<?xml version="1.0" encoding="UTF-8"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>Re: Microsoft&#x27;s Solution in </title>
<link>http://www.dslreports.com/forum/r9086479</link>
<description></description>
<language>en</language>
<pubDate>Thu, 26 Nov 2009 16:03:59 EDT</pubDate>
<lastBuildDate>Thu, 26 Nov 2009 16:03:59 EDT</lastBuildDate>

<item>
<title>Re: Microsoft&#x27;s Solution</title>
<link>http://www.dslreports.com/forum/remark,9087255</link>
<description><![CDATA[<A HREF="/useremail/u/464721"><b>Morac</b></A> :  <BLOCKQUOTE><SMALL>said by  Omega <A HREF="/useremail/u/665836"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>:</SMALL><HR>The way I do it is just look at the status bar at the bottom of IE.  It shows you the true link. <HR></BLOCKQUOTE><br>There's a very easy way to stop the real address from showing up in the status bar.  Just add a NULL character (%00) after the %01 character in the URL.  Then the fake URL will show in the status bar.<br><br>Or use scripting to obscure it.<br><br>Either way, looking at the status bar doesn't guarantee you're going to a real site.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,9087255</guid>
<pubDate>Thu, 15 Jan 2004 13:35:00 EDT</pubDate>
</item>

<item>
<title>Re: Microsoft&#x27;s Solution</title>
<link>http://www.dslreports.com/forum/remark,9087157</link>
<description><![CDATA[<A HREF="/useremail/u/679926"><b>ParanoiaInc</b></A> : True, but for those in a rush this is still a major problem when the fake links start infecting search engines.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,9087157</guid>
<pubDate>Thu, 15 Jan 2004 13:24:31 EDT</pubDate>
</item>

<item>
<title>Re: Microsoft&#x27;s Solution</title>
<link>http://www.dslreports.com/forum/remark,9086479</link>
<description><![CDATA[<A HREF="/useremail/u/665836"><b>Omega</b></A> : The way I do it is just look at the status bar at the bottom of IE.  It shows you the true link.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,9086479</guid>
<pubDate>Thu, 15 Jan 2004 12:11:57 EDT</pubDate>
</item>

<item>
<title>Re: Microsoft&#x27;s Solution</title>
<link>http://www.dslreports.com/forum/remark,9085473</link>
<description><![CDATA[<A HREF="/useremail/u/428757"><b>mastermind278</b></A> : My solution seems to be stop using IE, or let Mcafee catch it for me. <br><SMALL>--<br>Mastermind 4 Life ® ™ ©</SMALL><div class="borderless"><TABLE WIDTH=95% align=center border=0 CELLPADDING=4"><TR><TD ALIGN=CENTER VALIGN=CENTER BGCOLOR=#000000 nwrap COLSPAN=3 WIDTH=100%><A HREF="/speak/slideshow/9085473?c=511218&ret=L2ZvcnVtL3I5MDg2NDc5LnhtbA%3D%3D"><IMG class="apic" BORDER=0 TITLE="50302 bytes" WIDTH=600 HEIGHT=292 SRC="/r0/download/511218.thumb600~909562292d524b146db14d8b52d771d4/Trojan.JPG/thumb.jpg" ALT="Click for full size"></A></TD></TABLE></div>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,9085473</guid>
<pubDate>Thu, 15 Jan 2004 10:00:10 EDT</pubDate>
</item>

<item>
<title>Re: Microsoft&#x27;s Solution</title>
<link>http://www.dslreports.com/forum/remark,9085402</link>
<description><![CDATA[<A HREF="/useremail/u/643203"><b>SpyderWoman</b></A> : Talk about an "educate the user" problem!!  Microsoft's recommendation begins with:<br>"Verify that there is a lock icon in the lower right Status bar and verify the name of the server that provides the page that you are viewing before you type any personal or sensitive information."<br><br>Well, it's already been demonstrated in our Security forum that the lock can be spoofed.  So that's not a safe indicator.  The Microsoft article goes on to say to then right click on the lock symbol and check the source of the digital signature.  I'm not certain but what that couldn't be spoofed up or obfuscated enough to confuse most users.<br><br>Most of the people "falling" for these phishing expeditions do not have the knowledge available right here in this forum: they are trusting their email to be a "what you see is what you get" thing, and while you and I know it's not that way, they don't.<br><br>Does anyone really think that the general public is going to get that boned up on this stuff?  Heck, 90% of them never heard the simple guideline: "most legitimate businesses won't even ask you to update over the internet via email" much less the stronger guideline "when in doubt, don't until after YOU VERIFY either by email or phone call, that the request is legitimate".]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,9085402</guid>
<pubDate>Thu, 15 Jan 2004 09:50:10 EDT</pubDate>
</item>

<item>
<title>Microsoft&#x27;s Solution</title>
<link>http://www.dslreports.com/forum/remark,9085339</link>
<description><![CDATA[<A HREF="/useremail/u/464721"><b>Morac</b></A> : "The most effective step that you can take to help protect yourself from malicious hyperlinks is not to click them.  Rather, type the URL of your intended destination in the address bar yourself." - &raquo;<A HREF="http://support.microsoft.com/default.aspx?scid=kb;[LN];833786" >support.microsoft.com/default.as&middot;&middot;&middot;];833786</A>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,9085339</guid>
<pubDate>Thu, 15 Jan 2004 09:42:21 EDT</pubDate>
</item>

</channel>
</rss>
