Friday, December 10, 2010

How to stay virus free while using facebook and the web in general.



Question:
I've gotten a few messages from people asking: Is it's possible that these scam pages, groups, Rogue apps, fake events and or viral links on facebook capable of giving them computer viruses? Also wanting to know what they could do to keep their computers safe from the other virus threats that lurk around the internet. People in general wanting to know what pre-cautions they should take to defend against any virus threats.

Answer:
Visiting any of the many scam groups or pages that are on Facebook will normally not place a virus on your computer. Visiting pages on the "facebook platform" will not transfer malware to your computer because the "facebook platform" is virus free. However, you need to be cautious if you have followed any of the links on those pages, groups, your wall/news feed, inbox or chat and those links have taken you OUT OF FACEBOOK to an external web address or initiated a file download from an external web address.You also need to be aware, that there have been cases where a malicious application or page creator was able to place a malicious download in a facebook page which loaded an external website into that page via what is known as an IFrame.  While on an external website or a facebook page with an external website loaded via an Iframe, it may be possible for a scammer to place a bad download on the web page or infect your PC through the web page. 


Other ways to get a virus while using your computer.

  • Mistakenly downloading a piece of software that you thought was safe while on the Internet.
  • Getting caught off guard by a compromised or malicious website while surfing. 
  • Receiving one via an email or IM as an attachment or link from an infected computer. 
  • Using a removable thumb-drive or hard drive that has been infected and not cleaned..

What can I do:
Your best defense is to stay aware while on facebook and online period.
  • Do not click or follow links indiscriminately.
  • Use a service like longurl.org , to show the full URL of any shorten links sent to you.
  • Do not assume any app or link is safe, just because a friend posted it or sent it to you.
  • Never follow any links without knowing 100% where they go.
  • Do not download any software to your computer if you don't know what it does.
  • You must not use your computer without having  a fully functioning Anti Virus software or software suite installed. Make sure to keep it updated daily and be sure to run full scans with it at least 2 to 3 times a week if you surf the internet daily.
  • Don't trust just one Anti-Virus provider. Although you should only have one Anti-virus software installed, you can use an "Online Virus Scanner" or a "Virus Rescue CD" to verify that your main Anti-virus did not miss anything.
If you get in the habit of doing this type of routine, you will greatly lesson your chances of having your computer infected.

Facebook Note:
You need to be aware that if you have installed any bad apps into your facebook profile or clicked any clickjacked or likejacked links within facebook, you may be currently spamming your wall and or your friends news feeds with the apps or links viral/scam messages. If this has happened you must remove the messages from your wall by deleting the post and or remove the rogue app by uninstalling it from your facebook profile. If you do not know how to do this, please take the time to watch the video provided below. It covers how to report and remove spam post from your facebook wall, plus how to remove & block rogue applications.
Video -  How to remove post, plus remove and block rogue applications.





"Video was uploaded in HD. For best viewing set the YouTube Player to 720p HD or full screen."


*To report rogue applications or pages please view the link below.
Scam Sniper - How Do I...

What to to if you think your PC maybe infected:
If you have followed one of the links on facebook to an external website or downloaded a piece of software you are unsure of, and believe you may have gotten a virus infection, I suggest you check your current Anti-Virus software to make sure it is up to date and functioning properly. Then you should run a full virus scan on your system. If you do not have Anti-Virus Software on your system, here is a list of FREE ONLINE VIRUS SCANNERS. ( I suggest you check your system with at least 2 of these ): 

Online Virus Scanners:
The sites below will run a virus scan on your computer.

Symantec Security Check
McAfee FreeScan
Trend Micro's HouseCall
Onecare Safety Scanner
Kaspersky Online Scanner
ActiveScan 2.0 - PANDA SECURITY
BitDefender Online Scanner
CA Online Threat Scanner

**After you've done a Online Virus Scan on your computer and it has been clean of any infections, I suggest you install one for your continued Internet and PC safety. Also install one of the Free Spyware Scanners. Below you will find a list of the top rated Free Antivirus & Spyware Softwares. 

**Free Antivirus Softwares**
Microsoft Security Essentials
Avira AntiVir Personal Edition
Avast! Free Antivirus
AVG Antivirus
a-squared Free

**Free Spyware Scanners**
SuperAntiSpyware
MalwareBytes Anti-Malware
Spybot Search & Destroy
Emsisoft Anti-Malware
PC Tools ThreatFire

*If your Anti-Virus doesn't have web protection features, there are several tools available that you can add to your browsers for free. You only need one of the top 3 if your current Anti-Virus does not have Web Protection features. The 4th program is provided as an additional preventative solution. It works by killing your browsers ability to install certain malicious Spyware, adware, browser hijackers, and dialers. It can be used in conjunction with your other protection. I suggest you look it over.

**Free Web Protection**
McAfee SiteAdvisor
WOT
LinkExtend
SpywareBlaster "For Internet Explorer & FireFox ONLY"

If you don't wish to use an AntiVirus listed on this page, please check this.
Microsoft List of Antivirus Software Vendors

Scam: OMG, You will cry after you see this thing.



The Scam
"OMG..YOU WILL CRY TODAY AFTRE WATCHING THIS HORRIBLE THING HAPPEND IN CALIFORNIA...! + [ Link ]"

Facebook users should be aware that, OMG!!!!! THIS IS A SCAM!! A SCAM THAT PROMISES TO SHOW YOU A VIDEO AND DOESN'T!!!


If you see a post like this, made by one of your friends on facebook, don't click the link. See example.

Example


If you make the mistake of clicking the link, it will take you here. See example.

Example


Clicking continue at the above screen will bring you to this application Request For Permission" screen. See example. 

Example

If you allow this "unknown Fox News" application the requested permissions, it will automatically do this to your wall. See example.

Example


While it's doing that to your wall, you will be directed to the following page and prompted to click "Continue". See example.

Example


Clicking "Continue" on the above page will send you to yet another page, were you will be asked to click another button...See example
.
Example


And finally shown the below. See example

Example


Ooops! That doesn't look like a video to me. It looks like another affiliate SCAM!!!


Damage Control (For those that may have fell victim)

Facebook Clean Up
You need to be aware that if you have installed any rogue apps into your facebook profile or clicked any clickjacked or likejacked links within facebook, you may be currently spamming your wall and or your friends news feeds with the apps or links viral/scam messages. If this has occurred you must remove the messages from your wall by deleting the post and or remove the rogue app by uninstalling it from your facebook profile.

How to remove an Application from your profile:
If you have made the mistake of following thru with the install of a rogue application, Please do the following:
  1. Navigate to your Privacy settings- (Click Account, then "Privacy Settings").
  2. Then under the heading "Applications, Games, and Websites" click "Edit Settings".
  3. To the right of the heading "Applications You Use" Click the "Edit Settings" button.
  4. Finally find the application name in your list and click the "Little X" to the right of that name. Follow the facebook prompt to remove the app.
What to do if you've downloaded Software to your Computer
If you have followed one of the links on facebook to an external website or downloaded a piece of software you are unsure of and believe you may have gotten a virus infection, I suggest you immediately uninstall any software you may have installed, then run a virus check on your system. If you don't have a Virus Scanner on your system, here is a list of FREE ONLINE VIRUS SCANNERS. ( I suggest you check your system with at least 2 of these ):

Online Virus Scanners:
The sites below will run a virus scan on your computer.

Symantec Security Check
Onecare Safety Scanner
Kaspersky Online Scanner
ActiveScan 2.0 - PANDA SECURITY
BitDefender Online Scanner
CA Online Threat Scanner

Scam "Five things every girl does before she meets her boyfriend"


 


The Scam
"Five things every girl does before she meets her boyfriend + [ Link ]"

This scam claims to show the five things that every girl does before she meets her boyfriend. Facebook users should be aware that there have been some reports of this particular scam being malicious or giving you a virus. Although in this particular instance I did not find a virus, I did find several things that should tell you to stay away from any link claiming to show this material.

You may notice a post in your news feed from a friend similar to the one below. See example.

Example Post

If you make the mistake of clicking on the link in the post you will be taken to a site similar to the one below. See example.

Example site


The above site claims that you need to follow the steps to see the content. We've seen this all before and if you don't know it is a mistake to follow the steps, you will know now. As you will see in the example below, clicking the like button produces a Noscript warning within my browser Firefox. This warning is displayed to tell you that what you just clicked is not what it appears to be. Users without this protection would not receive this type of warning and would not see the following screen. See example

Example No-script Warning


In the example below users without FireFox & NoScripts would see blank pop-up box after they clicked "like". Here's the fun part, this box repeatedly opens and closes. Leaving your browser stuck in the loop. The only way to stop this loop, is to click on pop ups exit button . If you manage to figure that out, you're then asked to follow step two, which is to share this site. See example.

Example Error

Example Sharing

At this point you should be wondering why you're sharing this site when you haven't seen the information yet, but as quite a few people have done, you make the mistake and click share. Well, after you've done that you are presented with the following screen and asked to click it. See example.




And finally "Clicking Here" brings you to this highly sought after information. See example

Highly Sought After Information
Pure nothing. A true waste of your time.

It is advised that you stay away from this scam. In this example there was no virus downloads, but the one you encounter might just hose your computer. Don't click on it.



Damage Control (For those that may have fell victim)

Facebook Clean Up
You need to be aware that if you have installed any rogue apps into your facebook profile or clicked any clickjacked or likejacked links within facebook, you may be currently spamming your wall and or your friends news feeds with the apps or links viral/scam messages. If this has occurred you must remove the messages from your wall by deleting the post and or remove the rogue app by uninstalling it from your facebook profile.

How to remove an Application from your profile:
If you have made the mistake of following thru with the install of a rogue application, Please do the following:
  1. Navigate to your Privacy settings- (Click Account, then "Privacy Settings").
  2. Then under the heading "Applications, Games, and Websites" click "Edit Settings".
  3. To the right of the heading "Applications You Use" Click the "Edit Settings" button.
  4. Finally find the application name in your list and click the "Little X" to the right of that name. Follow the facebook prompt to remove the app.
What to do if you've downloaded Software to your Computer
If you have followed one of the links on facebook to an external website or downloaded a piece of software you are unsure of and believe you may have gotten a virus infection, I suggest you immediately uninstall any software you may have installed, then run a virus check on your system. If you don't have a Virus Scanner on your system, here is a list of FREE ONLINE VIRUS SCANNERS. ( I suggest you check your system with at least 2 of these ):

Online Virus Scanners:
The sites below will run a virus scan on your computer.

Symantec Security Check
Onecare Safety Scanner
Kaspersky Online Scanner
ActiveScan 2.0 - PANDA SECURITY
BitDefender Online Scanner
CA Online Threat Scanner

Work At Home Scam Spreads Via Twitter And TweetMeme


Unfortunately the TweetMeme service, which is used to find the hottest links on Twitter, has given spammers a helping hand overnight promoting a "get rich quick", work from home website.


The Tweets to stay away from are:
"hey everyone you've got to check this out I made $560 today so far + [LINK]"
OR
"check out this article! I made $200 today! + [LINK]"
OR
"CNBC7 - Work at home mom makes $6,795/month working part-time from home + [LINK]"
OR
"Anything Similar + [ Link ]"

The link will take you to a site which claims to have been featured in mainstream media, but it is nothing more then a work at home scam. To read more about this current twitter Spamming trend please follow the link below to the Sophos Blog "NakedSecurity".

Work at home spam spreads via Twitter, with a little help from TweetMeme

Thursday, December 9, 2010

Scam Sniper's Daily MashUp.




Scam Sniper's Daily Mashup is designed to bring my readers a daily dose of security and privacy related news updates. I believe these articles to be helpful and informative to Pc and web users. The mashup will contain direct links to various articles and a brief description of the information available in the article. These are the stories that did not make Scam Sniper's facebook wall. Here they can be presented to you without flooding your news feed. Take your time and read through the articles. The more you know about these topics the better your online experience will be.

Via All Facebook
Terrorist Caught Through Facebook Sting Operation
Gathering evidence on Facebook has become standard legal practice, so a social sting operation was bound to happen. That’s how the Federal Bureau of Investigation caught a would-be terrorist in Baltimore


Read more:
http://www.allfacebook.com/terrorist-caught-through-facebook-sting-operation-2010-12

Via All Facebook
Most Facebook Users Blindly Click Malware Links
Most people click on malware links without thinking twice, at least on social networks. A survey by security firm BitDefender found that 97 percent of respondents on Facebook and Twitter click on links without checking for malware.


Read more:
http://www.allfacebook.com/most-facebook-users-blindly-click-malware-links-2010-12ia

Via CNET News
Microsoft to plug critical IE, final Stuxnet Windows holes
Microsoft said today that next week's Patch Tuesday will bring 17 updates plugging 40 holes and featuring two rated "critical," including one in Internet Explorer that was targeted in attacks last month.



Read more:
http://news.cnet.com/8301-27080_3-20025204-245.html#ixzz17gCRItne

Via Enterprise Mobile Today
Mobile Security Survey Says Smartphone Users Get Sloppy During Holidays
A recent Symantec survey found that employees are often careless about security when away from the office. "The survey found that the majority of smartphone users (62 percent) plan to use their devices to access sensitive data while they're out of the office," writes Enterprise Mobile Today's Larry Barrett.



Read more:
http://www.esecurityplanet.com/headlines/article.php/3916341/article.htm

Via Inside Facebook
Facebook Mobile Privacy Dashboard gets an upgrade
Mobile Facebook users will soon have much more control over they privacy settings - they will be able to see what information they are sharing with which applications and websites and edit those settings.


Read more:
http://www.insidefacebook.com/2010/12/08/mobile-applications-privacy-dashboard/

Via McAfee
Don’t Let the Holiday Rush Infect Your PC
It started the week of Thanksgiving when emails started pouring in with offers of sales and free shipping, cookie recipes and gift-giving guides. It is all I can do to keep up with the constant onslaught and find the actual mail in my inbox!


Read more:
http://blogs.mcafee.com/consumer/cyber-security-mom/dont-let-the-holiday-rush-infect-your-pc

Via PCWorld
Will Anonymous Target Facebook Next?
Social media has been sucked into the cyberwar that's raging between now between the pro- and anti-WikiLeaks forces on the Net.


Read more:
http://www.pcworld.com/article/213149/will_anonymous_target_facebook_next.html?tk=rss_news

Via PCWorld
Keep Your Credit Cards Safe From Skimmers
Credit card skimming is a major threat to credit and debit card users. Here's what you need to know about this increasingly common form of financial fraud.


Read more:
http://www.pcworld.com/article/212969/keep_your_credit_cards_safe_from_skimmers.html?tk=rss_news

Via TrendMicro
FakeDiagnostics, Another Spin on FAKEAV
When was the last time you defragmented your hard drive manually? Or when your operating system requested that you do so? Modern desktop operating systems have all embraced, in some form or another, self-medicating system and start-up diagnostics since 2005. One can then ask if this means that you don’t need to defragment your hard drive anymore.


Read more:
http://blog.trendmicro.com/fakediagnostics-another-spin-on-fakeav/#ixzz17gFomizI