TechTalk & Personal Computing Guide

India-Forums

   
TechTalk & Personal Computing Guide
TechTalk & Personal Computing Guide

How to defend yourself against adware

cdesai12 Goldie
cdesai12
cdesai12

Joined: 18 September 2004
Posts: 1900

Posted: 27 January 2005 at 9:14pm | IP Logged
How to defend yourself against adware

First, let me make my opinion clear: The installation of adware should be illegal and harshly punished. Adware has exploded because it offers big economic incentives for its sponsors. They'll never adequately inform PC users about their software before it's installed. This troubling aspect of adware will never be wished away.

Only software that a PC user specifically consents to should legally be able to install — and "end-user license agreements" that stretch off the screen should never be counted as consent. (This isn't a knock on "ad-supported software," such as the Opera browser. Such legitimate software is clearly integrated with its advertising and makes it easy to shut off the ads by registering.)

In reality, today's tech-illiterate legislatures will never ban adware — if they could even think of an effective legal approach to do so. We need to engage the battle on a technical level instead.

To understand adware, you first need to know how PCs get it. The ways that Howes obtained the adware he used in his tests provide us with some perfect examples:

  • Software downloads. For one group of tests, Howes downloaded and installed Grokster, a popular peer-to-peer file-sharing program, from CNET Download.com. Installing Grokster and clicking OK in its subsequent dialog boxes loaded 15 separate adware programs, containing 134 "critical" executable components, by Howes's count. This source of infection would compromise even Windows XP with its new Service Pack 2 (SP2).
     
  • Drive-by downloads. To set up another group of tests, Howes used Internet Explorer to visit the following Web locations: 007 Arcade Games (a games site), LyricsDomain (a song lyrics site), and Innovators of Wrestling (yup, a wrestling site). This resulted in 23 different adware programs being installed, carrying 138 components, Howes says. Drive-by downloads such as these are now less of a problem for users who've installed XP SP2.
     
  • You can't step into the same river twice. For yet another test, Howes visited the wrestling site again, but on a different date. The makers of adware must have signed a lot of distribution contracts with the site in the interim. Howes says his PC picked up 25 adware programs and 153 components on that one visit alone. (You'll notice that I didn't link to the examples I cited above, and I strongly recommend that you avoid trying any of them.)
It's not enough to say "PC users should be more careful." Computer professionals, instead, have a duty and an obligation to prevent adware from infecting their PCs or anyone else's. Here are some steps to take:
  • Use Giant AntiSpyware (or install the MS beta), Webroot Spy Sweeper, and CWShredder.
    At the moment, this is the short list of programs that appear to remove the largest number of adware components. I recommend that you buy the registered versions of these applications and keep them constantly updated. The few dollars involved are well worth it, compared to the damage that can be done by a rogue program controlling your PC.

    Microsoft hasn't yet announced whether its version of the Giant application will cost money or be free after the beta period is over — stay tuned. (Note: The MS beta is with the MS Media Center Extender and has other 0.9-type issues.)

    See , , , .

  • For prevention, install IE-SPYAD and Spyware Blaster. IE-SPYAD is a list maintained by Eric Howes of approximately 8,900 Web sites that are known to do things like install adware, hijack your browser home page, etc. Merging the list into your Windows Registry puts these sites into IE's Restricted Sites zone. They can't do much of anything to you then. The list, as of this writing, requires manual updating, but Howes hopes to automate the process soon.

    Spyware Blaster is freeware by Javacool Software that Howes recommendeds to guard against adware installs. A registration fee of $9.95 USD enables the auto-update feature of the software, which Howes encourages. Javacool also makes a related program, SpywareGuard.

    As commercial anti-adware programs develop their own always-on defenses, they may conflict with alternatives such as Spyware Blaster. Check the maker's documentation for possible incompatibilities before installing multiple products.

    See , .

  • Read up on Eric Howes's site. Aside from Howes's postings about his anti-adware test suite, linked to below, a particularly good read is his analysis of so-called anti-adware programs that are actually Trojan horses. People are so desperate to get rid of the adware that's slowing their systems to a crawl, Howes says, that too often they grasp at anything that promises a fix. See his list of .

  • For big problems, consider stronger tools. HikackThis, for example, is a deep-analysis utility that examines the Registry and sectors of hard disks where adware often lurks. It's not a tool for novices, but a serious scalpel for those who are faced with major surgery on their PC. It produces log files that can be analyzed by experts, many of whom help PC users by volunteering their time in online forums.

  • Keep your security baseline updated. In this issue of the Windows Secrets Newsletter, we've begun a regular section on the six elements needed to protect your PC. This section appears below.

It's absolutely absurd that PC users must download, install, and update multiple programs just to keep their machines from silently accumulating crapware from morally-challenged Web sites. It's criminal that the leading ISPs and software giants of the world didn't move earlier to prevent these nuisances from taking over the majority of consumers' PCs.

The underlying reason that adware has compromised the entire Internet is that there's big money to be made. The best analysis of this I've seen is by Benjamin Edelman, a Harvard Law School student. He's documented almost $140 million in recent investments by Silicon Valley venture capitalists in just four of the largest adware makers. See

For those who are interested in deeper research on adware, links to Eric Howes's raw data on his comparative tests are posted on his page.

*Anjali* IF-Dazzler
*Anjali*
*Anjali*

Joined: 13 August 2004
Posts: 4673

Posted: 28 January 2005 at 8:50pm | IP Logged
hey cdesai---i'm a little confused--is this about adware (meaning spyware) or about adaware (which gets rid of spyware)?  thanks Smile
HUMM IF-Dazzler
HUMM
HUMM

Joined: 06 November 2004
Posts: 2927

Posted: 28 January 2005 at 9:12pm | IP Logged
Thanks for that intresting article!ClapClap
  • Page 1 of 1

Go to top

Related Topics

  Topics Author Replies Views Last Post
FBI warns against new e-mail scheme

Author: *Anjali*   Replies: 5   Views: 1179

*Anjali* 5 1179 01 March 2005 at 7:54pm by Nankri
Anti-adware apps reverse course on WhenU

Author: cdesai12   Replies: 0   Views: 773

cdesai12 0 773 26 February 2005 at 11:25am by cdesai12
Adware makers threaten critics

Author: cdesai12   Replies: 0   Views: 753

cdesai12 0 753 26 February 2005 at 11:25am by cdesai12
Prevent yourself from becoming an Interne

Author: cdesai12   Replies: 2   Views: 615

cdesai12 2 615 29 January 2005 at 11:50am by meghavi
Anti-adware misses most malware

Author: cdesai12   Replies: 1   Views: 3287

cdesai12 1 3287 29 January 2005 at 1:47am by HUMM

Forum Quick Jump

Forum Category / Channels
Forums

  • Please login to check your Last 10 Topics posted

Disclaimer: All Logos and Pictures of various Channels, Shows, Artistes, Media Houses, Companies, Brands etc. belong to their respective owners, and are used to merely visually identify the Channels, Shows, Companies, Brands, etc. to the viewer. Incase of any issue please contact the webmaster.

Popular Channels :
Star Plus | Zee TV | Sony TV | Colors TV | SAB TV | Life OK

Quick Links :
Top 100 TV Celebrities | Top 100 Bollywood Celebs | About Us | Contact Us | Advertise | Forum Index