Archive for December, 2005

Disinfecting a PC… part 11

Saturday, December 24th, 2005

All in all, what I’ve documented was a bit over three hours worth of attention to the machine (much more for the full scans, but I didn’t have to stand and watch them.) I didn’t document a sidetrip to a second antivirus scanner. It’s nice to see a system cleaned up that had been so […]

Network administration over the holidays

Saturday, December 24th, 2005

Nobody wants to be tied to their job over the holidays, but what if someone has hacked your servers and is using your machine to scam thousands of people a day? Does that keep for two weeks? Does someone monitor the abuse address? Incidents.org has a post on messages they’ve got from some reporting to […]

Linux php-exploit bot

Friday, December 23rd, 2005

Incidents.org writes to remind as that bot’s aren’t just for Windows. The recent PHP exploits have seen the use of the “kaiten” bot. After infection on the system it connects to an IRC server. It would primarily target linux systems. They do give a very good way to blunt most Linux bot-style malwares…    Send […]

The 2nd journey begins… Mandriva 2006 upgrade 2 – Part 10

Friday, December 23rd, 2005

I think it’s time to wrap things up. The KDE start new session option is back after the changes I mentioned to the /etc/kde/kdm/kdmrc file I mentioned in a previous post. There are no outstanding issues from the upgrade. (I need to adjust the font sizes down a bit, but that’s not a big deal.) […]

Category Restructuring

Friday, December 23rd, 2005

I’ll likely be adding a few more categories to better be able to organize my posts. When I started out with this format, I thought nested categories were a good idea. After seeing them in practice, I’m thinking I may wind up renaming some existing categories so that things maybe will make a bit more […]

Network Security guide for the home or small business network – Part 11 – Why?

Friday, December 23rd, 2005

Alright, so you’re still reading this series and you’re thinking. Look, I’m not protecting national security secrets. All I’m doing is (running a business|emailing my grandkids|using the web for research). True, good point. You’re not at the defense department. OK. Let’s say you just use your computer for email and web browsing. That’s low priority […]

Disinfecting a PC… part 10

Friday, December 23rd, 2005

Before I get things wrapped up, I like to scan rinse and repeat until the scans come up clean. So, this scan of AVG gives a chance to delete the archive entry I mentioned the first pass it took. And spybot get’s updated from the internet and re-runs. All looks clean there… Ad-aware get’s an […]

Giving the gift of PC security

Thursday, December 22nd, 2005

Brian Krebs at the securityfix has a good article for those that are getting a new pc for Christmas (or those that know someone who is.) He has a nice outline of setting up limited privilege user accounts, installing windows updates, using a firewall and using antivirus. This is a nice concise guide to get […]

More on the Santa IM worm

Thursday, December 22nd, 2005

There are a couple of stories out about the Santa IM worm, otherwise known as IM.GiftCom.All. First up Sans has some interesting analysis of it. It appears that it’s being hosted at 69.56.129.67, when run it resolves smtp.girlsontheblock.com to 38.118.133.241 and attempts to open tcp port 53. It renames itself as c:\windows\winrpc.exe and sets up […]

Quicktime and iTunes vulnerabilities

Thursday, December 22nd, 2005

Details of a vulnerability in Apple’s Quicktime and iTunes reported at betanews.com. Secunia also has an advisory. It is listed as moderately critical and affects the current version of both quicktime and itunes on Mac or Windows.    Send article as PDF   

Google
 
Web www.averyjparker.com