Combatting Scareware

Discussion in 'Computer Security' started by Geekzilla, Oct 23, 2009.

  1. Geekzilla

    Geekzilla Nibble Poster

    50
    2
    22
    Although I don't current work in IT support or security I have just been having a conversation with one of our techs about the rise in scareware.

    We don't currently have a policy of education or combating this recent threat. What are you guys doing to educate users? They are now the weakest link in IT security.

    My dad was almost tricked into buying one of the bogus Antivirus software which popped up when he was on a genealogy website. Fortunately he checked with me before he paid any money, although the nag-ware it downloaded was a bugger to get rid of.

    Thanks
     
    Certifications: None, Yet
    WIP: Comptia A+
  2. danielno8

    danielno8 Gigabyte Poster

    1,306
    49
    92
    I don't see any different ducation needed specifically for scareware. How many users, when they see a scareware application advertised, are going to rush out and buy it for their work computers? I'd suggest none.

    And they can waste money on what they want to at home if their daft enough.
     
    Certifications: CCENT, CCNA
    WIP: CCNP
  3. Gingerdave

    Gingerdave Megabyte Poster

    990
    44
    74
    I think that educating users against specific threats is wrong, instead effort should be taken to ensure they protect themselves correctly such as not running as an admin, using Firefox with noscript and adblock+, windows and AV kwpt upto date etc.
     
    Certifications: A+,MCP, MCDST, VCP5 /VCP-DV 5, MCTS AD+ Net Inf 2008, MCSA 2008
    WIP: MCSA 2012
  4. Bluerinse
    Honorary Member

    Bluerinse Exabyte Poster

    8,878
    181
    256
    Haven't they always been? :rolleyes:
     
    Certifications: C&G Electronics - MCSA (W2K) MCSE (W2K)
  5. BosonMichael
    Honorary Member Highly Decorated Member Award 500 Likes Award

    BosonMichael Yottabyte Poster

    19,183
    500
    414
    When I was in charge of doing so, I simply told new users to report anything strange (including stuff like this) to the help desk. That covered pretty much anything malware-related.
     
    Certifications: CISSP, MCSE+I, MCSE: Security, MCSE: Messaging, MCDST, MCDBA, MCTS, OCP, CCNP, CCDP, CCNA Security, CCNA Voice, CNE, SCSA, Security+, Linux+, Server+, Network+, A+
    WIP: Just about everything!
  6. Geekzilla

    Geekzilla Nibble Poster

    50
    2
    22
    Help Needed.

    By conincedence my colleage has spoken to me this morning about her home laptop and is complaining that as of yesterday keeps being told by "Norton" that she has a virus and it wants to charge her to remove the problem. It is not really Norton but the fake splash screen that comes with this sort of Malware.

    I have identified that she has fallen into the Scareware trap. I want to help her remove the Malware, this one is called Windows Enterprise and at first glance is running an executable file in the processes screen entitled WE66e1.exe. I am aware that these are often mutating file names so this could just be a random title.

    Is their a bootable Anti-virus I can create or do a reg edit to correct this problem. At the very least get full control back to correct the problem.

    Any help appriciated.
     
    Certifications: None, Yet
    WIP: Comptia A+
  7. Nelix
    Honorary Member

    Nelix Gigabyte Poster

    1,416
    3
    82
    Hi

    I would download the free version of Anti-Malwarebytes from here:

    http://www.malwarebytes.org/

    I find it a great tool and it has yet to fail to remove any infestation that I have encountered so far.
     
    Certifications: A+, 70-210, 70-290, 70-291, 74-409, 70-410, 70-411, 70-337, 70-347
    WIP: 70-346
  8. Geekzilla

    Geekzilla Nibble Poster

    50
    2
    22
    Cheers Nelix

    I have done some more research and found this interesting article for anyone else having this problem.
     
    Certifications: None, Yet
    WIP: Comptia A+

Share This Page

Loading...
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.