Exchange and Spam
Hello, Im a new exchange server user, y notice that in my Microsoft Outlook appear a new folder name SPAM, some people told me that the Exchange Server 2003, have a permanent comunicacion with spme pages in the internet were are publish the black list domains. Weel my doubt is if this is true, and if its, how many times that the server updates in a day
Please excuse my poor english, I`m practicen, I hope some could answer my doubts. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54526
msn messenger
i am having problems signing on to the msn messenger it tells me that there may be prblems with the server,or that my password or screen name is incorrect, or that my connections are in correct now i have checked my connections many times and they are correct and i retype my screen name and password many times and i still can't sign on please tell me what is the problem it cant be my connections because i could sign on to yahoo and aol perfectly i only have problems with msn please let me know what is the problem Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54524
Windows Special Security Groups
Not sure if this is the right group but ... Im trying to
get an idea on what the 'SELF' group is in active
directory. I am making a Distribution list in active
directory and i want everyone who is a member of the DL
to be able to send mail as the group. I thought 'self'
might work for this but such is not the case. Is there a
group that can do this?
Thanks,
Roy Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54522
Microsoft Security Bulletins for June 2004
June 8, 2004
Today Microsoft released the following Security Bulletins.
Note: www.microsoft.com/technet/security and www.microsoft.com/security are
authoritative in all matters concerning Microsoft Security Bulletins! ANY
e-mail, web board or newsgroup posting (including this one) should be
verified by visiting these sites for official information. Microsoft never
sends security or other updates as attachments. These updates must be
downloaded from the microsoft.com download center or Windows Update. See the
individual bulletins for details.
Because some malicious messages attempt to masquerade as official Microsoft
security notices, it is recommended that you physically type the URLs into
your web browser and not click on the hyperlinks provided.
Bulletin Summaries:
Microsoft: http://www.microsoft.com/technet/security/Bulletin/ms04-jun.mspx
Moderate Bulletins:
MS04-016 - Vulnerability in DirectPlay Could Allow Denial of Service
(839643)
http://www.microsoft.com/technet/security/Bulletin/MS04-016.mspx
MS04-017 - Vulnerability in Crystal Reports Web Viewer Could Allow
Information Disclosure and Denial of Service (842689)
http://www.microsoft.com/technet/security/Bulletin/MS04-017.mspx
This represents our regularly scheduled monthly bulletin release (second
Tuesday of each month). Please note that Microsoft may release bulletins out
side of this schedule if we determine the need to do so.
If you have any questions regarding the patch or its implementation after
reading the above listed bulletin you should contact Product Support
Services in the United States at 1-866-PCSafety (1-866-727-2338).
International customers should contact their local subsidiary.
--
Regards,
Jerry Bryant - MCSE, MCDBA
Microsoft IT Communities
Get Secure! www.microsoft.com/security
This posting is provided "AS IS" with no warranties, and confers no rights. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54518
KHOOKER.EXE
I was looking at my task manager (XP Pro) and this file
was on the list of processes. can anyone tell me more
about this file? Is this a virus of some sorts?
Thx
JR Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54516
Spam
I'm getting spam from my own email address(!?) that shows
up as me as the sender but in the properties another name
is stated in the From: textbox!!! Also the times and dates
are spoofed!
See the Internet Header from the Message Options below.
Any suggestion on what is going on or how to stop this?
/Adde
Message Options
Internet Headers
"
Microsoft Mail Internet Headers Version 2.0
Received: from my.exchange.server.ip ([61.163.45.201]) by
my.domain-name.com with Microsoft SMTPSVC(5.0.2195.6713);
Mon, 7 Jun 2004 19:24:27 -0700
X-Message-Info: 3QJU735AYSppgax6ksWgnTHO492BQ63fwcOCSwCS982
Received: from tirade7porchhappenstance (91.89.032.45) by
mail457.my-email@domain-name.com (Bluewin AG 9.1.212)
id 13472MY0TQJW19TPS87376 for my-email@domain-
name.com; Sat, 12 Jun 2004 05:29:25 +0600
Message-ID: <9338754862.35859@my-email@domain-name.com>
Reply-To: "Kip Clayton" <my-email@domain-name.com>
From: "Kip Clayton" my-email@domain-name.com (the From
name is a random name followed by my email address!)
To: "my-name" <my-email@domain-name.com>
Subject: auriga lagrangian
Date: Fri, 11 Jun 2004 17:35:25 -0600
MIME-Version: 1.0
Content-Type: multipart/alternative;
boundary="--=_94rdEWBVUy4d8p"
Return-Path: my-email@domain-name.com
X-OriginalArrivalTime: 08 Jun 2004 02:24:31.0261 (UTC)
FILETIME=[BB19ACD0:01C44CFF]
----=_94rdEWBVUy4d8p
Content-Type: text/html;
charset="iso-0130-7"
Content-Transfer-Encoding: 7Bit
----=_94rdEWBVUy4d8p-
" Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54513
securing folder on external disk(s)
I have an external (firewire) disk (60GB) which I use daily
between my home-
and the office-computer. Both computers run Win2000.
I have tried to encrypt the data and add user rights, but using
other computers this is easy to change once logged in as
administrator on a third party Win2k computer.
What is the best way of securing access to this (firewire) disk
(or directories) such that if I loose it "no one" can have (easy)
access to it?
Many thanks
--
Zen Andreas Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54509
Certificates
Hi; I would like to know what is a certificate? should I have one? how do I get one? and what is the Pro and Con for having one? Thanks Terry Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54504
** READ THIS BEFORE POSTING - answers to frequently asked questions 2004.06.08
Before you post a question to a Microsoft.public.*.security newsgroup, note
that your question may already be answered below:
Answers to Top Frequently Asked Questions:
http://securityadmin.info
I'm getting an LSASS error message, and/or I have the Sasser virus.
1) Run anti-virus that is configured to download the latest updates every
week or even every day. www.grisoft.com is free anti-virus.
2) You also need to install all the patches for your system software from
http://windowsupdate.microsoft.com, starting with the MS04-011 patch.
Microsoft generally releases security patches on the second Tuesday of more
or less every month. [Theh MS04-011 patch is also available here:
http://www.microsoft.com/technet/security/bulletin/ms04-011.mspx
... though you still want to visit the Windows Update site to get all
patches.]
3) Once you're infected, you may need to download and run a free Sasser
virus removal tool such as the Stinger tool from www.McAfee.com or the free
tool from http://www.microsoft.com/security/incident/sasser.asp
4) You're not running a firewall, or your firewall isn't protecting you.
Running a firewall would have protected you from this. Free firewall
software is available from www.kerio.com, www.zonealarm.com and/or
www.sygate.com
5) You need to do ALL of these things, or you won't have much success.
You should also make sure you get the latest Microsoft patches monthly and
anti-virus updates at least weekly.
My question is not mentioned below. How do I get an answer immediately,
with no waiting?
http://securityadmin.info/faq.htm#moreinfo
See also: http://www.google.com/groups?as_ugroup=microsoft.public.*
See also: http://www.google.com/advanced_group_search
See also: http://www.google.com
I want to post a problem or question to the newsgroup. What info do I need
to post in order to get a correct answer quickly?
http://securityadmin.info/faq.htm#netiquette
I just heard about a new Microsoft security patch update. Where can I get
the patch?
http://windowsupdate.microsoft.com OR
http://www.microsoft.com/technet/security/current.asp
I just installed a Microsoft security patch update, and now my computer is
having problems.
http://securityadmin.info/faq.htm#patchbroke
I received an email from Microsoft / Microsoft Support / Microsoft Internet
Security Center claiming to be a security patch [or comprehensive Internet
Explorer update]. Is this a virus?
http://securityadmin.info/faq.htm#microsoftemail
ALSO NOTE: www.grisoft.com is free antivirus, USE IT.
I received a virus email from a Microsoft email address. Who do I report
this to?
http://securityadmin.info/faq.htm#microsoftemail
I have the RPC Blaster worm "virus," what do I do?
http://www.microsoft.com/security/incident/blast.asp
ALSO NOTE: www.grisoft.com is free antivirus, USE IT.
My computer is giving RPC Remote Procedure Call messages.
There is a TFTP message or file on my computer.
My computer keeps locking up, and/or rebooting, or telling me that it will
reboot in 1 minute.
http://www.microsoft.com/security/incident/blast.asp
ALSO NOTE: www.grisoft.com is free antivirus, USE IT.
Where can I download the Blaster worm / RPC DCOM patch?
http://windowsupdate.microsoft.com OR
http://www.microsoft.com/technet/security/current.asp
I'm having a problem caused by the JDBGMGR.EXE Teddy Bear "virus" hoax, or I
want to replace this file.
http://securityadmin.info/faq.htm#jdbgmgr
I forgot my Windows logon password and can't log in. How do I reset it?
http://securityadmin.info/faq.htm#password
I have a problem or a question with a virus or with antivirus.
http://securityadmin.info/faq.htm#virus
NOTE: www.grisoft.com is free antivirus, USE IT.
Why is Outlook Express blocking my attachments as "unsafe"?
http://securityadmin.info/faq.htm#attachments
How do I stop getting pop-up messages? Or adware? Or spyware?
http://securityadmin.info/faq.htm#pop-ups
How do I block people from viewing adult or objectionable content on a
computer?
http://securityadmin.info/faq.htm#contentfilter
How do I block spam emails?
http://securityadmin.info/faq.htm#spam
There is a Content Advisor password blocking me from certain web sites.
http://securityadmin.info/faq.htm#contentadvisor
How do I delete an FTP folder that a hacker put on my computer and I cannot
delete?
http://securityadmin.info/faq.htm#ftpfolder
Have I been hacked? What do I do if I've been hacked?
http://securityadmin.info/faq.htm#hacked
How do I re-secure a computer that has been hacked?
http://securityadmin.info/faq.htm#re-secure
How do I test or improve the security on my computer to avoid being hacked?
http://securityadmin.info/faq.htm#harden
How do I investigate a suspicious IP address that may be trying to hack me?
http://securityadmin.info/faq.htm#trace
How do I report a hacker?
http://securityadmin.info/faq.htm#reporthacker
How do I use a port scanner or vulnerability scanner to test my security?
http://securityadmin.info/faq.htm#portscanner
How do I encrypt my files and/or hard drive?
http://securityadmin.info/faq.htm#encryption
How do I get a firewall? IDS?
http://securityadmin.info/faq.htm#firewall
I want to use the IPSec filtering or IP filtering feature of Windows to
block certain ports and have a problem or question.
http://securityadmin.info/faq.htm#ipsec
I have a problem or question with the XP ICF firewall.
http://securityadmin.info/faq.htm#icf
I have a problem or question with the IIS URLScan tool.
http://securityadmin.info/faq.htm#urlscan
How do I change the banner on my computer or server to hide what software
version I'm using?
http://securityadmin.info/faq.htm#banner
How do I enable Windows Auditing to tell who logged into Windows or who
accessed a file?
http://securityadmin.info/faq.htm#auditing
How do I inspect and disable programs that start up when Windows starts?
http://securityadmin.info/faq.htm#startup
How do I use RUNAS or let someone use RUNAS to run commands as administrator
without having to type the password?
http://securityadmin.info/faq.htm#runas
How do I let non-administrator users run Defrag or change their IP address?
http://securityadmin.info/faq.htm#runas
My question is not mentioned above. How do I get an answer immediately,
with no waiting?
http://securityadmin.info/faq.htm#moreinfo
See also: http://www.google.com/groups?as_ugroup=microsoft.public.*
See also: http://www.google.com/advanced_group_search
See also: http://www.google.com
I want to post a problem or question to the newsgroup. What info do I need
to post in order to get a correct answer quickly?
http://securityadmin.info/faq.htm#netiquette
Note that this is NOT a full list of all the questions answered in the FAQ.
Chances are, your question has probably already been answered. The complete
FAQ is at:
http://securityadmin.info/faq.htm#contents
I hope this is helpful. Feedback, suggestions and criticism regarding the
FAQ are welcome and may be emailed to me.
kind regards,
Karl Levinson, CISSP, MCSE, MVP
email: levinson_k@despammed.com Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54501
MSN messenger WON'T LOG OUT
Hey there. I just installed MSN messenger. I have set the
privacy settings to say that it is a public computer and
to always ask for my password. For some reason, whenever
I click on MSN messenger I am automatically logged in. No
matter what I do. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54497
CAPICOM, getting issuer certificate
Hello everyone,
I have the following problem - I'm receiving a message signed/encrypted with
a certificate on the client, which does not have the certificate's issuer in
the local machine trusted root CA store.
I would like the user to decide whether to accept a message signed by an
untrusted certificate, but I need to add the issuer of this certificate to
the trusted root CA store to get the message processed.
How can I get the issuer of a certificate on the client? Would I have to
download it from the server instead?
Any suggestions are appreciated.
Kiril Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54495
PKI + S/mime problem...
hi to you all... my situation is like this
i'm going to implement a fully operational S/mime + PKI infrastructure. i'm going to use the digital signature, as well the encrypted mail option. the thing is, that i need for legal avidance, to reroute all the mail in the organization, to a public folder, that a legal advisor could read all the mail running threw the organization. how could he do this, if he dosent have the private keys of all the users?(if solved can cause a non-repudation problem?...). the recovery agent option has very little documentation, and the solution is very complex to implement for such a reason... any suggestion Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54488
Trend Micro
Whenever I try to run the free online scan of Trend Micro,
a box appears on the screen indicating a problem encounter
and the page gets closed. Anyone knows why it happens so?
Is this related to the explorer settings? Then how to set
this right? Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54486
Fport on W2K3?
does Fport work for anyone on W2K3
http://www.foundstone.com/index.htm?subnav=resources/navigation.htm&subcontent=/resources/intrusion_detection.ht
(only output I get is header line) Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54483
what HIDS to use?
any free Host intrusion Detection System (a.k.a Integrity Monitoring System) to use for Windows
one option is Osiris (http://osiris.schmo.com) any experience with this and/or any other free hids for windows Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54481
unable to connect to exchange 2000 server from Outlook Clients
This is a weird one. Has anyone ever experienced this?
I have Exchange 2000 server running. Suddenly this morning, NONE of the
outlook clients (Outlook 2000 and XP) from all workstation are able to logon
to the Exchange server. The logon box keeps popping up like you're not
authenticated to the domain. When I manually enter the the user id,
password, and domain info this is the error message I get: "Your logon
information was incorrect. Check your username and domain, then type your
password again..."
However, I am already successfully logged onto the domain and am able to
access all network resources, except Exchange.
So I'm thinking that maybe it a MAPI issue. However, I am able to go to a
workstation, logon as the administrator, create a outlook profile, and am
able to access the mailbox with no authentication issues. But if I logon as
another user on the same workstation, I can't successfully authentication
with Outlook.
It seems like a permission issue, so I even tried giving a user as a member
of the admins group, but that didn't help.
Virus scan also comes clean.
Any suggestions? Would sure appreciate it. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54480
explorer dl.html windows freeze?!
HELP
After 25-30 min. on-line windows millenium explorer
version 6 windows named "C:\windows\dl.html\ - microsoft
internet explorer" cascade until my computer freezes! I
have run Adaware 6, Spybot Search & Destroy, and
CWShredder and nothing helps. What is this and what do I
do? Mcuh thanks for info. and help...
Mark B. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54474
iexplore still runs when it's shut seems to be opening for popups
Like the title says iexplore still runs when it's shut down and seems to be
opening for popups. I'm trying to fix a system for a friend who is not a
computer person and who had so much garbage on her system it should be the
Guinness book of world records. It's 95% better. She is running Norton AV
and Zonealarm Basic. I installed Spybot S&D and Ad-aware. Did aggressive
scans and removed 1000's of things. BUT, this iexplore thing is weird. You
shut everything down......you still see occasional popups. If you go to the
task manager there is still an iexplore running. You shut it down and all
the popups go poof.....gone. This iexplore running in the background also
seems to sometimes interfere will running iexplore when you want it to. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54472
Deny group access, Allow specific group members
I have a shared folder, which I want to deny write access
to a specific workgroup of about 250 users. However, at
the same time, I need to grant write access to 5 of the
members in this group.
How can I do this without removing these 5 members from
the workgroup?
Thanks.
John. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54469
Windows Messenger Virus??
Once I go online on my computer and see a prop-up Windows
Messenger message saying that "A newer version of
messenger is availabe. You MUST download in order to
continue" and with buttons for action.
I suspect this is something virus; does anyone know of
such instant message? Any advice and thoughts? Thanks. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54465
integrity monitoring
Can anyone recommend/know of a free host integrity monitoring systems? The free version of Tripwire is for Linux only (tripwire.org). OSIRIS is free for Windows but I'm wondering is there are any others. Can anyone comment on Orisis? (http://osiris.shmoo.com) Thanks! Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54463
how to close ports
Nessus tells me to close ports on my XPHE and W3K3 boxes, including specificying registry settings to do so. I am a newbie to the registry. Can anyone point me to a quality document/book for learning how the registry works and how to use it, AND how to close/open TCP/UDP ports, and disable/enable associated services on XPHE and W2K3 machines? Thanks! Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54457
SmartCard-based security software
Hello Group,
I am looking for a smartcard-based security software. Features should be
like boot protection and file encryption. I am running Windows 98 and and an
o2micro pcmcia smartcard reader.
Thanx,
Christian Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54452
symproxysvc.exe uses 99% cpu time
Recently, there was an Internet Explorer Script Error
(Expected ',' Code 0) shown on my PC for each clicking on
new web page. Then I renewed my Norton Internet Security
(2002) subscription. The Script Error seems to be
stopped; but it took a long time (3-5 mins.) to open the
new page.
Checking the Task Manager I found a 'symproxysvc.exe'
task, run by system, always used 99% of cpu time. The
process can be ended, but was reactivated when clicking
the IE browser. Therefore, I disabled the Norton Internet
Security to find out that IE worked perfectly without the
script error and the 'symproxysvc.exe' is not running.
What is the problem? How to solve it? TIA. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54451
How Force a user to use a token or a smart card to logon to his computer ?
How it is possible to force the access to the Windows environment only using
a USB key or a smart card ?
It is to force a user laptop to use a token or a smart card, then inside or
outside his office.
Thanks in advance.
Eric Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54450
router log
hi,
what does this log entry mean;
2004/06/07 00:40:10 ** Unauthorized HTTP Access **
<IP/TCP> 222.144.85.173:4821 ->>
a whois search says this;
Whois:
Final results obtained from whois.nic.ad.jp.
Results:
[ JPNIC & JPRS database provides information on network
administration. Its ]
[ use is restricted to network administration purposes.
For further infor- ]
[ mation, use 'whois -h whois.nic.ad.jp help'. To
suppress Japanese output, ]
[ add'/e' at the end of command, e.g. 'whois -h
whois.nic.ad.jp xxx/e'. ]
Network Information:
a. [Network Number] 222.144.0.0-222.144.255.0
b. [Network Name] OCN
g. [Organization] Open Computer Network
m. [Administrative Contact] AY1361JP
n. [Technical Contact] MO081JP
n. [Technical Contact] KK551JP
n. [Technical Contact] IM657JP
p. [Nameserver] ns-kg001.ocn.ad.jp
p. [Nameserver] ns-kn001.ocn.ad.jp
y. [Reply Mail] db-admin@ocn.ad.jp
[Assigned Date] 2003/11/28
[Return Date]
[Last Update] 2003/11/28 14:02:11 (JST)
ip-alloc@nic.ad.jp
I have other searchs of different ip's that are from
china and germany. I think this is only the service
provider. Is someone using my ip address for spam or
phishing? Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54438
password autofill
How do I change the settings on my webbrowser (Explorer
6.0) so that the password will autofill when the username
is entered? Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54434
MD5-Challenge on winXP service pack 1
Hi, i recently installed an AP that has IEEE 802.1x in it
and also it has RADUIS server built-in. The AP only
supports EAP-MD5 Challenge protocol, while winXP SP1 only
support MS-CHAPv2. How do i install the EAP-MD5 Challenge
protocol on winXP SP1? the AP setting are correct. i know
this because i tried using other client - odyssey client
manager (demo for 30days) and uses MD5 challenge protocol
and everything running smoothly. So the only problem is
that i want to use WinXP so i don;t need to pay for the
client. plese help. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54432
WINDOWS/SYSTEM32/drvddll.exe
Hi EVERYBODY
Does anaybody know what this message of alert means :
"drvddll.exe try to connect to internet"
programme : c/windows/system32/drvddll.exe
tcp (sortant)
I'M QUITE ANXIOUS ABOUT THAT - THANKES IN ADVANCE
Isabelle Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54418
NTFS Convert
I converted my C: Drive from Fat32 to NTFS. I now have
major problems with the computer freezing and not
allowing me to continue. I have to restart the computer
and everything is fine until it freezes again, can anyone
help??
Thanks
Shawn Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54417
Spam
does anyone know a free tool to block spam'Lockspam was
free, now they have put 30day limit,,,,,it is good though
any ideas, and easy to use Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54416
Network Information Centres and Spammer tracking....
ok i once read on a tech forum that spammers and hackers can be tracked down by the help of Network Information Centres like APNIC... but what puzzles me most is that i know only the mail address of the spammer... how can i find his IP in order to take action against such individual/group? Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54413
Firewall
Having nothing but troubles with the new 5.0 version of
ZoneAlarm Pro. Considering other alternatives. Anyone
had experience with Tiny Personal Firewall and care to
share your thoughts?
Thanks! Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54405
I am having some spyware problems...HELP please!
First off I have Windows XP Pro and I have the messenger disabled in
services. I also have the most current up to date version of Norton
Anti-Virus/Internet Security.
I clicked on some site and and it was trying to install something and
I kept trying to close it so I had to do it using the taskmanger. Now
all these pop-ups keep coming up: "Welcome to the System Performance
Wizard", "Spyware Detected" which all say to click here for software
that can get rid of it (yeah right). There is even one pop-up that
says "Attention" in the header and the body of the pop-up has cartoons
of bugs in different sexual positions!
Also my IE's default homepage has been changed to a site that says
"about:blank" in the URL bar and when I launch IE more of these
pop-ups come up.
Any ideas???? Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54399
Web pages
I had to reformat because of system error, now I cant get
back in American Singles WEb page. Ive put my IE6 security
settings all on Default and my zonealarm on the same
settings as before I reformatted. Can anyone please tell
me what is stopping this web page from working. I type in
my password/login name and it reverts back to the main
page again, it wont let me in. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54391
PLEASE READ: Microsoft policy regarding patch distribution
I keep seeing this question come up over and over again, so I thought I'd
post a reminder message.
+-----------------------------------------------------+
| Microsoft NEVER distributes patches through e-mail. |
+-----------------------------------------------------+
If you ever receive an email with an attachment and it claims to come from
us, delete it. (Or, forward to secure@microsoft.com.) No matter how
official-looking it might appear, I promise you it is a forgery.
Furthermore, if you are enticed to click a link to download a patch,
scrutinize the link closely. If you see an "@" in the link, then again you
are reading a false message. Someone has crafted a link to look like it's on
microsoft.com, when in fact the destination site will be whatever's *after*
the "@". So again, delete it or forward it to us.
Steve
steriley@microsoft.com Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54386
Spybot message:"DSO EXPLOIT: There is a security hole.....
I see some reassuring responses from "Sandi" and "Saljaline." I hate to make you respond once again to the same brush fire as you say, but I really want my mom to be reassured that she is really safe. She is a senior citizen who knows little about computers and I don't know much either. Just a brief 'yes' or ' no' would be great.
The message she's getting seems to be a little bit different from the others, and spybot is claiming they can't fix the problem. Here's her message: "DSO Exploit: There is a secuity hole in IE allowing websites to execute code without asking you first. You can find more information at . . .
My mom is a Windows XP user and she is updated with all the Microsoft critical updates. Is she safe? Can she quit worrying about this Spybot message or should she do something more
Thank you very, very much. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54379
Product Activation via non Microsoft Firewall
I cannot activate MS products via my firewall. Is there a
port(s) that needs to be opened? Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54376
Sniffing packets on the wire
How do you remotely sniff packets on a server to find out what activity is going on that machine
I know you can sniff through packet analyzers like ethereal but how do sniff just about any traffic going over the wire on a particular machine or server
I am new to packet sniffers and network protocol analyzer
Any help would be appreciated
Ripul Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54374
Web Problem
I'm hoping someone with computer knowledge can help me
out:
I'm having trouble viewing certain images.
Example: The following website is for a local record
store near my home: www.letitbe.com If you visit this
site you will notice a scrolling banner ad on the top for
contests,etc. The banner ad simply doesn't appear on my
screen. I figured it was my Norton Internet Security
2004 (antivirus and firewall) causing the problem...so I
turned it off entirely, but still have the same problem.
The images just aren't there. Maybe it is a Windows XP
security setting I need to adjust? On another site where
I have the same problem, www.livephish.com (unable to
view s scrolling banner/image), the FAQ for that site
suggests to "make sure your network administrator is
allowing HTTP access on port 8000 on your machine." To
be honest I have no idea what this means or how to check
it. I amdoubting this is the problem. The only thing I
can imagine blocking a "port" would be the firewall but,
like I said, I turned that off and am still having the
same problem. The second site, www.livephish.com, is
supposed to show a scrolling son title in the "Now
Playing" box in the upper right conrner. I am unable to
see that scrolling amage on my screen.
Can anyone see a similarity between the livephish.com
buttons/scrolling song title & the banner ad on top of
www.letitbe.com? Is it a java thing or a flash problem
maybe? What exactly is my computer not allowing in?!
Any troubleshooting help would be GREATLY appreciated.
Thi is driving me CRAZY! Please take a second and
check those sites to see if there is a similarity in the
stuff not showing up on my screen. I'm thinking XP must
be blocking something.
You have no idea how happy it would make me to solve this
problem.
Thanks a lot! Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54372
CRITICAL BUG
I know of a major threat to alot of people ill tell ya how
it works, well im kinda new to it so i want but i have
information on it and such it is a program which enables
you to put .exe files into web sites .html format and when
the peron/persons visitng that site there are being
infected with the .exe file
say the person puts a trojen horse into the site it
automaticly downloads it into thier system, contact me if
your interested in more info it isnt a huge secruity bug
that needs fixing....... Contact "Chuckie_egg@msn.com ok. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54371
MAJOR BUG
I know of a major threat to alot of people ill tell ya how
it works, well im kinda new to it so i want but i have
information on it and such it is a program which enables
you to put .exe files into web sites .html format and when
the peron/persons visitng that site there are being
infected with the .exe file
say the person puts a trojen horse into the site it
automaticly downloads it into thier system, contact me if
your interested in more info it isnt a huge secruity bug
that needs fixing....... Contact "Chuckie_egg@msn.com Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54370
SPAM
HOW DO I STOP SPAM EMAILS 512 LAST COUNT ALL SPAMMERS. DO I REQUIRE FIREWALL AND WHAT IS IT AND HOW DO I SET IT UP? Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54368
NicTech Spyware
OK, I was having problems with pop-ups and after running Ad-Aware, decided
to run SpyBot. However after running both, Ad-Aware kept showing the same
exploit (VX32.BetterInternet) but in a different DLL. Each file would
require a reboot to fix, and then when I ran Ad-Aware again, it would show a
different DLL with the same exploit. Finally after some internet searching I
determined that the problem initiated from
HKLM\Software\Microsoft\WindowsNT\CurrentVersion\Winlogon\Notify and a key
GuardianXXXXX (4 or 5 random alpha characters following the Guardian). Well
this pointed to a dll called adaamon.dll in my System32 directory. I was
unable to delete the the DLL under any circumstances. Even tried logging in
to safe mode. Tried deleting the Registry Key but on reboot it would
reappear with a different random string and Ad-Aware kept finding a
different DLL.. Appears to have been a copy of the adaamon.dll. Finally
resolved this issue by rebooting and not logging in, then using a second PC
and Windows Explorer, connected to my PC via the C$ share and was able to
delete the adaamon.dll. (Which is a Hidden System Read Only file). Then I
was able to delete the registry key and it did not reappear on reboot.
Current versions of NAV2004 with up to date sig files did not catch this.
Finally ran Ad-Ad-Aware and Spybot until both were satisfied, used advanced
features for the Ad-Aware search as specified at computercops.us for the
BetterInternet issue.
Don't know how someone without the second PC could fix this as I would
assume there is NO way to bypass the Winlogon Notify reg key. Since this
notification was to run on both logon and logoff, I would assume the dll
could re-configure itself if you deleted the key or changed permissions on
the key (Which I had also tried), during the logoff process for reboot.
Carl Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54364
Can't surf the web
What virus could keep me from being able to surf the internet? My computer allows me to get emails and connect to my home page...but not anywhere else on the web. Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54358
SpotOn
Is anyone else having trouble with Internet Explorer?
When I open a web page or link I get a pop up from SpotOn
with additional search results. What can I do, I have a
no adware program running but it still pops up Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54357
Password Loss
I am running Win 2000 and do not know my password, How
can I get back into my system? Tag: WIndows XP & IE 6 & Accessing Secure Websites Tag: 54351
Cant access secure site in XP. Have been to Microsoft
Support..did not work. Any help?