Author: Avery

  • Qemu Windows XP install

    Well, I alluded yesterday to a struggle with installing Windows XP under Qemu. Here are some details on the long and (still winding) road. At this point I have a working XP install running under Qemu but, I’ve run out of disk space (2G) and need more space before I can upgrade it to SP2. Note that I have not installed any third party software, just the base OS. Well…. I did have a long way around to get there….

    (more…)

  • Esbot and Zotob updates….

    Wednesday afternoon and Esbot is up to revision .B, Zotob is up to G according to Sarc (Symantec antivirus research). They have appropriate removal tools and details on affected systems there. Meanwhile the Sans institute (incidents.org) has a rundown of the latest in todays handlers diary.

    (more…)

  • Good introductory article on linux

    There is a Newsforge article talking about “Best Practices for the Linux home office”. They cover a lot of ground for the newcomer to linux. But some of their advice is excellent for computing in general. One is to treat your work machine like a production system (not development) the advice here is not to risk your main work machine on that game you’ve been dying to try out.

    (more…)

  • Adobe Acrobat vulnerabilities….

    According to The Register among other sources, there is a vulnerability in all Acrobat and Reader software prior to the following safe release numbers: Windows and Mac Reader users please install 7.0.3 or 6.0.4 to be fixed (all other 7 series and 6 series versions are vulnerable). Acrobat users on Windows or Mac should update to either 7.0.3, 6.0.4 or 5.0.10 (again, any other 7.x 6.x or 5.x version is vulnerable.) Linux and Solaris reader users should upgrade to 7.0.1 to be secure.

    (more…)

  • Microsoft’s quick response to network worms….

    This is an ironic title because frankly, Microsoft has seemed to be slow in solutions for the recent zotob worm. Of course, they announced the vulnerability and accompanying update to solve the issue to begin with, but after the virus started propagating what do we see from Microsoft? They have a page titled What you should know about Zotob

    (more…)

  • Phishing scheme aimed at educating users

    A number of New York state employees and a number of cadets at West Point were targetted in a recent phishing scheme. This one was perpetrated by the good guys though to wake them up to how realistic a phishing attempt could look. The employees that bit were “given a gentle slap on the wrist”.

    (more…)

  • Esbot and Zotob removal tool

    Just a quick note to mention that Symantec has posted a removal tool for Esbot(.A). They previously had manual instructions only. They also have updated their Zotob Removal Tool to cover all current variants .A .B .C@mm .D .E and .F (.E was the big newsmaker yesterday.)

    (more…)

  • Esbot.a

    Symantec’s site is also reporting another virus (technically a worm) targetting the MS05-039 vulnerability. This one is called w32.esbot.a and is also rated at level 3 on their 5 level threat assessment scale.

    (more…)

  • Zotob worm bites big media outlets

    According to several reports there are several big media outlets seeing what is reported as the zotob worm which exploits a Microsoft Windows vulnerability (MS05-039) disclosed last week. There seems to be no better way for something to make the news than for it to affect the companies that bring us the news…. CNN for one is reporting that the worm has affected their networks as well as ABCnews and the New York Times. The Caterpillar Company is also mentioned.

    (more…)

  • Boot discs

    I’ve been using a site the last two days that I thought others might find useful. If you don’t know about it already, it’s bootdisk.com. They have available for download all sorts of Dos, Windows and Linux boot discs.

    (more…)