

Non-Technical Users Talk Malware 410
swirsky writes "The Chicago Sun Times is running an article detailing the experiences of non-technical users after they were infected by spyware, malware, and viruses. We cluck our collective tongue and think that we'd never be so stupid, but this is a major problem that plagues personal computing." From the article: "The study found that spyware has disrupted the computer lives of 43 percent of surfers. That means an estimated 59 million people have spyware or adware on their computers, the study found. Adware is defined as tracking programs that come bundled with other software and that users knowingly download, although they don't necessarily want the adware."
Malware == Moolah (Score:5, Insightful)
I love malware. Malware removal acounts for probably 65-70% of the bottom line in my business. I'll tell you something else...the $129 average price tag quoted in the article is right on the money.
Personally, I hope nothing is done about the problem. I only wish I could protect my less-technically-inclined family members and friends more effectively, as I don't charge them for removal.
Re:Malware == Moolah (Score:3, Informative)
Re:Malware == Moolah (Score:5, Insightful)
But don't try to force them to make the switch, it will just lead to frustration when thing don't work out as expected because they can't play this-or-that game.
Just leave them with their malware problems and let them figure it out for themselves. Drop the odd hint about never having received a virus if you feel like it. Perhaps they'll get a Mac or something. It's a step in the right direction at least.
Re:Malware == Moolah (Score:2)
Re:Malware == Moolah (Score:2)
Re:Malware == Moolah (Score:5, Funny)
Bah, I could find an overseas resource to do the same thing for $12.
Re:Malware == Moolah (Score:5, Funny)
I downloaded a desktop assistant that does the same thing for free!
Re:Malware == Moolah (Score:2)
Millions, billions?
Re:Malware == Moolah (Score:2)
Send them my way. I'll charge them.
Re:Malware == Moolah (Score:5, Interesting)
I'm the mac tech so I don't see the spyware first-hand but I know it keeps the PC tech pleanty busy. Most entertaining aspect of spyware: when one of the other employees uses the PC tech's PC to web browse, and he comes in to find popups on his own machine. hehe..
Then there are the oh... 1 in 15 customers that can bring in their machine every two weeks to have us remove the spyware, again. Some customers just can't get "don't click the popup's close button" through their head. There ought to be a simple law that states that "any software installer must clearly label the buttons and other control areas in their installer, such that there can be no confusion or deception as to the function of each control, whereas a user could be tricked into allowing the installation without his consent."
Re:Malware == Moolah (Score:2)
Re:Malware == Moolah (Score:3, Interesting)
We have something like that in Germany... If sonmeone wants to install and run a dialer on your system they have to jump through several hoops - the dialer may not be installed without your con
Re:Malware == Moolah (Score:5, Insightful)
"War is good for the economy" is a fallacy that is true only for weapon makers. Everyone else pays the price. Fear is a motivator, but it produces less than it destroys. I guess some firefighters "love fire", but most would rather be barbecueing.
Re:Malware == Moolah (Score:3, Interesting)
Wow, I never quite realized what people are willing to pay for this. Personally, I usually do it for friends and family for the price of a good meal. At work, I support student owned laptops and do this as part of my job. I really need to reconsider going independent.
That said, yes malware is a huge problem, and one of the reasons I am employed. And for all of the preventative measures we take and t
Re:Malware == Moolah (Score:2)
Re:Malware == Moolah (Score:3, Informative)
I luckily don't have to deal with the family removal issues. The one family member that is constantly infecting her machine lives no where nea
Re:Malware == Moolah (Score:3, Funny)
And, if things go right, you'll be showing her your "Oh" face, right?
Re:Malware == Moolah (Score:3, Insightful)
Perhaps the better question is: how long can this gravy train last? Will Windows ever evolve to the point where spyware won't be a problem again?
.
.
.
HAHAHAAHAAHAHAHAHAHA! Sorry, I knew I couldn't type that and keep a straight face till the end. Congratulations and I hope you make lots of money!
It's not just the non-technical users (Score:5, Informative)
Being a technical guy, familar with the registry, COM, and how windows works, I went about trying to kill this pesky snake. A few hours later, after saying some words I won't repeat here, I decided to wipe the machine and start over (it was a lighly loaded box, so no major loss)
I could have gotten SoftIce [windowsitpro.com] and gone into kernal mode to trap this bastard, but it was way beyond my effort vs. reward tolerence level. Spyware has gotten so complicated and sneaky nowadays: to me it is worse of a threat than virsuses ever were.
Now I run double anti-spyware programs in addition to my A/V and firewall. I think that we technical people are also misunderestimating the danger posed by this junk to our own machines.
Run With the Bulls, Swim With the Sharks [whattofix.com]
Re:It's not just the non-technical users (Score:4, Funny)
I think we technical people are "misunderestimating" our own grasp of the English language.
Re:It's not just the non-technical users (Score:3, Funny)
"misunderestimating" is a perfectly cromulent word.
It's your own fault (Score:5, Insightful)
I can understand why non-technical users surf with Internet Explorer.
I can understand why technical users use Internet Explorer for Windows Update and a small selection of trusted websites (e.g. online banking) for compatibility.
But I have no sympathy whatsoever for technical users who should know better that continue to use Internet Explorer to visit websites that are in no way trustworthy.
Re:It's your own fault (Score:2)
Re:It's your own fault (Score:2)
>8)
Re:It's not just the non-technical users (Score:2, Interesting)
Re:It's not just the non-technical users (Score:5, Funny)
Re:It's not just the non-technical users (Score:2)
How does clicking on a web page bring infection? Surely the browser shouldn't execute anything directly like a spyware installer?
Re:It's not just the non-technical users (Score:2)
Re:It's not just the non-technical users (Score:5, Insightful)
If you were using Mozilla, you would have had 5 clicks and a double click: Click on the page, then click "Save to Disk" then point to a location, then minimized your browser, then double-clicked the EXE. That's a big accident!
Firefox lets you set a default download location, so that's down to 4 clicks.
Maybe you were using Internet Explorer 6 and had the default operation for EXE files to be to open them. You are down to 3 clicks. You could have clicked the web page, clicked OKAY to the prompt to open the EXE. Then maybe you accidentally clicked OK to the prompt about installing an application from the web that shows in a big warning box telling you about signed and unsigned applications.
Or maybe you were using an old version of Internet Explorer (IE 4? 5?) which doesn't prompt for anything if you have that set as the default. That seems highly unlikely for someone smart enough to know COM and the registry.
Okay, sorry if I am sounding like a jerk. I really just want to know how this can happen!
Re:It's not just the non-technical users (Score:5, Informative)
You somehow assume that you actually have to "click" a link and "save to disk" to download a file through IE. This is not so. Sites can use IE to install software on your computer, without your knowledge, even with all the preventative measures you mentioned. This is possible with what are known as "exploits" in the system. The insecurity of IE is not so much the default settings, as it is that changing the settings means practically nothing. That is why IE is flawed and broken beyond belief with critical security vunerabilities [secunia.com].
If you want to see how easily a PC is infected without you clicking, saving, or knowing ANYTHING, this series of articles will help: http://isc.sans.org/diary.php?date=2004-07-23 [sans.org]
I have to ask ... (Score:3, Insightful)
I use FF exclusively, unless there's a good reason to view a page in IE. And I always have the latest S&D immunizations for IE. But I'm curious if I'd be just as vulnerable despite these protections.
Re:It's not just the non-technical users (Score:2)
Upon getting a new computer, I actually install a firewall and Firefox before any of the mobo and video drivers just in case I have to go online to get the newest drivers. And this is to protect myself from things far worse than sassers and expl
Re:It's not just the non-technical users (Score:2)
Re:It's not just the non-technical users (Score:3, Informative)
You're not going to want to hear this, but anyway
You could have *_avoided_* all of that if you just ran your box as a user, and elevated to admin when needed.
Mor info on the non-admin experience [msdn.com]
Are you sure you're a technical user? (Score:2)
Your web browser is defective. It's inconceivable that clicking a link on a web page could be a potentially dangerous thing to do.
So the obvious question I have is: why the hell aren't you shouting out the name of your web browser to warn the world? (Yeah, we can all probably guess what browser that is, but still, I don't see why it has to remain unspoken.)
And while it's no
EULAs, Bill Riders (Score:4, Insightful)
Because for legal purposes, they're implicitly required to make you agree to a license agreement, which in most cases does state that, by default, or sometimes as a requirement of the license, they'll be installing the adware on your system.
By contrast, there's no requirement for a company to offer a "feature set" on their website, or anywhere else. I suppose you're proposing something like a Surgeon General's warning on cigarettes, but that seems like overkill to me, and I do hate ad/malware.
But more importantly, this sort of thing is exactly how the legislative branch of the US government works: "Sure, you can have this bill, but we're going to tack on some of our own additions that you probably haven't had time to read." Adware in EULAs Riders on bills. While again, I do hate adware, I really suggest we rout this process from our respective lawmaking bodies before we concentrate on [wah, wah] consumer electronics.
Re:It's not just the non-technical users (Score:3, Funny)
I'll take Insanely Obscure Analogies for $400, Alex.
Claria (Score:4, Insightful)
Re:Claria (Score:2)
Re:Claria (Score:2)
Claria and HomeSec (Score:5, Informative)
Gator, er, Claria, is not spyware.
Gator CPO at the Department of Homeland Security [slashdot.org].
Legitimized by Microsoft and with representation on HomeSec DPIAC, Gator is now officially securityware, Citizen!
And if you've got some sort of problem with that, take it up with the boss, namely HomeSec's Chief Privacy Officer. She's none other than Nuala O'Connor-Kelly [com.com], formerly of Doubleclick.
What's with the head-on-desk-thumping motion? I'm not demented enough to make this shit up!
Securityware (Score:4, Insightful)
Seriously though, your post is interesting - I hadn't heard of the term 'securityware' being used before, especially not for malware. I guess that Microsoft will try to spin this into a good thing, if they can't keep it quiet.
Re:Claria (Score:5, Insightful)
So you think that it's ok that when you visit your favourite site, all their adverts are replaced by adverts of Microsoft's choice, and your favourite site gets none of the revenue? And when your favourite site ends up having to shut down due to lack of funds, will you still argue that spyware/malware does not affect you?
Re:Claria (Score:2)
I tell you what (Score:2, Funny)
I thought I was immune too (Score:5, Insightful)
Imagine my surprise when I ran AdAware just today and discovered 7 infections.
The real problem is not that there is a bunch of computer illiterate grannies opening every attachment they receive. While that is a factor, the real vulnerability is in the hubris of "power users" who think they can't get infected because they take all the precautions. But as I learned today, sometimes even that is not enough to be completely protected.
Re:I thought I was immune too (Score:5, Informative)
Re:I thought I was immune too (Score:2)
-Jesse
Re:I thought I was immune too (Score:2)
Re:I thought I was immune too (Score:3, Insightful)
-matthew
They were probably cookies (Score:2)
Cookies are inherently safe since they couldn't send any run-time state information that the browser didn't have access to.
I run Linux (Score:2)
Linux: No spyware. No adware. No viruses.
Do you know why sex exists? It exists to mix our genes up so that we are not all clones of one another, this is so that bacteria, viruses etc can't wipe out the entire race in one fell swoop. Finding a mate and having sex became less hassle than trying to fight off all the diseases out there trying to kill us. And we all know what a hassle finding a mate and trying to get laid is.
Monocultures are *perfect* for the spread o
Re:I run Linux (Score:2)
Re:I run Linux (Score:2)
Also people don't normally surf the net logged into their Linux boxes as root, but do surf as administrator almost all of the time in Windows. The user handling in Windows has always been a vulnerablitity. Windows is only now staring to move past its multi user bolted onto a single operating system design. And in so many of their operating system
Re:I run Linux (Score:2)
This is the same reason viruses don't infect everyone, each person is different, the viruses code isn't as effective on different people and the spread is slowed or halted. Exactly the same effect is possible within computer systems.
Re:I run Linux (Score:2)
Very strange really.
not a big surprise, but it's ominous for future (Score:5, Insightful)
One small but not insignificant piece of the problem is just that, the attitude among techies that if only the "lusers" would stop being so stupid, they wouldn't have so many problems.
I've predicted this before, I'll stand by the prediction, (unless there are quick, effective, and transparent solutions) people eventually will become so fed up with this they will collectively begin to unplug (not necessarily a bad thing) and move on. I have in the last few years established my uneasy peace with Microsoft Windows on my dual boot machines now that XP has reached reasonable stability, but have gotten to the point where I rarely go there anymore because it has ceased being a "boot into" endeavor and instead is almost always a boot, then reboot, and sometimes yet another update and reboot. So much for transparency. I have programs I like to use in Windows I've actually begun to offset by creating my own similar linux functionality (thank Goodness I can code) just because I can't stand the 15 minute preamble to getting up and running in Windows.
On the other hand, my Dad, whom I've spent countless hours coaxing and helping learn Windows and how to use his computer called the other day and said he had disconnected it, and didn't care to ever use it again. I can't blame him.
Re:not a big surprise, but it's ominous for future (Score:2)
Disagreements:
Never underestimate the power of stupid people in large numbers. - Most of them are not as stupid as we accuse them of being but dear Lord are some of them ever close.
Stupidity and Ignorance are two different things. I'm noticing more and more that when I try to talk to someone I know about keeping their machine clean of spyware and ads (i.e. don't run IE) they either ignore it or just refuse to listen because they "aren't a hacker and don't kno
WTF? (Score:3, Funny)
No spyware, malware (Score:5, Funny)
IMHO (Score:2, Interesting)
people eventually will become so fed up with this they will collectively begin to unplug (not necessarily a bad thing) and move on.
Definately not! If all the idiots on the internet would simply unplug it would
Honestly, I believe you should require some sort of license before operating the internet. You need a license to dr
Re:IMHO (Score:2)
Amen brother. I've been waiting for this to happen since 1986...
Let's face it (Score:2, Interesting)
True... (Score:2, Interesting)
After dealing with this sort of problem for years, my conclusion is that there are two types of people in the world:
a) Those who need instructions and learn new things by learning those instructions, and
b) Those
Re:Let's face it (Score:2)
Other things that must appear terrafying to the uninitiated:
...not to mention the ones who don't even know (Score:4, Insightful)
Spyware & Windows (Score:4, Informative)
The "Trust Gap" (Score:3, Interesting)
Wow, what insight!!! You could apply this statement to how people relate to today's government, media and advertising.
The bottom line is that people need to be vigilant about security in whatever they are doing. The computer software manufacturers need to stop spyware and adware as a built-in feature, not as a free download from an obscure website. But then again, who is profiting from all this spyware and adware? Most likely it includes some of the same people who are trying to stop it.
It does provide a need for tech workers to fix these problems ---- as its only bright side.
I just don't get it (thanks dog) (Score:3, Interesting)
A consultant got banned after his laptop got infected from a connection at a hotel while getting his mail and some crap got through when he connected to the bank.
There are over 20k boxes at the bank and they take a bird if any of them would ge anything that would behave like spyware. They might monitor your keystrokes but they would hate like hell if somebody else did it. Its their equipment after all.
From TFA (Score:2)
Non-techies don't care (Score:3, Interesting)
My mother got a new PC about Feb last year, it had XP installed on it (not by me) and since her Internet access would be coming through my PC through NAT, I asked her to install Mozilla on it to stop her getting malware. She immediately told me she didn't want "any of that Linux crap" on her PC.
Fast forward a couple of months. She was complaining about, among other things, porn popups and the fact that her PC was slowing down to a crawl. She and my brother had installed, among other things, lots of casino programs, Kazaa and had been using only IE to browse the web. A quick scan with Ad-Aware revealed 1000 infections. This time I set Ad-Aware to run a scan at every system startup, removed access to IE and told her to use Firefox. This time, she went schizo and I had to shout her down and get someone else involved to point out to her that using IE was a bad thing.
Normal users don't care. End of.
Re:Non-techies don't care (Score:3, Interesting)
The web browser is only half the problem. The fact that people will happily run any
You're absolutely spot on about normal users not caring. They'll happily let their system turn into a spyware-infested zombie,
Re:Non-techies don't care (Score:2)
Re:Non-techies don't care (Score:4, Insightful)
Wow, that's industrious, and she should be commended.
Ignore it, and get on with your life. The CORRECT answer is, as always, that computers just get old, and slow down. There are SPECIALIZED shops that can give them a tune-up, and you don't have the equipment.
Keep repeating that. You KNOW you can't win this battle.
Ratboy.
Re:Non-techies don't care (Score:2)
ie: install program A. A installs B, C, and D. Each of those install 4 other programs. Repeat ad nauseum.
The rest of what you said, however, is spot on. I've stopped giving free technical support to friends and family who think they know better than me. If you ask for help, then ignore that help, you're on your own. Fortunat
BBC news version (Score:2, Informative)
http://news.bbc.co.uk/1/hi/technology/4659145.stm [bbc.co.uk]
Also says that 90% of Americans have changed their surfing habits, so it can't be all bad...
welcome? (Score:3, Funny)
MS Bashers Get off it (Score:2, Informative)
HOWEVER, I'm sick and very tired of many posters here on
Give me a freekin break. First off, I agree that Windows is less secure than Linux out of the box. But with the proper configurations and preparations (which I won't go into becaus
Ordinary People (Score:2)
We are talking about people that don't even know what half of those words mean. Is a default Windows install good enough for them to be able to keep their machines clean?
Don't necessarily want? (Score:2)
That seems to infer that there is a group of people that do want it.
Re:Don't necessarily want? (Score:2)
That would be the people that created it...
Re:Don't necessarily want? (Score:2, Funny)
And all those popups, its like a big game where you get to try and close the windows faster than the computer can display them! I got 50 today but am hoping to beat that score tomorrow. Also this nice girl called Jenny says she wants me, but I've been having problems with my computer and can't get online to talk to her.
$129 to fix (Score:3, Insightful)
Pffft.. (Score:3, Insightful)
I'm pretty sure... (Score:2)
-matthew
I have put my non technical family members on macs (Score:2, Interesting)
We all rip into Linux now and then... (Score:2)
Windows may be user-friendly, Mac OSX is a looker, but most Linux distributions have a good mix of what's important and are generally impervious to the datamining, spyware tricks out there.
Maybe we should appreciate what's so good about Linux (for a change).
Malware - Love it AND hate it (Score:4, Informative)
On the other hand, I get paid to do that. I just did one small company with 5 computers that was literally shut down because they couldn't do anything on their systems. Spyware is a problem on just about every single "joe average" computer that I have seen lately. The problem, of course, is going to get worse as long as Windows continues to allow users to run with privileged access by default.
I don't feel like going into a Microsoft rant - I'm sure it would be preaching to the choir anyway. I would like to share effective tools in my warchest for cleaning out spyware -
Ad-Aware [lavasoftusa.com] - My favorite anti-spyware program right now. Gets about 95% of baddies.
HiJack This! [spywareinfo.com] - Cleans up anything that Ad-Aware may have left behind. It scans all startup regkeys, services, and BHO IE extension keys and lets you select which ones to nuke. BE CAREFUL, it lists both the good and the bad. If you don't know what a process is, google for it before you remove its key.
There are many other useful tools on this download page as well, like LSPFix. This program will fix the mess left by programs that mess with your TCP stack, such as New Net, [cexx.org] whos manual removal can disable your Internet access completely.
Pocket KillBox [bleepingcomputer.com] - You know those processes that come back from the dead after you kill them? Can't delete the EXE because it's locked in both normal and safe modes? Pocket Killbox is what you need. If it can't delete the file outright, it can temporarily end the Explorer task and try it that way. If that doesn't work, it can use Windows' replace-on-reboot function to swap the EXE with a dummy file on the next reboot. Very handy for getting rid of the most nefarious of processes.
Spyware Blaster [javacoolsoftware.com] - Pre-emptive spyware prevention. The interesting thing about this program is that it doesn't remain resident in memory. Instead, it writes files and regkeys to your system that prevent the spyware from installing. Adding and removing protection can be done in one click.
The strange thing about this article (Score:5, Insightful)
How can someone "report" (I use that word loosely) on this problem and tiptoe around the huge elephant in the room? In spite of the overall fraction of users that are having problems, spyware is not normal. It is almost entirely contained within one single very specific homogenous portion of the population. To say that computer users suffer from spyware is like saying that Sol 3 lifeforms suffer from tobacco mosaic virus. Yes, it's technically true if you want to get pedantic, but it's hard to believe that a "reporter" (*cough*) could so egregiously overly-generalize unless they intended to mislead.
Fear of spyware changing online habits (Score:3, Informative)
For those interested, here is another article [nwsource.com] just popped up in the Seattle Times [nwsource.com] on the very same thing. I think the claims on "reaction" to spyware are a little more gentle (e.g., being more vigilant... what the heck is that?, and what added benefit does it really bring?). Regardless, enjoy... it's a good enough read to take a look.
Re:News? (Score:2)
Re:Just buy a Mac :-) (Score:4, Insightful)
Macs are not immune to viruses, we just haven't seen a virus or spyware author take the time to exploit it, yet. Why? Because it isn't profitable RIGHT NOW.
When you see the Mac userbase hit a decent number (and I don't pretend to know what that is) then you'll see spyware and viruses for it. Fact. Until then, stop being a mactard and just deal with the situation at hand: there is a lot of spyware out there and something needs to be done now. That something is not ignoring the problem until it swims up and bites you in the ass.
Re:Just buy a Mac :-) (Score:3, Informative)
Re:Just buy a Mac :-) (Score:3, Informative)
(Below is a paste of my post from above.)
Apache has > 60% marketshare, yet IIS has more vulernabilities.
The whole "windows gets infected more because more people are targeting it" argument doesn't hold up - otherwise, apache would have more security problems than IIS.
Re:Just buy a Mac :-) (Score:3, Insightful)
Re:More intesting from the AP (Score:2)
"Surveying" is perhaps the least accurate, and the most bias prone method of collecting scientific (term used loosely) data. Two major problems being that the questions themselves and the way they are asked can be very misleading, and the second is that you are forced to assume that people are 100% honest. At the end of the day, you simply cannot turn subjective data (what people tell you) into objective data just by turning it into numb
Re:Ironic (Score:3, Insightful)
Rubbish.
When is the last time you changed the windows kernel and recompiled it? What disk is the Windows source code on? Remind me again what compilers Windows comes with? Oh sorry, market share is the ONLY factor that makes linux cool...
Re:Ironic (Score:2)
Just like those uber-cool IIS operators make fun of those daft Apache admins, having to put up with all the attacks on the Web's Most Popular Web-Server [netcraft.com]?
Disclaimer: I *use* Windows. I also use Solaris, Linux and BSD. They're all good - and bad - in certain areas. Unfortunately Win
Re:57% of Internet... (Score:2)
The other 43% have a Firefox addiction and are perfectly capable of navigating to porn...
Re:Survey results skewed (as always) (Score:4, Informative)