<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>gHacks technology news &#187; worms</title>
	<atom:link href="http://www.ghacks.net/tag/worms/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ghacks.net</link>
	<description>A technology blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description>
	<lastBuildDate>Tue, 24 Nov 2009 23:31:44 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Gernova Keylock</title>
		<link>http://www.ghacks.net/2008/07/05/gernova-keylock/</link>
		<comments>http://www.ghacks.net/2008/07/05/gernova-keylock/#comments</comments>
		<pubDate>Sat, 05 Jul 2008 17:02:12 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[keylock]]></category>
		<category><![CDATA[keylogger]]></category>
		<category><![CDATA[system-scan]]></category>
		<category><![CDATA[trojans]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[worms]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=5234</guid>
		<description><![CDATA[Gernova Keylock is a specialized software to detect keyloggers on a system. Keyloggers are used to log user input which includes urls that the user enters as well as usernames, passwords and even information like credit card data or account numbers. The application is portable and can be run from any location. 
It&#8217;s unfortunately only [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://gernova.de/shop/data/037.pl?Warengruppe_Name=Tools&#038;Artikel_Nummer=51206-1&#038;Session_ID=953887189243">Gernova Keylock</a> is a specialized software to detect keyloggers on a system. Keyloggers are used to log user input which includes urls that the user enters as well as usernames, passwords and even information like credit card data or account numbers. The application is portable and can be run from any location. </p>
<p>It&#8217;s unfortunately only available in German but since it does not require lots of user input it can be valuable for non-German speakers as well. The only required input is a click on the button &#8220;Suchlauf Starten&#8221; to start the scan of the system. A check of the box below that button will perform a long scan of the system that requires a reboot.</p>
<p>Once started the application moves the mouse around and tests several behaviors. After a while it asks the user to input text. This happens three times to see if any of the running processes are reacting on the data input.</p>
<p><span id="more-5234"></span><img src="http://www.ghacks.net/wp-content/uploads/2008/07/keylockscr-500x375.jpg" alt="keylock" title="keylock" width="500" height="375" class="alignnone size-medium wp-image-5235" /></p>
<p>In the end all potentially dangerous applications are listed. The software seems to have troubles with Mozilla software because it did list several <a href="http://www.ghacks.net/tag/firefox/">Firefox</a> and Thunderbird files as potentially dangerous. The most dangerous files are listed at the top with their system path.</p>

	Tags: <a href="http://www.ghacks.net/tag/keylock/" title="keylock" rel="tag">keylock</a>, <a href="http://www.ghacks.net/tag/keylogger/" title="keylogger" rel="tag">keylogger</a>, <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/system-scan/" title="system-scan" rel="tag">system-scan</a>, <a href="http://www.ghacks.net/tag/trojans/" title="trojans" rel="tag">trojans</a>, <a href="http://www.ghacks.net/tag/windows/" title="Windows" rel="tag">Windows</a>, <a href="http://www.ghacks.net/tag/worms/" title="worms" rel="tag">worms</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2006/03/12/windows-worms-door-cleaner/" title="Windows Worms Door Cleaner (March 12, 2006)">Windows Worms Door Cleaner</a> (2)</li>
	<li><a href="http://www.ghacks.net/2007/01/09/perfect-keylogger-lite/" title="Perfect Keylogger lite (January 9, 2007)">Perfect Keylogger lite</a> (4)</li>
	<li><a href="http://www.ghacks.net/2008/06/29/kaspersky-rescue-disk/" title="Kaspersky Rescue Disk (June 29, 2008)">Kaspersky Rescue Disk</a> (2)</li>
	<li><a href="http://www.ghacks.net/2007/03/12/hijack-this-20-beta/" title="Hijack This 2.0 beta (March 12, 2007)">Hijack This 2.0 beta</a> (8)</li>
	<li><a href="http://www.ghacks.net/2005/11/02/freeware-myplanetsoft-anti-keylogger/" title="Freeware MyPlanetSoft Anti-Keylogger (November 2, 2005)">Freeware MyPlanetSoft Anti-Keylogger</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/07/05/gernova-keylock/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Kaspersky Rescue Disk</title>
		<link>http://www.ghacks.net/2008/06/29/kaspersky-rescue-disk/</link>
		<comments>http://www.ghacks.net/2008/06/29/kaspersky-rescue-disk/#comments</comments>
		<pubDate>Sun, 29 Jun 2008 15:15:53 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[anti virus]]></category>
		<category><![CDATA[kaspersky]]></category>
		<category><![CDATA[Kaspersky Rescue Disk]]></category>
		<category><![CDATA[rescue disk]]></category>
		<category><![CDATA[trojans]]></category>
		<category><![CDATA[worms]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=5142</guid>
		<description><![CDATA[Malicious software, like viruses or trojans, can damage a system in a way that it becomes impossible to boot into the operating system that was infected by the software. The Kaspersky Rescue Disk is a standalone bootable CD that can be used to scan the system for malicious software without having to boot into the [...]]]></description>
			<content:encoded><![CDATA[<p>Malicious software, like viruses or trojans, can damage a system in a way that it becomes impossible to boot into the operating system that was infected by the software. The Kaspersky Rescue Disk is a standalone bootable CD that can be used to scan the system for malicious software without having to boot into the operating system first. </p>
<p>The approach has a few advantages but also a disadvantage. The advantage is obviously that you can use it to remove known viruses, trojans, worms and other malicious software even if the computer cannot be booted into the operating system anymore. And since it is a standalone client it is not dependent on an installed anti-virus client but can be used on any computer that can be booted from CD. This also means that the program is independent from the installed operating system.</p>
<p>The disadvantage of the approach is that the virus definitions cannot be updated that easily and that it normally means that the full boot disk would have to be downloaded and burned to CD again meaning that this would have to be done regularly to stay up to date.</p>
<p><span id="more-5142"></span>The good news is that you can download the Kaspersky Rescue Disk freely from an Kaspersky FTP and burn it to CD or DVD using a CD burning software like Nero.</p>
<p>The computer has to boot from the media and the boot sequence can be set in the computer BIOS. Make sure that the computer checks the DVD drive for a bootable device before it pulls the data from the hard drives.</p>
<p>The interface of the Rescue Disk is straightforward. It basically allows you to scan the computer for malicious software and offers ways to remove any that are found. This does not give a guarantee that the computer can be booted again after the cleanup though. A damaged file normally does not get repaired by anti-virus software.</p>

	Tags: <a href="http://www.ghacks.net/tag/anti-virus/" title="anti virus" rel="tag">anti virus</a>, <a href="http://www.ghacks.net/tag/kaspersky/" title="kaspersky" rel="tag">kaspersky</a>, <a href="http://www.ghacks.net/tag/kaspersky-rescue-disk/" title="Kaspersky Rescue Disk" rel="tag">Kaspersky Rescue Disk</a>, <a href="http://www.ghacks.net/tag/rescue-disk/" title="rescue disk" rel="tag">rescue disk</a>, <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/trojans/" title="trojans" rel="tag">trojans</a>, <a href="http://www.ghacks.net/tag/worms/" title="worms" rel="tag">worms</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2006/03/12/windows-worms-door-cleaner/" title="Windows Worms Door Cleaner (March 12, 2006)">Windows Worms Door Cleaner</a> (2)</li>
	<li><a href="http://www.ghacks.net/2008/07/05/gernova-keylock/" title="Gernova Keylock (July 5, 2008)">Gernova Keylock</a> (2)</li>
	<li><a href="http://www.ghacks.net/2008/02/05/free-kaspersky-anti-virus-for-1-year/" title="Free Kaspersky Anti-Virus for 1 year (February 5, 2008)">Free Kaspersky Anti-Virus for 1 year</a> (59)</li>
	<li><a href="http://www.ghacks.net/2007/12/29/why-hackers-take-advantage-of-global-events/" title="Why Hackers take advantage of global events (December 29, 2007)">Why Hackers take advantage of global events</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/01/17/trend-micro-rubotted/" title="Trend Micro RUBotted (January 17, 2008)">Trend Micro RUBotted</a> (5)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/06/29/kaspersky-rescue-disk/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Trend Micro RUBotted</title>
		<link>http://www.ghacks.net/2008/01/17/trend-micro-rubotted/</link>
		<comments>http://www.ghacks.net/2008/01/17/trend-micro-rubotted/#comments</comments>
		<pubDate>Thu, 17 Jan 2008 15:31:07 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Operating Systems]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[antivirus]]></category>
		<category><![CDATA[bot]]></category>
		<category><![CDATA[rubotted]]></category>
		<category><![CDATA[trend micro]]></category>
		<category><![CDATA[worms]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2008/01/17/trend-micro-rubotted/</guid>
		<description><![CDATA[Trend Micro RUBotted is a BETA program that scans your system for bot related activity protecting it effectively from being hijacked and misused for criminal activity. The computer is monitored for activity that is either harmful for the computer it is running on or other computers that are affected by actions from the monitored computer. 
]]></description>
			<content:encoded><![CDATA[<p>Trend Micro <a href="http://www.trendsecure.com/portal/en-US/tools/security_tools/rubotted">RUBotted</a> is a BETA program that scans your system for bot related activity protecting it effectively from being hijacked and misused for criminal activity. The computer is monitored for activity that is either harmful for the computer it is running on or other computers that are affected by actions from the monitored computer. </p>
<p>The main protection is gained from monitoring possible remote commands and control commands that are send from another computer . Other likely bot-related activities like mass mailings are monitored as well. RUBotted can be installed on Windows XP, Windows 2000, Windows Vista and Windows Server</p>
<p>The security application should work in conjunction with antivirus applications, even if those have not been designed by Trend Micro. In addition RUBotted offers to scan the computer using Trend Micro&#8217;s HouseCall, an online virus scanner. Some settings are offered to exclude specific requests from being monitored, those are: http incoming, smtp outgoing, irc requests and dns queries.</p>
<p><span id="more-2894"></span><img src='http://www.ghacks.net/wp-content/uploads/2008/01/trend_micro_rubotted.jpg' alt='trend micro rubotted' /></p>

	Tags: <a href="http://www.ghacks.net/tag/antivirus/" title="antivirus" rel="tag">antivirus</a>, <a href="http://www.ghacks.net/tag/bot/" title="bot" rel="tag">bot</a>, <a href="http://www.ghacks.net/tag/rubotted/" title="rubotted" rel="tag">rubotted</a>, <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/trend-micro/" title="trend micro" rel="tag">trend micro</a>, <a href="http://www.ghacks.net/tag/worms/" title="worms" rel="tag">worms</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2006/03/12/windows-worms-door-cleaner/" title="Windows Worms Door Cleaner (March 12, 2006)">Windows Worms Door Cleaner</a> (2)</li>
	<li><a href="http://www.ghacks.net/2007/12/29/why-hackers-take-advantage-of-global-events/" title="Why Hackers take advantage of global events (December 29, 2007)">Why Hackers take advantage of global events</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/11/01/online-virus-scan/" title="Online Virus Scan (November 1, 2008)">Online Virus Scan</a> (3)</li>
	<li><a href="http://www.ghacks.net/2008/06/29/kaspersky-rescue-disk/" title="Kaspersky Rescue Disk (June 29, 2008)">Kaspersky Rescue Disk</a> (2)</li>
	<li><a href="http://www.ghacks.net/2009/09/25/how-to-run-commercial-antivirus-software-without-paying-for-it/" title="How To Run Commercial Antivirus Software Without Paying For It (September 25, 2009)">How To Run Commercial Antivirus Software Without Paying For It</a> (21)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/01/17/trend-micro-rubotted/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Why Hackers take advantage of global events</title>
		<link>http://www.ghacks.net/2007/12/29/why-hackers-take-advantage-of-global-events/</link>
		<comments>http://www.ghacks.net/2007/12/29/why-hackers-take-advantage-of-global-events/#comments</comments>
		<pubDate>Sat, 29 Dec 2007 09:11:42 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Browsing]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[anitvirus]]></category>
		<category><![CDATA[bhutto]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[websites]]></category>
		<category><![CDATA[worms]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2007/12/29/why-hackers-take-advantage-of-global-events/</guid>
		<description><![CDATA[Hundreds of websites have been prepared or compromised to take advantage of the Benazir Bhutto Assassination in Pakistan. Users searching for news on the assassination using search engines like Google or Yahoo might land on a website that has been specially prepared to download Javascript code that in turn downloads additional malicious software to the host PC.]]></description>
			<content:encoded><![CDATA[<p>Hundreds of websites have been prepared or compromised to take advantage of the Benazir Bhutto Assassination in Pakistan. Users searching for news on the assassination using search engines like Google or Yahoo might land on a website that has been specially prepared to download Javascript code that in turn downloads additional malicious software to the host PC.</p>
<p>The discovery was first reported by <a href="http://www.websense.com/securitylabs/alerts/alert.php?AlertID=834">Websense</a> on their website and several anti-virus applications have already been updated to counter this attack.</p>
<p>The interesting aspect in my opinion is that hackers are very quick to react on global events that trigger lots of searches for a specific subject in a short time. It took them less than 24 hours to prepare hundreds of websites with the malicious Javascript code and make it into the top 10 for several related search terms.</p>
<p><span id="more-2670"></span>The Why is obvious. There is always a massive increase in searches when events that are of global interest happen. This can be assassinations, wars or catastrophes for example. The more users search for a subject the higher the chance that they will land on a prepared website.</p>
<p><strong>Protecting yourself:</strong></p>
<p>Here are some thoughts on how to protect your computer from falling into this trap.</p>
<ul>
<li>Use the excellent Firefox add-on NoScript which disables Javascript on all websites except on those that you whitelist.</li>
<li>Visit trustworthy news websites only. The problem here is that you might miss good articles written by bloggers or new websites who rank highly on a subject. If you have to visit those sites be prepared. Turn of Javascript and other scripting languages before you visit those sites.</li>
<li>Keep your operating system updated. This is one of the most important rules. Update your system with the latest security patches</li>
<li>Don&#8217;t use Internet Explorer. Switch to another browser for increased security</li>
<li>Don&#8217;t log into Windows as an administrator</li>
</ul>
<p>Can you think of anything else ? You could use a virtual PC or a tool like Sandboxie whenever you surf the Internet.</p>

	Tags: <a href="http://www.ghacks.net/tag/anitvirus/" title="anitvirus" rel="tag">anitvirus</a>, <a href="http://www.ghacks.net/tag/bhutto/" title="bhutto" rel="tag">bhutto</a>, <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/trojan/" title="trojan" rel="tag">trojan</a>, <a href="http://www.ghacks.net/tag/websites/" title="websites" rel="tag">websites</a>, <a href="http://www.ghacks.net/tag/worms/" title="worms" rel="tag">worms</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2006/03/12/windows-worms-door-cleaner/" title="Windows Worms Door Cleaner (March 12, 2006)">Windows Worms Door Cleaner</a> (2)</li>
	<li><a href="http://www.ghacks.net/2008/01/17/trend-micro-rubotted/" title="Trend Micro RUBotted (January 17, 2008)">Trend Micro RUBotted</a> (5)</li>
	<li><a href="http://www.ghacks.net/2008/03/06/norton-antibot-free-1-year-license/" title="Norton Antibot Free 1 Year License (March 6, 2008)">Norton Antibot Free 1 Year License</a> (15)</li>
	<li><a href="http://www.ghacks.net/2008/06/29/kaspersky-rescue-disk/" title="Kaspersky Rescue Disk (June 29, 2008)">Kaspersky Rescue Disk</a> (2)</li>
	<li><a href="http://www.ghacks.net/2006/05/12/introduction-series-part-4-cookies/" title="Introduction Series Part 4: Cookies (May 12, 2006)">Introduction Series Part 4: Cookies</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2007/12/29/why-hackers-take-advantage-of-global-events/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Windows Worms Door Cleaner</title>
		<link>http://www.ghacks.net/2006/03/12/windows-worms-door-cleaner/</link>
		<comments>http://www.ghacks.net/2006/03/12/windows-worms-door-cleaner/#comments</comments>
		<pubDate>Sun, 12 Mar 2006 08:40:48 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[trojans]]></category>
		<category><![CDATA[worm cleaner]]></category>
		<category><![CDATA[worms]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=349</guid>
		<description><![CDATA[The little freeware application <a href="http://www.firewallleaktester.com/wwdc.htm" target="_blank">Windows Worms Door Cleaner</a> has a very strange name if you ask me. It´s purpose is to disable certain services that worms rely on to attack your system. ]]></description>
			<content:encoded><![CDATA[<p>The little freeware application Windows Worms Door Cleaner has a very strange name if you ask me. It´s purpose is to disable certain services that worms rely on to attack your system. </p>
<blockquote><p>
Most of the worms, in particular the most famous, use known vulnerabilities in Windows services which are enabled by default and that often can&#8217;t be disabled via the OS&#8217;s configuration.<br />
Even with these services patched with Microsoft security fixes, they are still exposed to the Internet at large ready to be exploited by the next exploit.
</p></blockquote>
<p><img src="http://www.ghacks.net/files/screens/200603/wwdc.jpg" alt="windows worms door cleaner security port closer" /></p>
<p><span id="more-349"></span></p>

	Tags: <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/trojans/" title="trojans" rel="tag">trojans</a>, <a href="http://www.ghacks.net/tag/worm-cleaner/" title="worm cleaner" rel="tag">worm cleaner</a>, <a href="http://www.ghacks.net/tag/worms/" title="worms" rel="tag">worms</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/06/29/kaspersky-rescue-disk/" title="Kaspersky Rescue Disk (June 29, 2008)">Kaspersky Rescue Disk</a> (2)</li>
	<li><a href="http://www.ghacks.net/2008/07/05/gernova-keylock/" title="Gernova Keylock (July 5, 2008)">Gernova Keylock</a> (2)</li>
	<li><a href="http://www.ghacks.net/2007/12/29/why-hackers-take-advantage-of-global-events/" title="Why Hackers take advantage of global events (December 29, 2007)">Why Hackers take advantage of global events</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/01/17/trend-micro-rubotted/" title="Trend Micro RUBotted (January 17, 2008)">Trend Micro RUBotted</a> (5)</li>
	<li><a href="http://www.ghacks.net/2007/03/12/hijack-this-20-beta/" title="Hijack This 2.0 beta (March 12, 2007)">Hijack This 2.0 beta</a> (8)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2006/03/12/windows-worms-door-cleaner/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Beginners Guide to Securing a Pc</title>
		<link>http://www.ghacks.net/2005/11/29/beginners-guide-to-securing-a-pc/</link>
		<comments>http://www.ghacks.net/2005/11/29/beginners-guide-to-securing-a-pc/#comments</comments>
		<pubDate>Tue, 29 Nov 2005 21:56:56 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[beginners guide]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[freeware]]></category>
		<category><![CDATA[pc]]></category>
		<category><![CDATA[secure]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[virus]]></category>
		<category><![CDATA[worms]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=189</guid>
		<description><![CDATA[You´d probably heard this before. Everyone should secure his personal computer. You read stories like this in every other computer mag, your geeky friends probably tell you the same and even name some programs that you should use because they are the best and most secure. I know that you would like to have a secure computer, well a secured computer, there is nothing like 100% security if you are on a network or the internet. Keep that in mind.]]></description>
			<content:encoded><![CDATA[<p>You´d probably heard this before. Everyone should secure his personal computer. You read stories like this in every other computer mag, your geeky friends probably tell you the same and even name some programs that you should use because they are the best and most secure. I know that you would like to have a secure computer, well a secured computer, there is nothing like 100% security if you are on a network or the internet. Keep that in mind.</p>
<p>I will explain the basics of securing your computer, will tell you what you need to secure it and give you alternatives if there are any. But first of all, all programs that I name will be freeware or open source. We want a secure computer but don´t want to pay hundreds of $$ for it. There will also be some geeks who will comment that program XY is way better and pro than the program I named and that only people with no security understanding whatsoever will use. Don´t listen to them, there are many factors that play a role in selecting a suitable software. I tried to find the best mix between security and user friendliness.</p>
<p><span id="more-189"></span>I will recommend the following type of programs for your personal computer: Anti-Virus, Anti-Spyware, Rootkit Checker, Autorun Checker and Process Checker.</p>
<p>Wait, no Firewall ? Yes no firewall, I will give you a short answer why there will be no firewall. This seems unusual but just wait a little more and you will know. </p>
<p>Before we start, let me give you a short advice. Running all these tools in the background does not make your system secure. Its more secure yes, but not totally. Therefor you should still use common sense when you do something on the internet, e.g. don´t click on mail attachments that are unknown to you aso.</p>
<p>Lets Start:</p>
<p><strong>Anti-Virus: </strong></p>
<p>There are unfortunately thousands of free anti-virus products out there, what we need is the following. It should be up to date, have internet updates and use few resources. </p>
<p>I suggest <a href="http://www.free-av.com/" target="_blank">Antivir Personal Edition</a>, its free, always up to date, uses only few resources and has a very good virus recognition rate. Alternatives would be <a href="http://www.avast.com/" target="_Blank">Avast Antivirus</a> and <a href="http://free.grisoft.com/doc/1" target="_blank">AVG Free Edition</a></p>
<p><strong>Anti-Spyware:</strong></p>
<p><a href="http://www.lavasoftusa.com/software/adaware/" target="_blank">Ad-Aware SE Personal</a>, small and good, enough said. As an alternative <a href="http://www.microsoft.com/athome/security/spyware/software/default.mspx" target="_blank">Microsoft&#8217;s own</a> Spyware Tool.</p>
<p><strong>Rootkit-Checker:</strong></p>
<p>Everyone knows about Rootkits since the Sony debacle but only a few know how to check their pc for a rootkit. <a href="http://www.sysinternals.com/Utilities/RootkitRevealer.html" target="_blank">Rootkit Revealer</a> from Sysinternals does the job. Run this tool from time to time, its not necessary to run it all the time.</p>
<p><strong>Autorun Checker:</strong></p>
<p>There are numerous places that can hold programs that autorun at startup, its a hassle to check them manually. Run a autorun checker from time to time to check on all places and programs and disable the ones you won´t need. Your system will probably boot faster if you disable some.</p>
<p>I suggest <a href="http://www.sysinternals.com/Utilities/Autoruns.html" target="_blank">Autoruns 8.4</a> from Sysinternals.</p>
<p><strong>Process Checker:</strong></p>
<p><a href="http://www.sysinternals.com/Utilities/ProcessExplorer.html" target="_blank">Process Explorer</a> from sysinternals tells you which handles or dll process have opened or loaded, small great tool.</p>
<p><strong>No Firewall ?</strong></p>
<p>The reasoning behind this is pretty simple. A software firewall gives the user a false sense of security. If you look up bugtraq for example you see lots and lots of firewall vulnerabilities. Every software that runs on your system raises the danger of exploits and backdoors. Many trojans and worms already know ways to bypass firewall systems and use save routes (that means use programs that are safe to use for the firewall) to execute their malicious code.</p>
<p>Another problem that occurs is that if a malicious tool is installed with admin rights it could alter firewall functions. You find a simple code on <a href="http://my-forum.netfirms.com/zone/zcode.htm" target="_Blank">netfirms.com</a> that does press the YES button of Zonealarm automatically.  There are of course other more serious possibilities.</p>
<p>The conclusion would be, that firewalls are not secure and malicious code can find ways around the firewall and even manipulate it. Therefor i suggest you don´t use a firewall but do something different.</p>
<p>I suggest you download this small tool called <a href="http://www.dingens.org/" target="_blank"> Shutdown Windows Servers</a> and run it on your system. This should be sufficient to avoid most of the nasty worms and trojans that float around lately without the use of a firewall. .Common sense of course applies</p>

	Tags: <a href="http://www.ghacks.net/tag/beginners-guide/" title="beginners guide" rel="tag">beginners guide</a>, <a href="http://www.ghacks.net/tag/firewall/" title="firewall" rel="tag">firewall</a>, <a href="http://www.ghacks.net/tag/freeware/" title="freeware" rel="tag">freeware</a>, <a href="http://www.ghacks.net/tag/pc/" title="pc" rel="tag">pc</a>, <a href="http://www.ghacks.net/tag/secure/" title="secure" rel="tag">secure</a>, <a href="http://www.ghacks.net/tag/trojan/" title="trojan" rel="tag">trojan</a>, <a href="http://www.ghacks.net/tag/virus/" title="virus" rel="tag">virus</a>, <a href="http://www.ghacks.net/tag/worms/" title="worms" rel="tag">worms</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2006/12/18/avg-antivirus-will-continue-to-be-free/" title="AVG-Antivirus will continue to be free (December 18, 2006)">AVG-Antivirus will continue to be free</a> (2)</li>
	<li><a href="http://www.ghacks.net/2005/12/10/astalavista-top-10-freeware-tools/" title="Astalavista Top 10 Freeware Tools (December 10, 2005)">Astalavista Top 10 Freeware Tools</a> (2)</li>
	<li><a href="http://www.ghacks.net/2006/11/29/zombie-city-tactics/" title="Zombie City Tactics (November 29, 2006)">Zombie City Tactics</a> (0)</li>
	<li><a href="http://www.ghacks.net/2007/12/29/why-hackers-take-advantage-of-global-events/" title="Why Hackers take advantage of global events (December 29, 2007)">Why Hackers take advantage of global events</a> (0)</li>
	<li><a href="http://www.ghacks.net/2005/11/06/who-is-connected-to-your-pc-right-now/" title="Who is connected to your pc right now ? (November 6, 2005)">Who is connected to your pc right now ?</a> (6)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2005/11/29/beginners-guide-to-securing-a-pc/feed/</wfw:commentRss>
		<slash:comments>50</slash:comments>
		</item>
	</channel>
</rss>
