Reply | To 47 | View Replies]

To: N3WBI3
Somewhat.
53 posted on 02/05/2004 9:13:05 AM PST by xrp
[ Post Reply | Private Reply | To 48 | View Replies]

To: N3WBI3
Windows XP has a built-in firewall.
54 posted on 02/05/2004 9:13:58 AM PST by xrp
[ Post Reply | Private Reply | To 47 | View Replies]

To: xrp
Either one is arguable. Put plainly, if a user is too stupid to use traverse [sic] the Internet responsibly, maybe that user should take a hike. It sure would clear out a lot of the lame users out there.

Do you also propose that those too weak to prevent a thug from mugging them should not go out in public?

55 posted on 02/05/2004 9:14:27 AM PST by per loin
[ Post Reply | Private Reply | To 38 | View Replies]

To: discostu
Of course, if you never install software on your computer...

I guarantee, 100%, that you will never have a problem!

56 posted on 02/05/2004 9:14:48 AM PST by Hunble
[ Post Reply | Private Reply | To 52 | View Replies]

To: N3WBI3
Thanks...I'll try it!
57 posted on 02/05/2004 9:17:39 AM PST by Lando Lincoln (GWB in 2004)
[ Post Reply | Private Reply | To 51 | View Replies]

To: FreedomPoster
80$ worth of hardware and software here, in addition to the fact that much of this makes windows a pain to use..
58 posted on 02/05/2004 9:17:59 AM PST by N3WBI3
[ Post Reply | Private Reply | To 43 | View Replies]

To: Mannaggia l'America
Spyware Blaster will prevent kids from downloading spyware, or even seeing the offers. Prevention is better than cure.
59 posted on 02/05/2004 9:18:18 AM PST by js1138
[ Post Reply | Private Reply | To 28 | View Replies]

To: per loin
Do you also propose that those too weak to prevent a thug from mugging them should not go out in public?

No, but it is highly recommended that they hire a 3rd party bodyguard or purchase a 3rd party firearm.

60 posted on 02/05/2004 9:20:06 AM PST by xrp
[ Post Reply | Private Reply | To 55 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-80 ... 141-152 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson