DocuCrunch.com » Boo! Would your users fall for ‘scareware’ threats?

Boo! Would your users fall for ‘scareware’ threats?

October 27, 2009 by Sam Narisi
Posted in: Security, Special Report

scareware

We’ve all seen it. A dialog box pops up, informing us in urgent words that a virus has been found on our hard disk, and that by clicking OK, we can run a protection program to disinfect the disk. As we freak out, the temptation to click OK is almost irresistible.

According to a recent white paper “Report on Rogue Security Software,” from [legitimate] security firm Symantec, that’s the doing of a new set of cyber-criminals. These companies peddle bogus security software to unsuspecting end users by scaring them into a knee-jerk response. The programs have such legitimate sounding names as SpywareGuard, AntiVirus 2009, and SpywareSecure.

security_warningTo download the program, the end user submits a credit card number for payments up to $100. The actual program may be utterly useless, or it might be harmful, allowing hackers access to your computer for data theft or malicious destruction.

The Symantec report says that the company has found some 250 separate fake programs being sold through almost 200,000 web sites.

Maybe you are too sophisticated to be fooled, but there are people in your organization (and among your family and friends) that might not be quite so wary.

Here are a few pointers in keeping them from being ripped off –- or worse:

  1. Stick with legitimate, well-regarded security software from well-known and reviewed companies like Symantec, McAfee, Sophos, Trend Micro and others (check online for reviews from PC Magazine or PC World). One of these programs should be bought through legitimate channels (like a well-known online store of a major electronics/computer chain) or installed by the manufacturer.
  2. Be aware what software is installed and make sure that updates are regularly downloaded. In larger companies, this will be monitored by the IT department.
  3. If you see a pop-up box warning against a virus, calm down. Run or let IT run the legitimate virus software already installed if you have real reason to be worried about a virus.
  4. In general, stay away from marginal websites. Be every careful when an email links to unknown websites. Google is pretty reliable about confirming the legitimacy of Web sites when you search.
  5. Be careful about viewing, opening and especially running email attachments unless you are 100% sure they’re legitimate and come from a known source.
  6. If you are asked to download any software, stop and think. Make sure you understand exactly what you’re downloading, and if you have any doubt, click Cancel.
  7. Don’t use a credit card to download security software interactively unless you 100% sure it is legit.
  • Share/Bookmark

DocuCrunch.com delivers the latest IT and Imaging news once a week to the inboxes of over 200,000 IT and Imaging professionals.

Click here to sign up and start your FREE subscription to DocuCrunch!

Tags: , , ,


3 Responses to “Boo! Would your users fall for ‘scareware’ threats?”

  1. » Boo! Would your users fall for ’scareware’ threats? » Free Software Says:

    [...] news by DocuCrunch.com « I Find It Interesting To Learn What People Download At Any Time Off The Web [...]

  2. Kurt Says:

    Our users certainly would not “fall for ‘scareware’ threats” and even if they tried, it would be no threat to our system. We have 40 users that range from general labor production associates to Engineers and everything in between running on a Linux system in which we have never purchased any virus protection software (the operating system is secure), we have never lost a file, and we have never had a virus, worm or any other damaging software. We have been operating this way for over 20 years (Unix prior to Linux). Even though this article doesn’t specify it, the problem is a MicroSoft problem and it is due to an insecure operating system.

  3. Mark Welch Says:

    That’s all well and good if you are familiar with legitimate companies and what version of every program is on your computer, etc. Most users are not interested in versions or software company names at all. That is why these scams will keep happening until Symantec or other legitimate security software can effectively block them.


advertisement


Whitepapers

  • How to Select a Web Host
    November 27, 2011 by marketing

    Creating a new website?  Not sure how to choose from among all the options?  Need shared hosting, small business hosting, or VPS hosting?  Lots of email accounts? 5-star reliability rating? Fortunately, there’s information available to help. The Best Web Hosts is great resource that will help you select the best web hosting company. It features reviews, rankings, and definitions that can help make your job of selecting a new web host more effective.

  • SMART Steps Towards Workload Automation
    January 19, 2010 by Luke Marchie

    Consolidating job scheduling into a single, comprehensive workload automation solution is a critical first step to effective Workload Automation (WLA).

    Download the free whitepaper here! More…

  • Identifying and Thwarting Malicious Intrusions
    January 12, 2010 by Luke Marchie

    Identifying and Thwarting Malicious Intrusions

    The phenomenal growth in social media has opened the door for all new malicious intrusions from gangs of cyber criminals. Utilizing the trusted relationships in social networking and benefiting from immature security and content controls, hackers are seeing increased performance in their attacks.

    Download the free whitepaper here More…

  • The Security Issues with Web 2.0
    January 12, 2010 by Luke Marchie

    The collaborative benefits of Web 2.0 technologies have fueled rapid growth in online consumer markets and now are being adopted by businesses worldwide. With these technologies come new types of attack vectors.

    Download the free whitepaper here

    More…

  • Network-Critical Physical Infrastructure: Optimizing Business Value
    December 29, 2009 by Luke Marchie

    To stay competitive in today’s rapidly changing business world, companies must update the way they view the value of their investment in Network-Critical Physical Infrastructure (NCPI). No longer are simple availability and upfront costs sufficient to make adequate business decisions. Agility, or business flexibility, and low total cost of ownership have become equally important to companies that will succeed in a global, ever-changing marketplace.

    Download the free whitepaper here! More…

  • The New World of eCrime: Targeted Brand Attacks and How to Combat Them
    December 26, 2009 by Luke Marchie

    Nothing is more valuable to a business than its reputation. That is why brand attacks, which leverage a company’s valuable brand for nefarious purposes, must be battled on every possible front. Brand attacks are the new form of eCrime, and they’re being launched with new and rapidly evolving exploits, including phishing and—most recently—malware.

    Download the free whitepaper here! More…

  • DDoS: The Mother of All Cyber Threats
    December 16, 2009 by Luke Marchie

    DDoS: The Mother of All Cyber Threats

    Don’t wait until your business is targeted. A Forrester Consulting study commissioned by VeriSign revealed that nearly 75 percent of the 400 study respondents have experienced one or more DDoS attacks in the past year. Yet, most e-commerce businesses are not prepared for a large-scale DDoS attack. Could your business afford three or more hours of downtime? Avoid that revenue loss by registering for this free white paper

    Click here to download the free white paper More…

  • View more offers


    Quick Vote

    • Does your office have a color printer or copier?

      • Yes (75%, 3 Votes)
      • We're looking into buying one (25%, 1 Votes)
      • No (0%, 0 Votes)

      Total Voters: 4

      Loading ... Loading ...

  • advertisement