Нашёл на одном пиратском сайте: *** INTRODUCTION ************************ Are you using Internet Explorer? If you do, your real IP can be easily recorded no matter that you use proxies. easier then in any other browser (read below "SPECIAL JAVASCRIPT REPORT") ****************************************** 5 Anonymity Rules (beginers please read or you will probably go in jail sometime in future - cops will not knock on your door just right after you download a file, so be anonymized all the time as you can) For secure download/upload/surf, you must complete ALL 5 rules below: 1. disable JAVA (for all browsers) 2. disable JAVASCRIPT (in Internet Explorer javascript is called 'active scripting', so disable: 'active scripting', 'activex', 'Microsoft VM', 'play videos', 'play sounds', 'play animations'. check for all this in security and in advanced IE options - find them all, some are in both tabs) 3. install good firewall+antivirus (check Comodo firewall and Avast antivirus, all free and top quality by recent testings). within firewall, block media players contacting internet directly. do not let firewall to set automatic rules for applications - set firewall to manual mode so firewall always ask you what to do when some application want internet connection (block which you don't know or search more info for the file requesting net communication). set permanent firewall rules ONLY for direction+port to which you are 100% sure is ok. (upd 25/12): 4. THIS IS VERY IMPORTANT RULE: disable browser plugins by deleting their dll files from browsers' plugin. Most dangerous are: ActiveX (Netscape users delete file 'npmozax.dll'), shockwave/flash plugin and media player plugins. Be sure what you are deleting! This plugins are EXTREMLY DANGEROUS because they do not use your browser proxy settings (!!!!!!) and if you haven't set your firewall correctly, they will automaticaly contact destination site directly revealing your real IP to the destination server which will log your real IP. To check which plugin uses which dll file, type 'about:plugins' in your browser address line (this is for most browsers, if not working, check browser's help) 5. set proxy in your browser and change it at least everyday (NOTE: set proxies for all protocols, including HTTPS!) - and each time you change proxy, test your proxy anonymity level. some proxies are useless because they pass originating user IP. if you are tired of finding and changing proxy each day, read below "internet traffic encryption" 6th rule? Well, protection you are getting from above 5 rules is ok, but your internet provider can see all your internet traffic you are sending&receiving in the same way you are seeing it on your pc. this is not a big security problem UNLESS you are contacting sites that are under police surveillance. What will happen later is that your local police will be mailed about your IP and material your downloaded from monitored sites, and then based on that your local police will easily get court order to make your internet provider to start loging all your internet traffic (in some countries internet providers must by the law, log internet traffic for ALL users for the past few months). To solve this problem as much as possible your need to encrypt internet traffic between your modem and destination site. To do this, check below "internet encryption solutions". *** SPECIAL JAVASCRIPT REPORT (truths and myths) ***************************** Myths : 1. Many people thinks that JAVA is short name for JAVASCRIPT. It is not. JAVA is cross platform application that is running localy on your PC, same as any other application. 2. Many people thinks that javascript is dangerous, but thats a myth. Many people say this because it is easier (and better) to have all 'switches' off then to spend hours and hours examining each 'switch' function. Well, I spent lots of hours. And the truth about javascript is: 1. Javascript by itself is not dangerous at all, because it can not manipulate with your hard drive files in any way (except by starting plugins, check above rule #4). 2. But why javascript become so mythologicaly dangerous is because Microsoft included in Internet Explorer's javascript version a support for activeX. this is ULTIMATE SECURITY PROBLEM. There are no javascript commands to manipulate your local pc files, but activeX can do anything with your pc !!!! So, if you are using Internet Explorer, stop using it right now (NOW!). Or if you are IE addicted, check rule #2. Since many file hosting servers require javascript (usually for ads), so to avoid enabling javascript in any browser and safely download files from those servers, simply use file hosting downloaders like: "Ultra Share Downloader" or "RapGet" and set proxy in those programs too. Those auto downloaders do not execute javascript codings like browsers do, they just extract file url from the page code so you won't be in danger (set good proxy that does not send originating user IP and you can download safely). **************************************** When you have finaly completed all above 5 anonymity rules, check your ANONYMITY LEVEL (some low level anonymity proxies passes your real IP so check it!) : tools-on.net/privacy.shtml * Click on 'GO' and if you can find your real IP there, DO NOT DOWNLOAD ANYTHING, because server admins will BOOK YOUR IP and send it later to cops. they MUST DO THAT !!!! THATS how cops "DISCOVER" international porn and soft rings after "so difficult and long planned actions" - they actually do nothing - much easier then risking to take drug dealer's bullets. Remember: Forum messaging is not an evidence, but file + your IP number is a hard download/possesion evidence !!!! *********************************************** **** Internet Traffic Encryption **** (public & commercial) ******************************** * encryption is important because your ISP can record your traffic (cops can easily get court orders by using magical two letter word: CP) www.findnot.com www.metropipe.net/tunneler_gold.php www.tenebril.com/consumer/ghostsurf www.cryptotunnel.com (suggest if you have more) Free do-it-yourself solutions: tor.eff.org (public internet traffic encryption through multi-node-proxy solution) www.proxyblind.org (security forum) =========================== I am not affiliated with any site mentioned. Please suggest other solution providers. ===========================