
This is probably one of my most important blog entries as I have consolidated all of my computer security tips into a single post. Please take the time to read through it all as it has valuable information that will help to prevent any harm to you and your computer.
1. Thou shall not visit any unwholesome websites.Gambling, Porn, and Illegal sites are such a few examples. If you ignore this commandment alone, then there really is no use following the rest of the commandments as infection is almost inevitable. Visiting these sites is like strolling through the ghetto and hoping that nothing bad will happen to you. In other words, you are asking for it. I hate to break it to you but most of the Internet is
not safe. And even sites that ought to be safe might not be because they themselves might have been unknowlingly compromised or hacked by some bad guys. Nowadays, your computer can get infected by merely visiting a site versus downloading and installing a malicious program.
2. Thou shall not click on pop ups.
Im sure you are familiar with those annoying pop up ads as they seem to pop up everywhere. Some pop ups are really sneaky and evil. There are pop ups that tell you that your computer is infected and you have to click on them to perform an emergency scan to get rid of it. You then proceed to install a software program that is more often than not a spyware program. No matter how convincing they are, do not click on them.
3. Thou shall not click on links...in emails, IM clients or URL shorteners. (ie. Tinyurl.com)You have to be 100% sure that the link is legit and safe. Most people think that if the link is from someone you know, then you can assume that it will be safe to open. WRONG. The problem is that your friends computer could be infected with viruses. These viruses can use your computer to automatically send out harmful emails to everyone in your address book. Even the buddies on your instant messenger program can unknowingly send you instant messages that say "hey, check this out!" accompanied by a harmful link. And im sure you've seen urls created by url shorteners (ie tinyurl.com/adwtud) in which you have absolutely no idea where they will direct you to. Emails in html format might display the url address but dont be fooled. Just because it spells out the full url, it doesnt necessarily mean that you will visit that site by clicking on that link. However if you hover over the link, you will be able to see the true url address in the status bar located on the bottom left hand corner. If you dont see a status bar, make sure to enable it in the browser. Next try to examine the "true" url displayed in the status bar. Does it look fishy? Why doesnt it match the address displayed in the email? Why does it display an address that does not look familiar to me? Why does it contain a website that is familiar to me but has a bunch of unecessary characters preceding it?
4. Thou shall not open attachments.This is probably the oldest trick in the book. If you fall for this one then shame on you. If you want to open an attachment from someone make sure that its one that you are expecting instead of receiving one out of the blue one day. In gmail, you can preview most files within the browser. So if you are not sure what the attachment is then previewing the contents would be a safe way to see whats inside. You can also use an antivirus program to scan the attachment before opening. Lastly, you should never open a file with a .exe extension. There arent too many cases whereby someone would send you a .exe file as an attachment.
5. Thou shall not commit a typo.Be very careful as there are domain names out there dedicated to catch you. They take advantage of the most common mispellings. Most of these dummy sites take advantage of all the hits they get by putting up advertising that may be related to the correctly spelled website. For example, just imagine how many hits amazan.com (note the mispelling) gets if amazon.com get millions of hits per day. But there also can be malicious sites set up whereby you might get infected with a virus or spyware merely by visiting the site. All because you made a typo.So what can you do to prevent this? For one thing you can use open dns which filters out a large portion of bad sites from there database. Click here for more info. Another thing you can do is install a browser plugin which will help prevent you from visiting bad sites. Lastly, instead of typing the url directly, just type it into the google search engine. Google does a pretty good job of knowing which site you want to visit. And it will offer appropriate (Did you mean?) suggestions, if you happen to mispell a websites name.
6. Thou shall keep your software updated.ie. Windows, Web browsers, Flash player, Acrobat Reader, etc. Make sure you enable the Windows automatic updates so you dont have to always remember to update Windows and Internet Explorer. Firefox auto downloads the update in the background when you are using it. You can tell because it will ask you if you want to update Firefox when you launch it. Flash player has its own standalone upgrader and should prompt you automatically when an upgrade is available. Acrobat Reader uses the general Adobe upgrader which is used for all Adobe products. No matter how annoying and obtrusive these upgraders are, just remember to let it do its thing. There is a software program that manages all software updates on your system, but I forgot what its called and never used it before.
7. Thou shall use wireless security.Always use the highest encryption possible (ie. WPA2) in your wireless router settings along with a password Never leave your wireless network open. Leaving your wireless network unsecured is like leaving the front door of your house open. Anyone willing can easily get access to all of your files. Also, remember to change your default router password.
More info8. Thou shall not memorize passwords.Use a password manager. Dont store your passwords in some text or Word file on your computer as anyone can easily steal them.Dont create unsecure passwords.Dont use the same password for all of your sites.
More Info9. Thou shall turn off your computer.If your computer is off (ie. Standby, Hibernate, Shutdown), then it is essentially unplugged from the Internet. Therefore, it would be impossible to get infected or hacked.
More info10. Thou shall use a antispyware/antivirus software.
You might be wondering why I placed this commandment last. Most people use this as their first line of defense, however it should really be your last. I highly recommend
Microsoft Security Essentials.