elsewhere, we'll
try to match
or beat it.
‘Parasite’ is a common name for “unsolicited commercial software” — that is, a program that gets installed on your computer which you never asked for, and which does something you probably don’t want, for someone else’s profit.
The parasite problem has grown enormously recently, and many millions of computers are affected. Unsolicited commercial software can typically:
There are three major ways unsolicited commercial software can make its way onto your machine:
Often if you are careful to read the small print when you install the software it will warn you about this, and it is sometimes possible to opt out. So always skim the license agreement when you install and don’t just click Next-Next-Next... but you still can’t be sure they’ll tell you.
For this reason, you should never click "Yes" to a “Do you wish to download and install...” prompt unless you are 100% sure you trust the publisher of the software, which might not be the publisher of the web site you are viewing — read the dialogue box very carefully.
Sometimes sites (or pop-up ads) try to fool you into clicking "Yes" by stating that the software is necessary to view the site, or opening endless error windows if you click "No," or claiming that the digital certificate on the code means it is safe. It means no such thing. "Microsoft Authenticode," signed by companies like Verisign, means only the company that wrote the software is the same as the company whose name appears on the download prompt — nothing more.
You can do your best to guard against this by ensuring you have the latest updates and patches from Microsoft. Still, there are usually a handful of security holes that have not yet been corrected, so you can never be 100% sure you are safe.
One way of reducing your risk of exploitation is to go to Tools->Internet Options->Security and set the security level for the Internet Zone to "High." (If no slider is visible, click "Default level" to make it appear first). Then set the security level for the Trusted Zone to "Medium" and add the sites you use and trust to this zone. You may need to do this quite often, as many badlydesigned sites just won’t work in high-security mode.
An alternative solution for the last two problems is just to use a different web browser for everyday browsing, and Internet Explorer only for sites you trust that stubbornly refuse to work with other browsers.
Technically, most unsolicited commercial software isn’t viral. It doesn’t spread from computer to computer, it just installs and runs on one system.
That doesn’t mean it’s not harmful, but anti-virus software does not attempt to detect all software that could be harmful. Whether it should is a tricky argument that ends up a question of where you draw the line.
Actually some anti-virus programs do detect some of the parasites outlined on these pages, but not nearly all, and not all versions of them. Parasites that install using IE security holes are more likely to be targeted by the anti-virus software vendors, but the selection of targets seems for the most part to be pretty arbitrary.
For this reason there are now a number of anti-parasite packages around that work as a complement to anti-virus software.