<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
     xmlns:admin="http://webns.net/mvcb/"
     xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#">
	<channel> 

	<title>Comments on: Spyware-Infecto! Where to get good spyware these days?</title>
	<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days/</link>
	<description>Comments on Ask MetaFilter post Spyware-Infecto! Where to get good spyware these days?</description>
	<pubDate>Tue, 24 Oct 2006 20:37:33 -0800</pubDate>
	<lastBuildDate>Tue, 24 Oct 2006 20:37:33 -0800</lastBuildDate>
	<language>en-us</language>
	<docs>http://blogs.law.harvard.edu/tech/rss</docs>
	<ttl>60</ttl>

	<item>
		<title>Question: Spyware-Infecto! Where to get good spyware these days?</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days</link>	
		<description>Help me find some spyware. I am interviewing someone for a position in &quot;residential IT support&quot; and I want to infect a PC for them to fix. Where to get the warez? &lt;br /&gt;&lt;br /&gt; Not just cookies, either. I want some L2M infections, some good old nasty Trojan horses and maybe even a couple of viruses.&lt;br&gt;
I want a machine so dogged down with junk it can&apos;t even open a window - unless it opens ten at a time. I want this tech to be as challenged to remove the infections as possible. Does anyone here know of any sites that pass this junk? I am extremely particular about the sites I visit, so I&apos;m drawing a blank.&lt;br&gt;
Thanks in advance!</description>
		<guid isPermaLink="false">post:ask.metafilter.com,2006:site.49358</guid>
		<pubDate>Tue, 24 Oct 2006 20:33:47 -0800</pubDate>
		<dc:creator>disclaimer</dc:creator>
		
			<category>spywareinfections</category>
		
	</item> <item>
		<title>By: Phire</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749802</link>	
		<description>Download Kazaa and download a couple of movies/songs? [/tongue-in-cheek]&lt;br&gt;
&lt;br&gt;
My experience with Kazaa was horrifying, but maybe that&apos;d be a good place to start.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749802</guid>
		<pubDate>Tue, 24 Oct 2006 20:37:33 -0800</pubDate>
		<dc:creator>Phire</dc:creator>
	</item><item>
		<title>By: junesix</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749803</link>	
		<description>Search for porn and warez, go to the websites, and click Accept/OK to everything that pops up.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749803</guid>
		<pubDate>Tue, 24 Oct 2006 20:39:17 -0800</pubDate>
		<dc:creator>junesix</dc:creator>
	</item><item>
		<title>By: pompomtom</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749814</link>	
		<description>&lt;a href=http://smiley.smileycentral.com/&gt;Get some FREE SMILEYS!&lt;/a&gt;</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749814</guid>
		<pubDate>Tue, 24 Oct 2006 20:55:43 -0800</pubDate>
		<dc:creator>pompomtom</dc:creator>
	</item><item>
		<title>By: onalark</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749830</link>	
		<description>Hide a couple evil little toys for him in &lt;a href=&quot;http://www.governmentsecurity.org/articles/Placesthatvirusesandtrojanshideonstartup.php&quot;&gt;these spots&lt;/a&gt;.&lt;br&gt;
&lt;br&gt;
Do something evil, like write a little piece of batch code that modifies the registry so that the homepage of the browser is reset to (insert evil website here).  Have this piece of code executed on every reboot.&lt;br&gt;
&lt;br&gt;
Impossible to find unless you know the registry, which this guy should if he&apos;s reasonably competent.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749830</guid>
		<pubDate>Tue, 24 Oct 2006 21:08:14 -0800</pubDate>
		<dc:creator>onalark</dc:creator>
	</item><item>
		<title>By: Liosliath</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749839</link>	
		<description>Too bad Bonzi Buddy is no more. That was a surefire way to bring your PC to a molasses-like state of pop-ups galore.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749839</guid>
		<pubDate>Tue, 24 Oct 2006 21:21:00 -0800</pubDate>
		<dc:creator>Liosliath</dc:creator>
	</item><item>
		<title>By: zek</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749847</link>	
		<description>Easy as pie.  Check the spam in your email inbox.  Any attachment accompanied by a nonsensical one-liner will be a worm or trojan.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749847</guid>
		<pubDate>Tue, 24 Oct 2006 21:32:55 -0800</pubDate>
		<dc:creator>zek</dc:creator>
	</item><item>
		<title>By: Cog</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749853</link>	
		<description>While you&apos;re at the warez sites, download a few cracks for popular software titles. It doesn&apos;t matter if you have the software or not, just run the crack and let them install whatever they want.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749853</guid>
		<pubDate>Tue, 24 Oct 2006 21:41:07 -0800</pubDate>
		<dc:creator>Cog</dc:creator>
	</item><item>
		<title>By: Steven C. Den Beste</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749865</link>	
		<description>This is just the excuse you need to visit free online porn sites.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749865</guid>
		<pubDate>Tue, 24 Oct 2006 21:58:47 -0800</pubDate>
		<dc:creator>Steven C. Den Beste</dc:creator>
	</item><item>
		<title>By: bh</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749883</link>	
		<description>Residential IT Support?  Reinstall everything.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749883</guid>
		<pubDate>Tue, 24 Oct 2006 22:26:02 -0800</pubDate>
		<dc:creator>bh</dc:creator>
	</item><item>
		<title>By: sophist</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749890</link>	
		<description>Make sure you use Internet Explorer.  Movies alone cannot infect your computer, but active-x embedded stuff can.  If you can setup a new XP install, don&apos;t update anything, make sure firewall is off.  Installing Kazaa is a good start  Check out the page linked to in &lt;a href=&quot;http://www.google.com/search?hl=en&amp;q=Munga+Bunga+HTTP+Brute+Forcer&amp;btnG=Google+Search&quot;&gt;this google search&lt;/a&gt; for the Munga Bunga Brute Forcer which should also install CoolWWWSearch, one of the most prevalant malware things that results in the about::blank error.  Instead of downloading porn movies (this will not break your computer) try searching for something like &quot;free xxx passwords&quot; and look for programs.  The last big round of infection i saw was malicious programs masquerading as codecs, but i tried to find some and they had all been taken down already.&lt;br&gt;
&lt;br&gt;
Go register an email address at hotmail, then start using it all the time.  Turn all spam filtering off, register at all kinds of free sites, install a bunch of &quot;free search toolbars&quot;, &quot;web accelerators&quot;, etc etc etc. keywords like p2p, free music, free music, cracking, porn should get you started, don&apos;t forget to give out that email adress and open those attachments!</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749890</guid>
		<pubDate>Tue, 24 Oct 2006 22:34:18 -0800</pubDate>
		<dc:creator>sophist</dc:creator>
	</item><item>
		<title>By: sophist</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749894</link>	
		<description>&lt;a href=&quot;http://p2p.malwareremoval.com/&quot;&gt;Here&lt;/a&gt; is a good list of infected p2p applications.  Once you get in it might be a good idea to look up exe files and start downloading and running some of those too.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749894</guid>
		<pubDate>Tue, 24 Oct 2006 22:38:52 -0800</pubDate>
		<dc:creator>sophist</dc:creator>
	</item><item>
		<title>By: bkudria</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749901</link>	
		<description>I&apos;ve also heard that just visiting &lt;a href=&quot;http://astalavista.box.sk&quot;&gt;http://astalavista.box.sk&lt;/a&gt; in IE is a good way to &lt;b&gt;permanently&lt;/b&gt; cripple a Windows install.  You can use the search engine to find cracks/keygens to run also.  Try pirating Adobe Photoshop or Macromedia Flash.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749901</guid>
		<pubDate>Tue, 24 Oct 2006 22:42:03 -0800</pubDate>
		<dc:creator>bkudria</dc:creator>
	</item><item>
		<title>By: chrisamiller</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749911</link>	
		<description>By linking these nasty sites, we&apos;re giving them all kinds of page rank and raising them higher on google.  Perhaps we could obfuscate the urls a little bit?  Use something like: &quot;http://address &apos;dot com&apos;&quot;</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749911</guid>
		<pubDate>Tue, 24 Oct 2006 22:52:29 -0800</pubDate>
		<dc:creator>chrisamiller</dc:creator>
	</item><item>
		<title>By: tomble</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#749998</link>	
		<description>Oh, have I got a site for you.&lt;br&gt;
&lt;br&gt;
Go &lt;a href=&quot;http://www.seriall.com/keygen/tomtom_keygen.html&quot;&gt;here&lt;/a&gt; and run any of these programs.  &lt;br&gt;
&lt;br&gt;
Popups everywhere.  &lt;br&gt;
&lt;br&gt;
I had to run a virus scanner, two anti spyware programs and a special program specifically designed to rid me of this problem.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-749998</guid>
		<pubDate>Wed, 25 Oct 2006 03:19:17 -0800</pubDate>
		<dc:creator>tomble</dc:creator>
	</item><item>
		<title>By: Chunder</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#750007</link>	
		<description>Do what the BBC did recently, and build a honeypot PC (they used a virtual PC session) - &lt;a href=&quot;http://news.bbc.co.uk/1/hi/technology/5414502.stm&quot;&gt;part 1&lt;/a&gt; and &lt;a href=&quot;http://news.bbc.co.uk/1/hi/technology/6035455.stm&quot;&gt;part 2&lt;/a&gt;.&lt;br&gt;
&lt;br&gt;
You shouldn&apos;t have to exert any effort in setting up the compromised machine - although it may end up being a bit too much to fix, and will require rebooting, reformatting and reinstallation (the three main tenets of an IT support role, from an outsiders POV!)</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-750007</guid>
		<pubDate>Wed, 25 Oct 2006 03:36:01 -0800</pubDate>
		<dc:creator>Chunder</dc:creator>
	</item><item>
		<title>By: dgeiser13</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#750050</link>	
		<description>Once you get a particular nasty box set up you should image it so you never have to go through the process again.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-750050</guid>
		<pubDate>Wed, 25 Oct 2006 05:06:44 -0800</pubDate>
		<dc:creator>dgeiser13</dc:creator>
	</item><item>
		<title>By: prentiz</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#750087</link>	
		<description>When I locked my proper PC up, I had to connect my old PC (Windows 98, old Explorer etc) to my broadband - it was unusably slow because of malware in less than an hour...</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-750087</guid>
		<pubDate>Wed, 25 Oct 2006 06:05:01 -0800</pubDate>
		<dc:creator>prentiz</dc:creator>
	</item><item>
		<title>By: theora55</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#750699</link>	
		<description>&lt;a href=&quot;http://www.webshots.com/samplers/&quot;&gt;Webshots&lt;/a&gt;, kazaa(not kazaa lite) most free games.  Oohh, look, &lt;a href=&quot;http://www.spyaware-doctor.warez.full.download.crack.serial.ddl2.com/full/download/warez/crack/serial/spyaware-doctor/download.php&quot;&gt;spyaware&lt;/a&gt;, I&apos;ll bet that&apos;s really useful... and &lt;a href=&quot;http://download.crack.serial.ddl2.com/&quot;&gt;more &lt;/a&gt;from the same site.  &lt;a href=&quot;http://www.google.com/search?hl=en&amp;q=how+to+get+spyware&amp;btnG=Google+Search&quot;&gt;Googling &lt;/a&gt;how to get spyware found &lt;a href=&quot;http://www.daniweb.com/techtalkforums/thread9696.html&quot;&gt;this &lt;/a&gt;useful discussion.  Sounds like fun.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.49358-750699</guid>
		<pubDate>Wed, 25 Oct 2006 14:06:47 -0800</pubDate>
		<dc:creator>theora55</dc:creator>
	</item><item>
		<title>By: loquacious</title>
		<link>http://ask.metafilter.com/49358/SpywareInfecto-Where-to-get-good-spyware-these-days#839710</link>	
		<description>I hope you&apos;re not doing this experiment on a home computer with personal information, passwords or financial information on it, or on an active network with users who may be using it for banking or other sensitive data. Remember, an infected computer can sometimes infect other computers on a network, or eavesdrop on their network communications.&lt;br&gt;
&lt;br&gt;
If not:&lt;br&gt;
&lt;br&gt;
&lt;br&gt;
Install any unpatched Windows and IE and just hook it up raw to a cable modem. No firewalls.&lt;br&gt;
&lt;br&gt;
You&apos;ll only have to wait about 30 seconds. The days of it being &quot;safe&quot; to connect to the &apos;net without at least a firewall are pretty much long gone.&lt;br&gt;
&lt;br&gt;
Or start searching for &quot;free software&quot; or &quot;free porn&quot; while browsing with IE.&lt;br&gt;
&lt;br&gt;
&lt;br&gt;
By the way, speaking as an IT-support type person your test is pretty much useless as a measurement unless both you and the IT guy are experienced in the inner workings of Windows and the registry system to be able to judge his skills against the skills of the spyware writers.&lt;br&gt;
&lt;br&gt;
&lt;br&gt;
Speaking as an IT guy, my solution would be to trust in the skills of a few trusted others and run a good anti-virus/malware package like NOD32 or Panda, run a registry cleaner, inspect it for other known threats, cross my fingers and reboot. Because, frankly, most IT folks don&apos;t have time to actually edit the entire registry or system files and move file packages and such around by hand.&lt;br&gt;
&lt;br&gt;
And then schedule a full reinstall and patch session (from disk image, streamline, or (ugh) original discs and then I would lock that machine down tighter than pickled eel anus so it couldn&apos;t get infected again and people couldn&apos;t help it get infected again through malice and/or ignorance.&lt;br&gt;
&lt;br&gt;
So, IT isn&apos;t really Cowboys and Indians stuff. Dealing with malware in working IT environments (including residential) is mostly boring procedures and orders of operations, just like dealing with infectious diseases is mostly procedure. &lt;br&gt;
&lt;br&gt;
&lt;br&gt;
So, to premptively answer your interview question - you can only make your infected computer so infected that it takes the amount of work that a scan, backup and reinstall takes.&lt;br&gt;
&lt;br&gt;
In a good shop that can be as quick as 3-5 minutes or less to do a backup disk and image install, depending on how much user data there is to back up. (Plus paperwork, login information, domain adds and other misc, which is why it actually takes an hour, but the disk write and &quot;fix&quot; takes mere minutes.)&lt;br&gt;
&lt;br&gt;
In a bad shop, doing a fresh install from original discs can take days, depending on how much software there is to be installed.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2007:site.49358-839710</guid>
		<pubDate>Fri, 26 Jan 2007 04:37:17 -0800</pubDate>
		<dc:creator>loquacious</dc:creator>
	</item>
	</channel>
</rss>
