Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Media Files That Spread Spyware (Ben Edelman On WMP Installing 31! Programs On His PC Alert)
Bendedelman.org ^ | 01/02/02 | Ben Edelman

Posted on 01/03/2005 1:51:12 AM PST by goldstategop

click here to read article


Navigation: use the links below to view more comments.
first 1-2021-31 next last
Look at how MANY programs this guy had installed on his computer without even doing anything! A good follow up discussion about the Windows Media spyware threat I posted a day or two ago.
1 posted on 01/03/2005 1:51:13 AM PST by goldstategop
[ Post Reply | Private Reply | View Replies]

To: goldstategop
Who still uses Microsoft programs when substitutes are available (Firefox, Winamp, etc.)?

If I start having problems with Word, I'll just switch to OpenOffice. And if I start having problems with Windows, I might switch to another OS.

2 posted on 01/03/2005 2:01:41 AM PST by xm177e2 (Stalinists, Maoists, Ba'athists, Pacifists: Why are they always on the same side?)
[ Post Reply | Private Reply | To 1 | View Replies]

To: xm177e2

The article does mention users of P2P networks who use an unpatched Internet Explorer and WM 9 Players are more vulnerable to this rogue download. But the fact this ready exploit exists means every one should keep up their guard and lock down IE, use an alternative browser (like Firefox) where possible and turn off the automatic notification feature in WMP. No one wants to have to clean up a crippled computer loaded with tons of unwanted scumware.


3 posted on 01/03/2005 2:06:18 AM PST by goldstategop (In Memory Of A Dearly Beloved Friend Who Lives On In My Heart Forever)
[ Post Reply | Private Reply | To 2 | View Replies]

To: xm177e2
If I start having problems with Word, I'll just switch to OpenOffice.

I installed OpenOffice on both of my computers. I like the GUI better than MS Office and all of the outputs open in Office (on my company notebook).

As for the spyware that is the subject of the original post? Some people seem to automatically click the "yes" and "Install" button whenever a dialog box pops up on their screens.

4 posted on 01/03/2005 2:09:05 AM PST by woofer
[ Post Reply | Private Reply | To 2 | View Replies]

To: xm177e2

Cybernetic mayhem is generally targeted at four kinds of things, i.e. windows itself, ms word, outlook, and the internet explorer. To the extent that you can avoid any of those things, you're safer and better off. I do all of my email and most of my web browsing on a linux machine, and avoid ie and outlook altogether.


5 posted on 01/03/2005 2:14:18 AM PST by judywillow
[ Post Reply | Private Reply | To 2 | View Replies]

To: goldstategop

Admin authority is a Windows user default. Create another ID and change it to non-admin and use only that lesser ID.


6 posted on 01/03/2005 2:16:06 AM PST by X_CDN_EH (regards wb)
[ Post Reply | Private Reply | To 1 | View Replies]

To: goldstategop
"Of course, the merchants may not have intended to support spyware developers; they may have approved the affiliates without fully understanding the affiliates' practices. "

I most assured this is the case. I worked a little with LinkShare and FTD.com affiliate programs. FTD was very concerned about trademark violators and web content.

7 posted on 01/03/2005 2:17:09 AM PST by endthematrix (Declare 2005 as the year the battle for freedom from tax slavery!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: judywillow

Its due to a poor DRM design by Microsoft. Ironically, as Eric L. Howes has observed P2P users illegal MP3 files are more secure than MS's own WM files! Its a commentary on the state of the industry that no one wants to make DRM secure for consumers who browse to listen and watch on the web. Enough of these abuses and people may get turned off to multi-media content altogether.


8 posted on 01/03/2005 2:22:25 AM PST by goldstategop (In Memory Of A Dearly Beloved Friend Who Lives On In My Heart Forever)
[ Post Reply | Private Reply | To 5 | View Replies]

To: endthematrix

There's a lot of rip-off software on the web too. Most of it useless.


9 posted on 01/03/2005 2:23:45 AM PST by goldstategop (In Memory Of A Dearly Beloved Friend Who Lives On In My Heart Forever)
[ Post Reply | Private Reply | To 7 | View Replies]

To: goldstategop
The author should (or did) notify the merchants he found. They have big dollars and a reputation at stake. They'll take 'em to court. It'll do no good though, the developers just recreate another firm...
10 posted on 01/03/2005 2:30:54 AM PST by endthematrix (Declare 2005 as the year the battle for freedom from tax slavery!)
[ Post Reply | Private Reply | To 9 | View Replies]

To: goldstategop
If you use P2P file transfer software, then I recommend that you look at something call PeerGuardian. It will block out false IPs that distribute garbage and deny connection with other garbage IPs. They constantly update their block list. The package works great as secondary protection software.

Even reading articles on FR, the package will block out material from questionable sources and all sorts of places I really don't want to receive data from. Neat stuff.

11 posted on 01/03/2005 2:32:06 AM PST by Caipirabob (Democrats.. Socialists..Commies..Traitors...Who can tell the difference?)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Caipirabob

Its still a resource hog. Until PeerGuardian 2.0 is released, I'm running Protowall. Its from Bluetack.co.uk.


12 posted on 01/03/2005 2:41:29 AM PST by goldstategop (In Memory Of A Dearly Beloved Friend Who Lives On In My Heart Forever)
[ Post Reply | Private Reply | To 11 | View Replies]

To: goldstategop
Its still a resource hog. Until PeerGuardian 2.0 is released, I'm running Protowall. Its from Bluetack.co.uk.

I'll have to check. I hadn't noticed any degradation of performance, but then I'm not doing everything I normally do on this machine yet. I'll check it out. For all that I do it seems to work out fine. What I'll do in the future is shut it all down for stuff I do off line and see if there's a difference. Live and learn...

13 posted on 01/03/2005 2:48:33 AM PST by Caipirabob (Democrats.. Socialists..Commies..Traitors...Who can tell the difference?)
[ Post Reply | Private Reply | To 12 | View Replies]

To: goldstategop

One of the biggest offenders in malware-infected Windows Media files is LoudEye, which, by the way, provides the system that runs the MSN music store.

LoudEye (Symbol LOUD) is a public company. These guys a riding for a particularly hard fall.


14 posted on 01/03/2005 4:32:05 AM PST by eno_ (Freedom Lite, it's almost worth defending.)
[ Post Reply | Private Reply | To 8 | View Replies]

To: Caipirabob; All

Wow. You all seem to know a lot about this stuff. I've had my computer crash back in July of '04. I was getting ready for a major presentation, The First World Congress on Agroforestry. The computer crashed a week before ....man was I mad...new Dell too. Won't get into some of the 'award winning service' issues, but maybe you could answer a simple question now.

Last week I upgraded to a high speed DSL service. I run Ad Aware at the end of each session, mostly cookies show up. And Norton Internet Security System runs constantly. I've not had any real problems since July, until the scheduled scan with Norton yesterday. I didn't know what to do with the spyware detected. Ad Aware didn't catch it. The reason I didn't was it was installed with the software for the DSL. I know this 'cause it wasn't in the list of programs before installation. Norton says it's Visual IP Insight(SBC) and should be removed although it's low risk.

I was told by the provider that my first 10 days on DSL service would be tracked in order to determine my internet habits and tune up the DSL. I tend to believe them as service is from SBC.

Can I delete this IPInsight or should I?


15 posted on 01/03/2005 4:52:11 AM PST by EBH (Proud Aunt)
[ Post Reply | Private Reply | To 13 | View Replies]

To: EBH

Since I have been posting at FR, I have seen a huge jump in spam offering me green cards to work in the USA. I am an American citizen and don't need a green card, but of course my Canadian IP and residence and my frequenting of American political websites tags me as someone who wants to move to the USA ... I get up to 4 spy cookies from FR every time I sweep with ADAWARE after I've been here.


16 posted on 01/03/2005 5:16:19 AM PST by KateatRFM
[ Post Reply | Private Reply | To 15 | View Replies]

To: goldstategop

Last time I looked, intentionally spreading computer viruses on the internet is a crime.


17 posted on 01/03/2005 5:25:57 AM PST by Paul C. Jesup
[ Post Reply | Private Reply | To 1 | View Replies]

To: goldstategop

It is surprising how many (even FR-eepers) refuse to install and run

1. A virus checker (there are free ones)

2. Spyware checkers/eliminators (there are free ones)

3. Intrusion-prevention programs that try to keep malware from taking over or running unauthorized executables (there are free ones)

4. Email previewers (there are free ones)

5. Firewalls (there are free ones)

Many prevention programs are available and several good ones are free.

===

If you aren't running these, you are part of the problem, people!


18 posted on 01/03/2005 5:32:01 AM PST by TomGuy (America: Best friend or worst enemy. Choose wisely.)
[ Post Reply | Private Reply | To 3 | View Replies]

To: KateatRFM

Define "Spy Cookies".

Cookies are generally speaking text files YOU have given the website you are visiting permission to log on your machine to help remember who you are and what you have done. The key here is that YOU ALLOWED the cookies. Without them, I would have no idea that you responded to this little reponse.

Spyware is much different than a few cookies.

If you don't want cookies, turn them off.


19 posted on 01/03/2005 5:45:23 AM PST by UseYourHead (Beware of the Rinos - McCain, Hagel, Lugar, and Specter)
[ Post Reply | Private Reply | To 16 | View Replies]

To: TomGuy

Update SpyBot too. They are adding new checks every day. Currently more than 24,000.


20 posted on 01/03/2005 6:13:46 AM PST by Graybeard58 (Remember and pray for Spec.4 Matt Maupin - MIA/POW- Iraq since 04/09/04)
[ Post Reply | Private Reply | To 18 | View Replies]


Navigation: use the links below to view more comments.
first 1-2021-31 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson