Saturday, October 17, 2020

What is the Difference Between Antivirus, Antivirus, and Antispyware Tools?

Many products (such as Protegent360 or McAfee) are advertised as “anti-virus” tools or packages, while others are advertised as “anti-virus software” (such as Malwarebytes) and even more as “anti-spyware” (Spybot S&D).

Antivirus Software

Are these terms just marketing gimmicks or are there technical differences between what each product does?

There is some difference between the terms, but this difference is not much more than the difference between different brands using the same term. (And note that there is another category of security software: "firewall". This is a little more distinctly different, but sometimes products will include features like firewall software and other categories.)

They are mostly synonymous as they represent different forms of malicious software (malware). "Malware" is broader, while "virus" and "spyware" are more detailed malware.

The virus is defined as "the defining characteristic of viruses is that they are self-replicating computer programs that are installed on their own without the user's consent".

Spyware is defined as " software that helps collect information about a person or organization without their knowledge and that can send such information to another person without the consumer's consent, or that takes control of a computer without the consumer's knowledge."

Malware is defined as “short for malicious software. It is software used to disrupt a computer, collect confidential information, or gain access to private computer systems. ”

Generally speaking, the main differences between antivirus manufacturers are that some actively listen and scan files when they are loaded into memory or visible in the watched folder (MSE, Avast, etc.), whereas AFAIK, others are inactive and work. to rid you of the baddies when you execute them (malicious bytes, most spyware).

If you are going to purchase any software, I would read reviews on how much resources they require and if you can limit that. I know MSE is free and you can limit the CPU usage, in my experience, it was pretty solid. At work, however, we have McAfee, and my computer barely works during the scan, and my domain policy limits my ability to restrict it in traditional ways.

It might be a good question (if it isn't already) to ask “How does someone choose good antivirus software” or something like that. If you're interested, please don't forget to search first!

In terms of function, they are basically the same; They all have a database of known targets that they look for in the usual way, such as monitoring file access, process memory, etc.

The difference is what they target. I cannot tell you exactly how these terms are respected, but I can tell you the definitions:

Malicious software: any malicious software. This term is mainly used as a general term to refer to viruses, Trojans, adware, spyware, worms, or any other software that can have a detrimental effect on the system.

Virus. Technically, viruses are types of malware that automatically replicate and infect new files on the system. However, more general use is to refer to clearly malicious software rather than simply “potentially unwanted” or software to gather information about behavior.

Spyware: Software that is used to collect information about you or the use of your computer. This can be anything from information about which sites you visit and when to banking information and personal information.

Antivirus and antivirus software will almost certainly be very similar in terms of what they target. Antispyware software is usually specifically designed for spyware and adware - a good example is Spybot Free, which (at least for the time being) focuses entirely on spyware and leaves the decision to install other antivirus software (like Windows Defender) for the user.

What is the Difference Between Antivirus and Total Software?

When it comes to protecting information on a personal computer or mobile gadget, most immediately think of antivirus software. Such programs are definitely capable of providing some guarantees. Unfortunately, they are not enough. More comprehensive solutions are needed to ensure complete security.

Antivirus

Why Antivirus Alone is Not Enough?

Today, many still continue to ignore antivirus software. Or they are limited only to them because such a product is usually cheaper. However, following the improvement of information security tools, the methods of attackers are also developing. They find new holes in systems, create more sophisticated and insidious malware and spyware.

A characteristic feature of modern cyber threats is that they mainly come to the device from the Internet. Hackers can also remotely connect to a PC or smartphone over a local network or Wi-Fi. So they steal personal information and files, hack accounts on social networks. And, of course, they disrupt the work of not only the hacked but also all gadgets connected to the network.

That is why comprehensive data protection is a much more reliable option than using one antivirus program. In contrast, special software has the "Internet Security" function. The built-in firewall prevents unauthorized access through the World Wide Web or local connection.

What Multilevel Information Security Methods Are Capable of

The tandem of a firewall and antivirus greatly expands the user's capabilities.

Among the advantages:

1. Detection of dangerous objects and their elimination.

2. Identification of potentially vulnerable flaws in the system.

3. Blocking remote access to devices.

4. Hiding inappropriate content: annoying ads, spam, and the like.

5. Storage of logins and passwords.

6. Recognition of fake links, scripts, and applications.

7. Traffic control.

The main condition for reliable information protection is the well-coordinated joint work of the components. Together, they can prevent most threats. Also, multi-component software can include other separate functions and services that enhance reliability. It is important that all services are regularly updated. An up-to-date database and timely patches from developers are essential. After all, new viruses appear every day.

Which Solution to Choose

There are two types of software user license:

● one-time purchase - the usual option for one stationary PC;

● Subscription - SaaS technologies help ensure security, save memory, and save installation time. Convenient for a corporate network.

Here are some reliable quality products with full functionality:

● Bitdefender Total Security;

● Kaspersky Internet Security;

● Protegent360 Total Security;

● ESET NOD32 Internet Security.

They all have some similarities. First of all, the ability to find and neutralize all types of threats and filter out unwanted content. Also, they are not demanding on resources, they are fast and efficient. They rely on an extensive virus base and are regularly updated. And, which is very convenient, they support multiple devices.

Complex multi-layered programs are almost impossible to find for free, apart from trial demos. However, such software fully justifies its cost. After all, the consequences of a cyberattack can be much more expensive. Therefore, purchase exclusively licensed software from trusted manufacturers.

Friday, October 16, 2020

CryptoLocker - How to Recover Files or Decrypt

CryptoLocker is an application that you would not like to find on your pc. It is classified as a ransomware that is known to encrypt each and every essential file on your computer. This ransomware uses a Bitcoin payment system - ransoms get paid using it, making it rather difficult to prosecute the hackers behind it.

CryptoLocker : Recover Files or Decrypt

How CryptoLocker is Installed on the Computer

CryptoLocker uses social engineering techniques, to ensure that it is the user who executes it. Specifically, the victim receives an email, pretending to come from a logistics company, which has a ZIP with an access code attached.

When the user opens the zip by entering the access key that comes in the email, he thinks that there is a PDF file inside and when he opens the fake PDF, he executes the Trojan. CryptoLocker takes advantage of the Windows policy of hiding the extensions by default, in such a way that the user is tricked "thanks" to this Windows feature.

  • When the user (the victim) executes the Trojan, it installs itself as a resident on the computer:
  • Performs an imitation of itself on a path of the user profile (AppData, LocalAppData)
  • Create an entry in the autoruns to ensure execution on restart.
  • Run 2 processes. One is the primary and the other to protect the original process in front of closures.

Encryption of Files on Disk

The Trojan produces a symmetric key for each file to be encrypted and encrypts the contents of the file with AES using this key. It then encrypts the key with an asymmetric public-private key (RSA) algorithm with keys greater than 1024 bits in length and adds it to the encrypted file. This procedure guarantees that only the owner of the RSA private key will be able to obtain the key with which the file has been encrypted. In addition to this, as an overwrite operation is performed, the restoration of the file through any technique is prevented.

The first thing the Trojan does once it runs on the victim's computer is to get the public key (PK) from a C&C server. In order to connect to its server, the Trojan incorporates an algorithm known as Mersenne twister to produce domain names (DGA). This algorithm uses the date of the day as a seed and can produce up to a thousand different domains day after day, of a fixed length.

When the Trojan has successfully downloaded the PK, it saves it in the HKCUSoftwareCryptoLockerPublic Key registry and begins encrypting the files on each and every hard drive on the computer and on network paths where the user has permissions.

How Can I Avoid CryptoLocker?

The infection procedure it uses is transmission by e-mail through the use of social engineering. With what our tips are:

  • Exercise extreme caution against e-mails from unexpected senders, especially those that include attachments.
  • Disabling the Windows policy that hides known extensions will also help to recognize an attack of this kind.
  • Having a backup system for our critical files, which ensures that not only in the case of infection we can mitigate the damage caused by malware, but we also cover hardware problems beforehand.
  • If we do not have a backup and we have become infected, we do not advise paying the ransom. This should NEVER be the solution to recover our files since it transforms this malware into a profitable business model, which will drive the development and expansion of this kind of attack.
  • UPDATE A Power Shell script has been created
  • Install and update antivirus; do a regular scan

If you have been unlucky enough to be infected by the CryptoLocker Trojan, we can provide you with a solution to recover the encrypted files.

Cryptolocker is Ransomware

Ransomware is a threat that goes beyond simple damage to a computer, it attacks us where it hurts us most, encrypting files that are vital to us and requesting a "ransom" usually in bitcoins.

Bad News Cerber 3, the new version of ransomware that is impossible to decrypt, although at present we have begun to develop tools to be able to decrypt this terrible algorithm, it is still one of the most difficult to recover.

The 10 Most Dangerous Ransomware

Conficker: Worm that allows remote operations and malware download.

Sality: Virus that allows remote operations and downloads of malicious programs.

Locky: It mainly spreads via spam emails with a covert downloader.

Cutwail: Botnet used to send spam messages and take part in DDOS attacks

Zeus: Trojan used to steal banking information.

Chanitor: Install malicious payloads on infected machines.

Tinba: Banking Trojan.

Cryptowall: Ransomware that uses AES encryption and carries out C&C communication through TOR.

Blackhole: Exploit Kit that uses browser security flaws and plugins.

Nivdort: Bot used to steal passwords and modify settings.

What is CryptoLocker? Beware of CryptoLocker?

CryptoLocker is a type of malware that encrypts all files, archives, documents, or computer equipment until they are unlocked by the "cybercriminal".

CryptoLocker is at the moment a well-known piece of malware that can be especially damaging to any data-driven organization. The moment the code has run, it encrypts files on desktops and network shares and "hijacks them for ransom." If any user tries to open the file, they will be asked to pay a fee, a ransom, to decrypt them. For this reason, CryptoLocker and its variations have come to be known as “ransomware.

Beware of CryptoLocker

Malware such as CryptoLocker can enter a protected network by means of many vectors, including e-mail, file-sharing, and download sites, websites, etc.

A CryptoLocker can severely affect a company, its image, its website, leaving it useless, and even affecting search engine visibility.

Aside from limiting the scope of what an infected host can corrupt by retaining access controls, detection and protection controls are advised as the first line of defense.

What Does CryptoLocker Do?

At a run, CryptoLocker begins to examine the mapped network drives that the host is connected to folders and documents, renames, and encrypts the ones it has permission to alter, determined by the credentials of the user running the code.

CryptoLocker, in many cases, uses a 2048-bit RSA key to encrypt the files and changes the name of the files by adding an extension such as “.encrypted”, “.CryptoLocker” or a combination of 7 random characters, depending on the variation.

Finally, the malware creates a file in each damaged directory that links to a page with decryption instructions, which requires a duck from the victim (on numerous occasions through bitcoin).

The names of the instruction file are usually DECRYPT_INSTRUCTION.txt or DECRYPT_INSTRUCTIONS.html.

How to Prevent CryptoLocker?

The more files a user account has access to, the more damage malware can do, therefore limiting access is a prudent action, as it will limit the scope of what can be encrypted. Since reaching a least-privilege model is not a quick fix, it is possible to reduce exposure quickly by removing superfluous global access sets from access control lists.

Sets such as "Everyone," "Authenticated Users," and "Domain Users," when used in data containers (such as SharePoint sites and folders) can expose entire hierarchies to each and every user in a company.

Apart from being targets of attack, this exposed data set is very prone to be damaged in the malware attack.

On file servers, these folders are known as "open shares", both the file system and the share permissions are reachable through a global access set.

How to Detect a CryptoLocker?

If file access activity is being inspected on impaired file servers, these behaviors produce a high number of open, modify, and create events at a very rapid rate and are quite simple to perceive with automation, giving a valuable inspection control. To serve as an example, if a single user account alters 100 files in a minute, something automated is sure to happen.

Setting up a monitoring solution to cause an alarm when this behavior is observed can be a valuable tip: IDS, IPS, or Next-Generation Firewall.

Depending on the severity of the CryptoLocker, the encryption can be reversible with a real-time disassembler, few cases, or irreversible.

Security Tips Like Prevention of CryptoLocker or Ransomware

  • Update antivirus software and protection software. These solutions can help detect some types of ransomware and prevent it from encrypting files.
  • Be very vigilant about phishing scams, phishing emails, which are the most common delivery mechanism for ransomware.
  • Keep backup copies of all important documents (it is faster and easier to recover documents from a backup than to decrypt them if they have been compromised in a ransomware attack).
  • Commit to a zero-trust / least privilege model. The least privilege model limits access only to what is completely accurate.
  • Monitor file activity and user behavior to warn, alert and respond to potential ransomware activity.
  • And most importantly, implement cybersecurity tools that allow you to be somewhat more secure.

Thursday, October 15, 2020

What are the Zero-Day Attacks and How to Keep Safe From It?

Zero-Day Attack

Attacks called “Zero-Day” are one of the most feared and dangerous security incidents, in addition, about 80% of large-scale attacks that occur are due to a Zero-Day on hardware or software devices. These types of attacks affect both home users and corporate environments. Now, why do we refer to these attacks as “Zero-Day”? We are going to put one of the most dangerous types of attacks in context and, with good reason, feared.

How to Keep Safe From Zero-Days Attack

What Are the Zero-day Attacks?

How do we get to know that we are facing a zero-day attack? When threats are new or unknown because of the different solutions that detect them, they are called Zero-Day attacks. Consequently, these are known as zero-day vulnerabilities. These attacks have the particularity of taking advantage of such vulnerabilities not yet identified, as well as malware variants to exploit a particular security flaw. The world of cybercrime is characterized by quickly discovering and exploiting any vulnerability or problem that may exist within a system or a machine. Remember that hacks, in general, are not reserved for software but also for hardware.

It is crucial that the professionals involved in these types of systems do everything possible to keep the databases up to date and the functionalities prepared. These systems, which can be detection or prevention, should always be prepared for known attacks, and if possible, anticipate what may come. Consequently, web users will have more tools to be properly protected with effective antivirus and antimalware solutions.

Why These Types of Attacks Occur

For an attacker, discovering a zero-day vulnerability and attacking based on it has its advantages. The response and recovery time after the attack has been detected can be very high, and it will take days until the manufacturer or the community launches a patch that solves the problem since it is necessary to know what the attack is about, why gave, what is the root cause and what to do to solve it. In addition, we must also take into account the time it takes from when the patch is released until all affected users install it since it is not instantaneous.

A worrying factor is that these types of attacks do not stop increasing in frequency, and they may double during the year 2020. The damages that are caused by these types of attacks can easily reach millions of dollars.

What Can I Do to Avoid Zero-day Attacks?

Emphasizing what one can (and should) do, the most important measure is to protect your device. However, just installing an antivirus, malware or a complete security solution is not enough. It is important that we know how to handle the essential or the most important of these tools to get the most out of it and ensure protection.

Another important measure that we must implement is to keep the software you use updated. Both the operating system and the different programs you use. These are updated because they include security patches against vulnerabilities and zero-day attacks that have been discovered. Many people have been victims of attacks for the simple reason of not keeping their programs up to date.

The complexity of Zero-Day attacks is very high. That is the importance that, in addition to people working in technology, all people, in general, should be vigilant and take proactive measures. It may not be possible to mitigate any type of cyberattack by 100% but equally, reaching an important level of resistance to them can make a difference when you notice the reduction of their impacts.

Wednesday, October 14, 2020

How to Avoid Computer Viruses | Antivirus

In 2017, the "WannaCry" computer virus put the world's big companies in check and shook home users around the world. He was taking advantage of a weakness in Windows to carry out an attack that rendered devices unusable and demanded large sums of money in exchange for their release. The fact, of course, was known all over the planet and called into question the security systems in the network.

Avoid Computer Virus

Computer viruses have been present in our lives for decades. Despite this, there are many occasions in which false alarms are created about its circulation on the network. It is true that there will always be a risk, but you have to work hard to end the famous hoaxes.

The origin of the computer virus dates back to 1972. Then, it attacked the Tenex operating system, present in American computers that were used for research and education. His name was " Creeper " and he was created, without malicious intent, by an engineer named Bob Thomas. The virus circulated on the Internet always sending the same message: " I am the creeper, catch me if you can ."

To combat it, "Reaper" was created, considered the first antivirus in history. In the 80s the first malicious viruses emerged. Since that time, hundreds of viruses have emerged, some very aggressive. Although it is difficult to decide which has been the worst in history, many experts highlight “ Chernobyl ”. It was created in 1998 and attacked 60 million Windows and Millennium computers. It erased all the data on the devices and prevented their start-up.

Virus Classes

One of the first malicious viruses was " Rabbit ", which blocked devices. Then "Elk Cloner" appeared, which affected Apple, and "Brain", on IBM computers. From here, a list of computer viruses was created:

  • Residents They are in the memory of the computer and alter files as they are selected or closed.
  • Direct action. They are installed in the root directory of the hard drive and attack when a program is run.
  • Of overwrite. We found them in the archives. They remove the contents and replace them with others.
  • Located on the desktop. The famous " cluster ". They change the location of the files when we try to access them.
  • Boot system virus. They attack the moment the hard drive is running.

Other Types of Secondary Viruses

  • Trojans. They hide behind a harmless appearance, for example, a program, and cause hackers to take control of your computer to steal personal data. The most famous is "Zeus", which affected more than three million devices in the US. 77% of them had updated antivirus.
  • Worms. It is a malware that spreads when we transfer files. It causes the system to hang and wastes bandwidth. The best known was "Morris", which in 1988 affected tens of thousands of computers that had an Internet connection.
  • Spyware. Collect data from your device and transfer it to another location. One of the most dangerous is the "Skygofree", which affects smartphones and with which hackers can completely control the phone.
  • Adware. It tracks your computer's memory to find out your preferences and shows you advertisements constantly.
  • Browser hijackers. Control your browser and direct you to other websites.
  • Email virus. They appear when you open an email. The most famous is the "I LOVE YOU" virus. In 2000, and in just five hours, it infected 10% of computers connected to the Internet at that moment, causing damage valued at 10 billion euros.
  • Ransomware. They lock your device and ask for a ransom to release it.

How to Protect Ourselves From Computer Viruses?

The best thing is to install an antivirus, although we must know that the system itself has mechanisms to protect itself. This is the case of Windows Defender or Windows Security. There is also another free antivirus such as Protegent360.

They may seem like simple programs, but they are very effective at destroying Trojans, worms, or spyware. Of course, you have to be aware of new updates. In addition to antivirus, there are other options to prevent our devices from being affected:

  • You have to be especially careful with social networks. Never open a file without checking its origin.
  • Close the website when the browser tells you that it is not a secure site.
  • Do not accept files from contacts you do not know.
  • Make backup copies of your files periodically.

1. Install antivirus/malware software.

This advice may go without saying, and we mentioned it earlier. However, many computers - especially home computers - do not have virus/malware protection. This protection is an essential first step in keeping your PC virus-free.

2. Keep your antivirus software updated.

Having protection software is the first step; keeping it is the second. The free antivirus software is better than nothing, but note that it is not the best solution. Microsoft provides a "free" security package. It's free because if you have Windows on your computer, you are granted access, but you paid for your Windows license. Many users are not aware of this program, but it is actually decent protection.

3. Run regularly scheduled scans with your antivirus software.

This may also seem obvious, but many of us forget to do it. Set the software to run at regular intervals. Once a week is preferable, but don't expect much longer between each scan. It is difficult to work on the computer while antivirus software is running. One solution is to run the software at night when the computer is not being used. However, we often turn off our computers at night, so the scan never runs. Set your antivirus software to run on a specific night and always leave your computer running on that day. Make sure it doesn't automatically shut down or go into hibernate mode.

4. Keep your operating system updated.

Whether you use Windows, Mac OS X, Linux, or any other operating system, keep it up to date. Developers of operating systems always release security patches that fix and cover security leaks. These patches will help you keep your system safe. Similarly, keep your antivirus software up to date. The virus and malware are created all the time. Your scan-software is only as good as your database. You should also be as up to date as possible.

5. Protect your network.

Many of our PCs connect to our files, printers, or the Internet through a Wi-Fi connection. Make sure it requires a password to access it and that the password is secure. Never browse an open Wi-Fi connection.

Use WPA or WPA2 encryption. PME is no longer strong enough, as experts can avoid it in a matter of minutes. It is also a good idea not to broadcast your SSID (the name of your Wi-Fi network). You can still access it with your device, you just have to manually enter the SSID and password. If you frequently have guests using your internet, provide a guest SSID that uses a different password, just in case your friends are evil hackers.

6. Think before you click.

Avoid websites that you don't trust. Don't open an email attachment from someone or a company you don't know. Don't click a link in an unsolicited email. Always hover your mouse over a link (especially one with a URL shortener) before clicking to see where the link actually takes you.

If you need to download a file from the Internet, email, FTP site, file-sharing service, etc., please analyze it before running. Good antivirus software will do it automatically, but make sure it's being done.

7. Keep your personal information safe.

This is probably the hardest thing to do on the internet. Many hackers will access your files not by brute force, but through social engineering. They will get enough information to access your accounts online and collect more of your personal data.

They will continue from account to account until they have enough information to allow them to access your bank details or simply steal your identity. Be careful with message boards and social media. Lock all your privacy settings and avoid using your real name or identity in the discussion forums.

8. Don't use open Wi-Fi.

When in the cafeteria, the library, and especially at the airport, do not use the open Wi-Fi “free” (no password, no encryption). Think about it. If you can access it without problems, what can a hacker do?

9. Make a backup of your files.

The best thing you can do is back up your files, all of them. Ideally, you should have your files (your data) in at least three places: where you work on them, on a separate storage device, and off-site.

Keep your files on your computer, back it up to an external hard drive, then back it up to a different location. You can use a backup service or just get two external hard drives and keep one at work, at a friend's house, at a family member's house, or in a safe deposit box.

10. Use several strong passwords.

Never use the same password, especially on your bank account. We typically use the same email address or username for all of our accounts. They are easy to see and steal. If you use the same password for everything or many things, and it is discovered, then it will only take a few seconds to hack into an account. Use a strong password. Please use lower case, upper case, numbers, and symbols in your password. Keep it easy to remember but hard to guess. Don't use dates or pet names.

False Legends About Computer Viruses

They come in by email. It is one of the ways, but not the only one. Also online, on social networks ...

My computer is slow ... it has a virus! No. I may have it, but your device may get stuck for other reasons such as lack of system maintenance, hard drive failure ...

If my screen turns blue, I have a virus. The blue screen is usually caused by bad software, not viruses.

Porn sites have viruses. Every timeless. The porn industry now moves a lot of money and they have increasingly greater security systems.

Tuesday, October 13, 2020

6 Ways to Avoid Phishing and Texting | Antivirus Software

Scams carried out through phishing or smishing are common attacks these days. Who is not inundated with emails and SMS containing fake web addresses, telephone numbers to contact, various offers, each more attractive than the last? After explaining what phishing is, it's time to help you avoid getting caught in the cracks! 

  • Check the subject and sender of the email or SMS
  • Most malicious messages will have a subject similar to this:
  • You won the lottery
  • Verify your account 
  • Your request has been registered
  • Please confirm your identity ( although you have not registered on this site )  
  • Exceptional offers 
  • Refund offers 

The subject combined with the sender should already tease you and create an ounce of suspicion in you. If you receive an email from a distributor/store when you never receive one, you should already be asking yourself questions. If you are asked to validate your registration when you have no memory of this site, do not go further and delete this message.

Identify Phishing and Smishing Messages

Phishing emails can take many forms. Often times they will use the exact logo of the company/company, the signature of one or more important people from that organization, they can use the layout and colors of their official email, website, etc.

Hackers even use phishing to trick users who have already been scammed. They pose as an organization that could help them recover previously lost money and take the opportunity to direct you to a fictitious site in order to recover your personal identifiers or money.

The SMS will usually ask you (often urgently) to click on a link to a website or call a phone number in order to verify, update, or reactivate your account. The link to the website will take you to a fictitious site that will claim to be a legitimate business. The goal is to get you to disclose any information that could help fraudsters steal your money.

Do Not Click on Links

Phishing and smishing messages usually link to fictitious web pages that are an (almost) exact replica of the original site. These scam websites are used by crooks to collect your personal data or to install spyware/malware on your system. So be careful about which links you click. 

Take the right reflexes and connect to the company's website directly by typing the web address into your browser. Do not "cut and paste" the link in the email or SMS and then paste it in your browser. Scammers can create links that are identical to the official website address, but which will direct you to an exact copy of the official website. Also, avoid responding to a fraudulent message. This could activate a system that would indicate that your email is active and that the fraudster can reuse it in future spam.

Secure Website

Make sure you always use a secure website when filling out personal and/or sensitive information. To make sure you are on a secure web server, check the internet address in your browser's bar. starts with   "https: //" rather than "HTTP: //" . You should also see a small padlock near the web address If when connecting to the website your browser displays a security alert indicating that the site is not trusted, you should not continue because it is probably from a pirate site.

  • Increase the security of your system
  • Keep your computer secure with efficient software and regular updates. For example :
  • Install (or improve) firewall protection
  • Keep your browser secure by installing updates as they become available
  • Make sure your operating system is also up to date
  • Use recognized antivirus software and update it regularly
  • Use anti-spyware software
  • Use a spam filter
  • Delete cookies as often as possible
  • Browse the Internet from a user, non-administrator session

If in Doubt

If you believe you have been the victim of a phishing or smishing scam, contact the targeted company directly to determine if this is the sender of the message. If you contact the official sender of the message by phone, be sure to get the number from a directory or the company's official website.

The company will take the necessary measures and will contact the police to report the incident. It is important to report the issue for your benefit if you have been trapped, but also to prevent it from affecting more than one person.

November 27 is Black Friday and November 30 is Cyber ​​Monday

One of the strongest sales campaigns in shops and online sales recently established in Spain is Black Friday and Cyber ​​Monday. A tradition...