NIST Site Search
Google
Web NIST.org
NIST.gov
Product Research

Advertise on this site
Headlines

»Mozilla Releases Firefox 3.6.9
»Apple Releases Safari 5.0.2 and 4.1.2
»Apple Releases iTunes 10
»Google Releases Chrome 6.0.472.53
»Insecure Loading of Dynamic Link Libraries in Windows Applications
»VMware Releases Updates for ESX Service Console Packages
»Cisco Releases Security Advisory for IOS XR Software Border Gateway Protocol
»RealNetworks Releases Update to Address Vulnerabilities in RealPlayer
»Cisco Releases Advisories for Unified Communications Manager and Unified Presence
»APWG Fax Back Phishing Education Program


Date published: not known
Details

»T-433: Security Advisory for Adobe Reader and Acrobat
Security Advisory for Adobe Reader and Acrobat
»T-432: Google Chrome Multiple Flaws Let Remote Users Execute Arbitrary Code
Google Chrome Multiple Flaws Let Remote Users Execute Arbitrary Code
»T-431: Linux Kernel Null Pointer Dereference in irda_bind() May Let Local Users Gain Elevated Privileges
Linux Kernel Null Pointer Dereference in irda_bind() May Let Local Users Gain Elevated Privileges
»T-430: Apple QuickTime Flaw in QTPlugin.ocx ActiveX Control Lets Remote Users Execute Arbitrary Code
Apple QuickTime Flaw in QTPlugin.ocx ActiveX Control Lets Remote Users Execute Arbitrary Code
»T-429: WaspTime MS-SQL Database instance with blank password for sa account
WaspTime MS-SQL Database instance with blank password for sa account
»T-428: Vulnerability in Help and Support Center
Vulnerability in Help and Support Center
»T-427: VMWare WebAccess Vulnerability
VMWare WebAccess Vulnerability
»T-426: Microsoft Windows Shortcut 'LNK/PIF' Files Automatic File Execution Vulnerability
Microsoft Windows Shortcut 'LNK/PIF' Files Automatic File Execution Vulnerability
»T-425: Desktop Java running in web browsers
Desktop Java running in web browsers
»T-424: Windows TCP/IP Stack IcmpSendEcho2Ex() Bug Lets Local Users Deny Service
Windows TCP/IP Stack IcmpSendEcho2Ex() Bug Lets Local Users Deny Service
»T-423: Microsoft Security Advisory (2269637) - Insecure Library Loading Could Allow Remote Code Execution
Microsoft Security Advisory (2269637) - Insecure Library Loading Could Allow Remote Code Execution
»T-422: Adobe Flash Player and AIR (CVE-2010-2216) Unspecified Memory Corruption Vulnerability
Adobe Flash Player and AIR (CVE-2010-2216) Unspecified Memory Corruption Vulnerability
»T-421: Multiple CACTI Security Vulnerabilities
Multiple CACTI Security Vulnerabilities
»T-420: Microsoft Windows TCP/IP IPv6 Extension Header Remote Denial of Service Vulnerability
Microsoft Windows TCP/IP IPv6 Extension Header Remote Denial of Service Vulnerability
»T-419: PHP 'ibase_gen_id()' Function off-by-one Buffer Overflow Vulnerability
PHP 'ibase_gen_id()' Function off-by-one Buffer Overflow Vulnerability


Date published: not known
Details

»September issue of VB published
The September issue of Virus Bulletin is now available for subscribers to download.
»ARF published as IETF standard
Abuse report format helps auto-handling of email complaints
»Microsoft releases new fix for DLL vulnerability
Earlier workaround believed to be too complex for most users.
»Malicious tweets link to fake TweetDeck update
Twitter resets passwords for accounts that appear to have been hacked.
»94% of Internet users befriend unknown 'good-looking woman'
Sensitiva data shared after two-hour chat.
»Investment boost for Quick Heal
Indian security firm gets hefty cash injection.
»41% of spam sent via Rustock botnet
Botnet spam back after short summer break.
»Avast gets $100m investment boost
Growth equity firm invests in Czech firm
»Computer chip giant buys AV giant
Intel becomes new owner of McAfee for the princely sum of $7.8bn


Date published: not known
Details

»String Of Deals Shows Demand for Cloud-Based Authentication
Acquisitions highlight how authentication-as-a-service is now part of identity and access management ...
»Tech Insight: Retooling Vulnerability Scanning, Penetration Testing For IPv6
Traditional host discovery via network scanning won't work with IPv6, but alternative methods are av ...
»Five Ways To Stop Mass SQL Injection Attacks
The best practices for mitigating this popular form of attack often are not being deployed
»IPv6 Transition Poses New Security Threats
Next-generation IP protocol comes with more security as well as some potential flaws of its own ...
»Networked Scanners Offer A Window Into The Enterprise, Researcher Says
Emerging Web-based features make it possible to capture document contents remotely from networked sc ...
»U.S. Businesses Could Lose Up To $1 Billion In Online Banking Fraud This Year
Small- to midsized businesses taking the biggest hit, experts say, but consumer banking customers co ...
»Product Watch: Verizon, VMware Team Up With Hybrid Cloud Service
New Verizon service offers private public-cloud option
»Could USB Flash Drives Be Your Enterprise's Weakest Link?
The Pentagon last week conceded that a USB flash drive carried an attack program inside a classified ...
»Delaware Contractor Mistakenly Posts Personal Data Of 22,000 Employees
State of Delaware contractor Aon mistakenly posts personal data of 22,000 retirees without randomiza ...


Date published: not known
Details
Free Online Antivirus, Spyware, and Firewall Scanners Review
You might be doing everything right with your anti-virus and spyware malware protection. But no product is perfect and a "second opinion" is always valuable. We get a lot of questions on what to do about viruses, spyware, intrusions, etc. There are so many Anti-Spyware scams, fake products, and Trojans out there that we've put together this (non-affliate) list of free help sites. Starting off with a review of free online virus and spyware scanning tools. (updated 3/31/09)

Free Online Anti-Virus / Anti-Spyware Tools (and other malware tools) – updated 5/7/2009

All of these sites and products listed below are well known, established companies, and have been tested and reviewed by NIST.org. They will not further junk up your computer. Don't trust malware scanners that you find through a search engine or popups you get when visiting some website. There are a lot of fake products out there and most will only make matters worse! (btw: everything listed below are non-affiliate links. Meaning we don't make a dime if you use them and we weren't paid to place them here. We don't control any Google ads appearing on the sidebar)

You will find that most of the online scanners require you to use Internet Explorer and have ActiveX enabled. The reason is simple, Firefox and Opera do not support ActiveX. ActiveX basically is a way to run applications within your web browser. It can also be very dangerous if you visit untrusted websites (all of these are safe). Which is one of the reasons we recommend using Firefox (see info below). No one spyware / virus checker will detect all malware so if you think you're infected run several of them. Those that say they scan for viruses most likely also detect (and possibly remove) worms and Trojans as well. Some detect and remove Spyware, while others do not. Again, when it doubt run several of them.

Free Online Web Based Malware Scanning Tools (some also remove malware):
Free Installable Always On Antivirus and Malware Prevention Programs
  • Free AVG – A truly free always on anti-virus / anti-spyware program with regular (free) updates.
  • Avast! antivirus Home Edition – Another free always on anti-virus / anti-spyware program. Lots of features including integrated virus cleaner.
  • PestPatrol (Free Spyware Scanner) – Also offers a free downloadable application to scan your hard drive for malware.

Free Off-Line Manual Scan Tools:
  • ClamWin Free Antivirus – An excellent free (and open source) antivirus tool. Can be used in addition with your always on antivirus program as a '2nd opinion'. Has automatic updates and can automatically remove infected file attachments in Outlook.
  • MalwareBytes - This tool is often recommended by the forums dedicated to helping you clena up a malware infection. Its easy to use and does a pretty good job of cleaning up most spyware and many virus infections. Not as powerful as a bootable CD option but easier to use. Definitely should be in your toolbox.

Manual Submission of Suspect Files – These websites will test individual files that you suspect of being infected. They use several up to date commercial antivirus programs:

Free Firewalls
  • ZoneAlarm Firewall - Free version. They also have a very good security suite that includes both a 2 way firewall and an antivirus program (up to 3 home PC's for $49.95)
  • Sunbelt Personal Firewall – Free Addition. This product works very well and will not slow down your computer. 2-way firewall will detect malware on your computer that tries to connect out to the internet.


If you see any good reputable sites we've missed in this review please send them to us. If you are in the market for a anti-virus program AV-Comparatives offers excellent independent testing and comparisons of Anti-Virus programs.
  • While you are scanning your computer you should visit Secunia's Software Inspector to inspect your computer and detect insecure versions of applications installed. It will also verify that Windows patches are applied and assist you with finding updates. Runs through your browser so there is nothing to install.

Need more help? Try the following website forums. Each is full of excellent advice, how-tos, and step-by-step removal instructions. Don't be afraid to ask for help.

Once you get everything cleaned up install Firefox and surf with it rather than Internet Explorer. A lot of web based malware, virus, and spyware problems can be avoided that way. Especially if you add the NoScript extension below. (again, both are absolutely free with no ads or spyware)
  • First, download Firefox – It is MUCH safer than using Internet Explorer and you won't need any help learning how to use it. Its also faster.
  • Second, install the NoScript Firefox extension (directly from Mozilla). Its very easy to install, just click the link and then click ok. It blocks JavaScript, Java, and other plug-ins unless you approve them (e.g. you're visiting a trusted websiet) and remembers sites you've approved so it doesn't bother you again. We wouldn't be caught surfing without it.




Share or Bookmark this Article Using:
| furl | reddit | del.icio.us | magnoliacom | digg | newsvine | stumble it |



Google
WebNIST.org
NIST.govSecurityFocus.com





Posted by NIST.org on Monday 04 May 2009 - 21:16:00 | Read/Post Comment: 0 |LAN_EMAIL_7 printer friendly
Translate to: French German Italian Spanish Portuguese GTM_LAN_DUTCH Russian Chinese Arabic Korean English
Google Ads




NIST Site Menu
·Home

NIST Security Books
NIST IT Security Books

NIST.org Security Bookstore
Current Security News
 
SANS Internet Storm Center, InfoCON: green

» Infocon: green

» Adobe Acrobat/Reader 0-day in Wild, Adobe Issues Advisory, (Wed, Sep 8th)
[08 Sep 2010 12:03pm]

» Mozilla Thunderbird updated to version 3.1.3 also, more here: http://www.mozillamessaging.com/en-US/thunderbird/3.1.3/releasenotes/, (Wed, Sep 8th)
[08 Sep 2010 11:46am]

» Patches issued for multiple vulnerabilities in Cisco Wireless LAN Contoller product family, more here: http://cisco.com/warp/public/707/cisco-sa-20100908-wlc.shtml, (Wed, Sep 8th)
[08 Sep 2010 09:59am]

» Mozilla's SeaMonkey version 2.0.7 released for Security Updates: http://www.seamonkey-project.org/releases/seamonkey2.0.7/, (Wed, Sep 8th)
[08 Sep 2010 09:59am]

» Firefox Releases Version 3.6.9 and 3.5.12 to fix Security Vulnerabilities: 3.6.9 is http://www.mozilla.com/en-US/firefox/3.6.9/releasenotes/ and 3.5.12 is http://www.mozilla.com/en-US/firefox/3.5.12/releasenotes/, (Wed, Sep 8th)
[08 Sep 2010 09:56am]

» SSH password authentication insight and analysis by DRG, (Tue, Sep 7th)
[07 Sep 2010 07:59am]

» US Department of Defense and National Policy, (Sun, Sep 5th)
[06 Sep 2010 08:16am]

» What's not to Like about "Like?", (Sat, Sep 4th)
[04 Sep 2010 12:46pm]

» Investigating Malicious Website Reports, (Sat, Sep 4th)
[04 Sep 2010 11:18am]

» Apple Releases Two Security Updates (One for OSX, One for iTunes) : http://support.apple.com/kb/HT4312 and http://support.apple.com/kb/HT4328, (Fri, Sep 3rd)
[03 Sep 2010 01:56pm]

***
CNET News.com

» Adobe warns of zero-day hole in Reader, Acrobat
[08 Sep 2010 11:34am]

» Antivirus isn't dead--it's growing up
[08 Sep 2010 05:00am]

» Mozilla fixes Firefox holes, curtails clickjacking
[08 Sep 2010 04:00am]

» Norton's new Power Eraser goes free
[08 Sep 2010 01:09am]

» Study: Two-thirds of Web surfers fall prey to online crime
[08 Sep 2010 01:01am]

» Trend Micro bets on the cloud
[07 Sep 2010 09:00pm]

» Court allows warrantless cell location tracking
[07 Sep 2010 02:44pm]

» Facebook closes hole that let spammers auto-post to walls, friends
[07 Sep 2010 01:37pm]

» Apple's Ping dinged by spam
[03 Sep 2010 08:01am]

» U.N. exec: Cyberwar could be 'worse than tsunami'
[03 Sep 2010 07:28am]

» Facebook adds new remote log-out security feature
[02 Sep 2010 02:30pm]

» Nigerian scam tops list of decade's online cons
[02 Sep 2010 11:16am]

» India wants local servers from RIM, Google, Skype
[02 Sep 2010 10:45am]

» Twitter plans to record all links clicked
[02 Sep 2010 12:33am]

» China requires cell phone subscriber IDs
[01 Sep 2010 05:40pm]

***
Computerworld Security News

» Hackers exploit new PDF zero-day bug, warns Adobe
[08 Sep 2010 02:09pm]

» Apple ships iOS 4.1, patches FaceTime flaw
[08 Sep 2010 01:16pm]

» Apple matches Mozilla, patches DLL hijacking bug in Safari
[08 Sep 2010 10:55am]

» Mozilla fixes Firefox's DLL load hijacking bug
[08 Sep 2010 04:53am]

» Symantec: Most hacking victims blame themselves
[08 Sep 2010 01:50am]

» Spammers exploit second Facebook bug in a week
[07 Sep 2010 01:58pm]

» More Security News

***


***


More IT Security
News Feeds
More Sponsors

Advertise on this site
NIST - Books You Need

NIST Bookstore
RSS Feeds
Our news can be syndicated by using these rss feeds.
rss1.0
rss2.0
rdf
Add to NetVibes
Add to Bloglines
Add to NewsGator
Add to Google
Add to My Yahoo
Add to My MSN
Add to Technorati
Add to Pluckit
Add to My AOL
Subscribe in FeedLounge
Add to ProtoPage

Symantec News

NIST.org is in no way connected to the U.S. government site NIST.gov

This site is © John Herron, CISSP. All Rights Reserved.

Please visit daily to stay up to date on all your IT Security compliance issues.

http://www.nist.org -
Hosted by BlueHost. We've never had a better hosting company.