Thursday, February 5, 2009

Safe Social Networking

thief Scams, traps, cons and swindles abound on the Internet. Here’s some tips to keep you socially safe online.

Social networking has come of age. If you’re not socially networking life may be passing you by –maybe! The fact is, millions are and sites like MySpace, Facebook, Twitter, and Windows Live Spaces are services people can use to connect with others to share information like photos, videos, and personal messages.

With the rising incidence in popularity of these social sites, so do the risks of using them. Identity thieves, crims, hackers, spammers, virus writers along with other weird practitioners of arcane cyber wizardry follow the traffic on these sites with the intention of catching the unwary.

Avoid being fleeced, ripped-off and otherwise taken advantage of –read these tips.

  1. Unsafe Clicking: Count ten before you click links that you receive in messages from your friends on your social Web site. Treat links in messages on these sites exactly the same as you would links in e-mail messages.
  2. Practice Healthy Suspicion: Never trust that a message is really from who it says it's from. Hackers can and do break into accounts and send messages that look like they're from your friends, but aren't. A suspicious message is best treated as fraudulent and the use of an alternate method employed to contact your friend and check they did in fact, contact you. This most definitely includes invitations to join new social networks.  (I.e. SN sites new to the web. 
  3. Protect your friends: Never allow social networking services to scan your e-mail address book. When you join a new social network, you typically receive offers to enter your e-mail address and password to find out whom else is on the network. They will likely offer to use this information to send e-mail messages to everyone in your contact list or even everyone you've ever sent an e-mail message to with that e-mail address. Many responsible social networking sites explain that they're going to do this, but some do not.
  4. Lazy Clicking: Here’s a tip you should be already aware of. Type the address of your social networking site directly into the ‘Open’ command of I.E. or the address bar if you use Firefox, or use your personal bookmarks that you know you can trust. If you click a link to your site through e-mail or another Web site, you might be entering your account name and password into a fake site where your personal information could be stolen. Further, links in emails and on web pages can hide the real link and be masquerading as the legitimate link.  This is similar to what we call ‘phishing’ and I’m sure you’ve read the stories bout the ever growing incidence of phishing emails arriving in mail boxes.
  5. Choose Your Friends Carefully: Be selective about who you accept as a friend on a social network. Identity thieves do create fake profiles in order to get information from you. This is known as social engineering and is more prevalent than many realise.
  6. Haunt the House: Choose your social network carefully. Evaluate the site that you plan to use and make sure you understand the privacy policy. Find out if the site monitors content that people post. Read the information that is immediately available and do a Google search of the site. You never know what you might discover about it. Don’t immediately believe negative reports, but, the old adage, ‘no smoke without fire’ is worth remembering. After all, you will be providing personal information to this site, so, here’s a thought: use the same criteria that you would to select a site where you enter your credit card details!
  7. Your Footprint On the Web Is Long Lasting: Did you know that what you write on a social networking site is long lasting and almost permanent? Even if you can delete your account, anyone on the Internet can easily print the information or save it to a computer.
  8. Think Before You Act/Download: Installing extras on your site is chancy. Frequently social networking sites invite or make available software and third party apps for you to download that allow you to do more with your personal page. Cyber criminals may use some of these applications to steal your personal information –and more. Again, Google the app you’re interested in first and find out what others are saying about it. An excellent site for information on software in general is www.cnet.com. Check out their reviews and read the views of others besides the publishers themselves and/or the editors. Get a balanced picture and then make up your mind whether you want to add that app to your list of installed programmes on your computer.
  9. Mixing Work & Socialising on the Net: Some employs accept/allow responsible extra curricula activity while you’re on their clock. Others don’t –for obvious reasons. If you value your weekly pay-check think about whether this is what you should do or not.
  10. Parents: Kids Social Network a lot. Your children probably know far more about it than you! Talk to them about social networking. Be wise, maybe you can find out what they know and whether they are being safe online by asking for help and advice yourself! They may be keen to demonstrate their sites and show off their knowledge. Then you can adroitly (there’s a good word) suggest safety tips. Don’t, whatever you do, show shock or anger. All you will do is wreck any chance you have of monitoring their activities and fostering safe socialising on the net. That would not be smart.

There you have it.  Have fun, make friends, enjoy the web –and be safe while your at it.  John

Monday, February 2, 2009

Summer Freeze

summer Here in Kiwiland we are enjoying warm beautiful, even hot, weather.  Summer is here and great to be alive –until your PC freezes, that is. 

Yep, that’s right.  The dreaded freeze.  You know what I mean.  That machine in front of you just stops working and refuses to respond.  No matter what you do –or say(!) – nothing will make it do what it’s supposed to do.  Not for you anyway. 

Well, good news and bad news.  It happens to all of us.  Even PhDs in computer science face the dreaded catharsis of PC Freeze from time to time.  So, don’t feel so bad.  You’ve come to the right place  The bad news: well, sometimes it can be quite serious, but, more good news, most of the time it’s easily fixed. 

Here we go…

Just a wee commercial right here though –If you live in Hamilton, New Zealand, if this doesn’t solve your troubles right away, give me, Hamilton Office & Home PC Care, a bell on +64274412623 and you can drop it off and we are sure to be able to get it going for you. :-) 

Please note that these words of wisdom (I hope) are primarily for XP users.  Vista will be able to do similar things but you will have different paths and terms for the same tasks.  Sorry about that. 

Back up now! The golden, and I do mean golden, rule of PC Care is BACK UP, BACK UP, BACK,  BEFORE the freeze and before any sort of trouble strikes.   Scroll through these blog articles for more on PC Maintenance to help you with this.

Access Task Manager: Press the Control (Ctrl) + Alt + Delete keys now, commonly called the ‘three-fingered salute’.  This will open the Task Manager and then look under the ‘Applications’ tab, usually the one that opens first by default, and look to see if any running apps have stopped responding.   You will be able to see if this is so because the offending app will say, ‘Not responding’ right beside it.  If so, click on and select then click the ‘End task’  button at the bottom of the Task Manager window. Chances are, this will fix the problem immediately by closing the faulty app and you will find you’ve regained control of your PC. 

Re-launch the Application: Re-launch  the app that failed responding and start back over.  Hopefully, you won’t have lost too much data in the process.  Of course, you can avoid losing too much work by saving your work as you go along.  Every sentence or so you should develop the habit of pressing ‘Alt+F+S’ in Windows which is the speed key to save your work without lifting your hands off the keyboard.  I’m doing it all the time as I type now.  In fact, I just accidentally closed my Windows Live Writer window and, if I hadn’t been saving as I go along, I would have lost it all! 

Further Checks:

Caps Lock & Number Lock: You might have accidentally presseed the Caps Lock or NumLk keys on your keyboard.  If you have take a look and see if the indicator lights for those keys have changed.  Usually they are located at the top RHS of your key board, but they many be elsewhere.   You can check that they are working OK by pressing the ‘Function (fn) button + Caps Lk’ and see if the Number Lock button lights up.  Then do the same with the ‘CapsLk + Num Lk’ buttons and check that as well.  It may be just a matter of having accidentally switched on or off these controls.

Led Lights: Look and see if your Hard Drive activity light is flashing?  If it is, windows is working hard for you performing some necessary task and you need to pause and let it get on with it.  As soon as it has done whatever pressing job it must do, it will yield control back to you.  So, be a little merciful and allow your (sometimes) faithful machine to do it’s work.  Go and make a cup of coffee!  You wouldn’t believe the amount of work your machine has to do to serve your every wish! ;-)  It may be the hard disk is working too hard and you should be merciful and add more RAM. 

Just another wee commercial right here though –If you live in Hamilton, New Zealand, give me, Hamilton Office & Home PC Care, a bell on +64274412623 and you can drop it off and we will add more RAM for you in flash –or maybe two flashes! :-) 

Mouse Worries: Mice do need a bit of care and attention now and again.  They actually benefit from a careful cleaning once-in-a-while.  To do this examine your mouse carefully and see if you can open it up and then use some compressed air and/or a soft bristled brush and clean the parts that provide the contacts in the vicinity of the ball.  If unsure, you can check with us or simply buy a new one.  PS2 mice are very cheap to replace these days.  If it’s wireless mouse the batteries may be simply flat –they don’t last forever you know! 

Chick All Your Peripheral Devices:  You may need to unplug them all one by one systematically and check to see if one of them is malfunctioning and causing a conflict or other problem.  Sometimes your machine may be performing a security scan of your devices (USB storage devices etc) and you may need to allow it to finish.  Or, it may have stalled in the process and run into a glitch of some sort.  Remember to stop all USB devised properly using the facility provided by Windows.  If you are unsure about this consult your hardware/PC manuals.  I’ll do a Blog on USB devises shortly to help with this.  Unplug all unnecessary USB devices such as printers, scanners, iPods and USB drives.   None of these wonderful and immensely useful gadgets do not last for ever, sadly.  So, one of them may have simply stopped and you will need to replace it.

If none of  the above steps helps and/or solves the problem, you may well have a major on your hands.  This could range from overheating issues, other major hardware failure, serious software failure, driver conflicts and more.

Hardware Failure: Hardware failure can be anything from an improperly seated or bad memory module to a failed hard drive or system board. The very first thing to do is to run a hardware diagnostic test. To do this it may be best to ask a PC tech to help such as Hamilton Office & Home PC Care on +64274412623 if you live in Hamilton, New Zealand.

I hope the freeze is of short duration and the long happy days of summer return.  John

Sunday, January 18, 2009

The Options: Vista Now or Windows 7 Later


One of the HOT topics right now is, do we upgrade to Vista or wait for the all new Windows 7.
Here is s consensus of what I've gleaned so far. The options appear to be four-fold:

1 - Buy Now! If you haven't already done so, Buy a vista PC now
2 - Wait until July: then buy a vista PC and benefit from the promised free upgrade to W7
3 - Stay with XP: If you're buying now look for an XP based machine and stay with that until MS cease support in 2014
4 - Abandon Windows: Buy an alternative -a Mac or one of the many free flavours of Linux

Whatever you choose, this check list is a good starting point:
Do I need a New PC Checklist:

  1. What do you use your PC for? If all your apps still function well and you know your way around your machine do you really need to replace it?
  2. Running Slow: If it has slowed down, you may just need to give it an overhaul. Check out my previous Blogs or get it in to Hamilton Office & Home PC Care, or if you can't get it to us seek out a good tech and as him/her to clean up your machine and advise you on the options -apart from replacement.
  3. Gamers: If you are a gamer then you may well need a new machine with more grunt -that's another ball game and this Blog is really not for you.
  4. Age of your machine: If your machine is older than, say 4 years, you may have an argument for replacement, however, unless money is not an issue (for most of us among the great unwashed it is -especially with recession-itis setting in!) Again, seek some advise, because component or peripheral upgrades may do the trick for hundreds less than even an entry level new PC.
  5. The Learning Curve: Are you comfortable with a new learning curve right now? A new OS comes with the hidden cost of learning lots of new things that you are probably doing reflexively right now. You will probably need a book as well to read while you watch TV to bring you up to speed. Vista is fun to learn if that's what you like doing. If, on the other hand, you find your masochist tendencies can be gratified satisfactorily in some other way -my advice, do the other! Hence, my suggestion that, even if you decide to replace your machine, think about staying with XP until 2014, or just put if off until later...
  6. The Bugs Issue:
  7. Any new OS will have bugs, and it is wiser to wait at least until the first service pack (SP1) has been released. Vista has now passed that milestone, so it is an option for now. As a result, a lot of the compatibility issues are being sorted.

The Jones Syndrome: Of course, there are those who have the 'J' syndrome and just have to have the newest and shiniest model available as soon as it hits the showroom floor. If that's you, and you don't give a toss about the money, then go for it. Buy the "biggest and the best" you can afford with lots of Ram, disc storage etc and keep doing it every six months or so. This, will help the economy and my dividend check and that's fine. You can also ask me to provide it for you and I will do so with real pleasure. After all, that's why I'm in business. I'm very serious, by the way. I love customers with lot's of money. You are the very best kind. Call me now.

My Pick of the Options:
  1. Buy an external hard disc & Back Up: If you haven't already, right now buy one of the many excellent USB external drives with back up or sync software included and do regular back-ups. This will protect your data, which is always consideration number one -and stay with XP (upgrade to Pro if you can do so easily), or Vista if you already have it. Check your RAM to see you are running the maximum your machine will allow as, if you are running an early version of Vista chances are you are under powered in this department.
  2. Stay with Your XP Based Machine: Here's a couple of applicable cliché's: 'The devil you know is better than the devil you don't know', and 'If it ain't broke why mend it?' My argument for not abandoning Windows here and going with Mac or Linux, is simply because of the 'Learning Curve' issue I dealt with earlier.
  3. Wait Until July 2010 and Buy a mid range 64 bit machine with Windows 7 and SP1 installed. However, the variable here is my 'Age of Your Machine' comment above.

Final Words: Technology is always evolving. Unless you are a techno nut, as I am, your only interest is in how it works for you and makes life better or easier. If it doesn't do that what's the point? So, if your XP based machine is working well, you can do all the things you want to do on it, stay with that for at least the next four or five years. Upgrade as cheaply and effectively as you can along the way and only buy a new machine when you absolutely must.

Message Center

Wednesday, January 7, 2009

More Scamming


As you know, I have written about this ongoing issue before. However, others do to and we need it. Scams morph and multiply fast and staying informed is a task. Here's a top article by a David Risley who owns and runs PC Mech. A great source of information from a full-time blogger, who, as he says, makes his entire income from the great art of blogging for a living.
Read on at: PC Mech Blog

In the meant time, Season's Greetings and all the very best for 2009.
John

Thursday, December 18, 2008

IE Bleeps...again!

18 Dec 2008
A vulnerability has been discovered in Internet Explorer which is being rapidly exploited by some web site and about which you need to be aware. To read more: Microsoft's Advisory Service, and a simpler explanation can be read here: Secunia.

Monday, December 15, 2008

Identity Theft: What it is & How To Avoid It

We can define roughly two levels of Identity Theft.
First, Social Theft: This is your online identity. If someone steals your online identity it enables them to pretend they are you in online activities in the area of what has become known as Social Networking. A 'social network' is an association of people drawn together by family, work or hobby. The term was first coined by professor J. A. Barnes in the 1950s, who defined the size of a social network as a group of about 100 to 150 people. However, since the advent of the World Wide Web, social networking sites have evolved online and provide networks numbering millions of members. These are now virtual communities of people interested in a particular subject or just as a 'place' to "hang out" together. On these sites, members create their own online "profile" with biographical data, pictures, likes, dislikes and any other information they choose to post. They communicate with each other by voice, chat, instant message, videoconference and blogs. It is easy to see how these can become zones of danger for the unwary. Indeed, there have been plenty of news stories covering some of the pitfalls the unwary can fall into while networking on these sites. These unfortunate events can range from just nuisance level through to the more distasteful and criminal activities of pedophiles etc.

The area of concern in this column to the wider community is when someone assumes your identity to the degree they can start buying things in your name, running up huge credit card debt, phone bills and relieving you of large sums of money directly from your bank account, etc.
Sadly, identify hijackers very frequently get clean away and continue to perpetrate their crimes again and again. Statistically, the police have few prosecutions and are usually without any clue as to who the thieves may be.

Be Afraid, Be Very Afraid!
There is only one defense -extreme caution. The old adage, ‘vigilance is the price of liberty’, is again a truism. In this case, constant vigilance is required to stay free from all the various ways in which someone can steal your electronic identity and use it to steal from you. Sometimes, not just once, but again and again. Added to the pain and loss of this is the downstream difficulties associated with identity theft. Your ability to obtain credit is compromised, there are ongoing difficulties with the police, the hassle of proving you are not the person responsible for the credit card purchases made in your name and with your card and so on and so on.

In the End, It's All Very Easy For the Thief
Authorities do agree on one thing, it is very easy to hijack someone's online identity. For example, to do a credit card transaction in someone else's name, the perpetrator often only needs the following information:
  • Your credit card number
  • The expiration date of your card
  • The billing address zip (or post) code
  • The CVC number (that 3 digit number on the back of your card)
  • Your name
If the thief already has your credit card in their hand, they already have four out of these five pieces of information. They are only missing the PIN (Personal Identification Number) and they can use your card whenever they wish. This they may well harvest off your machine or by some other method when your actually using your card at an ATM. Harvesting PINs from ATMs while people are accessing their accounts is becoming very common indeed.

Second: Harvesting Your Identity From Your PC
Because It's Likely All There On Your Computer
In this connected age, the scary fact is that all this information is likely stored in your computer waiting for a hijacker to get his or her hands on it. Further, you don’t need any fancy technology to dig it out. Unless your already practicing safe computing you can find it just by following these simple steps:

Go to an online form, you can use my Contact Centre form for the purpose if you like. But any form where you fill in information about yourself will do. By the way, I don’t harvest any information from my form. It is a simple email form and I haven’t even taken steps to guard against abuse on it. As a result I often get junk email off it when online nutters fill it in with gobbledygook and I have to waste my bandwidth and time and delete it from my inbox. So, use if freely, although, if I get an increase in misuse as a result of this invitation, I will certainly get busy and put some simple checks in place.

If, as you complete this form using Internet Explorer, Firefox or any other browser, and the information you enter, such as your name, phone number, bank account number, IRD/Social Security number etc and the details are automatically completed for you as you begin to enter them, you know your compromised.

This is because the information is stored on your computer and it is available to be harvested by an identity thief quite easily. If you’ve been using computers and the net for a while, you should know this by now. If not, consider yourself educated. Turn off auto-complete this instant and be many times safer as a result. If you’re running Firefox, my preferred browser, go to the Menu Bar and click ‘Tools’ and then the ‘Private’ tab. Check as many boxes as you can to make yourself comfortable about what information remains on your PC. You can also choose to have Firefox clear all your Private Data when you shut Firefox down. Click the ‘Settings’ button on the LHS of the Private Data section and check as many or all the boxes you feel comfortable with as well. In Internet Explorer go the Menu Bar and click ‘Tools’ and click the ‘Delete Browsing History’ option right now. Then go back to ‘Tools’ and choose ‘Internet Options’. Next, choose the ‘Privacy’ tab and move the slider you will see as high as you feel comfortable with. If you are now paranoid, you can click the ‘Advanced’ tab and check ‘Override cookie handling’ and check everything in sight –or whatever! While you’re there, if you wish, you can check the ‘Turn on pop-up blocker’ as well. You can have a look around at the other tabs while you’re in Internet Options and read all the information available.

Caution!
Be aware, that actions you take here will affect your browsing and you may wish to return and fine tune your settings. However, keep in mind that the point of the exercise is safeguarding your online security and privacy. To do this some of the fancy gizmos you find on the net and some of the easy options, such as having your browser remember passwords, may have to be missed out on. It’s up to you.

The Telephone
Now for the telephone! I mention this because it's amazing how trusting we can be. You can be asked a series of questions all related to your security and your identity by someone on the other end of the line and pass it all over without a second thought.

For example:
  • IRD or Social security number (or last 4 digits)
  • Mother's maiden name
  • Email address
  • Telephone number
All of this information is commonly given away to complete strangers whose first name you may have only heard once and already forgotten, or, in today’s world, you probably couldn’t understand it or pronounce it! So, be very careful who you give information to over the phone. Make as sure as you can that you are talking to a bona fide representative of a trust worthy organisation. If you have any doubts, say, “I’m sorry, I’ve decided not to proceed”, and hang up. Don’t let them talk you into proceeding. If they are genuine they will understand your concern and make some alternative arrangement for you that will give you more confidence.
Remember, if a thief can establish they are you, also over the phone, to another bank or financial organisation or business etc, they could ruin your life for a very long time. It’s worth taking precautions and, at the very least, being aware of the dangers.

This sort of information could allow a thief to transfer money out of your bank account, cancel your mobile phone, change all of your passwords, and access your email (probably via web mail) and much more.

How to Begin to Safeguard Yourself
Use Your Own Machine: Never do online transactions on any computer other than your own. Never at work, never on your friend's computer and NEVER NEVER at a public terminal.
Perform the simple check I outlined earlier and try it with your bank account number, IRD or Social security number, your phone number as well. Only start to do it with, say the first four or so numbers and see if your machine starts to complete it. If you know you’ve used another computer previously to do online transactions of any sort, and you can go back to that machine, use the steps I’ve outlined below to do the best you can to erase all stored information and hopefully you’ll wipe out any traces you may have left.
Remove All Personal Traces: Perform a system wide sweep of your own and any other machine you use, have used, to remove any traces of your online identity from them. If you would like help with this we, at Hamilton Office & Home PC Care are happy to assist. That’s what we do! Bear in mind that this means that you will have to type in your credit card number each time you need to use it. This might take a small amount of extra time, but to have your important numbers in your head, not in your computer, or any other, is better than leaving them lying around for someone to pick up. You can use encrypted software that you carry with you on a USB stick and have only one master password to remember. This is what I do and I use a little programme called Any Password for this purpose. This also has the facility to generate passwords that are reasonably secure. However, if you are a gazillionaire, then likely you are a target already and remember that sophisticated decrypting techniques and software are available that could possible crack any utility such as this. However, for most of us among the great unwashed, we aren’t that big a target and not likely to attract that amount of dedicated evil. At the end of the day, even your head is not totally secure. If a sufficiently large and well organised criminal organisation wants what’s in your head, I guess they can get it. “They have ways…!”
Scan Often: Scan your machine(s) for malware on a regular basis. Say, once every five or six days. Under the heading of malware we include, spam bots, denial of service attacks, and all sorts of other nasties. Malware dedicated to capturing your online identity is becoming steadily more common and you need to guard against it. So, install the best quality and the most highly recommended antivirus, antispyware and firewall you possibly can. More than one anti-spyware app is good. You can only run one antivirus programme on your computer, so make it the best you can find. These don’t have to cost the earth either. There are excellent free one’s available. Check out Hamilton Office & Home PC Care and go to my Tech links/Info page to check out my recommendations.
Secure Login: Set up a reasonably secure login password on your PC. Don’t use the obvious such as your wife’s or girlfriend’s name, your birth date, your street address, your phone number and so on. Work out something that you have to remember and don’t leave it written on a piece of paper stuck on or near your PC! If I had a dollar for every time I’ve seen that…
Log off: Log off from your PC when you are not in front of it. Even when going away for a moment or two. That’s all it takes for someone who knows what they’re doing to harvest personal information. An ounce of precaution is always worth a ton of cure. Trust me on this. On an XP based machine click, ‘Start’ then ‘Logoff’. On a Vista machine click, ‘Start’, then the little right arrow and ‘Logout’. If you’re using a laptop or notebook or netbook (see my blog about Notebooks v Netbooks) you might just have to close the lid. You can set this up by going to your Power Options in Control Panel.
Happy and safe computing,
John

Saturday, December 6, 2008

Buying a New PC & the Internet

Buying a New PC & the Internet
CERT/CC has composed this Tech Tip concerning the growing risk to Internet users accessing the Internet without any knowledge about how to secure their nice new machine from the growing number of Internet nasties.
They say, "In recent months, we have observed a trend toward exploitation of new or otherwise unprotected computers in increasingly shorter periods of time. This problem is exacerbated by a number of issues, including (they say):

  • Many computers' default configurations are insecure.
  • New security vulnerabilities may have been discovered between the time the computer was built and configured by the manufacturer and the user setting up the computer for the first time.
  • When upgrading software from commercially packaged media (e.g., CD-ROM, DVD-ROM), new vulnerabilities may have been discovered since the disc was manufactured.
  • Attackers know the common broadband and dial-up IP address ranges, and scan them regularly.
  • Numerous worms are already circulating on the Internet continuously scanning for new computers to exploit.

As a result, the average time-to-exploitation on some networks for an unprotected computer is measured in minutes. This is especially true in the address ranges used by cable modem, DSL, and dial-up providers.

Standard advice to home users has been to download and install software patches as soon as possible after connecting a new computer to the Internet. However, since the background intruder scanning activity is pervasive, it may not be possible for the user to complete the download and installation of software patches before the vulnerabilities they are trying to fix are exploited. "

Check my advice on PC Maintenance and Security

You can read the entire article here: www.cert.org/tech_tips/before_you_plug_in.html

Contact Hamilton Office & Home PC Care on our
PC Care