Poker Forum
|
Over 1,246,000 Posts!
|
|
|
>
>
Computer Security Primer
|
|
|
Warpe
|
04-17-2008, 05:25 PM
Post subject: Computer Security Primer
|
#1 (permalink)
|
|
Moderator
Join Date: Sep 2005
Location: Canuckistan
Posts: 3,905
|
|
By popular request:
http://www.cert.org/homeusers/HomeComputerSecurity/
also see these security tips from PokerStars:
http://www.flopturnriver.com/phpBB2/...55.html#676608
UPDATE: Some recommended security downloads. There are certainly others out there that will do a good job so feel free to add your recommendations but these will make you pretty bulletproof:
free:
Windows Defender - a must install for XP SP2+ users (already included with Vista):
http://www.microsoft.com/windows/pro...r/default.mspx
free:
Mozilla Firefox. If you're still using Internet Explorer thou art a moron:
http://www.mozilla.com/en-US/firefox/
free:
Spybot Search & Destroy (spyware detection and removal - I like that it alerts you to new programs that are trying to change registry entries plus it has other useful tools):
http://www.safer-networking.org/en/index.html
free:
Ad-Aware Anniversary Edition 8.0. Similar and a good complement to above. You can run both at the same time but Spybot does detect the Ad-Aware install and lets you know that if you have the AdAware option to scan inside archives enabled, AdAware may find files in the Spybot-S&D folder. Spybot-S&D does not contain any spyware, but it creates backups of everything you fix (until you remove those backups from the Recovery list), and AdAware complains about these backups. You can safely ignore these backups found by AdAware:
http://www.download.com/Ad-Aware-Ann...?tag=mncol;pop
free:
Comodo Internet Security Firewall + Anti-Virus: http://www.personalfirewall.comodo.com/
free :
AVG Anti-Virus Free Edition (don't install if you install Comodo - more than 1 anti-virus installation on your computer can cause problems):
http://free.avg.com/
free:
ZoneAlarm Free Firewall (personally, I prefer Comodo - the paid version of ZoneAlarm Security Suite provided by my ISP has caused boot problems for me in the past due to a corrupted dll file requiring a boot from CD then a manual uninstall/reinstall so I finally toasted it permanently)
http://www.zonealarm.com/security/en...e-firewall.htm
free
KeyScrambler Personal is a free plug-in for your Web browser that protects everything you type from keyloggers. It defeats keyloggers by encrypting your keystrokes at the keyboard driver level:
http://www.qfxsoftware.com/index.html
not so free ($29.99):
KeyScrambler Professional (same link as above). Additional functionality protects your poker clients from keyloggers. Advertised to work with Full Tilt Poker, PokerStars, PokerRoom, PartyPoker, UltimateBet Poker, Bodog Poker, Doyle's Room, Microgaming Network, 24h Poker, Carbon Poker, PlayersOnly Poker, Titan Poker, CD Poker, Hollywood Poker, VC Poker, Pacific Poker, Everest Poker, and ChiliPoker.
Also not so free - buy a router. Give yourself a physical firewall as well as a software firewall. If you're just plugged into a modem you're vulnerable.
More anti-spyware apps:
Malwarebytes' Anti-Malware
http://www.malwarebytes.org/mbam.php
Super Anti-Spyware
http://www.superantispyware.com/
|
|
|
Play for FREE and practice your game at...
Join the FTR Poker Forum to disable these banners and start posting!
|
|
swiggidy
|
|
4-of-a-Kind
Join Date: Sep 2005
Location: Waiting in the shadows ...
Posts: 3,777
|
|
I don't have time to read this right now and I'm sure it's solid, but I'll offer some thoughts (which if you lol @ computer savvy maybe you should ignore). These are in reference to the link.
#1 - Def a good thing, although mine doesn't really do much because I don't put myself in a position where I need to worry. So could be skipped.
#2 - lol, I haven't updated in forever. Microsoft takes forever to respond to serious issues anyway. Again, can't hurt. But if you can't update (or choose not to) you'll be fine
#3 - LDO. You shouldn't be using Outlook anyway. Thunderbird maybe. If you're really concerned, to retrieve from most e-mail services it sends your log-in/password as a txt string (i.e. readable by anyone who's looking). Using a web based client is more secure (if you trust them, which could be debatable). If you're not sending propriety content in e-mails, use gmail
#4 - bleh (for home use, see #8 and don't worry about this). If you often take your computer to hotspots, campus, etc. It's probably a good idea
#5 - Yes. I don't, but doesn't mean I shouldn't.
#6 - OMG yes. Don't use "monkey" it's in the top 10. To strengthen replace letters with numbers, symbols, random caps. Whatever makes sense to you.
monkey -> M0#kEy (where the 'o' is actually zero)
such a stronger password (although still a little short)
#7 - This is probably the big one. If you didn't' go looking for something, don't download it. If a box pops up and you don't understand, cancel. (and for fuck's sake, don't use IE, download firefox).
Also, if you use XP. Open my computer, "Tools" menu -> "Folder options..."
"view" tab
Uncheck "Hide extensions for known file types"
#8 - If you don't have one at home, and don't go buy one this weekend, you're fucking retarded.
#9 - Uhhh, I don't even know what that means.
I'll click the links and read more tomorrow. If you disagree, feel free to state why. My strat is not 100% for everyone. I rarely have problems.
|
|
(\__/)
(='.'=)
(")_(")
|
|
bjsaust
|
|
Straight Flush
Join Date: May 2007
Location: Ballarat, Australia
Posts: 5,842
|
|
#9 - basically means encrypt any files that contain data that you wouldnt want anyone to have access to. Basically a last line of defence, so if a hacker does get into your PC somehow, then things like bank account details/password files/I dunno, whatever people keep on their PC that really only they should have access to, they're all encrypted and impossible for someone to read without yet another password.
|
|
Just playing to improve.
|
|
swiggidy
|
|
4-of-a-Kind
Join Date: Sep 2005
Location: Waiting in the shadows ...
Posts: 3,777
|
|
Quote:
|
Originally Posted by bjsaust
#9 - basically means encrypt any files that contain data that you wouldnt want anyone to have access to. Basically a last line of defence, so if a hacker does get into your PC somehow, then things like bank account details/password files/I dunno, whatever people keep on their PC that really only they should have access to, they're all encrypted and impossible for someone to read without yet another password.
|
That's what I meant to say
|
|
(\__/)
(='.'=)
(")_(")
|
|
Halv
|
|
pro crastinator
4-of-a-Kind
Join Date: Aug 2005
Location: No hindsight for the blind.
Posts: 1,842
|
|
lol "don't even know what that means" then "thats what I meant"? 
About updating, if you install windows from an old cd, you definitely want to update it asap. If your win disc is SP2+ then I guess you could skip it.
About the firewall, when you say "buy a hardware firewall" you mean a router that has some fw capacity built in, right? Anyways, I like running a software one because it tells me excactly who is trying to send/receive and when. Even a nerd like me isn't gonna bother with looking through the logs of a hw firewall, but a zonealarm popup box gets my attention.
Come to think of it, I don't have a router right now. Haven't even thought about it since my laptop died, didn't think about the firewall stuff in it. Gonna get a new router (and new laptop ).
|
|
|
|
CoccoBill
|
|
Flush
Join Date: May 2007
Location: Finding my game
Posts: 423
|
|
A couple quick notes.
1. Don't run your computer as administrator/root/superuser/whatever. Use a non-privileged basic user account. In Windows before Vista, you're a member of the local Administrators group by default, remove your account from there. In Vista, if you're not using UAC, do the same. If you're using UAC, keep using it, it's there for a reason. Almost all viruses/malware/trojans/exploits run under the context of the logged in user. If that account doesn't have the permissions to fcuk up the machine, neither will the malware. This is the single most important thing you can do to improve your security.
http://en.wikipedia.org/wiki/Princip...east_privilege
http://technet.microsoft.com/en-us/l.../bb456992.aspx
2. Keep your OS and applications up to date. Patch it dammit. How do you think those viruses/malware/hackers work? They exploit vulnerabilities found in the software you run. If running Windows, turn on the automatic updates. I'd also recommend trying Secunia's PSI out: https://psi.secunia.com/
By just doing these 2 things you're making the life of virus writes and hackers a lot more difficult. Of course it's still good practise to run an up to date AV, maybe turn on the Windows Firewall, use strong passwords (rather add length than complexity, use password phrases, not passwords, minimum 15 characters) and also change them occasionally, and think before you click on weird looking URLs and attachments.
FWIW, I'm a security consultant for a global IT service provider, a CISSP and a GSEC.
|
|
|
|
swiggidy
|
|
4-of-a-Kind
Join Date: Sep 2005
Location: Waiting in the shadows ...
Posts: 3,777
|
|
Quote:
|
Originally Posted by HalvSame
lol "don't even know what that means" then "thats what I meant"? 
|
LDO
Quote:
|
Originally Posted by HalvSame
About the firewall, when you say "buy a hardware firewall" you mean a router that has some fw capacity built in, right? Anyways, I like running a software one because it tells me excactly who is trying to send/receive and when. Even a nerd like me isn't gonna bother with looking through the logs of a hw firewall, but a zonealarm popup box gets my attention.
Come to think of it, I don't have a router right now. Haven't even thought about it since my laptop died, didn't think about the firewall stuff in it. Gonna get a new router (and new laptop  ).
|
Well, yeah. They're basically the same anymore. I don't know enough about the software firewall to say what happens when it gets pinged. If the hardware firewall/router gets pinged it just drops the message, so they don't even know anything is there. You don't have to dig through logs because it doesn't matter.
|
|
(\__/)
(='.'=)
(")_(")
|
|
Halv
|
|
pro crastinator
4-of-a-Kind
Join Date: Aug 2005
Location: No hindsight for the blind.
Posts: 1,842
|
|
I don't particularily care about stuff that tries to get in but doesn't. What worries me much more is when something tries to get OUT. If I have somehow gotten a malicious piece of sw installed it can't really do that much damage if it can't send information back to the attacker. I want to know about it if it tries, though, so that I can deal with it.
|
|
|
|
swiggidy
|
|
4-of-a-Kind
Join Date: Sep 2005
Location: Waiting in the shadows ...
Posts: 3,777
|
|
Quote:
|
Originally Posted by HalvSame
I don't particularily care about stuff that tries to get in but doesn't. What worries me much more is when something tries to get OUT. If I have somehow gotten a malicious piece of sw installed it can't really do that much damage if it can't send information back to the attacker. I want to know about it if it tries, though, so that I can deal with it.
|
don't install malicious software, fish
|
|
(\__/)
(='.'=)
(")_(")
|
|
bjsaust
|
|
Straight Flush
Join Date: May 2007
Location: Ballarat, Australia
Posts: 5,842
|
|
http://keepass.info/
( www dot keepass dot info)
I just downloaded and installed this on some friends advice. Means I can use hard to remember passwords with only one password that I need to be able to recall at any time.
|
|
Just playing to improve.
|
|
Halv
|
|
pro crastinator
4-of-a-Kind
Join Date: Aug 2005
Location: No hindsight for the blind.
Posts: 1,842
|
|
I've been using keepass myself for a while, but beware that the Auto-type function is NOT keylogger safe. The copy to clipboard function is weak as well, a clipboard sniffer could probably get at it easily enough. Use the drag n drop function wherever you can.
|
|
|
|
bjsaust
|
|
Straight Flush
Join Date: May 2007
Location: Ballarat, Australia
Posts: 5,842
|
|
Nice call, I usually just bring it up and type in the password.
|
|
Just playing to improve.
|
|
bjsaust
|
|
Straight Flush
Join Date: May 2007
Location: Ballarat, Australia
Posts: 5,842
|
|
^
Google it, but I also use snoopfree to protect from keyloggers. With all this stuff you should be safe from most things other than user messups.
|
|
Just playing to improve.
|
|
Jack Sawyer
|
|
4-of-a-Kind
Join Date: Jan 2007
Location: Old School
Posts: 2,535
|
|
MOAR LISTS
*Updated January 31st, 2009
Code:
To get the best security programs (Avira Premium, Eset/NOD32 or Kaspersky for instance), usually you will have to pay but there are however some very good (and some excellent) programs available for free.
Almost all programs listed are available for XP and Vista (not all programs support 64-bit versions).
These are all free programs, not time-limited trial versions.
You will have to find the right version for your OS yourself through the links below.
Best free Anti Virus (AV-Comparatives score in red)
Avast.............................antispyware and antirootkit protection included, 97,3%
Avira AntiVir................... antirootkit protection included, 99,2%
AVG...............................antispyware protection included, 94,3%
Best free Firewall (Matousec score in red)
Comodo Firewall Pro v.3.... XP&Vista; very good 90%*
Online Armor v.3 ..............XP&Vista, 32-bit only; very good 86%
PC Tools Firewall Plus v.5.. XP&Vista, 32-bit only; very good 86%
Best free Anti Spyware/Malware (# means recommended)
Comodo BOClean..............real-time memory scanner
Dr. Web CureIt!...............scan and clean program for infected systems
MalwarebytesAntiMalware..on-demand scanner #
PC Tools Threatfire..........real-time behavioural blocker, 32-bit only #
SpyWareBlaster...............blocks websites known for spyware #
SuperAntiSpyware..............on-demand scanner #
Windows Defender........../32- and 64-bit version, full HIPS with Spynet advanced membership
Free Anti Rootkit software
Avira Anti Rootkit Tool
F-Secure Blacklight
Panda Anti Rootkit
RootkitRevealer ...............by Windows SysInternals (use their site/forum for information and questions about this program)
TrendMicro RootkitBuster
Miscellaneous free security programs(# means recommended)
Avira AV Rescue System....bootdisk for virus/malware removal
F-Secure Rescue CD 3.0....bootdisk for virus/malware removal
NoScript ..............................Firefox add-on, allows you to limit different scripts, plug-ins, Java, Flash & I-Frame #
Returnil Virtual System......creates an isolated virtual clone of your system partition
SandboxIE......................create a safe temporary storage area between the web and your HDD/SSD #
WinPatrol........................intrusion detection system/system monitor
Online Virus/Spyware/Malware scanners
Bitdefender Online Scanner
Dr.Web Online VirusScan....for individual files
Eset Online Scanner
F-Secure Online Scanner...uses Kaspersky, F-Prot, Norman technology and more
PrevX CSI
Jotti Malware scan...........for individual files, combining 19 different av&malware scanners
VirusTotal.......................for individual files, combining more than 30 different av scanners
Online Firewall Tests
AuditmyPC
Comodo free scan
Hackerwatch.org
PC Flank
Shields Up/Gibson Research Corp.
Not sure about these programs?
Then check these independent sites for comparisons and information about the different programs.
AV Comparatives Anti Virus comparison, though not the free versions. Scores in this post are from Aug. 2008 test
Matousec.com Firewall leak-, termination- and performance tests; percentage scores in red are from June 2008 test.
Wilders Security One of the best sites/fora, dedicated to security software.
* Comodo Firewall Pro and it's HIPS Defense+, can be installed without the AV part currently in CIS/Comodo Internet Suite.
In Case of Shit happening, Break Glass
Ultimate malware removal guide
Stupidity Researched
Why passwords matter
|
My dream... is to fly... over the rainbow... so high...

Quote:
|
VHS is like a book and a book is like a stack of kindles.
|
Hey, I'm in a movie!
http://youtu.be/lGdnIrRKDTI
|
|
Warpe
|
|
Moderator
Join Date: Sep 2005
Location: Canuckistan
Posts: 3,905
|
|
Just wanted to add a link that I think swiggidy first brought to light for a solid computer maintenance guide:
http://forums.majorgeeks.com/showthread.php?t=106650
The whole site is chock full of great advice and links to useful software/freeware, so check it out:
http://majorgeeks.com/
Also, O&O Defrag 11 is a HD defragmentation product that I use and I couldn't be happier:
http://www.oo-software.com/home/en/index.html
It runs in the background to keep all your HDs defragmented at all times, but it isn't free ($49.95 CDN - takes PayPal) so you may want to use a freeware solution for defragging (don't rely on Windows). There's some links in the majorgeeks guide to some they recommend.
|
|
|
|
Latest Poker News
|
|
KoRnholio
|
05-26-2012, 03:08 PM Australia Legalized Online Poker coming up in next 6 to 12 Months
|
|
According to an email sent out by Mark Bryan, a gaming analyst at Merrill Lynch, the Australian government plans to legalize online poker sometime in the next six to 12 months. This move will coincide ...
|
| Thread Tools |
|
|
| Display Modes |
Linear Mode
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
All times are GMT. The time now is 07:48 AM.
|