Recommended Posts

I'm using Firefox, with AdBlockPlus blocking malcious ads and annoying ads, NoScript blocking 0-day JavaScript vulnerabilities, and WOT so I know if I am on a safe site. Is there a possibility to get a virus if there is no route of entry through the browser or through USB flash drives (I only put drives that are my own that I know are not infected into my computer)?

Link to comment
https://www.neowin.net/forum/topic/1238996-do-i-really-need-antivirus/
Share on other sites

Just my own personal experience that I wouldn't recommend to everyone, haven't used a resident suite in over a decade, got tired of the inane amount of false positives/nags, performance drag, compatibility issues, etc.. personally if you're waiting for that "This program is malware" warning, you already made a mistake by letting it on your system to begin with.  Barring OS exploits that any OS gets and exploitable services (web servers, etc, again on any OS), 99.9% of the time malware on a desktop typically comes from user error or bad habits.. it doesn't appear out of thin air like catching a cold.  If you have internet facing services though you may want to reconsider.. that sort of stuff gets hammered all the time on any OS you can think of.

 

My neighbors for example (rank them in the "clueless user" category) have had multiple problems in the past, always due to dumbassery.  No you don't need that codec to view the video, no it's not safe because the guy said so, no you don't want to run that Shipping Label.docx.exe that got mailed to you.  With a bit of corrective training (and hardening of their browser) I haven't had to work on their system in over two years now.. but they still run resident protection just because.  

 

Obviously regular drive images are a good idea, that safety net never hurts.  An on-demand scanner is handy to have if you tend to grab stuff from random places, never mind a sandbox to run them in. If you don't have a sandbox, get a VM.  If you don't trust where the file came from, you don't run it without some sort of barrier to protect the system, period.

 

Whichever way you go though.. backups are always front and center.  Only takes one mistake to let malware in. It's entirely on you if you want to run without it, and it's certainly not for everyone.

I also agree with Max Norris. If a site provides some sort of checksum like MD5 or SHA1, or CRC, then that can provide a means of a good chance the file in question, is the real thing. imo WOT is not needed as if a site has been deemed safe but at the same time, the site/page could be compromised and that is another addon that if it were bad, it could do anything it wants. Also anything that can hold information such as USB/DVD/etc.. can be suspect and if your not sure, then run a VM/sandbox or a seperate testing PC. Also there are plenty of sites like virustotal/etc.. that you can upload files to or check websites and see if they are malicious or not. Also like Max Norris said, use images as they can save you.

I would install at least MSE. It is not the world greatest AV suite, but it helps amd is free. I also recommend frequent images so that you can easily backpaddle.

 

I run most of my web activities thru a virtual Linux Mint Mate system. That is the best protection you can get.

  • Like 2

I'm using Firefox, with AdBlockPlus blocking malcious ads and annoying ads, NoScript blocking 0-day JavaScript vulnerabilities, and WOT so I know if I am on a safe site. Is there a possibility to get a virus if there is no route of entry through the browser or through USB flash drives (I only put drives that are my own that I know are not infected into my computer)?

That certainly helps a lot. Whenever I load Windows, I use virtually the same configuration of FF + ABP + NoScript + CookieMonster. However, it's not a silver bullet when it comes to Windows unfortunately. It minimizes your exposure, and you could probably get away with it if you only download programs from reputable sources / scan them online, but it won't eliminate the threat entirely.

 

GNU/Linux is the only desktop OS I recommend for a completely secure malware-free experience. I would never do any sensitive work on Windows, nor would I store any important files there. The risk is too great.

I'm using Firefox, with AdBlockPlus blocking malcious ads and annoying ads, NoScript blocking 0-day JavaScript vulnerabilities, and WOT so I know if I am on a safe site. Is there a possibility to get a virus if there is no route of entry through the browser or through USB flash drives (I only put drives that are my own that I know are not infected into my computer)?

 

if your asking the question, then yes

  • Like 2

One question. Where would viruses come from? Neowin? Nope! so similarly, All reputed sites are safe. Except; Warez, Porn, Cracked Software. Don't tell me that cracked Photoshop is safe and clean..Just saying and neither is cracked/ toolkit Office 2013, no matter how many scans you run! and use worlds "best" AV/IS. If you invite Viruses yourself, you'll have them for sure.

One question. Where would viruses come from? Neowin? Nope! so similarly, All reputed sites are safe. Except; Warez, Porn, Cracked Software. Don't tell me that cracked Photoshop is safe and clean..Just saying and neither is cracked/ toolkit Office 2013, no matter how many scans you run! and use worlds "best" AV/IS. If you invite Viruses yourself, you'll have them for sure.

 

Totally wrong. Neowin could totally serve up a virus if they were hacked and bad code was put on the website or a malicious ad provider stuck in an Ad with an exploit on it. Happens all the time to other legit sites, heck I think Yahoo had a bad ad and infected 200,000 machines. or was it 2 million?

  • Like 5

One question. Where would viruses come from? Neowin? Nope! so similarly, All reputed sites are safe. Except; Warez, Porn, Cracked Software. Don't tell me that cracked Photoshop is safe and clean..Just saying and neither is cracked/ toolkit Office 2013, no matter how many scans you run! and use worlds "best" AV/IS. If you invite Viruses yourself, you'll have them for sure.

Even so called reputable sites can contain malware. Youtube was briefly infected recently if I remember correctly. Servers can be compromised to spread it, etc. Point being, there's no single thing you can do besides completely disconnecting from the internet. For most of us, that's not an option.

 

And who hasn't clicked on a link from a search result to find it's not what you expected? It's easy to run across dodgy/less reputable sites by accident. So to suggest that the only way to be safe is to avoid them entirely is impractical.

Pretty much what Max Norris said. When your using Windows, you are targeted and so you need to address that. I wouldn't install an anti-virus suite because they're not worth the hassle. To be honest, I consider it *too late* by the time your anti-virus solution has actually found something. Instead I would:

  • Ensure that Windows Update is switched on
  • Uninstall Java
  • Either keep Flash up to date or use IE or Chrome's built-in version of Flash
  • Consider a sandbox technology (I use Sandboxie personally) for the times when you don't fully trust software

Think about this: When was the last time you heard of a major Windows virus / worm and any of the anti-virus companies said "Yes!  We caught that before it affected our customers!"

Uninstall Java

You may as well uninstall dotNET while you're at it. Every piece of software on a system is a potential security threat if it isn't kept up-to-date. Take a look at your next Windows update and note how many vulnerability fixes there are for dotNET.That will give you an idea of the risks of out-of-date software. This is why a good package manager is essential to system security.

I'd also add that running a VM is an option but I think it's more important to have an environment that you can discard trivially. I used to use a VM solution that had the option to essentially commit or discard changes at the end of a session and I would always choose discard.

 

Sandboxie offers a separation facility but runs in the same run of Windows so it's more convenient for me. I run Java inside it so that my main installation of Windows does not have any Java functionality visible to the browsers. You can also set it up so that your browser always runs in a sandbox that gets discarded when you close it, meaning that whatever changes are made do not persist. You get the option to keep downloads, obviously.

You may as well uninstall dotNET while you're at it. Every piece of software on a system is a potential security threat if it isn't kept up-to-date. Take a look at your next Windows update and note how many vulnerability fixes there are for dotNET.That will give you an idea of the risks of out-of-date software. This is why a good package manager is essential to system security.

 

Just about every time I've witnessed a successful malware attack, Java has been the attack vector. Seriously, practically nobody needs Java on a Windows machine. It's been a sorry tale of vulnerabilities, fragile update agents and extreme software engineering incompetence.

 

I don't recall ever wondering if my version of .NET was out of date. I haven't used Silverlight for a long time so it's not really relevant to drive-by attacks from the web.

and when using windows explorer, turn on the "show known extension" setting, that would enable you to immediately discern any app/program trying to look like a (fake) folder or documents files.

Any apps that doing that almost positively have malicious intent behind it.

  • Like 2

Just about every time I've witnessed a successful malware attack, Java has been the attack vector. Seriously, practically nobody needs Java on a Windows machine browser.It's been a sorry tale of vulnerabilities, fragile update agents and extreme software engineering incompetence.

 

I don't recall ever wondering if my version of .NET was out of date. I haven't used Silverlight for a long time so it's not really relevant to drive-by attacks from the web.

FTFY.

 

There are quite a few reasons to have it otherwise.

You dont download any files?

What about exploits in sites that attack the OS?

I only download files from trusted sources, and I do not run stupid things.

How can I get stuff onto my computer that attacks the OS?

 

 

My neighbors have had multiple problems in the past, always due to dumbassery

My point exactly.

 

 

I would install at least MSE

I am using Windows 8's Windows Defender, which is MSE. It annoys me because it seems to suddenly hog CPU and memory at random times.

 

 

Totally wrong. Neowin could totally serve up a virus if they were hacked and bad code was put on the website or a malicious ad provider stuck in an Ad with an exploit on it. Happens all the time to other legit sites, heck I think Yahoo had a bad ad and infected 200,000 machines. or was it 2 million?

But I use AdBlockPlus to block malicious ads.

 

You forgot one addon/plugins called "Ghostery"

Ghostery is proprietary. I use Disconnect. The addons I did not list are: request policy, httpseverywhere, httpsfinder, privacy badger, beef taco, betterprivacy, refcontrol, and youtube all html5 (so I don't need flash).

 

 

And who hasn't clicked on a link from a search result to find it's not what you expected? It's easy to run across dodgy/less reputable sites by accident. So to suggest that the only way to be safe is to avoid them entirely is impractical.

But I use WOT, so I know if a link is trustable.

 

 

Just about every time I've witnessed a successful malware attack, Java has been the attack vector. Seriously, practically nobody needs Java on a Windows machine. It's been a sorry tale of vulnerabilities, fragile update agents and extreme software engineering incompetence.

 

I don't recall ever wondering if my version of .NET was out of date. I haven't used Silverlight for a long time so it's not really relevant to drive-by attacks from the web.

I'm not going to uninstall Java because I develop using Java. There are no vulnerabilities in Java itself, it is just when it is used in the browser is when it is unsafe. That's why I disabled it in the browser and why I decompile Java programs and check them before running them.

 

 

and when using windows explorer, turn on the "show known extension" setting, that would enable you to immediately discern any app/program trying to look like a (fake) folder or documents files.

Any apps that doing that almost positively have malicious intent behind it.

Already do that.

 

 

OP, what OS are you running?

I use Windows for gaming, Arch Linux for everything else.

This topic is now closed to further replies.
  • Posts

    • Micron reveals AI companies are spending billions to lock up its memory years in advance by Karthik Mudaliar The demand for more memory is far from over, and Micron is turning the AI-driven memory shortage into a much more predictable business. The company has revealed that it has signed 16 strategic supply agreements backed by roughly $22 billion in customer deposits and other financial commitments. The contracts cover DRAM and NAND deliveries over several years, with some running through 2030. With the AI boom, demand for high-bandwidth memory (HBM) has grown so quickly that large customers are now prepared to help finance future production in exchange for a guaranteed supply. According to Micron’s latest financial results, the company received commitments worth about $22 billion across its new agreements. Around $18 billion is expected to arrive as cash deposits, while the rest will come through other financial arrangements. Micron says the agreements could generate approximately $100 billion in future contracted obligations. They cover around 20% of its expected DRAM shipments and one-third of its NAND shipments during their respective terms. It should be noted that although AI infrastructure is the main force behind the current shortage, not all 16 agreements with Micron involve AI companies. Micron said the customers also include consumer electronics and automotive businesses, two sectors that increasingly compete with data centers for the same manufacturing capacity. HBM is consuming an increasing share of that supply. Unlike conventional desktop or server RAM, HBM stacks multiple memory dies vertically and places them close to an AI accelerator. This gives GPUs and other AI chips access to data at much higher speeds, but it also requires more complicated manufacturing and packaging. Micron says its 12-layer HBM4 memory is now shipping in high volume for a lead customer, with samples also supplied to other companies. The chipmaker has already generated more than $1 billion in HBM4 revenue and says the product is ramping twice as quickly as its earlier HBM3E generation. Samsung has similarly warned that the memory shortage could continue into 2027 and beyond. Consumer memory companies have also had to address sharp increases in DDR5 pricing, suggesting the effects are already reaching beyond the data center. For consumers, that could mean the AI memory crunch lasts longer than expected, even as manufacturers invest heavily in new production.
    • XnConvert 1.112 by Razvan Serea  XnConvert is a cross-platform batch image-converter and resizer with a powerful and ease of use experience. All common picture and graphics formats are supported (i.e. JPG, PNG, TIFF, GIF, Camera RAW, JPEG2000, WebP, OpenEXR) as well as supporting over 500 other image formats. Also available within the batch operations include rotating, adding of watermarks, adding of text along with many image-adjustment features such as brightness, shadows and more. Among the features included are: Batch adding of files and folders Support for drag and drop of files Batch rotating, cropping, resizing and more Adding of photo masks Preserving or removing image metadata in conversions Multipage image file support (i.e animated GIF, APNG, TIFF) Command line integration via NConvert Filters - such as 'Blur', 'Gaussian Blur', 'Emboss', "Sharpen' and much more Effects - such as 'Old camera' and much more Download: XnConvert 64-bit | Standalone | ~30.0 MB (Freeware) Download: XnConvert 32-bit | Standalone Links: XnConvert Website | Screenshot | Release Announcement Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • Microsoft updates Visual Studio Code with chat cost tracking and multi-agent chats by Paul Hill Microsoft has just launched Visual Studio Code 1.126, its latest weekly release. This time, the company has focused on letting you see the total cost of chat sessions to spot expensive conversations; enabling multiple chats per session that run side-by-side in one agent host Copilot session; and letting you browse new folders safely in restricted mode. We have now reached the stage where free AI in IDEs is coming to an end. To help you keep track of your costs, VS Code now lets you see the entire cost of a chat session, rather than just individual turns. This should give you more transparency about which sessions consume the most credits, so you can better manage your usage over time and spend less. For those of you using the Agents window, you know it is possible to run and manage multiple agent sessions at once. In this update, a Copilot session started from an agent host can hold several chats at once. Explaining how this feature works, Microsoft writes: Finally, from this update forward, Microsoft will remove the pop-up when opening an untrusted folder. When you open a new folder now, it will automatically open in Restricted Mode. You will see a banner that lets you manage the trust level of the folder. Microsoft has made this change so that it’s easier to start inspecting code without giving it trust right away. If you have VS Code, you can check for updates within the app now to get this new version. Otherwise, you can download it from the Visual Studio Code website.
    • Anthropic accuses Alibaba of using 25,000 fake accounts to copy Claude's capabilities by Karthik Mudaliar Anthropic has accused Alibaba of using nearly 25,000 fraudulent accounts to extract capabilities from Claude on a huge scale. According to a report from Reuters, Anthropic told US lawmakers that operators linked to Alibaba and the company’s Qwen AI team generated 28.8 million exchanges with Claude between April 22 and June 5, 2026. That is a lot of Claude conversations, but Anthropic says this was not ordinary chatbot use. The company believes the accounts were part of a coordinated effort to collect answers that could help train or improve rival AI systems. The alleged campaign reportedly focused on some of Claude’s most valuable skills, including software development, multi-step reasoning, and agentic tasks. In practical terms, that means getting an AI model to plan and complete work across several stages rather than simply answering a single question. This is called 'distillation,' where AI companies use outputs from a larger model to train a smaller and cheaper one. The smaller model learns to imitate useful parts of the more capable system without needing the same amount of computing power. The distillation process isn't automatically suspicious, but the problem comes when one company gathers another provider's outputs without permission and at an industrial scale. Also, this does not mean Alibaba obtained Claude’s source code, model weights, or original training data. Instead, Anthropic claims the accounts repeatedly asked Claude carefully designed questions and collected the answers. Those answers could then be used as training material for another model. Anthropic has made similar accusations against DeepSeek, Moonshot AI, and MiniMax earlier this year. As Neowin previously reported, Anthropic said those three companies collectively generated more than 16 million Claude exchanges through roughly 24,000 accounts. Anthropic says the new campaign produced almost twice as many exchanges in a matter of weeks. Anthropic reportedly told lawmakers that the campaign could help Chinese AI developers approach the capabilities of its Mythos Preview model. Mythos is focused on advanced cybersecurity work, including finding and exploiting complex software vulnerabilities. via Reuters | Photo via DepositPhotos.com
    • An Indian manufacturer that assembles roughly one-third of Apple's iPhones and supplies semiconductor components to Tesla confirmed Monday that attackers had stolen and publicly published a 630-gigabyte cache of confidential files — including engineering blueprints stamped "TRADE SECRET," a 52-page quality inspection document for iPhone circuit board components, and cryptographic certificates that security experts say could be weaponized in follow-on attacks. https://www.techtimes.com/articles/319019/20260624/apple-tesla-supplier-tata-electronics-confirms-630-gb-data-theft-iphone-specs-dark-web.htm
  • Recent Achievements

    • Rookie
      krychek57 went up a rank
      Rookie
    • Grand Master
      Jaybonaut went up a rank
      Grand Master
    • One Year In
      Philsl earned a badge
      One Year In
    • Dedicated
      Scoobystu earned a badge
      Dedicated
    • First Post
      Tom Schmidt earned a badge
      First Post
  • Popular Contributors

    1. 1
      +primortal
      441
    2. 2
      +Edouard
      176
    3. 3
      PsYcHoKiLLa
      133
    4. 4
      Michael Scrip
      79
    5. 5
      Xenon
      77
  • Tell a friend

    Love Neowin? Tell a friend!