Intentional SpyWare Infection? 33
zagman asks: "I am doing some research on SpyWare / AdWare, and how to prevent/contain the problem, and am looking for some of those 'Bad Sites' - you know, the ones which take advantage of any of the known exploits and installs a whole bunch of software without your knowledge (or sometime with it). I am testing this on IE6 on an XP-SP1 box (no further patches) and also IE6.02 on a XP-SP2 box. Can anyone out there recommend some 'good' bad-sites for me to go? Benjamin Edelman did some similar work, and posted his results, but I also want to compare Mozilla and FireFox's response as well. Thanks out there!" Update: 11/24 4:05pm EDT by C : In case it hasn't been mentioned already, a considerable amount of infection can be obtained from a single website. Any other infectious goodies out there?
I've got one for you- (Score:2, Informative)
Re:I've got one for you- (Score:2, Informative)
http://windowsupdate.microsoft.com/ (Score:3, Funny)
lop.com (Score:2, Insightful)
Browse around less than reputable sites. (Score:2, Informative)
And google around, someone else has bound to have done this and have some links/tips.
Ironic timing... (Score:4, Interesting)
Re:Ironic timing... (Score:2)
Let's look at the definition you posted:
2: incongruity between what might be expected and what actually occurs
What might be expected -- person doesn't have any easy resources, so they Ask Slashdot
What actually occurs -- answer was just posted.
Now, since the submission was probably before the posting, you can say that this is not so true... but I still maintain that's not so clear.
another /. story that may help (Score:1)
Re:Another IE trash fest. (Score:4, Funny)
Re:Another IE trash fest. (Score:1)
Re:Another IE trash fest. (Score:2, Insightful)
when mentioning firefox (Score:1, Insightful)
It would be better to always say like "firefox/win" or "firefox/linux" if that makes a difference in the reference.
With that said, S
The easiest way... (Score:5, Informative)
https://netfiles.uiuc.edu/ehowes/www/resource.htm
Another alternative is one of the many HOSTS files out there. Unfortunately, many of those also contain sites that serve ads, so you'll have to filter them yourself. Here are a few:
http://www.mvps.org/winhelp2002/hosts.htm [mvps.org]
http://www.dozleng.com/hpguru/ [dozleng.com]
previous report with links (Score:5, Informative)
Merlin.
pr0n (Score:3, Informative)
Re:pr0n (Score:2)
kazaa (Score:3, Informative)
Re:kazaa (Score:2)
Ugh! (Score:2, Funny)
Re:Ugh! (Score:1)
Lyrics sites (Score:4, Interesting)
VMware (Score:4, Informative)
Re:VMware (Score:2)
Re:VMware (Score:3, Informative)
The Toronto Star (Score:2)
Some friends and I were just talking... (Score:2, Funny)
I refuse to make it a link. If you really want to see it, you'll have to copy -> paste it yourself and cut your own throat.
ISC SANS just analyzed www.yahoogamez.com (Score:1)
FTBM - Part I -
http://isc.sans.org/diary.php?date=2004-07-23/ [sans.org]
FTBM - Part II -
http://isc.sans.org/diary.php?date=2004-08-23/ [sans.org]
FTBM - Part III -
http://isc.sans.org/diary.php?date=2004-11-04/ [sans.org]
FTBM - PART IV -
http://isc.sans.org/diary.php?date=2004-11-24/ [sans.org]