This site will look much better in a browser that supports web standards, but it is accessible to any browser or Internet device.

Spyware Information and Anti-Spyware Resources

Courtesy of Core Competence, Inc. and The Security Skeptic

Web www.corecom.com The Security Skeptic

 

 

BEFORE YOU DOWNLOAD,
check the Rogue Spyware List

 

 

This page uses style sheets created by Ruthsarian Labs

Spyware: your worst nightmare

You think viruses, worms, and spam are bad? Spyware is worse... Spyware installs on your computer, without your knowledge and permission. Sometimes called adware, nastyware, crapware, scumware, and worse, it's all aggravating, and intrusive. It's enough to turn pacifists into violent activists. More...


What's The Difference Between
Spyware And Viruses?

The average Internet user has difficulty distinguishing viruses from spyware. The differences are indeed subtle. Both are malicious software (malware): uninvited, intrusive, and potentially destructive. Both have the capacity to capture and destroy information, ruin performance, and disrupt business. More...

How To Keep Spyware Off
Your Enterprise Network

Spyware is challenging spam and viruses for the top spot on IT worry lists. Spyware poses considerable threats and risks to enterprise networks and remediation and countermeasures are now being regarded as critical to network security. More...


The Spyware Money Trail

If you were ever curious who makes money from spyware, and how, find time to read Follow the Money; or, why does my computer keep getting infested with spyware?


Spyware websites

How can spyware websites continue to operate once they are discovered?

Once spyware infests a computer, its mission is to spy upon the PC user, or to redirect or force the user to visit an affiliate web site. A second and equally important goal for spyware is to evade detection, so that it can continue its primary mission. Several observations can be made from this behavior. More...


Identifying Spyware Processes on a Windows PC

Spyware can be downloaded from many locations, delivered in many packages, and installed in many locations on your PC. Spyware developers distribute new spyware and alter existing spyware constantly to evade your desktop and gateway antispyware defenses. No matter how many countermeasures you put in place, you can still fall victim to spyware. If you notice common spyware symptoms on your PC, don't be afraid to investigate. More...

Spyware Risk: It's Time to Get Smart

Many users vaguely understand the risks associated with having spyware secretly and maliciously installed on their computers. Fewer users know the many forms spyware takes and the truly evil activities it performs.

Read the rest of this column at Watchguard Technologies...


Spyware Remediation: It's
Not "Mission Impossible

Small and medium businesses are ripe targets for spyware, but they don't have to remain so. SMBs can implement an effective anti-spyware program on a shoe string budget. Adopt the practices recommended here, carefully select anti-spyware helpware, and you can mount a serious defense against spyware.


You call it spyware,
I call it lieware.

[Excerpted from Watchguard Wire]

"...the range of deceptive practices from spyware reach farther than most people realize. The difficulty with describing spyware is that what you can do once you 'own' someone's browser is pretty much a green field. More...


PC Pitstop Top 25 List

Most people who read my blog are familiar with the SANS Top 20 Vulnerability list. Trend Micro, Vexira, and in fact, most antivirus companies host lists of the current most prevalent malware. PC Pitstop hosts a similar list...More...


Deceptive 'Ads by Google'

Several companies are hijacking the good name of Spybot Search & Destroy with the text they use in Ads by Google. NoAdware uses "Spybot Search & Destroy ?" and "Free Spy Bot Scan" SpywareNuker uses "Search & Destroy Spybot". Check the URL in Ads by Google before you visit, and complain to Google.


When It Comes To Anti-Spyware Tools, Accuracy Is Key

How good is your anti-spyware? Can yours “detect 40,000 parasite definitions”? Can yours search for 53,248 spyware components?” Only 22, 984? Wimp! But wait, how can the wimp be rated fifth best out of 20 in a comparative review? What are we counting here? Are we all using base 10 arithmetic? More...


Anton Chuvakin on Spyware

Colleague Anton Chuvakin posted a solid and up to date article on spyware on O'Reilly's WindowsDevCenter website. In the article, Anton offers a good taxonomy of spyware and an equally good explanation of countermeasures and recovery procedures. Anton reiterates one piece of advice I routinely see in antispyware articles: More...

Shouldn't Antivirus and antispyware software
be the same 'ware?

Every network client must have antivirus software. We've been told so for years, and the message is finally sinking in. Concern over spyware is increasing so rapidly that I fully expect that antispyware, too, will be a prerequisite for network logon. More...


Legislation Won't Stall
The Spyware Juggernaut

Spyware has reached such epidemic proportions that lawmakers are responding to public outrage by drafting bills to prohibit its distribution, stem abusive practices and protect Internet user privacy. Unfortunately, pending and recently enacted anti-spyware laws are flawed and could do more harm than good. More...


Quantifying the Spyware Problem

StaySafeOnline hosts the results of an online safety study conducted by AOL and NCSA. The figures on spyware are staggering: over 88 per cent of users who agreed to have their systems scanned discovered spyware and, on average, users detected 93 pests per PC. More...


Microsoft's Antispyware Beta

Microsoft began offering free downloads of the beta version of the antispyware software they recently acquired (Giant). I'm a bit late to the review gate, but here's my anecdotal assessment.

PC World also reviewed the Beta.


Special Report: Putting Spyware In Front Of The Firing Squad

SecurityPipeline offers a package of articles on spyware (including two of mine) here...


The Top 5 Enterprise Antispyware Requirements

Good enterprise IT organizations appreciate the importance of orderly processes and centralized control. As they deploy currently available technology to combat spyware, enterprise IT departments have not lost sight of the requirements that will help integrate antispyware measures into standard desktop administration. More...


Malware Removal and Prevention

The folks at CastleCops have assembled a thoroughly impressive set of recommended practices for identifying and removing malware using freeware, and for keeping PCs clean following removal as well. It's disturbing that users must jump through so many hoops and perform so many time consuming tasks, but it's good to know there's a definitive and trustworthy source to help folks with limited budgets combat a nasty problem.


The resources here provide valuable information to help you understand spyware and adware, and the threats they pose. I have found the software I recommend here to be legitimate and helpful. Good luck, and be safe...dmp

You may also find Corecom's Phishing and Identity Theft page, valuable as well.

The Security Skeptic's Weblog also contains information about spyware, phishing, viruses and worms.

Activism, Discussion Groups and Forums, Legislation

Note: Forums provide opportunities to discuss and solve spyware related problems. Like any discussion group, some people are well-intentioned and others not so. Use your head!

AOL/NCSA Online Safety Study at StaySafeOnline.info
Spyware Info Forums (SWI)
The Center for Democracy and Technology
The GetNetWise organization
Privacy Watch at COTSE.NET
Identity Theft Resource Center
Wilders Security Forums
Spyware Warrior Forumns
CounterExploitation Discussion Boards
Spyware Weekly Newsletter (Archive)
Virus.org
PCVirus.org
Michael Horowitz's Malware Links
Malware Removal and Prevention: Overview

Helpful abstracts for articles on spyware (how does he find the time?)


US House Bill H.R.2929: SPY ACT

US Senate Bill S. 2145: SPY BLOCK Act
(US) Bill Internet Spyware Prevention Act (ISPA)
(US) Piracy Deterrence and Education Act (PDEA).

Spyware Encyclopedia

Pest Patrol Research Center

Comprehensive Encyclopedia with painstaking attention to removal details

Bazooka Online Encyclopedia: Kephyr
Spywagrayata.com

Excellent spyware database, constantly updated using feedback from users of their scanner.

Spyware list: Trend Micro
Advertising Spyware List: CEXX.org

Articles

Note: These sites were "clean" when I visited them.
Some presented related popups. Your mileage may vary.

General

What is spyware?: Anton Chuvakin
Spyware and Adware Prevention : Intranet Journal
Microsoft KBA 827315:Unexplained computer behavior may be caused by deceptive software
Avoid and Stop Adware, Popups & Spyware from being installed via ActiveX: CompuDocs
Security and Privacy Online: Coyote.org
Spyware:UMass Lowell IT
The Truth about Spyware: Webroot.com
What are Malware, Spyware, and Adware?: Humboldt, Inc.
How spyware & adware programs threaten network security & performance: Window Security Magazine
Understanding Spyware, Browser Hijackers, and Dialers: Bleeping Computer
Spyware Explained: InformIT
Removing Spyware: Michael Horowitz
Identify Malware Hiding in Windows' System Folders Andrew Brandt


The Lowdown on Spyware: The Savvy Click
Identifying Spyware Processes on your PC: Dave Piscitello
Spyware: Encyclozine
How to Protect Your Computer from Spyware and Adware: Jerry Honeycutt
find Unsolicited Commercial Software: doxdesk
Spyware and deceptive software: Microsoft Trustworthy Computing
What you can do about spyware and other unwanted software: Microsoft
How to Stop an ActiveX Control from Running in Internet Explorer: Microsoft KBA - 240797
What are parasites?: Spyware News
Beware of Back Channels: Dave Piscitello
Spyware: They came from cyberspace: Dwight Silvermann


Is Someone Watching You?: Lisa Phifer
Spyware, Adware, and Peer-to-Peer Networks: Kevin Townsend
Cost-Effective Remote End Point Protection: Lisa Phifer
Wicked Code: Foiling Session Hijacking Attempts: Jeff Procise
Spyware Inferno: MooseNugget.net
Can Anything Stem the Spyware Tide?: Anush Yegyazarian
Spyware removal help: PCHell
US-CERT Tip ST04-016: Recognizing and Avoiding Spyware
Follow the Money; or, why does my computer keep getting infested with spyware?
7 Things To Look For In Antispyware: Wayne Rash
Blocking Spyware at the Network Gateway: Dave Piscitello

Key Loggers

How to detect and prevent keylogger attacks: Mike Chapple

Symptoms

Symptoms of Spyware and Other Pests: Intranet Journal
Symptoms of Spyware:GetWise.org
11 Signs of Spyware: PC Magazine
Adware and Spyware Symptoms: SeriousVirusWarning.com
How to check for spyware: Directory-One
WinNT Task Processs Library

Visit this site to identify a process (e.g., dsentry.exe., backweb.exe) as spyware.

Browser Exploitation and Hijacking, ActiveX Controls

Browser Hijacking: Mike Healan

Take control of Internet Explorer... before spyware does: Dave Piscitello
What is a Browser Helper Oject?: MarOps.com
The CoolWebSearch Chronicles: Merijn.org

Excellent reading

Blocking unwanted hosts with a hosts file
CoolWebSearch Spyware: Adware Report
about:blank (CoolWebSearch variant): Adware Report
Preventing a Hijacking: Mike Healan
Adware and Spyware: SeriousVirusWarning.com
Autorun menu: What is it?: Moon Valley Software
Understanding security zones: Microsoft XP Pro Documentation
Browser Helper Objects: Microsoft
Safe Initialization and Scripting for ActiveX Controls: Microsoft
Browser Security Settings: Coyote.org

Web Browser Hijacking: What Is It and How Can You Protect Yourself?: Joe St Sauver

Beginners Guides: Browser Hijacking and How to Stop It:PCstats
How to use HijackThis to remove Browser Hijackers and Spyware: Bleeping Computer
HijackThis Log Tutorial: Merijn Bellekom
Web Browser Hijacking: Michael Desrosiers
Who Moved my homepage?: grayiff.com
BHO List: SpywareInfo
List of Browser Helper Ojects: Henri Leboeuf
CLSID, BHO, and Toolbar List: ComputerCops
SP2 vs. the Plug-ins: Paul Festa
Spyware Watch

Ad server blocking

Block List @ pgl.yoyo.org
Ad server blocking using hosts files @ pgl.yoyo.org
IE-SPYAD: Restricted Sites List for Internet Explorer
AGNIS: AtGuard/NIS/NPF Ad Block List
How to Install and Update IE Spyad for Internet Explorer
Using IE-Spyad to enhance your privacy and security
ProWAGoN 3.0.0: NIS/NPF Block List Utility
Neutering Ad and Spyware: cexx.org
Products Detected and Blocked by CLSID: Spywareguide.com
CLSID Key: Microsoft
Neutering Ad and Spyware: cexx.org
Messenger Service SPAM
PenguinFeet: A publicly maintained and freely available pornographic blacklist system

Web Bugs

Web Bugs: SpywareInfo The Web Bug FAQ: EFF.org
Web Bugs: Leave-Me-Alone.com
Web Bugs are Crawling Everywhere: Leave-Me-Alone.com
Web Bugs - Here are the rules!The Register (UK)
Of Spyware, Adware, and Web Bugs: Geek Girls

Cookies

Definition of "cookie" at GetNetWise

Are Cookies "spyware"?