Originally posted by: mechBgon
Also, don't assume "safe" sites are really safe all the time, either.
All great reasons to avoid running a Web browser as an Admin, IMO.
Also be wary of malware which travels by infecting USB devices (HDDs, flash drives, cameras, iPod/MP3 players, digital picture frames, memory cards). Some of these have been found to be pre-infected
at the factory :frown: Malware can also infect burned CDs and DVDs. For these categories of threats, consider disabling AutoPlay using Microsoft's
TweakUI on WinXP/2000 systems
and/or disable AutoPlay in Group Policy Editor if your version of Windows has it (Start > Run >
gpedit.msc > User Configuration > Administrative Templates > Windows Components > AutoPlay Policies). This comes at the cost of functionality, of course
Update: regarding the above paragraph, check THIS out:
Just today we received an email from someone who has witnessed and has evidence of an infection at a photo Kiosk at a retail store. His email had this to say:
?Recently I found a virus on it called Troj_Agent.SAO, which is what Trend Micro named it. Anytime you plug a removable device into it, it would create two files Autorun.inf and autorun.exe. The exe would place itself in the recycler\recycler folder and the .inf would place itself on the root of the removable drive as a hidden file. At first I thought this virus came in on one of our employee?s pen drive but after further investigation I discovered that the files that the virus uses were created on the kiosk the day it was shipped out to us. Also our vendor is using this kiosk in some of their stores at the moment and there have been reports that the kiosks have given their customers a virus. ?
--from
SANS
Great. :roll: