You are right about Java and Javascript. My default in ZA is to block anything in a webpage, cookies, ads, Java, everything except JavaScript. The danger from JavaScript is minimal, except for the irritating use by ad folk. I prevent these extensions from running: .HTA, .HTW, .IDA, .IDC, .IDG, .JS, .JSCRIPT, .JSE, .PRINTER, .SHA, .SHB, .SHS, .SHS, .VBA, .VBE, .VBS, .WSC, .WSF, .WSH. Ray and some of you have been around a long time in computer years and know that some of these extensions are almost extinct. I do have a paranoid list. It is over the top.
These are my individual dangers: ants3set.exe BadGirl.exe blanca de nieve.exe Boss Game.exe Boy and Girl.exe Cheat.exe Choose Games.exe Click Me.exe DVLDR32.EXE dwarf4you.exe enano porno.exe explorer.doc GoodGame.exe Happy New Year.exe Happy.exe happy99.exe Krnl132.exe life_stages.txt.shs links.vbs love-letter-for-you.htm love-letter-for-you.txt.vbs Make More Money.exe Merry.exe movie.avi.pif MP3.exe Music.exe My Letter.exe My Picture.exe My Resume.exe network.vbs PenHouse.exe PlayBoy.exe pretty park.exe prettypark.exe Question.exe sample.exe scam32.exe Sex Picture.exe sexy virgin.scr sirc32.exe south park.exe TEEKIDS.EXE True or False.exe tune.vbs winext.exe zipped_files.exe
Scripts can do mostly mild malicious things and some malicious things. Some of the baddies that ScripTrap, ScriptSentry, and others are not scripts but common and easy things to use. They basically protect you from script kiddies. If Ray were evil the internet would be in danger. He really belongs on the podium with John Barlow, Zimmerman, Bruce Cogswell, Gizmo Richards, and other almost saints. I don't believe in saints. You basically need router/firewall, software firewall, antivirus, antiTrojan, a couple of antispyware, one antirootkit, and a HIPS. Actually the last has been improved upon with CIPS. |