What You Need To Protect Yourself

Freeware Programs To Download For This Guide

Microsoft Baseline Security Analyzer V1.2.1

Firefox * - Fast, secure alternative to Internet Explorer.

Thunderbird * - Fast, secure alternative to Outlook Express

HOSTS File * - A HOSTS file that helps to block advertising and sites that are known to download spyware to your system

Ad-Aware SE Personal - Spyware finder.

Spybot - Search & Destroy - Spyware finder.

SpywareBlaster - SpywareGuard prevents spyware sites from setting cookies, and installing ActiveX based spyware.

SpywareGuard - prevents spyware .exe and .cab files from being executed as well as prevent browser hijacking.

* - Optional but highly recommended.

In addition to the above software you'll need a few things:

Software firewall - Windows XP's built-in firewall isn't enough. 3rd party firewalls offer protection and configurations that Windows Firewall doesn't. Did you know that Windows Firewall only protects inbound communications and not outbound?

Firewall router - If you connect to the Internet via a broadband connection, buy a good hardware firewall router. Most quality cable/DSL routers have firewalls built-in today. Many people buy these to share an Internet connection, not knowing the built-in protection that these devices offer. Even if you only have one computer connected to the Internet you should have this. Configured correctly, it is an excellent first layer of defense against crackers (more on this later).  Basic firewall routers are not expensive; many on-line shops sell name-brand ones for as little as $50 (US).

Options the router should include:

· Network Address Translation (NAT) - This hides the IP address of the computer you are on to computers outside your home network.  Please understand that NAT is not, and never was, intended to be a "firewall".  It was designed to provide "many to one" Internet access for a LAN with one or more systems to connect to the Internet using a single IP address.

· Port Blocking - blocks access to Internet ports and protocols that are either unused or unnecessary.  Even better, higher quality firewall routers offer port stealthing, but more on that later.

· Stateful Packet Inspection (SPI) - A more advanced form of packet inspection. Knows which information to filter out.

· Virtual Private Network (VPN) - If you connect to your computers at home while at another location, this is a must. VPN creates a tunnel between 2 computers so that no other computers can listen in.

A Brief Explanation of SPI

In order to use the Internet, you do have to open some ports and protocols on your firewall router to outbound packets. In return, you need to be able to receive return packets back from the Internet in order to say, get your email. That means that there is an open vulnerability to attack via those open ports and protocols that can be exploited IF a cracker is sophisticated enough to be able to break through your NAT protections, and there are some that certainly can do exactly that.

What SPI does is create a "one way door" so to speak. It "remembers" requests that have been made, again say for your email, and will permit entry only for those packets which are being received in response to that request. So, unrequested packets, spoofing say a response to a request for email will not be permitted entry because there was no corresponding outbound request. Thus, it protects necessary open ports and protocols from inbound attacks.

Anti Virus (AV) software - This is critical.  Virus and Trojan outbreaks are a daily occurrence, and statistics show that an unprotected system will become infected by a virus or Trojan in an average of 16 minutes .   This time is called "Survival Time" and is tracked by SANS - Internet Storm Center .   An excellent "white paper", published by SANS, on this subject is Windows XP:  Surviving the First Day .  This frightening statistic means that a totally unprotected system may not have enough time to download critical security-based Windows updates before becoming fatally infected.

 

next.....Basic steps to installing XP safely

Featured Partners

  • All web page hosting plans can be classified in terms of cost, programming languages, operation systems, Web servers and functionality.
  • If you are using ASP programing and/or Access Database, Windows hosting is the right choice for you.
  • Web hosting plans that are below $7 per month are considered as Budget web hosting. Site5 is one of our recommended budget web host. You can read our comprehensive Site5 reviews
  • StartLogic provides several hosting type for your business. We recommend their Linux web hosting service. Read our StartLogic reviews and ratings guide.
  • If you want to know more about dedicated hosting, you can read the guides on thehostplanet's dedicated server articles section.
  • Globat offers generous disk space and bandwidth for your personal website. Decide if Globat is your hosting choice by reading our Globat reviews
  • Choosing a domain name is one of the most important aspect in your internet business. Find out how you to choose an effective domain name.
  • Unix is the most popular operating system used for Web servers. In the web hosting industry, a Linux hosting is considered the same thing as a Unix hosting.
  • Have your website hosted with ecommerce hosting to fulfil all your ecommerce needs.
  • Also called IP telephony, VoIP is a technology for transmitting ordinary telephone calls over the Internet using packet-linked routes.