Showing posts with label virus. Show all posts
Showing posts with label virus. Show all posts

Friday, February 20, 2015

Lenovo in hot water after shipping laptops with malware pre-installed.

Computer maker Lenovo has been shipping laptops pre-packaged with malware that makes you more vulnerable to hackers - all for the sake of serving you advertisements.

Made by a company called Superfish, the software is essentially an Internet browser add-on that injects ads onto websites you visit.

Besides taking up space in your Lenovo computer, the add-on is also dangerous because it undermines basic computer security protocols.

That’s because it tampers with a widely used system of official website certificates. That makes it hard for your computer to recognize a fake bank website, for instance.

Customers started spotting this on their Lenovo computers in mid 2014.

After facing a fierce backlash by customers and computer security experts this week, Lenovo acknowledged that "user feedback was not positive." As of January, Lenovo has stopped pre-loading the software on new computers, a company spokesman said. Lenovo also promised it "will not pre-load this software in the future" and said it disabled the feature on its servers, which essentially kills the program on everyone’s computer.

Source: Yahoo Tech

Monday, January 26, 2015

SCAM ALERT: fake court notice email making its rounds.

Internet scammers are sending emails claiming to come from a real law firm called Baker & McKenzie. The email states you are scheduled  to appear in court and should click a link to view a copy of the court  notice. The email is not from Baker & McKenzie and has no connection  to the firm. It is an attempt by cyber criminals to trick you into  trying to prevent a negative consequence. If you click on the link, you download and install malware.

In the recent past there have been a series of these court appearance malware attacks that claim to be from law firms or government entities.  If you get one of these scams, do not click any links or open any  attachments, delete these emails.





Tuesday, September 9, 2014

The Web's newest scam: Jennifer Lawrence nude pictures.

There is a new (true) current event which unfortunately is the ultimate click bait. A hacker got into Apple's iCloud and hacked the account of Jennifer Lawrence and many other celebrities. Apparently, she had taken nude pictures of herself and they are all out there now. You would think these celebs would have learned by now, but no. Apple has patched a bug that would allow brute force attacks on iCloud, and this may have been how the hack was done, or it could be simply a guessed password.

The cyber criminals are already working on campaigns to exploit this event and these are going to be very enticing phishing attacks over the next few months.
 

This weekend, it was all over the news that hackers leaked nude pictures of Jennifer Lawrence and other celebrities. The news is true, and the pictures are out there. The problem is that the bad guys are going to use this to trick people into clicking on links and open attachments, which will infect your computer with malware. Do not get curious and fall for these scams.

Wednesday, June 11, 2014

Critical alert regarding a new variation of the Crypto-Locker Trojan.

There is a new variation of the Crypto-Locker Trojan currently attacking computer networks in the US. This is rampant right now so your extra vigilance and care is extremely important.

Do NOT click on any email attachments, faxes, PDF files or any other attachments unless you are 100% positive that it’s from someone you know well AND you are expecting the attachment. Many local companies have already been affected and their networks taken down by this Trojan. These emails are made to look like they are coming from banks, shipping companies and many other vendors we all use on a daily basis.

There is currently no antivirus or anti-malware that can protect you from this nor can it remove and fix the problem afterwards. The only resolution is to format and re-install the affected systems and servers and in many cases, unless you have an offsite backup solution, your critical data is encrypted and unable to be restored. We have found that even paying the ransom will not get your data back as the criminals do not respond even after you’ve send the money.

This is a network Trojan as well so if your local system gets infected it will attack and encrypt any and all files on shared drives – essentially putting your local data beyond your reach and un-useable.

If you make a mistake and click on the attachments which take you to a link outside your office you will be informed that your data has been encrypted and to send a payment to ….. If you see this popup, please immediately turn off your computer, unplug it from the wall and remove the network cable that connects you to your network, the server and the internet. This might help with protecting some of the data on your network shares.

We will keep you informed and updated as this Trojan continues to make it way throughout the US.

In the meantime, if you have any questions or concerns related to this, please do not hesitate to contact our office at contactus@iesadvisors.com or 781-816-9437.

Sunday, October 13, 2013

IMPORTANT NOTICE TO ALL COMPUTER USERS: New Crypto Locker Ransomware infecting computers & locking down files.


We are seeing a new version of Crypto Locker Ransomware infecting computers and encrypting files so that you cannot access them. A message comes up as shown in the above link demanding $300 to be paid in order to get the files back.

If you encounter this virus on a work or home machine, turn it off immediately. Do not click on anything to close it. These criminals attempt to panic you into clicking on the "close" buttons which are really an "Ok, infect my computer" button. It is extremely important that you simply turn off the power to the computer immediately and contact your IT support person.

We recommend enabling strict filters on any and all firewalls in both your home and office, which may block some valid HTTPS sites such as banking sites but it's safer than letting this new trojan/virus into your computer systems. The infection is also "network aware" which means that if an infected user has access to a shared folder on a server or another workstation, that user will cause all shared files to become encrypted and unrecoverable as well.

The trojan infection is coming from infected web sites. The links may come in via email or on social media sites. So be very cautious about ANY web links. As we always recommend the sender should clearly identify themselves, you should know the sender and the purpose of the link(s) sent. In any case - it's still best to ignore them and DO NOT click on any links you receive without first calling and verifying that the sender and the link is legitimate.

Please be safe in your email and Internet browsing. If you need assistance securing your computers or find your computers to be infected, feel free to contact us to discuss your options.

IES, Inc.
781-816-9437
iesAdvisors.com

Tuesday, July 23, 2013

Do you really need antivirus software?

Do you need antivirus software on your PC? If you're not sure of the answer to that question, then the short answer is yes. The longer answer is that security software is only one piece of what should be a simple, straightforward, and systematic approach to your PC's health.

Just how dangerous is it out there? Here's what you need to know:
  • No computing environment is immune. Every platform can be exploited by an attacker. This month's Mac OS X v10.6.5 and Security Update 2010-007 included well over 100 fixes to critical security vulnerabilities, many of which could lead to arbitrary code execution. These are exactly the same types of vulnerabilities that Windows malware writers take advantage of. Fortunately for Mac (and Linux) users, their worldwide market share is small enough that malware writers simply haven't bothered with them. If you use OS X on a Mac, I don't think you need to install security software, but that recommendation could change someday if Apple's platform continues to grow in popularity and attracts enough attention from bad guys.
  • Good behavior alone is not enough to protect you from attacks. Visiting porn sites and downloading pirated software puts you at a much higher risk of infection, but even legitimate web sites can be compromised, and seemingly innocent results in a search engine can lead to hostile sites.
  • Antivirus software is one layer among several. Depending on the type of threat, it can be very helpful, even if you consider yourself an expert PC user. But it is not a magic bullet, and it is no replacement for a well-rounded approach to security.
  • No antivirus software is perfect. It is literally impossible for any security product to identify every possible threat, especially when malware writers are constantly updating their products to avoid detection. Most of the leading antivirus programs can identify and block the overwhelming majority of threats you're likely to encounter online. The fact that they can't reach 100% protection is why security software is only one part of a layered security strategy.
  • Many types of malware are installed voluntarily. Among the most common threats are Trojans, which spread via social engineering. The job of a malware writer is to convince you to run his innocent-sounding program, which secretly does something other than its stated purpose. It might claim to be a new video playback plugin but actually turns out to be a program that hides on your PC and steals passwords or sends spam. Social engineering explains how an entire class of malicious fake antivirus programs made it onto the top 10 malware list for the first half of this year.
  • Malware writers make their living exploiting unpatched systems. One of the top 10 threats found and removed from Windows PCs in the first half of this year was Win32/Conficker. The vulnerability that Conficker exploits was blocked by a Microsoft patch released in October 2008. In fact, that's true of most of the top PC malware variants found in the wild. Four of the entries on the top 10 list for 2010 are based on vulnerabilities that were identified and patched in 2007 or 2008, and none of the others could have been installed without explicit user interaction on a fully updated copy of Windows.
  • It's not just Windows that needs patching. Some of the most effective malware vectors these days are coming through vulnerabilities in products like Adobe Flash and Reader, in the Java runtime, and in Microsoft Office. In most cases, the vulnerabilities were patched quickly by the software maker, but if you didn't apply that update, you remain vulnerable. Ironically, most of these exploited programs are cross-platform; in theory, malware authors can add code to their PDF or Java exploits that target Macs or Linux PCs. So far, they haven't done that. 
  • Attacks via zero-day exploits are rare. Zero-day exploits get a lot of publicity, but they rarely have a widespread impact. The worst variants of these attacks are the ones aimed at specific companies, like the targeted wave of attacks against Adobe, Google, and other high-profile companies in early 2010. And even those only succeeded because they exploited unpatched systems using an outdated browser.
If you want your Windows PC to be secure, here are the essential steps.
  1. Use a modern operating system. Sorry, folks—Windows XP simply isn't secure enough for ordinary people to use today. It was designed more than 10 years ago, and it lacks many of the core architectural changes that make later Windows versions more resistant to attacks. Address Space Layout Randomization and Data Execution Prevention are core features that block some classes of exploits completely. File and registry virtualization (a key part of the much-maligned and misunderstood User Account Control feature) prevents hostile programs from writing to system folders. Removable drive exploits, which have represented a very common vector for spreading malware recently, do not affect Windows 7 or Windows 8.
  2. Keep your OS up to date and backed up. Turn on Windows Update and make sure it's running properly. That single step will protect you from virtually all widespread malware attacks these days. If you're worried about a buggy update hosing your system (highly unlikely, but theoretically possible) make sure you have a full image backup on hand. Every version of Windows 7 allows you to perform a full image backup to an external hard drive; if you schedule that operation for the day before Patch Tuesday every month (or better yet, for every Monday), you'll be able to recover from any kind of problem. Oh, and leave the Windows Firewall turned on unless you've replaced it with a third-party alternative.
  3. Keep applications updated also. Adobe has greatly improved its updaters in the past year. If you're prompted to update to a new version of Flash or Reader, do it. Microsoft Office updates are delivered automatically through Microsoft Update; make sure that those are being installed as well. Remove unwanted programs that could represent a security threat. Many new PCs come with Java installed automatically. If you don't use it, remove it.
  4. Be suspicious of any new software. As I noted on the previous page, malware authors count on tricking you into installing software that claims to do one thing but actually takes over your system, stealing passwords or adding your system to a worldwide botnet. If you're not sure a program is safe, don't install it.
  5. Set up standard (non-administrator) accounts for unsophisticated users. That category includes kids, parents, employees, and all of your non-geek friends and family members. With a standard account a user needs to talk to you (and convince you to enter the administrator's password) before installing any new software. That conversation is an ideal opportunity to teach your family members and employees about the warning signs of potentially dangerous programs. (This is another good reason to upgrade from Windows XP, by the way, where running with a standard account is difficult because of badly written programs that require administrator rights; both Vista and Windows 7 do a better job of allowing those programs to run without compromising the integrity of the system).
  6. Use a modern browser. If you're still using Windows XP and Internet Explorer 6, stop it. I think IE8 is a good alternative, especially when coupled with Protected Mode (a security feature in Windows Vista and Windows 7). If you prefer to avoid IE altogether, that's a great choice. As I continuously explain to all of my clients, there are several good reasons to prefer alternative browsers such as Firefox or Google Chrome to any version of Internet Explorer. For starters, both Mozilla and Google have generally been faster at releasing updates to security issues than Microsoft.
  7. Install an antivirus program and keep it up to date. There are plenty of effective programs in this category that can run with a minimum of chatter and will block the overwhelming majority of threats. I recommend ESET NOD32 Antivirus to every client.
And one final word: Don't be paranoid. Common sense and the good practices outlined above will offer excellent protection for any consumer PC and leave you free to work and play in comfort.

*As an Inc. 5000 company, ESET has been pioneering the antivirus industry for 25 years. They have received awards from Information Security Magazine, SC Magazine, VMware, and countless other recognized names in the computer industry. IES is proud to be partnered with such a highly trusted and recognized company.