Viruses, Trojans and Worms Oh My! 2006 Technology Leadership Presentation Series
Why is my computer running so slow? What are all of these little windows popping up on my system? Why did my home page change? What is the difference between a virus, a Trojan and a worm? How did a worm get into my computer? 2
Definition Virus - In computers, a virus is a program or programming code that replicates by being copied or initiating its copying to another program, computer boot sector or document. Viruses can be transmitted as attachments to an e-mail note or in a downloaded file, or be present on a diskette or CD Trojan - In computers, a Trojan horse is a program in which malicious or harmful code is contained inside apparently harmless programming or data in such a way that it can get control and do its chosen form of damage, such as ruining the file allocation table on your hard disk. Worm - In a computer, a worm is a self-replicating virus that does not alter files but resides in active memory and duplicates itself. Worms use parts of an operating system that are automatic and usually invisible to the user. It is common for worms to be noticed only when their uncontrolled replication consumes system resources, slowing or halting other tasks. 3
Definition Spyware - Spyware is any technology that aids in gathering information about a person or organization without their knowledge. Adware - Generically, adware (spelled all lower case) is any software application in which advertising banners are displayed while the program is running. Malware - Malware (for "malicious software") is any program or file that is harmful to a computer user. Thus, malware includes computer viruses, worms, Trojan horses, and also spyware, programming that gathers information about a computer user without permission. 4
The cost and rise in Malware On average, one in every 44 e-mails contained a virus in 2005, according to Sophos. This rose to one in 12 e-mails during major malware outbreaks. In total, Sophos identified 15,907 new malware threats in 2005, up 48% from 2004. Malware attacks in 2005 caused an estimated $14.2 Billion in damages from loss of revenue, labor expenses, loss of productivity and the cost of tools. 5
Simulated spread The Symantec Worm Simulator shows how quickly some of the top recent worms spread. [switch to application] 6
Infection How did my system get infected? Windows Vulnerabilities Network Connections/Shared Files Pop-Ups E-mail Free Applications 7
Infection How do I know when my system is infected? Slow system performance Pop-ups New Toolbars Internet Homepage changed Computer Crashes No indication 8
Extraction Anti-Malware Removal Tools AVG Anti-Virus HouseCall from Trend Micro AdAware from Lavasoft SpyBot Search and Destroy Microsoft Malicious Software Removal Tool 9
Extraction Stand Alone / Virus Specific Removal Tools Stinger from Mcafee Removal Tools from Symantec 10
Protection What tools can I use to make sure I am continuously protected from Malware? Aluria Anti-Spyware CounterSpy SpySweeper Spyware Doctor 11
Protection What tools can I use to make sure I am continuously protected from viruses? AVG Anti-Virus Mcafee Anti-Virus Norton/Symantec Anti-Virus 12
Prevention How can I prevent virus, trojans, worms and malware from getting onto my system? Careful web browsing E-mail safety Keep protection tools up to date Review software being installed Protect and monitor your child s computer usage 13
References http://www.whatis.com This site is a source for all technology related definitions and information. http://www.searchsecurity.com This site is a source of information on security tips, products and definitions. http://www.bleepingcomputer.com/forums/topic2520.html - This site is a compilation of information submitted by users from across the world. http://support.dell.com/support/topics/global.aspx/support/security/security _antivirus_help?c=us&l=en&s=gen&~mode=popup Dell provides a variety of information on how systems can get infected, how to know you re infected, and how to remove the virus. 14
References http://anti-spyware-review.toptenreviews.com/ - The site, Top 10 reviews, provides in-depth reviews of anti-malware protection products. http://anti-virus-software-review.toptenreviews.com/ - The site, Top 10 reviews, provides in-depth reviews of anti-virus protection products. http://netsecurity.about.com/cs/generalsecurity/a/aa050204.htm - This page provides general guidelines on how to prevent having malware installed. http://security.yahoo.com/ - Yahoo s security site provides you with information on how to prevent downloading viruses. http://computer.howstuffworks.com/virus.htm - How Computer Viruses Work. 15
Questions? 16
Thank you for attending! 17