<?xml version="1.0"?>
<!-- RSS generated by Radio UserLand v8.2.1 on Fri, 13 Jun 2008 01:38:01 GMT -->
<rss version="2.0">
	<channel>
		<title>iWay-Safety.com: Malware News &amp; Views</title>
		<link>http://www.iway-safety.com/radio/categories/malware/</link>
		<description>news, views and tips on issues and related technology and activities for personal, residential, soho and small organization users concerning Malware viruses, worms, trojans, hack attacks and other nasty stuff.</description>
		<language>en</language>
		<copyright>Copyright 2008 iWay-Safety.com</copyright>
		<lastBuildDate>Fri, 13 Jun 2008 01:38:01 GMT</lastBuildDate>
		<docs>http://backend.userland.com/rss</docs>
		<generator>Radio UserLand v8.2.1</generator>
		<managingEditor>iwaysafety@iway-safety.com</managingEditor>
		<webMaster>iwaysafety@iway-safety.com</webMaster>
		<category domain="http://rpc.weblogs.com/shortChanges.xml">rssUpdates</category> 
		<skipHours>
			<hour>3</hour>
			<hour>4</hour>
			<hour>5</hour>
			<hour>6</hour>
			<hour>0</hour>
			<hour>1</hour>
			<hour>2</hour>
			<hour>23</hour>
			</skipHours>
		<ttl>60</ttl>
		<item>
			<title>Anti-virus software isn&apos;t the only computer security tool</title>
			<link>http://www.usatoday.com/tech/news/computersecurity/2008-04-08-security-software-spam-viruses_N.htm?csp=tech</link>
			<description>&lt;P&gt;... get in the habit of quickly installing all software program updates ... beyond that also consider: &lt;/P&gt;
&lt;P&gt;Certified e-mail &lt;FONT color=#ff0000&gt;&lt;EM&gt;[?? Seems off the point since these services are directed at businesses not individuals]&lt;/EM&gt;&lt;/FONT&gt; &lt;/P&gt;
&lt;P&gt;Web page scanners ... tools using varying technologies to gauge the reputation of most Web pages. EG AVG&apos;s LinkScanner, ScanSafe&apos;s Scandoo, Trend Micro&apos;s TrendProtect, McAfee&apos;s SiteAdvisor &lt;FONT color=#ff0000&gt;&lt;EM&gt;[which I use]&lt;/EM&gt;&lt;/FONT&gt; and Finjan&apos;s SecureBrowsing grade Web pages as safe, unsafe or questionable. &lt;/P&gt;
&lt;P&gt;Browser security tools ... anti phishing filters &lt;/P&gt;
&lt;P&gt;&lt;FONT color=#ff0000&gt;&lt;EM&gt;[In other words a toolbox instead of a tool.]&lt;/EM&gt;&lt;/FONT&gt;&lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2008/06/12.htm#a925</guid>
			<pubDate>Fri, 13 Jun 2008 01:37:58 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=925</comments>
			</item>
		<item>
			<title>SANS OUCH! Newsletter - Volume 5, Number 5 May 2008</title>
			<link>https://www.sans.org/newsletters/ouch</link>
			<description>&lt;FONT size=2&gt;
&lt;P&gt;OUCH!&lt;/P&gt;
&lt;P&gt;SANS Institute Security Newsletter for Computer Users&lt;/P&gt;
&lt;P&gt;Volume 5, Number 5 May 2008&lt;/P&gt;
&lt;P&gt;************************************************************************&lt;/P&gt;
&lt;P&gt;In This Issue&lt;/P&gt;
&lt;P&gt;1. Eight Surefire Ways to Become an Identity Theft Victim - 2. Malware&lt;/P&gt;
&lt;P&gt;- - 3. Scams and Hoaxes - 4. Microsoft and Apple Security Updates - 5.&lt;/P&gt;
&lt;P&gt;Security Newsbytes&lt;/P&gt;
&lt;P&gt;************************************************************************&lt;/P&gt;
&lt;P&gt;A formatted version of the OUCH newsletter can be found at &lt;/FONT&gt;&lt;A href=&quot;https://www.sans.org/newsletters/ouch&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;https://www.sans.org/newsletters/ouch&quot;&gt;https://www.sans.org/newsletters/ouch&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;FONT size=2&gt;. &lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size=2&gt;You can subscribe to OUCH on the same site. Send your comments to &lt;a href=&quot;mailto:OUCH@sans.org&quot;&gt;OUCH@sans.org&lt;/a&gt;.&lt;/P&gt;
&lt;P&gt;************************************************************************&lt;/P&gt;
&lt;P&gt;1. Eight Surefire Ways to Become an Identity Theft Victim&lt;/P&gt;
&lt;P&gt;- --Practice unsafe surfing. When you purchase a new computer, go online without activating the firewall, or purchasing protective software.&lt;/P&gt;
&lt;P&gt;Further expose yourself digitally by sharing a wireless connection with the entire neighborhood. Without digital encryption, you can share the contents of your hard drive with anyone on the street. For maximum risk, do some online banking on a public computer -- like the one at the library or a public cafe. Bonus points are added if your Social Security number is your user ID for any transactions.&lt;/P&gt;
&lt;P&gt;- --Skimp on anti-virus and anti-spyware protection. Courting disaster online is easy. Invite malicious code to attack your computer simply by doing nothing. Antivirus programs can be pricey, and the maintenance of constantly downloading updates is time-consuming. Combine that with the security updates from Microsoft or Apple and it&apos;s enough to seriously annoy anyone.&lt;/P&gt;
&lt;P&gt;- --Passwords are a pain! Make life easy for yourself by using the same password for EVERYTHING, and make it something easy to remember, like your first name or &apos;password&apos;. Just in case, make sure you write it down on a yellow sticky and put it somewhere easy to see.&lt;/P&gt;
&lt;P&gt;And don&apos;t forget to have your browser set to &apos;remember password&apos; to make life easy for you - and the cyberthief.&lt;/P&gt;
&lt;P&gt;- --Peek at junk email and open attachments from unknown sources. Open attachments from strangers, secret crushes, long-lost friends saying &quot;what&apos;s up,&quot; or strangers hawking cheap drugs -- you&apos;ll never know unless you peek at that email. One of the many fun things that can happen when you open an attachment containing malicious code is infecting your computer with a Trojan horse or virus, which can easily lead to identity theft.&lt;/P&gt;
&lt;P&gt;- --Stuff your wallet with juicy identifying tidbits. Wallets and purses are more than just handy cash-carrying devices. They often have credit cards, identification, insurance information and even Social Security cards. Obviously, more is better if you&apos;d like to become the prey of fraudsters. Losing or misplacing a wallet or purse can cause more problems than just the hassle of replacing all those cards and buying a new bag. Armed with your date of birth, Social Security number and mailing address, there&apos;s no limit to the damage thieves could cause.&lt;/P&gt;
&lt;P&gt;- --Make your checks payable to criminals. If you&apos;re like most people, you wouldn&apos;t post your checking account information on your front door, though you should if you&apos;d like to be a victim of fraud. Similarly, checks reflecting the same information can be dropped casually into unsecured mailboxes. Statistically the chances of your mailbox being targeted by criminal elements are low, but not that low. According to the 2008 Identity Fraud Survey Report from Javelin Strategy and Research, almost 1 in 10 victims of identity theft who can pinpoint the scene of the crime say that it happened at the mailbox.&lt;/P&gt;
&lt;P&gt;- --Opt out? Opt in! While you&apos;re mailing checks from the unlocked mailbox, go ahead and get credit card companies to send you all the pre-approved offers that the postman can cram into the box. Similarly, don&apos;t get credit card statements online; leave them on the side of the road so that they&apos;re more convenient for fraudsters who lack the technical knowledge or follow-through to launch complicated hacking schemes.&lt;/P&gt;
&lt;P&gt;- --Nothing is too good to be true. Everyone wants to feel special and maybe more importantly, filthy rich. When reading an emailed proposition from an African business tycoon, an imperiled prince or downtrodden heiress offering millions of dollars in exchange for some small measure of assistance, it&apos;s difficult not to wish it were true. Falling for the story will undoubtedly lead to unpleasantness.&lt;/P&gt;
&lt;P&gt;More information:&lt;/P&gt;
&lt;P&gt;&lt;/FONT&gt;&lt;A href=&quot;http://finance.yahoo.com/banking-budgeting/article/104894/7-Surefire-Ways-to&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://finance.yahoo.com/banking-budgeting/article/104894/7-Surefire-Ways-to&quot;&gt;http://finance.yahoo.com/banking-budgeting/article/104894/7-Surefire-Ways-to&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;-Become-an-ID-Theft-Victim&lt;/P&gt;
&lt;P&gt;************************************************************************&lt;/P&gt;
&lt;P&gt;2. Malware&lt;/P&gt;
&lt;P&gt;- --Zeus. A Trojan being spread by the so-called &quot;Rock Phish&quot; group of Russian criminals through phishing scams. Zeus is designed not only to trick victims into clicking on a link in a phishing email to give up personal information, but also to drop a Trojan on the victim&apos;s computer at the same time. The new attacks combine phishing and the Zeus Trojan to steal personal information and spread financial crimeware. Zeus can steal personal data such as usernames, passwords and Social Security numbers entered by the user while interacting with other websites.&lt;/P&gt;
&lt;P&gt;More information:&lt;/P&gt;
&lt;P&gt;&lt;/FONT&gt;&lt;A href=&quot;http://www.scmagazineus.com/Rock-Phish-gang-adds-malware-download-to-attacks&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.scmagazineus.com/Rock-Phish-gang-adds-malware-download-to-attacks&quot;&gt;http://www.scmagazineus.com/Rock-Phish-gang-adds-malware-download-to-attacks&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;/article/109240/&lt;/P&gt;
&lt;P&gt;- -- RaceForTibet. Rootkit* malware that surreptitiously installs a keystroke logger on end users&apos; PCs once they open a Flash movie file which uses a cartoon to mask its malware payload. The captured data is reportedly sent to a computer in China. The cartoon ridicules the effort of a Chinese gymnast and then displays images supporting a free Tibet.&lt;/P&gt;
&lt;P&gt;The malware is being distributed as an attachment called RaceForTibet.exe.&lt;/P&gt;
&lt;P&gt;More information:&lt;/P&gt;
&lt;P&gt;&lt;/FONT&gt;&lt;A href=&quot;http://www.itpro.co.uk/wireless/news/187935/tibet-supporters-targeted-by-tro&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.itpro.co.uk/wireless/news/187935/tibet-supporters-targeted-by-tro&quot;&gt;http://www.itpro.co.uk/wireless/news/187935/tibet-supporters-targeted-by-tro&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;jans.html&lt;/P&gt;
&lt;P&gt;* Rootkit: &lt;/FONT&gt;&lt;A href=&quot;http://en.wikipedia.org/wiki/Rootkit&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://en.wikipedia.org/wiki/Rootkit&quot;&gt;http://en.wikipedia.org/wiki/Rootkit&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;- -- OSX.RSPlug.A. A Mac Trojan that spreads by spam emails designed to lure users to pornography sites. Visitors are presented with a still image from a salacious video. Clicking on the image to play the video returns the following message: &quot;Quicktime Player is unable to play movie file. Please click here to download new version of codec.&quot; After the linked page loads, malware is downloaded and launches an installer. The installer requires the user to enter the admin password. Once the password has been entered, the malware infection is complete. The Trojan alters network settings, redirecting webpages and funneling advertisements for porn sites to your Mac.&lt;/P&gt;
&lt;P&gt;More information:&lt;/P&gt;
&lt;P&gt;&lt;/FONT&gt;&lt;A href=&quot;http://www.geekstogo.com/2007/10/31/osxrspluga-trojan-info-and-removal/&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.geekstogo.com/2007/10/31/osxrspluga-trojan-info-and-removal/&quot;&gt;http://www.geekstogo.com/2007/10/31/osxrspluga-trojan-info-and-removal/&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;************************************************************************&lt;/P&gt;
&lt;P&gt;3. Scams and Hoaxes&lt;/P&gt;
&lt;P&gt;- --Economic Stimulus Refund Phishing Scam A number of phishing scam emails are currently targeting US taxpayers by offering bogus refund payments as bait. This email, purporting to be from the Internal Revenue Service (IRS), claims that the recipient is qualified to receive the 2008 Economic Stimulus Refund. The recipient is instructed to follow a link in the message in order to fill in an online form, ostensibly to allow the refund to be processed. The email includes the IRS logo and copyright notice and is from a seemingly genuine IRS email address. However, the email is not from the IRS.&lt;/P&gt;
&lt;P&gt;More information:&lt;/P&gt;
&lt;P&gt;&lt;/FONT&gt;&lt;A href=&quot;http://www.hoax-slayer.com/economic-stimulus-refund-scam.shtml&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.hoax-slayer.com/economic-stimulus-refund-scam.shtml&quot;&gt;http://www.hoax-slayer.com/economic-stimulus-refund-scam.shtml&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;- --United States District Court Subpoena Malware Email This seemingly official email purports to be a subpoena sent by the United States District Court. The message claims that the recipient must testify before a Grand Jury at a specified place and time. The recipient is instructed to follow a link in the message to download and print a complete copy of the subpoena document. However, the message is not from the United States District Court. In fact, the message is an attempt to trick recipients into installing information-stealing malware on their computers.&lt;/P&gt;
&lt;P&gt;More information: &lt;/FONT&gt;&lt;A href=&quot;http://www.uscourts.gov/newsroom/2008/alert.cfm&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.uscourts.gov/newsroom/2008/alert.cfm&quot;&gt;http://www.uscourts.gov/newsroom/2008/alert.cfm&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;&lt;/FONT&gt;&lt;A href=&quot;http://www.hoax-slayer.com/subpoena-phishing-scam.shtml&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.hoax-slayer.com/subpoena-phishing-scam.shtml&quot;&gt;http://www.hoax-slayer.com/subpoena-phishing-scam.shtml&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;- --Visa Personal Password Phishing Scam An email claiming that recipients can protect their Visa credit card for online purchases by clicking a link in the message and creating a personal password. However, the message is just another phishing scam and was not sent by Visa. Those who fall for the ruse and click the link will be taken to a very sophisticated, but fraudulent, website that has been designed to closely resemble the genuine Visa website.&lt;/P&gt;
&lt;P&gt;More information: &lt;/FONT&gt;&lt;A href=&quot;http://www.hoax-slayer.com/visa-password-scam.shtml&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.hoax-slayer.com/visa-password-scam.shtml&quot;&gt;http://www.hoax-slayer.com/visa-password-scam.shtml&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;- --Mail Server Report&lt;/P&gt;
&lt;P&gt;According to this warning message, a dangerous virus is being distributed via emails with the subject line &quot;Mail Server Report&quot;. The warning claims that opening attachments that come with the email will first display a message saying &quot;It is too late now, your life is no longer beautiful&quot; before destroying all files on the infected computer and stealing personal information. However these claims are untrue.&lt;/P&gt;
&lt;P&gt;There is not, nor has there ever been, a virus like the one described in this bogus warning message.&lt;/P&gt;
&lt;P&gt;More information: &lt;/FONT&gt;&lt;A href=&quot;http://www.hoax-slayer.com/mail-server-report-hoax.shtml&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.hoax-slayer.com/mail-server-report-hoax.shtml&quot;&gt;http://www.hoax-slayer.com/mail-server-report-hoax.shtml&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;FONT size=2&gt; &lt;/P&gt;
&lt;P&gt;************************************************************************&lt;/P&gt;
&lt;P&gt;4. Microsoft and Apple Security Updates&lt;/P&gt;
&lt;P&gt;Microsoft and Apple provide free security updates for their software products.&lt;/P&gt;
&lt;P&gt;Windows: Microsoft issues patches for all Microsoft products on the second Tuesday of each month as well as out-of-cycle patches on any day of the month. The next scheduled release date is May 13th. Check manually too, once every two weeks, to make sure all of the updates have been installed.&lt;/P&gt;
&lt;P&gt;More information: &lt;/FONT&gt;&lt;A href=&quot;http://www.microsoft.com/athome/security/default.mspx&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.microsoft.com/athome/security/default.mspx&quot;&gt;http://www.microsoft.com/athome/security/default.mspx&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;OS X: Updates are issued frequently, and their contents may differ depending on which processor is in your Mac (PPC or Intel).&lt;/P&gt;
&lt;P&gt;More information: &lt;/FONT&gt;&lt;A href=&quot;http://www.apple.com/support/downloads/&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.apple.com/support/downloads/&quot;&gt;http://www.apple.com/support/downloads/&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;iPhones: Must be updated manually:&lt;/P&gt;
&lt;P&gt;&lt;/FONT&gt;&lt;A href=&quot;http://docs.info.apple.com/article.html?artnum=305744&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://docs.info.apple.com/article.html?artnum=305744&quot;&gt;http://docs.info.apple.com/article.html?artnum=305744&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;************************************************************************&lt;/P&gt;
&lt;P&gt;5. Security Newsbytes&lt;/P&gt;
&lt;P&gt;- --Hannaford to Spend Millions on IT Security Upgrades After Breach Executives at Hannaford Bros. Co. have said that the grocer expects to spend millions of dollars on IT security upgrades in the wake of the recent network intrusion that resulted in the theft of up to 4.2 million credit and debit card numbers from its systems. The planned upgrades include the installation of new intrusion-prevention systems that will monitor activities on Hannaford&apos;s network and the individual systems at its stores, plus the deployment of PIN pad devices with encryption support in store checkout aisles. Hannaford also has signed on IBM to do around-the-clock network security monitoring.&lt;/P&gt;
&lt;P&gt;More information:&lt;/P&gt;
&lt;P&gt;&lt;/FONT&gt;&lt;A href=&quot;http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;amp;arti&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;amp&quot;&gt;http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;amp&lt;/a&gt;;arti&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;cleId=9079652&lt;/P&gt;
&lt;P&gt;- --Microsoft Reports 300% Increase in Trojan Downloaders Computer users are increasingly at risk of being lured to websites that surreptitiously download malicious software onto their machines, but stolen or lost laptops still represent most of the security breaches reported, according to the latest six-month Microsoft Security Intelligence Report. Exploits, malicious software, and hacking accounted for 13% of all security breach notifications recorded in the second half of 2007, while 57% of the breaches publicly disclosed involved lost or stolen equipment. Malicious software attacks via Trojan downloaders and droppers increased by 300% during the same time period.&lt;/P&gt;
&lt;P&gt;More information:&lt;/P&gt;
&lt;P&gt;&lt;/FONT&gt;&lt;A href=&quot;http://www.news.com/8301-10784_3-9925077-7.html?tag=nefd.only&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.news.com/8301-10784_3-9925077-7.html?tag=nefd.only&quot;&gt;http://www.news.com/8301-10784_3-9925077-7.html?tag=nefd.only&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;- -- Firefox and Safari Updates Tackle &quot;Alternative&quot; Browser Bugs Mozilla has updated its Firefox web browser in response to the discovery of a vulnerability which allows miscreants to take control of vulnerable systems. Apple has pushed out an update for both the Windows and Mac versions of its Safari web browser. The more serious Mac flaws, if left unchecked, create a means for hackers to crash browsers or inject malicious code into vulnerable systems.&lt;/P&gt;
&lt;P&gt;More information:&lt;/P&gt;
&lt;P&gt;&lt;/FONT&gt;&lt;A href=&quot;http://www.mozilla.org/security/announce/2008/mfsa2008-20.html&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.mozilla.org/security/announce/2008/mfsa2008-20.html&quot;&gt;http://www.mozilla.org/security/announce/2008/mfsa2008-20.html&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;&lt;/FONT&gt;&lt;A href=&quot;http://support.apple.com/kb/HT1467&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://support.apple.com/kb/HT1467&quot;&gt;http://support.apple.com/kb/HT1467&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;FONT size=2&gt;
&lt;P&gt;************************************************************************&lt;/P&gt;
&lt;P&gt;Copyright 2008, SANS Institute (&lt;/FONT&gt;&lt;A href=&quot;http://www.sans.org/&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.sans.org&quot;&gt;http://www.sans.org&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;FONT size=2&gt;) Editorial Board: Bill Wyman, Alan Reichert, Barbara Rietveld, Alan Paller.&lt;/P&gt;
&lt;P&gt;Permission is hereby granted for any person to redistribute this in whole or in part to any other persons as long as the distribution is not being made as part of any commercial service or as part of a promotion or marketing effort for any commercial service or product. Readers are invited to subscribe for free at &lt;/FONT&gt;&lt;A href=&quot;https://www.sans.org/newsletters/ouch&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;https://www.sans.org/newsletters/ouch&quot;&gt;https://www.sans.org/newsletters/ouch&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2008/06/12.htm#a922</guid>
			<pubDate>Thu, 12 Jun 2008 21:30:35 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=922</comments>
			</item>
		<item>
			<title>PC World: Vista&apos;s Despised UAC Nails Rootkits</title>
			<link>http://www.pcworld.com/businesscenter/article/146256/vistas_despised_uac_nails_rootkits_tests_find.html</link>
			<description>It can spot [all] rootkits [used in the tests] before they install. While only six of 30 rootkits could run on the OS,&amp;nbsp;the testers had to turn off UAC to get even that far. &lt;A href=&quot;http://www.pcworld.com/article/id,146008/article.html?tk=rel_news&quot;&gt;Vista&apos;s UAC itself &lt;/A&gt;spotted everything thrown in front of it.&amp;nbsp;&amp;nbsp;&lt;FONT color=#ff0000&gt;&lt;EM&gt;[That alone got me to turn UAC back on although rootkit authors simply may not be interested in engineering for Vista.]&lt;/EM&gt;&lt;/FONT&gt;.&amp;nbsp;When testing Windows XP, of 30 rootkits thrown at XP anti-malware scanners, the best of the all-purpose suites was Avira AntiVir Premium Security Suite, which found 29 active rootkits. The anti-rootkit tools fared better with four achieving perfect scores but all failed to remove any of the rootkits they had found.</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2008/06/09.htm#a920</guid>
			<pubDate>Mon, 09 Jun 2008 20:58:17 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=920</comments>
			</item>
		<item>
			<title>SANS Spyware Mini-Quiz</title>
			<link>https://www.sans.org/newsletters/ouch</link>
			<description>&lt;FONT size=2&gt;&lt;FONT size=2&gt;SANS Institute Security Newsletter for Computer Users&lt;BR&gt;Volume 4, Number 11 November 2007&lt;BR&gt;************************************************************************&lt;BR&gt;A formatted version of the OUCH newsletter can be found at &lt;/FONT&gt;&lt;A href=&quot;https://www.sans.org/newsletters/ouch&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;https://www.sans.org/newsletters/ouch&quot;&gt;https://www.sans.org/newsletters/ouch&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;FONT size=2&gt;. You can subscribe to OUCH on the same site. Send your comments to &lt;a href=&quot;mailto:OUCH@sans.org&quot;&gt;OUCH@sans.org&lt;/a&gt;.&lt;BR&gt;************************************************************************&lt;BR&gt;Spyware Mini-Quiz&lt;BR&gt;(1) Approximately how many computers on the Internet are infected with spyware?&lt;BR&gt;a. 25%&lt;BR&gt;b. 45%&lt;BR&gt;c. 60%&lt;BR&gt;d. 80%&lt;BR&gt;(2) What is the single best thing you can do to protect your computer against spyware?&lt;BR&gt;a. Disable Active-X in Internet Explorer&lt;BR&gt;b. Protect your computer with a firewall&lt;BR&gt;c. Install anti-spyware and keep it updated&lt;BR&gt;d. Only browse websites that you know and trust&lt;BR&gt;************************************************************************&lt;BR&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;FONT size=2&gt;&lt;FONT size=2&gt;Answers&lt;BR&gt;(1) d. While expert opinions vary, most sources agree that 80% is a reliable estimate.&lt;BR&gt;(2) c. Antispyware is as important as antivirus software for protecting your computer.&lt;BR&gt;&amp;nbsp;&lt;BR&gt;Copyright 2007, SANS Institute (&lt;/FONT&gt;&lt;A href=&quot;http://www.sans.org/&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff size=2&gt;&lt;a href=&quot;http://www.sans.org&quot;&gt;http://www.sans.org&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;FONT size=2&gt;)&lt;BR&gt;&lt;/FONT&gt;&lt;/FONT&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2008/03/20.htm#a919</guid>
			<pubDate>Fri, 21 Mar 2008 01:58:51 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=919</comments>
			</item>
		<item>
			<title>How to help avoid browser hijacking</title>
			<link>http://www.microsoft.com/athome/security/online/browser_hijacking.mspx</link>
			<description>Micorsoft Security At Home: &quot;Browser hijacking&quot; is a common type of online attack in which hackers take control of your computer&apos;s Internet browser and change how and what it displays when you&apos;re surfing the Web. &lt;FONT color=#ff0000&gt;&lt;EM&gt;[Included are: info for determining whether your browser has been hijacked; more importantly, preventing hijacks; and what you can do to restore a browser that&apos;s been hijacked. Once again the same basic steps apply: use your common sense about downloading executable code from &quot;strangers&quot;; keep your operating system up to date especially with security fixes, your MANDATORY protective / detective tools (anti mal/spy/ad ware) as well - same thing for your browser of course.]&lt;/EM&gt;&lt;/FONT&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2006/01/30.htm#a910</guid>
			<pubDate>Mon, 30 Jan 2006 18:44:23 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=910</comments>
			</item>
		<item>
			<title>Is Firefox still safer than IE?</title>
			<link>http://windowssecrets.com/comp/050512/</link>
			<description>&lt;IMG title=&quot;Editors&apos; Photo&quot; height=116 alt=&quot;Editors&apos; Photo&quot; hspace=1 src=&quot;http://www.windowssecrets.com/images/wsn/Editors.jpg&quot; width=188 align=left vspace=13 border=0&gt;&lt;BR clear=all&gt;Windows Secrets 5/12/05 (free) Newsletter: &lt;FONT color=#ff0000&gt;&lt;EM&gt;[Good review of recent security status of Internet Explorer versus Firefox browsers.]&lt;/EM&gt;&lt;/FONT&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2005/05/14.htm#a893</guid>
			<pubDate>Sun, 15 May 2005 00:43:53 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=893</comments>
			</item>
		<item>
			<title>MasterCard Shuts Down 1,400 Phishing Sites</title>
			<link>http://www.securitypipeline.com/showArticle.jhtml?articleID=163100709</link>
			<description>&lt;!--StartFragment --&gt;&amp;nbsp;MasterCard International Inc. said Tuesday that it has shut down nearly 1,400 phishing sites and more than 750 sites suspected of selling illegal credit-card information since launching an ID-theft-prevention program in June (2004). The program also has led to the discovery and protection of more than 35,000 MasterCard account numbers that were in jeopardy of being compromised. </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2005/05/13.htm#a891</guid>
			<pubDate>Sat, 14 May 2005 02:59:18 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=891</comments>
			</item>
		<item>
			<title>Microsoft To Offer PC Health Service Called OneCare</title>
			<link>http://news.yahoo.com/news?tmpl=story&amp;u=/nf/20050513/tc_nf/34869</link>
			<description>&lt;P&gt;Microsoft&amp;nbsp;is launching a PC &quot;health service&quot; that promises to deliver automated protection, maintenance and machine tune-ups in a single package. Windows OneCare initially is being distributed to company employees as part of a testing and development process before public beta availability later this year. The subscription service will be continually updated in an effort to address safety issues such as worms, viruses and spyware. &lt;/P&gt;
&lt;P&gt;&lt;!--StartFragment --&gt;Micorosoft also is focused on broader PC health issues, including: the protection of digital photos, music, financial data and software, as well as system performance. Windows OneCare will provide updated antivirus, antispyware and two-way firewall protection. The package offers periodic disk cleanup, hard-drive defragmentation and file repair. Automated file backup also is offered, along with the option to back up all files on the system or only those that have changed since the last time the action was performed.&lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2005/05/13.htm#a889</guid>
			<pubDate>Sat, 14 May 2005 02:21:46 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=889</comments>
			</item>
		<item>
			<title>Phishers Dodge Content Filtering </title>
			<link>http://www.securitypipeline.com/showArticle.jhtml?articleID=163102054</link>
			<description>&lt;!--StartFragment --&gt;According to Netcraft, some fraudsters are replacing text content on their phony sites with similar-looking images, &quot;making it much more difficult for automated systems to detect the presence of keywords such as &apos;PayPal&apos; and &apos;credit card.&apos;&quot; 
&lt;P&gt;In an &lt;A href=&quot;http://news.netcraft.com/archives/2005/05/12/fraudsters_seek_to_make_phishing_sites_undetectable_by_content_filters.html&quot; target=_blank&gt;online alert&lt;/A&gt;, Netcraft illustrated how a phisher could simply embed text within an image to hide it from filters. The text would still be readable by a possible victim, but not by a computer. &lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2005/05/13.htm#a888</guid>
			<pubDate>Sat, 14 May 2005 02:05:17 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=888</comments>
			</item>
		<item>
			<title>Adware Targets Kids</title>
			<link>http://www.securitypipeline.com/showArticle.jhtml?articleID=163102049</link>
			<description>&lt;!--StartFragment --&gt;Mainstream children&apos;s Web sites host a glut of &lt;A href=&quot;http://www.techweb.com/encyclopedia/defineterm.jhtml?term=adware&amp;amp;x=31&amp;amp;y=8&quot; target=_blank&gt;adware&lt;/A&gt;&amp;nbsp;Symantec, a security firm said this week, proof that spyware makers are targeting kids in an attempt to slip by parents and get their software onto home computers. 
&lt;P&gt;Over a three-month period, said Kraig Lane, a group product manager in Symantec&apos;s consumer division, his lab took new PCs out of the box, connected them to the Internet without monkeying with any of the default settings in Windows XP SP2, then surfed well-known sites in several categories, ranging from kids and sports to news and shopping.&amp;nbsp;&lt;!--StartFragment --&gt; Interacting with each site&apos;s features, but not explicitly looking to accumulate files by downloading. Then they ran &lt;A href=&quot;http://www.techweb.com/encyclopedia/defineterm.jhtml?term=spyware&amp;amp;x=29&amp;amp;y=11&quot; target=_blank&gt;spyware&lt;/A&gt; detection software and counted up what kind of security risks and how many files had been installed on the machines .... &lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2005/05/13.htm#a886</guid>
			<pubDate>Sat, 14 May 2005 01:06:28 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=886</comments>
			</item>
		<item>
			<title>SANS &quot;Ouch&quot; Newsletter ( Vol. 2 Num. 3) Excerpts</title>
			<link>http://www.sans.org</link>
			<description>&lt;P&gt;&lt;STRONG&gt;What To Avoid This Month&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;I. &lt;STRONG&gt;Email from people trying to get you to divulge private details&lt;/STRONG&gt; &lt;BR&gt;These are often trying to steal your identity (and your money)&lt;BR&gt;I.1 Washington Mutual Bank - &apos;Unauthorized Access to Your Washington Mutual Account&apos;&lt;BR&gt;I.2 SouthTrust Bank - &apos;Notification From SouthTrust Online Banking&apos;&lt;BR&gt;I.3 Huntington Bank - &apos;Huntington Bank Security Update Notification&apos;&lt;BR&gt;I.4 Paypal - &apos;Unauthorized Access...&apos;&lt;BR&gt;I.5 MSN - &apos;Microsoft Network customer data verification&apos;&lt;BR&gt;I.6 KeyBank - &apos;SECURE YOUR ACCOUNT NOW&apos;&lt;BR&gt;I.7 Google - Email Lottery International&lt;/P&gt;
&lt;P&gt;Details About Things To Avoid &lt;/P&gt;I. Email from people trying to steal your identity (and your money) &lt;BR&gt;I.1 Washington Mutual Bank - &apos;Unauthorized Access To Your Washington Mutual Account&apos;&lt;BR&gt;The Bait: An email sent to you for Unauthorized Access to your account. &lt;BR&gt;What it tries to make you do: Click on the link within the email.&lt;BR&gt;Where you can see how it actually appears:&lt;BR&gt;&lt;A href=&quot;http://www.antiphishing.org/phishing_archive/02-24-05_Wamu/02-24-05_Wamu.html&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff&gt;&lt;a href=&quot;http://www.antiphishing.org/phishing_archive/02-24-05_Wamu/02-24-05_Wamu.html&quot;&gt;http://www.antiphishing.org/phishing_archive/02-24-05_Wamu/02-24-05_Wamu.html&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt; 
&lt;P&gt;I.2 SouthTrust Bank - &apos;Notification From SouthTrust Online Banking&apos;&lt;BR&gt;The Bait: Email stating that your account may have been accessed by someone else.&lt;BR&gt;What it tries to make you do: Click on the suspect link.&lt;BR&gt;Where you can see how it actually appears:&lt;BR&gt;&lt;A href=&quot;http://www.antiphishing.org/phishing_archive/02-22-05_SouthTrust/02-22-05_SouthTrust.html&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff&gt;&lt;a href=&quot;http://www.antiphishing.org/phishing_archive/02-22-05_SouthTrust/02-22-05_SouthTrust.html&quot;&gt;http://www.antiphishing.org/phishing_archive/02-22-05_SouthTrust/02-22-05_SouthTrust.html&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt; 
&lt;P&gt;I.3 Huntington Bank - &apos;Huntington Bank Security Update Notification&apos;&lt;BR&gt;The Bait: New payment security for the bank.&lt;BR&gt;What it tries to make you do: click on the link within the email. &lt;BR&gt;Where you can see how it actually appears:&lt;BR&gt;&lt;A href=&quot;http://www.antiphishing.org/phishing_archive/02-18-05_Huntington/02-18-05_Huntington.html&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff&gt;&lt;a href=&quot;http://www.antiphishing.org/phishing_archive/02-18-05_Huntington/02-18-05_Huntington.html&quot;&gt;http://www.antiphishing.org/phishing_archive/02-18-05_Huntington/02-18-05_Huntington.html&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt; 
&lt;P&gt;I.4 Paypal - &apos;Unauthorized Access...&apos;&lt;BR&gt;The Bait: An email that alerts you to unauthorized access to your PayPal account.&lt;BR&gt;What it tries to make you do: Click on the link it provides&lt;BR&gt;Where you can see how it actually appears:&lt;BR&gt;&lt;A href=&quot;http://www.antiphishing.org/phishing_archive/02-17-05_Paypal/02-17-05_Paypal.html&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff&gt;&lt;a href=&quot;http://www.antiphishing.org/phishing_archive/02-17-05_Paypal/02-17-05_Paypal.html&quot;&gt;http://www.antiphishing.org/phishing_archive/02-17-05_Paypal/02-17-05_Paypal.html&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt; 
&lt;P&gt;I.5 MSN - &apos;Microsoft Network customer data verification&apos;&lt;BR&gt;The Bait: Email sent to you to verify your information on your account.&lt;BR&gt;What it tries to make you do: Click on the link within the email&lt;BR&gt;Where you can see how it actually appears:&lt;BR&gt;&lt;A href=&quot;http://www.antiphishing.org/phishing_archive/02-15-05_MSN/02-15-05_MSN.html&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff&gt;&lt;a href=&quot;http://www.antiphishing.org/phishing_archive/02-15-05_MSN/02-15-05_MSN.html&quot;&gt;http://www.antiphishing.org/phishing_archive/02-15-05_MSN/02-15-05_MSN.html&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt; 
&lt;P&gt;I.6 KeyBank - &apos;SECURE YOUR ACCOUNT NOW&apos;&lt;BR&gt;The Bait: Create a secure code for access to KeyBank.&lt;BR&gt;What it tries to make you do: Click on the picture link&lt;BR&gt;Where you can see how it actually appears:&lt;BR&gt;&lt;A href=&quot;http://www.antiphishing.org/phishing_archive/02-08-05_Key/02-01-05_Key.html&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff&gt;&lt;a href=&quot;http://www.antiphishing.org/phishing_archive/02-08-05_Key/02-01-05_Key.html&quot;&gt;http://www.antiphishing.org/phishing_archive/02-08-05_Key/02-01-05_Key.html&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt; 
&lt;P&gt;I.7 Google - Email Lottery International&lt;BR&gt;The Bait: Google Lottery Winner&lt;BR&gt;What it tries to make you do: Reply to the email and take money from you.&lt;BR&gt;Where you can see how it actually appears:&lt;BR&gt;&lt;A href=&quot;http://www.hoax-slayer.com/google-lottery-scam.html&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff&gt;&lt;a href=&quot;http://www.hoax-slayer.com/google-lottery-scam.html&quot;&gt;http://www.hoax-slayer.com/google-lottery-scam.html&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt; &lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;IV. Avoiding Phishing Scams: Tips from Fraud.org:&lt;/STRONG&gt;&lt;BR&gt;Information, tips and contact information for avoiding and reporting phishing.&lt;BR&gt;&lt;U&gt;&lt;FONT color=#0000ff&gt;&lt;A href=&quot;http://www.fraud.org/tips/internet/phishing.htm&quot;&gt;&lt;a href=&quot;http://www.fraud.org/tips/internet/phishing.htm&quot;&gt;http://www.fraud.org/tips/internet/phishing.htm&lt;/a&gt;&lt;/A&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;BR&gt;
&lt;P&gt;&lt;STRONG&gt;V. Email Worm Spoofing: Spoofing Explained:&lt;/STRONG&gt;&lt;BR&gt;Easy-to-understand information on how worms use spoofing to spread.&lt;BR&gt;&lt;A href=&quot;http://www.hoax-slayer.com/email-worm-spoofing.html&quot;&gt;&lt;U&gt;&lt;FONT color=#0000ff&gt;&lt;a href=&quot;http://www.hoax-slayer.com/email-worm-spoofing.html&quot;&gt;http://www.hoax-slayer.com/email-worm-spoofing.html&lt;/a&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2005/03/10.htm#a881</guid>
			<pubDate>Thu, 10 Mar 2005 20:25:26 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=881</comments>
			</item>
		<item>
			<title>Firefox Patch Fixes Vulnerabilities And Prevents Crashing</title>
			<link>http://informationweek.com/story/showArticle.jhtml?articleID=60403364</link>
			<description>It&apos;s time to update the millions of Firefox 1.0 browsers that have been downloaded over the past 11 weeks. The Mozilla Foundation on Thursday released its first security update to Firefox, comprising a series of patches intended to prevent spoofing and phishing attacks and fix glitches that cause the browser to crash. The security update, Firefox 1.0.1, can be downloaded immediately at &lt;A href=&quot;http://www.mozilla.org/&quot; target=_blank&gt;www.mozilla.org&lt;/A&gt;.&amp;nbsp; The update covers a handful of security vulnerabilities and approximately 40 other fixes related to browser performance based on user feedback to Mozilla. The security vulnerabilities range from &quot;moderately critical&quot; in nature to not critical. None of them are highly critical, and there are no known exploits for any of the vulnerabilities.</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2005/03/09.htm#a879</guid>
			<pubDate>Wed, 09 Mar 2005 20:45:23 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=879</comments>
			</item>
		<item>
			<title>Microsoft promises free anti-spyware, new version of IE</title>
			<link>http://www.nwfusion.com/news/2005/0215rsa-gat.html</link>
			<description>&lt;!--StartFragment --&gt;&amp;nbsp;The company, by midyear, plans to release a test version of a new Internet Explorer browser that better protects users from scams and malicious code while surfing the Web,&amp;nbsp;Chairman and Chief Software Architect Bill Gates said in a keynote address at the &lt;A href=&quot;http://www.nwfusion.com/news/2005/rsa2005.html&quot;&gt;RSA Conference 2005&lt;/A&gt; in San Francisco.&amp;nbsp;&lt;!--StartFragment --&gt; 
&lt;P&gt;Microsoft bought anti-spyware software maker Giant Company Software&amp;nbsp;in December and released a beta of Windows AntiSpyware in January. In addition to its free consumer product, Microsoft will offer a for-pay anti-spyware product for corporate users that will support enterprise needs for management and deployment, said Amy Roberts, a director in Microsoft&apos;s Security Business and Technology Unit. Roberts would not say when the enterprise anti-spyware product will be available. &lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2005/03/04.htm#a870</guid>
			<pubDate>Fri, 04 Mar 2005 18:10:28 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=870</comments>
			</item>
		<item>
			<title>Winpatrol</title>
			<link>http://www.winpatrol.com/</link>
			<description>Scotty the Windows Watch Dog sniffs out malicious &amp;#147;mysteryware&amp;#148; and parasites that may assault your computer. &lt;A href=&quot;http://www.winpatrol.com/&quot;&gt;WinPatrol&lt;/A&gt; puts you back in control of your computer so you&amp;#146;ll know what programs are and should be running at all times. </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2005/03/03.htm#a868</guid>
			<pubDate>Fri, 04 Mar 2005 02:47:19 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=868</comments>
			</item>
		<item>
			<title>Microsoft Malicious Software Removal Tool</title>
			<link>http://www.microsoft.com/technet/community/columns/secmvp/default.mspx</link>
			<description>&lt;!--StartFragment --&gt;&amp;nbsp;On January 11, Microsoft made available the Malicious Software Removal Tool, a free tool designed to check for and help remove infections by critical viruses and worms. In its initial release, the tool checks for the existence of malicious software (malware) on computers running the Windows 2000, Windows XP, or Windows Server 2003 operating systems. </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2005/03/02.htm#a867</guid>
			<pubDate>Thu, 03 Mar 2005 01:48:50 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=867</comments>
			</item>
		<item>
			<title>Top 10 &quot;Most Unwanted&quot; Spyware Named</title>
			<link>http://www.securitypipeline.com/55301221</link>
			<description>&lt;P&gt;&lt;!--StartFragment --&gt;Webroot, which makes end-user and enterprise editions of Spy Sweeper, used its relationship with Internet service provider EarthLink to tally the most prevalent spyware, then selected the worst based on its knowledge of how each works and the damage it can cause. We use the P-I index,&quot; said Richard Stiennon, Webroot&apos;s vice president of threat research. &quot;P is for prevalence, I is for insidiousness.&quot;&amp;nbsp; Each of the ten spyware programs cited by Webroot was spotted at least 50,000 times in the scans that the Boulder, Colo.-based vendor does free of charge on its own Web site, or in conjunction with EarthLink. &lt;/P&gt;
&lt;P&gt;&lt;!--StartFragment --&gt;Some of the software in Webroot&apos;s top 10 may be familiar to users, but most is a blur of anonymous titles that don&apos;t impart their potential impact. &lt;/P&gt;
&lt;P&gt;Among the former is Gator (also known as GAIN), long infamous because it&apos;s bundled with the popular Kazaa peer-to-peer file sharing software. Gator/GAIN, said Webroot, made the top 10 list because it spews banner ads based on your surfing habits. &lt;/P&gt;
&lt;P&gt;Others on the list, however, are unknown to all but the most dedicated follower of spyware. They include such programs as PurityScan, which puts up pop-up ads and tricks users into installation by claiming to find and delete porn on the PC; CoolWebSearch, which can hijack searches, browser home page, and IE&apos;s settings; and Perfect Keylogger, a spy that records all visited sites, keystrokes, and mouse clicks to, for instance, divine passwords, account numbers, and other sensitive information. &lt;/P&gt;
&lt;P&gt;The rest of the list is fleshed out with the likes of n-CASE and KeenValue (adware), TIBS Dialer (software the usurps the modem and dials toll numbers, typically porn pay-by-the-minute phone sites), Transponder and ISTbar/AUpdate (spyware posing as browser assistants), and Internet Optimizer, which hijacks Web errors and re-directs them to its own site. &lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/12/11.htm#a851</guid>
			<pubDate>Sun, 12 Dec 2004 00:28:59 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=851</comments>
			</item>
		<item>
			<title>Study shows most attacks come from exploited PCs beloging to DSL or cable customers.</title>
			<link>http://story.news.yahoo.com/news?tmpl=story2&amp;u=/pcworld/20041015/tc_pcworld/118171</link>
			<description>&lt;!--StartFragment --&gt;&lt;!--StartFragment --&gt;&lt;FONT face=arial size=-1&gt;CipherTrust,&amp;nbsp;t&lt;/FONT&gt;&lt;FONT face=arial size=-1&gt;he e-mail security company, in a survey this month of more than 4 million pieces of e-mail, found that nearly all of the&amp;nbsp;&lt;!--StartFragment --&gt;&lt;FONT face=&quot;Times New Roman&quot; size=3&gt; &lt;/FONT&gt;&lt;FONT face=arial size=-1&gt;phishing&lt;/FONT&gt;&lt;FONT face=&quot;Times New Roman&quot; size=3&gt; &lt;/FONT&gt;attacks came from about 1000 machines, mostly customers of DSL or cable modem services.&lt;/FONT&gt;&amp;nbsp;&lt;!--StartFragment --&gt; &lt;FONT face=arial size=-1&gt;Close to 28 percent of the IP addresses used in the phishing attacks during the two-week survey were from U.S. computers. Another 17 percent of the IP addresses were South Korean, and another 8 percent were Chinese.&lt;/FONT&gt; </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/11/13.htm#a838</guid>
			<pubDate>Sat, 13 Nov 2004 12:49:43 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=838</comments>
			</item>
		<item>
			<title>User Education Is A Flawed Strategy For Protecting Computer Users From Internet Scams</title>
			<link>http://www.useit.com/alertbox/20041025.html</link>
			<description>&lt;P&gt;One of the &quot;Internet&apos;s foremost experts in Web usability&quot; (according to Business Week) and the man who ranks number six on ZDNet&apos;s &quot;The Web&apos;s Ten Most Influential People&quot; calls for a change in policy to thwart Internet scams, saying, &quot;User education is not the answer to security problems.&quot; Jakob Nielsen says a strategy relying on user education puts the burden on the wrong shoulders. The only real solution, according to Nielsen, is to make security a built-in feature of all computing elements. &lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/10/29.htm#a826</guid>
			<pubDate>Fri, 29 Oct 2004 18:56:23 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=826</comments>
			</item>
		<item>
			<title>Home PCs not protected</title>
			<link>http://www.usatoday.com/tech/news/2004-10-25-internet-security_x.htm</link>
			<description>&lt;!--StartFragment --&gt;&amp;nbsp;In findings,&lt;!--StartFragment --&gt; from&amp;nbsp;a detailed survey of 329 consumers that included inspections of each of their home computers, released Monday by America Online and the National Cyber Security Alliance (NCSA), a picture emerges of consumers increasingly using their home PCs for sensitive, online transactions without adequately protecting themselves from cybercrime. 
&lt;P class=inside-copy&gt;While 77% of the survey respondents believed they were safe from online threats, two-thirds lacked current anti-virus software and did not use any firewall protection. More than half said they did not understand the difference between the two. Yet 84% stored personal data on their home PCs, and 72% routinely used the Internet for sensitive transactions, such as banking and medical data exchanges. &lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/10/27.htm#a824</guid>
			<pubDate>Wed, 27 Oct 2004 23:45:34 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=824</comments>
			</item>
		<item>
			<title>Watch Out For Security Freeware Gotchas </title>
			<link>http://www.securitypipeline.com/50500797</link>
			<description>&lt;!--StartFragment --&gt;&amp;nbsp;Security freeware is pretty popular. The price is right and everyone needs more security. What&apos;s the catch?&amp;nbsp;But just because software is free doesn&apos;t exempt it from the requirements of paid software. Folks who write security tools should practice secure coding. Authors of security freeware should be accessible and accountable for the product they provide; in security-speak, the software should have readily identifiable, non-repudiable origins. Folks who make security software available should have competent, security-savvy staff to support and maintain it.&amp;nbsp;&lt;!--StartFragment --&gt; 
&lt;P&gt;So if you are considering security freeware, remember the five Ws. &lt;B&gt;Who&lt;/B&gt; wrote the software? Can you identify and trust the developer?&amp;nbsp;&lt;!--StartFragment --&gt; &lt;B&gt;What&lt;/B&gt; does the software do?&amp;nbsp;&lt;!--StartFragment --&gt; &lt;B&gt;When&lt;/B&gt; should you use security freeware?&amp;nbsp;&lt;!--StartFragment --&gt; &lt;B&gt;Why&lt;/B&gt; are you choosing freeware over commercial ware?&amp;nbsp;&lt;!--StartFragment --&gt; &lt;B&gt;Where&lt;/B&gt; do you intend to use security freeware? &lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/10/21.htm#a811</guid>
			<pubDate>Thu, 21 Oct 2004 22:21:07 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=811</comments>
			</item>
		<item>
			<title>SANS &quot;Ouch&quot; newsletter for &quot;unsophisticated end users&quot;</title>
			<link>http://www.sans.org/newsletters/</link>
			<description>&lt;P&gt;A new free SANS newsletter&amp;nbsp;has gotten rave reviews from unsophisticated end users - they really appreciate the plain non-technical writing and the cool examples. It&apos;s called OUCH! More than 500 security awareness professionals from around the US and the world helped them get it right. If you want to redistribute it to your users, that&apos; allowed. The newsletter includes a pointer to a great phishing quiz for anyone who thinks he or she can spot a phishing email. To subscribe go to the newsletter page at the SANS portal and choose it.&lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/10/19.htm#a787</guid>
			<pubDate>Tue, 19 Oct 2004 16:22:32 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=787</comments>
			</item>
		<item>
			<title>FTC Goes After Spyware Operations</title>
			<link>http://story.news.yahoo.com/news?tmpl=story2&amp;u=/nf/20041011/tc_nf/27489</link>
			<description>&lt;!--StartFragment --&gt;&amp;nbsp;&lt;FONT face=arial size=-1&gt;The Federal Trade Committee has filed a complaint in federal court asking that two Internet advertising and software firms be shut down.&lt;/FONT&gt;&amp;nbsp;&lt;!--StartFragment --&gt; &lt;FONT face=arial size=-1&gt;&lt;STRONG&gt;The activities of New Hampshire resident Sanford Wallace and his two firms -- Seismic Entertainment Productions and SmartBot.Net -- are some of the most egregious in the spyware field&lt;/STRONG&gt;, Ari Schwartz, associate director of the Center for Democracy and Technology, told NewsFactor.&lt;/FONT&gt;&amp;nbsp;&lt;!--StartFragment --&gt; 
&lt;P&gt;&lt;FONT face=arial size=-1&gt;The operation of the spyware distributed by Wallace is very complicated, Schwartz explained. In addition, it has operated in different ways over the months. Perhaps the worst allegation is that of direct fraud. &lt;/FONT&gt;&lt;FONT face=arial size=-1&gt;Some consumers assert that they were asked to pay US$30 to stop the pop-up ads repeatedly appearing on their computers. Those pop-ups originated from the same web of companies and advertisements originating them. &lt;/FONT&gt;&lt;FONT face=arial size=-1&gt;&lt;STRONG&gt;Spy Wiper and Spy Deleter are two of the software programs marketed by Wallace&apos;s firms&lt;/STRONG&gt;. In some cases, said Schwartz, pieces of software were downloaded to consumer computers without their knowledge or purchase. &lt;/FONT&gt;&lt;FONT face=arial size=-1&gt;&lt;STRONG&gt;The company used security holes in Internet Explorer&lt;/STRONG&gt; to take control of some operations on computers of users who clicked on particular ads.&amp;nbsp;&lt;!--StartFragment --&gt;&lt;FONT face=&quot;Times New Roman&quot; size=3&gt; &lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face=arial size=-1&gt;The case is the first in the spyware arena to target a company for downloading code to a user&apos;s machine without permission.&amp;nbsp; &lt;/FONT&gt;&lt;FONT face=arial size=-1&gt;There are no laws against spyware at the national level.&lt;/FONT&gt;&lt;/P&gt;&lt;/FONT&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/10/11.htm#a770</guid>
			<pubDate>Mon, 11 Oct 2004 20:31:08 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=770</comments>
			</item>
		<item>
			<title>Are Spyware Warnings, Themselves, Just More Spyware?</title>
			<link>http://channels.lockergnome.com/windows/archives/20040917_are_spyware_warnings_themselves_just_more_spyware.phtml</link>
			<description>Ken Colburn of Data Doctors answers:&amp;nbsp;&lt;!--StartFragment --&gt; The &apos;warnings&apos; that you are referring to are nothing more than an aggressive advertising campaign to try to scare you into buying a product (a.k.a. &apos;Scare-ware&apos;).
&lt;P&gt;There are no programs currently available that can actually check your computer for Adware and Spyware through a pop-up window, and even if they could, I would not trust them. The majority of anti-spyware programs are actually very questionable in their tactics to get you to buy. Many of them make it look like they are scanning your system and come up with concocted results to make you think that you are infected, because they know that virtually everyone online has some form of Adware or Spyware in their system.&lt;/P&gt;
&lt;P&gt;A Web site known as &lt;A href=&quot;http://www.spywarewarrior.com/rogue_anti-spyware.htm&quot;&gt;Spyware Warrior&lt;/A&gt; currently lists 96 different spyware removal programs that are of questionable nature because of false-positives, poor results, or deceptive advertising. Some are actually spyware programs in disguise!&amp;nbsp;&lt;!--StartFragment --&gt; In general, the best anti-spyware tools are free and have gained popularity through word of mouth, not pop-up ads. The two that I always recommend are &lt;A href=&quot;http://www.lavasoftusa.com/&quot;&gt;Ad-aware Personal Edition&lt;/A&gt; and &lt;A href=&quot;http://www.safer-networking.org/&quot;&gt;Spybot Search and Destroy&lt;/A&gt;. &lt;/P&gt;&amp;nbsp;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/09/23.htm#a759</guid>
			<pubDate>Thu, 23 Sep 2004 20:27:22 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=759</comments>
			</item>
		<item>
			<title>Spam&apos;s Unsubscribe Link Downloads Nasty Things to PC</title>
			<link>http://www.aunty-spam.com/?postid=100</link>
			<description>&lt;!--StartFragment --&gt;MessageGate has determined that spam featuring the domain xcelent.biz has gone beyond the usual rudeness of using a click on an unsubscribe link to confirm a warm body on the other side of the email inbox. &lt;BR&gt;&lt;BR&gt;&lt;B&gt;This&lt;/B&gt; badboy actually downloads an EXE file which takes advantage of a known bug in IE - namely that it treats any link containing the &quot;IMG&quot; tag as a valid image file, and, as the US-CERT tells us, &quot;a drag and drop operation on an IMG element with an executable source file will copy the executable file without presenting a download dialog.&quot; </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/09/23.htm#a757</guid>
			<pubDate>Thu, 23 Sep 2004 19:30:47 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=757</comments>
			</item>
		<item>
			<title>Mozilla Fixes Browser Bugs</title>
			<link>http://story.news.yahoo.com/news?tmpl=story2&amp;u=/pcworld/20040915/tc_pcworld/117779</link>
			<description>&lt;!--StartFragment --&gt;&amp;nbsp;&lt;FONT face=arial size=-1&gt;The Mozilla Foundation has fixed 10 security bugs in its open-source Mozilla and Mozilla Firefox browsers and Thunderbird e-mail reader, with the release of new versions of all three products this week. Some of the vulnerabilities could allow attackers to run malicious code on a user&apos;s PC via a malicious e-mail, a specially crafted vCard, or a malformed graphic on a Web site, project leaders say.&lt;/FONT&gt; </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/09/17.htm#a736</guid>
			<pubDate>Fri, 17 Sep 2004 16:45:50 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=736</comments>
			</item>
		<item>
			<title>Microsoft deactivates ActiveX</title>
			<link>http://news.com.com/2452-7355_3-5165412.html?part=rss&amp;tag=feed&amp;subj=news</link>
			<description>&lt;!--StartFragment --&gt;&amp;nbsp;The company announced that the coming Windows XP Service Pack 2, which is focused on security, will allow consumers to block both pop-up ads and ActiveX scripting. </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/09/14.htm#a732</guid>
			<pubDate>Tue, 14 Sep 2004 22:26:51 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=732</comments>
			</item>
		<item>
			<title>New Zone Alarm to warn of viruses</title>
			<link>http://news.com.com/New+Zone+Alarm+to+warn+of+viruses/2100-7349_3-5218624.html?part=rss&amp;tag=feed&amp;subj=news</link>
			<description>&lt;!--StartFragment --&gt;&amp;nbsp;Security software maker Zone Labs updated its desktop firewall&amp;nbsp;adding new features that aim to stop viruses, the company said. The antivirus features will be offered in a commercial version of its basic free product, Zone Alarm, and as part of a comprehensive security suite.</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/09/14.htm#a730</guid>
			<pubDate>Tue, 14 Sep 2004 22:23:11 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=730</comments>
			</item>
		<item>
			<title>WinZip offers fix for security flaw</title>
			<link>http://news.com.com/WinZip+offers+fix+for+security+flaw/2100-1002_3-5348506.html?part=rss&amp;tag=5348506&amp;subj=news.1002.10</link>
			<description>But users of the popular compression tool will need to upgrade to version 9 of the software. </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/09/14.htm#a729</guid>
			<pubDate>Tue, 14 Sep 2004 22:19:39 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=729</comments>
			</item>
		<item>
			<title> First Windows CE Virus Emerges</title>
			<link>http://www.internetweek.com/breakingNews/showArticle.jhtml?articleID=23902212</link>
			<description>&lt;!--StartFragment --&gt;&amp;nbsp;The first known virus aimed at Microsoft&apos;s Windows CE operating system was sent to several anti-virus firms by its author over the weekend to prove that Pocket PCs and Smartphones are vulnerable to attack. </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/09/10.htm#a715</guid>
			<pubDate>Fri, 10 Sep 2004 22:44:33 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=715</comments>
			</item>
		<item>
			<title>ISPs Given Thumbs Down For Virus, Hacker Control</title>
			<link>http://www.internetwk.com/breakingNews/showArticle.jhtml?articleID=46802785</link>
			<description>U.S. residential Internet users are much more satisfied with the spam protection from their Internet service providers, but remain unhappy with their ISPs&apos; defenses against hackers and viruses. </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/09/10.htm#a710</guid>
			<pubDate>Fri, 10 Sep 2004 22:17:30 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=710</comments>
			</item>
		<item>
			<title>WormRadar.com</title>
			<link>http://wormradar.com/</link>
			<description>&lt;!--StartFragment --&gt;&lt;FONT size=2&gt;&amp;nbsp;&lt;/FONT&gt;&lt;FONT size=3&gt;&lt;FONT face=Geneva,Arial,Sans-Serif&gt;The site offers &lt;FONT color=#000000&gt;a summary of all worm and probe activity detected by WormRadar nodes around the world, and is refreshed about every 30 minutes.&lt;/FONT&gt;&lt;/FONT&gt; &lt;/FONT&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/09/05.htm#a700</guid>
			<pubDate>Mon, 06 Sep 2004 02:41:44 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=700</comments>
			</item>
		<item>
			<title>Microsoft: Spyware could bungle SP2 update</title>
			<link>http://www.usatoday.com/tech/news/computersecurity/2004-09-02-sp2-vs-spyware_x.htm</link>
			<description>&lt;!--StartFragment --&gt;Though Microsoft&apos;s new security update package is all about protecting systems from worms, viruses and spyware, it can&apos;t do much about what&apos;s already on computers &amp;#151; and that could pose a problem.&amp;nbsp; The company is warning users of the Windows XP operating system to check for spyware before downloading&amp;nbsp; Service Pack 2. </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/09/04.htm#a692</guid>
			<pubDate>Sat, 04 Sep 2004 19:47:09 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=692</comments>
			</item>
		<item>
			<title>Study: Unpatched PCs compromised in 20 minutes</title>
			<link>http://news.com.com/Study%3A+Unpatched+PCs+compromised+in+20+minutes/2100-7349_3-5313402.html?part=rss&amp;tag=5313402&amp;subj=news.7349.10</link>
			<description>&lt;P&gt;&amp;nbsp;According to the researchers, an unpatched Windows PC connected to the Internet will last for only about 20 minutes before it&apos;s compromised by malware, on average. That figure is down from around 40 minutes, the group&apos;s estimate in 2003.&amp;nbsp;&lt;!--StartFragment --&gt; &lt;STRONG&gt;Don&apos;t connect that new PC to the Internet before taking security precautions, researchers at the Internet Storm Center warned&amp;nbsp;&lt;!--StartFragment --&gt;&lt;/STRONG&gt; &lt;STRONG&gt;(The Center&amp;nbsp;is part of the SANS Institute). &lt;/STRONG&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;!--StartFragment --&gt;&amp;nbsp;The center&amp;nbsp;said in its analysis that the time it takes for a computer to be compromised will vary widely from network to network. If the Internet service provider blocks the data channels commonly used by worms to spread, then a PC user will have more time to patch. &quot;On the other hand, university networks and users of high-speed Internet services are frequently targeted with additional scans from malware like bots,&quot; the group stated. &quot;If you are connected to such a network, your &apos;survival time&apos; will be much smaller.&quot; &lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;FONT color=#ff0000&gt;&lt;EM&gt;[Of course, unless you happen to know the right (Windows) configuration changes to make and already have protection tools available, you connect to the Internet to download them as well as the latest software patches. As an alternative, you can hurry to your local store and purchase the tools. Why aren&apos;t the pc&apos;s delivered with the required patches installed by seller? [see also item on Dell et. al. ]&amp;nbsp;Some new systems do come with trial versions of protection tools but how many users take of these steps before doing anything else?]&lt;/EM&gt;&lt;/FONT&gt;&lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/08/22.htm#a681</guid>
			<pubDate>Sun, 22 Aug 2004 15:06:07 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=681</comments>
			</item>
		<item>
			<title>Computer Security  for the Home and Small Office</title>
			<link>http://books.slashdot.org/books/04/08/11/171205.shtml?tid=172&amp;tid=6&amp;tid=218</link>
			<description>&lt;FONT color=#ff0000&gt;&lt;EM&gt;[A review by &lt;A href=&quot;mailto:andymurph_91@yahoo.com&quot;&gt;Andrew Murphy&lt;/A&gt; of the book &quot;Computer Security for the Home and Small Office&quot; by Thomas Greene, &lt;A href=&quot;http://www.theregister.co.uk/&quot;&gt;The Register&apos;s&lt;/A&gt; security guru. What may be more interesting are the comments and give and take that follow. For example, how do you characterize an &quot;average&quot; computer user and do they or do they not &quot;care&quot; about &quot;security?&quot;]&lt;/EM&gt;&lt;/FONT&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/08/20.htm#a675</guid>
			<pubDate>Fri, 20 Aug 2004 16:16:16 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=675</comments>
			</item>
		<item>
			<title> How [Daniel Gray] (Finally?) Beat Spyware</title>
			<link>http://www.geekbooks.com/blog/archives/000169.html</link>
			<description>Removing spyware isn&apos;t rocket science. But you have to be persistent. I made a lot of missteps and wasted plenty of time along the way. In hindsight, it&apos;s clear that I took three key steps ... &lt;FONT color=#ff0000&gt;&lt;EM&gt;[I say &quot;ditto&quot;. NB: I use Spyhunter instead of Spybot.]&lt;/EM&gt;&lt;/FONT&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/08/16.htm#a656</guid>
			<pubDate>Tue, 17 Aug 2004 03:46:40 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=656</comments>
			</item>
		<item>
			<title>Mydoom, Zindos, And Doomjuice Worm Removal Tool v4.0</title>
			<link>http://channels.lockergnome.com/windows/archives/20040802_mydoom_zindos_and_doomjuice_worm_removal_tool_v40.phtml</link>
			<description>This tool helps to remove the Mydoom.A, Mydoom.B, Mydoom.E, Mydoom.F, Mydoom.G, Mydoom.J, Mydoom.L, Mydoom.O, Zindos.A, Doomjuice.A, and Doomjuice.B worms from infected systems.</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/08/02.htm#a643</guid>
			<pubDate>Tue, 03 Aug 2004 02:00:35 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=643</comments>
			</item>
		<item>
			<title> How To Detect, Delete New MyDoom (MyDoom Part II or Zindos)</title>
			<link>http://www.internetweek.com/breakingNews/showArticle.jhtml?articleID=26100270</link>
			<description>&lt;!--StartFragment --&gt;Machines infected with MyDoom Part II are being used to launch a denial-of-service (DoS) attack on Microsoft.com. Unlike MyDoom, &lt;A href=&quot;http://www.techweb.com/wire/story/TWB20040727S0008&quot;&gt;Zindos&lt;/A&gt; doesn&apos;t require any human interaction and isn&apos;t delivered as a file attached to e-mail. Instead, it&apos;s a pure network threat, said Oliver Friedrichs, the senior manager of Symantec&apos;s security response team. &quot;Zindos is fully automated. If your computer is infected [with MyDoom] and you&apos;re connected to the Internet, you could get infected by this new threat.&quot; </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/07/28.htm#a635</guid>
			<pubDate>Wed, 28 Jul 2004 19:07:28 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=635</comments>
			</item>
		<item>
			<title>5 tips for spurning spyware and browser hijackers</title>
			<link>http://go.microsoft.com/?linkid=716712</link>
			<description>Is your Web browser behaving strangely? Maybe some other search program appears when you try to do a search on Google or MSN&amp;#174; Search. Or, even though you&apos;ve reset your home page, some other site displays. If this is happening to you, you may have inadvertently downloaded spyware.</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/07/16.htm#a632</guid>
			<pubDate>Fri, 16 Jul 2004 13:36:49 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=632</comments>
			</item>
		<item>
			<title>HSRemove: A removal tool for Home Search Assistant</title>
			<link>http://www.majorgeeks.com/download4286.html</link>
			<description>This hijack has spread rapidly and is not removable by any of the known tools including Hijack This!, Ad-Aware, Spybot, CSWhredder and so on. This tool may somve your problem. Symptoms include an odd home page similar to &lt;a href=&quot;res://.dll/index.html#37049&quot;&gt;res://.dll/index.html#37049&lt;/a&gt; and popup ads as well as certain words on websites linking to their search engine. &lt;a href=&quot;http://www.majorgeeks.com/download4286.html&quot;&gt;http://www.majorgeeks.com/download4286.html&lt;/a&gt; </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/07/16.htm#a631</guid>
			<pubDate>Fri, 16 Jul 2004 13:12:21 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=631</comments>
			</item>
		<item>
			<title>Some Corporate Web servers infecting visitors&apos; PCs</title>
			<link>http://news.com.com/Corporate+Web+servers+infecting+visitors%27+PCs/2100-7349_3-5247187.html?part=rss&amp;tag=5247187&amp;subj=news.7349.10</link>
			<description>&lt;!--StartFragment --&gt;Security researchers warned Web surfers on Thursday to be on guard after uncovering evidence that widespread Web server compromises have turned corporate home pages into points of digital infection. The researchers believe that online organized crime groups are breaking into Web servers and surreptitiously inserting code that takes advantage of two flaws in Internet Explorer that Microsoft has not yet fixed. Those flaws allow the Web server to install a program that takes control of the user&apos;s computer.&amp;nbsp;&lt;!--StartFragment --&gt; Late Thursday (24 June), Microsoft advised customers to &lt;A href=&quot;http://dw.com.com/redir?destUrl=http%3A%2F%2Fwww.microsoft.com%2Fsecurity%2Fincident%2Fsettings.mspx&amp;amp;siteId=3&amp;amp;oId=2100-7349-5247187&amp;amp;ontId=1009&amp;amp;lop=nl_ex&quot;&gt;increase their browser security&lt;/A&gt; to the highest settings, although that could cause some Web site functions to stop working. </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/07/14.htm#a621</guid>
			<pubDate>Thu, 15 Jul 2004 03:00:16 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=621</comments>
			</item>
		<item>
			<title>Pop-up program reads keystrokes, steals passwords</title>
			<link>http://news.com.com/Pop-up+program+reads+keystrokes%2C+steals+passwords/2100-7349_3-5251981.html?part=rss&amp;tag=5251981&amp;subj=news.7349.10</link>
			<description>Trojan horse installed through pop-up ad has watch list of banking sites. Victims visit sites, type in passwords, hand info to hackers.</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/07/14.htm#a620</guid>
			<pubDate>Thu, 15 Jul 2004 02:56:24 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=620</comments>
			</item>
		<item>
			<title>Microsoft Releases &quot;download.ject&quot; Virus Removal Tool</title>
			<link>http://us.rd.yahoo.com/dailynews/rss/tech/*http://story.news.yahoo.com/news?tmpl=story2&amp;u=/ap/20040713/ap_on_hi_te/microsoft_security</link>
			<description>Microsoft Corp. released a tool on Tuesday for removing a particularly pesky computer virus &amp;#151; but was not yet able to offer a software patch to prevent the infection from spreading</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/07/14.htm#a616</guid>
			<pubDate>Thu, 15 Jul 2004 02:00:45 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=616</comments>
			</item>
		<item>
			<title>Microsoft haunted by old IE security flaw</title>
			<link>http://news.com.com/Microsoft+haunted+by+old+IE+security+flaw/2100-1002_3-5253112.html?part=rss&amp;tag=5253112&amp;subj=news.1002.10</link>
			<description>&lt;A href=&quot;http://news.com.com/Microsoft+haunted+by+old+IE+security+flaw/2100-1002_3-5253112.html?part=rss&amp;amp;tag=5253112&amp;amp;subj=news.1002.10&quot;&gt;Microsoft haunted by old IE security flaw&lt;/A&gt;. IE vulnerability patched six years ago resurfaces in newer releases and could allow hackers to change content on Web sites.&amp;nbsp; Security company Secunia issued a &lt;A href=&quot;http://dw.com.com/redir?destUrl=http%3A%2F%2Fsecunia.com%2Fadvisories%2F11966%2F&amp;amp;siteId=3&amp;amp;oId=2100-1002-5253112&amp;amp;ontId=1009&amp;amp;lop=nl_ex&quot;&gt;bulletin warning of the flaw&lt;/A&gt; in versions 5.01, 5.5 and 6.0 of Internet Explorer (IE). The problem had been fixed six years ago, when it appeared in versions 3.0 and 4.0 of the IE browser. Through a flaw in IE, victims can pick up a program through a pop-up ad that is used to read keystrokes and steal passwords when people visit any of nearly 50 banking sites.
&lt;P&gt;Vulnerabilities in IE have become so common that some security researchers are recommending that people &lt;A title=&quot;IE flaw may boost rival browsers -- Monday, Jun 28, 2004&quot; href=&quot;http://news.com.com/IE+flaw+may+boost+rival+browsers/2100-7355_3-5250697.html?tag=nl&quot;&gt;adopt alternate browsers&lt;/A&gt;. [&lt;A href=&quot;http://news.com.com/&quot;&gt;CNET News.com - Security&lt;/A&gt;]&lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/06/30.htm#a610</guid>
			<pubDate>Thu, 01 Jul 2004 02:33:57 GMT</pubDate>
			<source url="http://news.com.com/2547-1009_3-0-10.xml">CNET News.com - Security</source>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=610</comments>
			</item>
		<item>
			<title>World&apos;s First Mobile Virus Is Not Lethal, Yet</title>
			<link>http://story.news.yahoo.com/news?tmpl=story2&amp;u=/nm/20040616/tc_nm/tech_virus_wireless_dc</link>
			<description>A group of underground virus writers has showed off what is believed to be the world&apos;s first worm that can spread on advanced mobile phones, but security software companies say the virus had no malicious code attached.The worm is designed to work in smartphones running on Symbian and Series 60 software, Symantec said on its Web site. This software is used to power millions of Nokia&amp;nbsp;phones, such as the popular 6600 model. &lt;FONT color=#ff0000&gt;&lt;EM&gt;[How much sensitive / essential information do you keep in your cellphone? Do you have a backup copy?]&lt;/EM&gt;&lt;/FONT&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/06/18.htm#a602</guid>
			<pubDate>Fri, 18 Jun 2004 18:45:44 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=602</comments>
			</item>
		<item>
			<title>Five of the Best Free Internet Security/Privacy Utilities</title>
			<link>http://www.techtree.com/techtree/jsp/showstory.jsp?storyid=5184&amp;s=lr</link>
			<description>&lt;P&gt;&lt;!--StartFragment --&gt;&amp;nbsp;&lt;SPAN class=boxcontents&gt;&lt;B&gt;&lt;A href=&quot;http://users.pandora.be/related/spybot/spybot-downloading.htm&quot;&gt;Spybot - Search &amp;amp; Destroy 1.2&lt;/A&gt;&lt;/B&gt; &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class=boxcontents&gt;&lt;!--StartFragment --&gt;&amp;nbsp;&lt;SPAN class=boxcontents&gt;&lt;B&gt;&lt;A href=&quot;http://smb.sygate.com/products/spf/spf_ov.htm&quot;&gt;Sygate Personal Firewall 5.5&lt;/A&gt;&lt;/B&gt;&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class=boxcontents&gt;&lt;!--StartFragment --&gt;&amp;nbsp;&lt;SPAN class=boxcontents&gt;&lt;B&gt;&lt;A href=&quot;http://www.lavasoft.de/&quot;&gt;Ad-aware 6.0&lt;/A&gt;&lt;/B&gt;&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class=boxcontents&gt;&lt;!--StartFragment --&gt;&amp;nbsp;&lt;SPAN class=boxcontents&gt;&lt;B&gt;&lt;A href=&quot;http://www.grisoft.com/us/us_dwnl_free.php&quot;&gt;AVG Free Edition&lt;/A&gt;&lt;/B&gt;&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class=boxcontents&gt;&lt;!--StartFragment --&gt;&amp;nbsp;&lt;SPAN class=boxcontents&gt;&lt;A href=&quot;http://www.grisoft.com/us/us_dwnl_free.php&quot;&gt;&lt;B&gt;Zone Alarm&lt;/B&gt; &lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/06/07.htm#a594</guid>
			<pubDate>Mon, 07 Jun 2004 23:39:49 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=594</comments>
			</item>
		<item>
			<title>Apple patches vulnerability in Safari</title>
			<link>http://story.news.yahoo.com/news?tmpl=story2&amp;u=/mc/20040521/tc_mc/applepatchesvulnerabilityinsafari</link>
			<description>&lt;!--StartFragment --&gt;&amp;nbsp;&lt;FONT face=arial size=-1&gt;Apple Computer Inc. issued an update on Friday [5/21] to fix a reported security hole in its Safari Web Browser. The venerability, which was classified as &quot;Extremely Critical&quot; by security firm Secunia, allowed the execution of malicious code on the users computer.&lt;/FONT&gt; </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/05/31.htm#a588</guid>
			<pubDate>Mon, 31 May 2004 22:03:28 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=588</comments>
			</item>
		<item>
			<title>Yahoo Adds Anti-Spyware Feature to Browser Toolbar</title>
			<link>http://story.news.yahoo.com/news?tmpl=story2&amp;u=/nm/20040527/tc_nm/tech_yahoo_dc</link>
			<description>&lt;!--StartFragment --&gt;&amp;nbsp;&lt;FONT face=arial size=-1&gt;Internet media company Yahoo Inc.&amp;nbsp;unveiled a feature on Wednesday for its Web browser toolbar aimed at making it easier for users to remove unwanted &quot;spyware&quot; programs that snoop on Web surfing habits and other activities.&lt;/FONT&gt; </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/05/31.htm#a585</guid>
			<pubDate>Mon, 31 May 2004 21:42:51 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=585</comments>
			</item>
		<item>
			<title>Home users hit by Sasser worm</title>
			<link>http://news.bbc.co.uk/1/hi/technology/3685675.stm</link>
			<description>&lt;!--StartFragment --&gt;&amp;nbsp;&lt;FONT size=2&gt;Up to 80% of those hit have been home users and students, [&lt;!--StartFragment --&gt;&lt;FONT size=2&gt;Network Associates&lt;/FONT&gt;&lt;FONT size=3&gt;] &lt;/FONT&gt;reports.&lt;/FONT&gt; </description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/05/23.htm#a570</guid>
			<pubDate>Sun, 23 May 2004 20:24:31 GMT</pubDate>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=570</comments>
			</item>
		<item>
			<title>Microsoft Reveals &apos;Important&apos; Windows Flaw</title>
			<link>http://us.rd.yahoo.com/dailynews/rss/tech/*http://story.news.yahoo.com/news?tmpl=story2&amp;amp;u=/nf/20040512/tc_nf/24009</link>
			<description>NewsFactor - Microsoft (Nasdaq: MSFT) is reporting a security vulnerability in the Windows XP and Server 2003 operating systems that could allow hackers to commandeer PCs by drawing users to a malicious Web site that contains a remote execution link. [&lt;A href=&quot;http://news.yahoo.com/news?tmpl=index&amp;amp;cid=738&quot;&gt;Yahoo! News - Technology&lt;/A&gt;]</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/05/12.htm#a557</guid>
			<pubDate>Wed, 12 May 2004 20:44:23 GMT</pubDate>
			<source url="http://rss.news.yahoo.com/rss/tech">Yahoo! News - Technology</source>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=557</comments>
			</item>
		<item>
			<title>Intego warns of second Mac OS X Trojan Horse</title>
			<link>http://us.rd.yahoo.com/dailynews/rss/tech/*http://story.news.yahoo.com/news?tmpl=story2&amp;amp;u=/mc/20040512/tc_mc/integowarnsofsecondmacosxtrojanhorse</link>
			<description>MacCentral - For the second time in just over a month, Macintosh security company, Intego has issued an advisory warning customers of a Trojan Horse (AS.MW2004.Trojan) on Mac OS X. The latest advisory, posted to the company&apos;s Web site on Wednesday, warns of a Trojan Horse downloaded from the LimeWire peer-to-peer network -- the file had an icon that appeared to be an installer for Microsoft Office 2004. Microsoft warned users of downloading from sources other than them and analysts even question using the term &quot;Trojan&quot; for the advisory. [&lt;A href=&quot;http://news.yahoo.com/news?tmpl=index&amp;amp;cid=738&quot;&gt;Yahoo! News - Technology&lt;/A&gt;] &lt;FONT color=#ff0000&gt;&lt;EM&gt;[Social engineering again and delicious irony - file sharing and, apparently, a lure of MS Office for free.]&lt;/EM&gt;&lt;/FONT&gt;</description>
			<guid>http://www.iway-safety.com/radio/categories/malware/2004/05/12.htm#a556</guid>
			<pubDate>Wed, 12 May 2004 20:40:23 GMT</pubDate>
			<source url="http://rss.news.yahoo.com/rss/tech">Yahoo! News - Technology</source>
			<comments>http://radiocomments2.userland.com/comments?u=132667&amp;amp;p=556</comments>
			</item>
		</channel>
	</rss>
