Domain: xtremepccentral.com
Stories and comments across the archive that link to xtremepccentral.com.
Comments · 435
-
I do "running naked", for 6++ months now... apk
"For what its worth, I don't use an A/V product either. And Like her, I also have a "pretty reasonable setup" and a dose of "common sense". But I'm still balancing the increased responsiveness and hassle-free experience vs the extra security. Its a trade-off that's worth it to me, but I recognize that it is still a trade-off." - by vux984 (928602) on Saturday July 18, @06:32PM (#28743977)
I recommend running one to folks in this guide for Windows users:
----
HOW TO SECURE Windows 2000/XP/Server 2003, & even VISTA, + make it "fun-to-do", via CIS Tool Guidance (& beyond):
http://www.tcmagazine.com/forums/index.php?s=f95071c12d0fc4e3d6b3c8b08dd8c05d&showtopic=2662
----
And people that've applied it have seen results like this (going on 2++ yrs. testimonial below, & no malware/trojan/virus/spyware/keylogger/worm infestations, period):
----
http://www.xtremepccentral.com/forums/showthread.php?s=97c1e368dad75689a8da7df5a0e97418&t=28430&page=3 [xtremepccentral.com]
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads.
APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA user @ xtremepccentral.com
----
Thus?
I say it's DOABLE to have results like that above, 100% uptime for YEARS to DECADES, + YES, on WINDOWS too... &, without AV & AS, but also, any virtualization layers (as they all lend to "performance-hits"), because I have the same here myself (along with many others)... AND, here??
I am going on a decade++ solid here now in fact, of safe 100% 'uninterrupted by online maladies' uptime, by doing the above.
HOWEVER:
Yes, even though I recommend the "layered security" of antivirus &/or antispyware programs for MOST users, just to be safe(r) online?
WELL, per my subject-line above?
Yes - I have been doing what I have seen as "running naked" (meaning w/out antivirus or antispyware programs running resident ALL THE TIME in say, your tooltray + their possible background services as well), & I have seen no problems...
Simply just by practicing what is in my guide above (going on more than a decade of safe surfing thru 3 machines now, never had a problem)
APK
P.S.=> Much of it IS, "common-sense", much of it is not - &, I'd still recommend folks run RESIDENT scanners for AntiVirus &/or AntiSpyware products in combination (say, NOD32 AV + SpyBot S&D AntiSpyware's teatimer product) for THEM to be safer...
However, here? I am not running either resident, & I'm saving CPU time, RAM, & other various forms of I/O as well by NOT keeping them running resident "all the time, 24x7", & I only use them as periodic manual scanners (say, on Sunday a.m. every week)...
100% safe & stable Windows uptime? It's doable, IF you know what you're doing - a LOT of safe computing simply boils down to that, just like it would safe driving... apk
-
Why did you avoid disproving my points then?
What's not believeable, is yourself, with what appears to be ad-hominem attacks directed my way, from YOU (but, strangely, no attacking of my original posts' points (not!!!(sarcasm here)))... in fact?
The ONLY people that might "bitch" about what I've written about, are those gaining by its absence...
I.E./e.g. #1 of 2 -> Webmasters making monies off of users that visit like a leech might (that's right - don't LIKE that, "webmasters"? Find another way to generate revenue then, "your old road is rapidly aging" (Bob Dylan, The Times They Are A Changin') because adbanners have been shown to harbor malicious code, & for YEARS now (mainly since hosting providers for ads aren't even checking the code in said banners apparently, per this report from
/. no less, this very website, here ->----
THE NEXT ADBANNER YOU CLICK ON MAY BE A VIRUS:
http://it.slashdot.org/story/09/06/15/2056219/The-Next-Ad-You-Click-May-Be-a-Virus
----
Care to dispute the findings that even slashdot posted about? Good luck... even MS themselves have been "hit" by this! Too bad, because I pay for my linetime out of MY pocket... I want ALL the speed I pay for, & adbanners only SLOW ME DOWN first of all, but for YEARS now? They've been shown to harbor malicious crap too, per the above (& yes, I can produce several JUST LIKE IT, with ease - just ask)!
SO - NO THANK YOU TO ALL OF THAT!
Hey - I'd rather have a no-commercials HBO-style internet (& judging by the success of things like mvps.org's HOSTS file, & NOScript + Adblock? I'd say others tend to agree...) AND, most of all??
Well - I'd rather have a safer online experience via HOSTS files that block both BAD ADBANNERS and KNOWN BAD SITES, which mine does (& my sources are places like mvps.org's HOSTS file, my own from 1997 to today, Stopbadware.org, Dancho Danchev's ZDNet security site, & also the HOSTS file page from wikipedia -> http://en.wikipedia.org/wiki/Hosts_file ALL completely reputable sources!)
ALSO???
I.E./e.g. #1 of 2 -> Hackers/Crackers + botnet masters & malware makers... for the BLATANTLY obvious reasons - if you show folks how to use layered security? It makes the efforts of the idiots I mention now, nearly moot... you can't get hurt, by what you never touch or see, basically... HOSTS files help here, immensely (alongside many other layers of protection)...
You CAN GET THOSE KINDS OF RESULTS... good ones... like what kind?
THIS KIND, COMPLETE WITH A TESTIMONIAL OF POSSIBLE RESULTS BY USING IT:
----
HOW TO SECURE Windows 2000/XP/Server 2003 & VISTA even, + make it "fun-to-do", via CIS Tool Guidance (& beyond):
http://www.tcmagazine.com/forums/index.php?s=e4473be2a007d388932bb27882f6f31c&showtopic=2662
TESTIMONIALS OF ITS EFFECTIVENESS:
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet i
-
Why did you avoid the WFP & rootkit.com sectio
"It's just not believable that someone cares that much about shaving a few bytes off a hosts file, or seriously proposes using such a gigantor one." - by Millenniumman (924859) on Friday July 17, @03:24PM (#28733673)
What's not believeable, is yourself, with your ad-hominem attacks directed my way (but, strangely, no attacking of my original posts' points (not!!!(sarcasm here)))... in fact?
The ONLY people that might "bitch" about what I've written about, are those gaining by its absence...
I.E./e.g. #1 of 2 -> Webmasters making monies off of users that visit like a leech might (that's right - don't LIKE that, "webmasters"? Find another way to generate revenue then, "your old road is rapidly aging" (Bob Dylan, The Times They Are A Changin') because adbanners have been shown to harbor malicious code, & for YEARS now (mainly since hosting providers for ads aren't even checking the code in said banners apparently, per this report from
/. no less, this very website, here ->----
THE NEXT ADBANNER YOU CLICK ON MAY BE A VIRUS:
http://it.slashdot.org/story/09/06/15/2056219/The-Next-Ad-You-Click-May-Be-a-Virus
----
Care to dispute the findings that even slashdot posted about? Good luck... even MS themselves have been "hit" by this! Too bad, because I pay for my linetime out of MY pocket... I want ALL the speed I pay for, & adbanners only SLOW ME DOWN!
NO THANK YOU!
Hey - I'd rather have a no-commercials HBO-style internet (& judging by the success of things like mvps.org's HOSTS file, & NOScript + Adblock? I'd say others tend to agree...) AND, most of all??
Well - I'd rather have a safer online experience via HOSTS files that block both BAD ADBANNERS and KNOWN BAD SITES, which mine does (& my sources are places like mvps.org's HOSTS file, my own from 1997 to today, Stopbadware.org, Dancho Danchev's ZDNet security site, & also the HOSTS file page from wikipedia -> http://en.wikipedia.org/wiki/Hosts_file ALL completely reputable sources!)
AND?
I.E./e.g. #1 of 2 -> Hackers/Crackers + botnet masters & malware makers... for the BLATANTLY obvious reasons - if you show folks how to use layered security? It makes the efforts of the idiots I mention now, nearly moot... you can't get hurt, by what you never touch or see, basically... HOSTS files help here, immensely (alongside many other layers of protection)...
You CAN GET THOSE KINDS OF RESULTS... good ones... like what kind?
THIS KIND, COMPLETE WITH A TESTIMONIAL OF POSSIBLE RESULTS BY USING IT:
----
HOW TO SECURE Windows 2000/XP/Server 2003 & VISTA even, + make it "fun-to-do", via CIS Tool Guidance (& beyond):
http://www.tcmagazine.com/forums/index.php?s=e4473be2a007d388932bb27882f6f31c&showtopic=2662
TESTIMONIALS OF ITS EFFECTIVENESS:
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked
-
On bad adbanners? Proof from /.
"you're as much of an idiot as the AC guy lol" - by Anonymous Coward on Tuesday July 14, @04:28AM (#28687813)
Do you even REALIZE how dangerous adbanners can be, nowadays especially, but also for many years now? Take a read, get informed:
----
THE NEXT ADBANNER YOU CLICK ON MAY BE A VIRUS:
http://it.slashdot.org/story/09/06/15/2056219/The-Next-Ad-You-Click-May-Be-a-Virus
----
So much for that...
SO - anything else about HOSTS files you'd care to discuss?
Because whatever you bring up, I will disprove easily (this is the part I like, keep talking - NOW, you will have to face & disprove facts I put up vs. your b.s.)
(AND, this is where my detractors ALWAYS run or get their tails handed to them... lol!)
ALSO? Well - It seems that even the "security gurus" online like Mr. Oliver Day champion the use of HOSTS files... see here:
http://www.securityfocus.com/columnists/491
(Care to say he doesn't know what he's about? )
And, the day you can do ALL OF THIS on your part?
----
"My Name is Ozymandias: King of Kings - Look upon my works, ye mighty, & DESPAIR..."
Windows NT Magazine (now Windows IT Pro) pril 1997 "BACK OFFICE PERFORMANCE" issue, page 61
(&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row).
WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)
PC-WELT FEB 1998 - page 84, again, my work is featured there
WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there
PC-WELT FEB 1999 - page 83, again, my work is featured there
CHIP Magazine 7/99 - page 100, my work is there
GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it
HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!
Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in this field besides coding only...
Lastly, being paid for an article that made me money over @ PCPitstop in 2008 for writing up a guide that has people showing NO VIRUSES/SPYWARES & other screwups, via following its point, such as THRONKA sees here -> http://www.xtremepccentral.com/forums/showthread.php?s=ee926d913b81bf6d63c3c7372fd2a24c&t=28430&page=3
What do I have to say about that much above? I can't say it any better, than this was stated already (from the greatest book of all time, the "tech manual for life" imo):
"But by the grace of God I am what I am: and his grace which was bestowed upon me was not in vain; but I labored more abundantly than they all: yet not I, but the grace of God which was with me." - Corinthians Chapter 10, Verse 10
----
Well - the day you can do all of that? That'll be the day you can make me "eat my words", & I will do so, + even apologize to you... but, I am fairly confident that you have not so... there you are.
(You aren't fooling anyone in that much by this point - you're doubtless another "arstechnica forums troll" who had impersonated me online, & his hosting provider removed large portions of his website because of that. He was then forced to admit he had impersonated me (& google tur
-
Thor SCHMUCK &/or Jeremy Reimer of arstechnica
"WTF? You are convinced that people follow you around on the web" - by Anonymous Coward on Tuesday July 14, @01:02AM (#28686791)
Oh, I think this alone in this very thread, functions to prove THAT much easily -> http://tech.slashdot.org/comments.pl?sid=1300193&cid=28678549
So much for that "evidence" of yours... & more is below (where the arstechnica people even IMPERSONATED ME ONLINE, & admitted to it no less in Jeremy Reimer of arstechnica whom his own forums folks call a troll no less (proof of that is below, from GOOGLE itself where it abounds))
Funniest part is? I left their forums in 2001, & they have done this ever since then across many forums & (they have even impersonated me online (proof below of that much)).
----
"to "discredit" (I use the term loosely since it is unlikely you ever had any "credit") your name" - by Anonymous Coward on Tuesday July 14, @01:02AM (#28686791)
Really? Have you done ANYTHING remotely even like this list of some of my accomplishments that others noted as good etc. in this art & science?
Somehow? I strongly DOUBT you have...
"My Name is Ozymandias: King of Kings - Look upon my works, ye mighty, & DESPAIR..."
Windows NT Magazine (now Windows IT Pro) pril 1997 "BACK OFFICE PERFORMANCE" issue, page 61
(&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row).
WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)
PC-WELT FEB 1998 - page 84, again, my work is featured there
WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there
PC-WELT FEB 1999 - page 83, again, my work is featured there
CHIP Magazine 7/99 - page 100, my work is there
GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it
HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!
Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in this field besides coding only...
Lastly, being paid for an article that made me money over @ PCPitstop in 2008 for writing up a guide that has people showing NO VIRUSES/SPYWARES & other screwups, via following its point, such as THRONKA sees here -> http://www.xtremepccentral.com/forums/showthread.php?s=ee926d913b81bf6d63c3c7372fd2a24c&t=28430&page=3
What do I have to say about that much above? I can't say it any better, than this was stated already (from the greatest book of all time, the "tech manual for life" imo):
"But by the grace of God I am what I am: and his grace which was bestowed upon me was not in vain; but I labored more abundantly than they all: yet not I, but the grace of God which was with me." - Corinthians Chapter 10, Verse 10
----
You aren't fooling anyone in that much by this point - you're doubtless another "arstechnica forums troll" who had impersonated me online, & his hosting provider removed large portions of his website because of that. He was then forced to admit he had impersonated me (& google turns up a lot of information of him stating that):
----
"Anyway the "APK" registered here is just an affectionate clone of the original. In fact I prefer him to t
-
I use 2 SSD's w/ HOSTS files (faster access)
"While I agree with you, Vista has two technologies which speed up this sort of thing. Actually, three. Two are shared with XP, one of which is shared with pretty much everyone in existence. Vista has disk caching, which will probably keep that 14MB in RAM at all times." - by drinkypoo (153816) on Monday July 13, @09:44AM (#28675419) Homepage
Which I REPEATEDLY mentioned here, & how this even works better for THAT, by using a smaller blocking IP addy of 0, vs. 0.0.0.0 & certainly vs. 127.0.0.1 (4kb reads can 'pack more', per each read/pass/sweep of the filesystem & memmgt kernelmode subsystems, into said diskcache)... see here -> http://tech.slashdot.org/comments.pl?sid=1300193&cid=28673103 for a detailed explanation thereof... thanks for your time.
----
"Obviously, tampering with DNS results is a better solution than tampering the hosts file. It's not available to dumbasses though... but it seems like it should be, and it wouldn't be that hard to just give people a package that would provide it. I wonder if you can run dnsmasq on Windows " - by drinkypoo (153816) on Monday July 13, @09:44AM (#28675419) Homepage
I hope you're not calling me any names, had quite enough of THAT here from these trolls who use profanity, evade my questions, screw up on points THEY made no less, & frothing @ the mouth replies & such (but never documented facts, like Mr. Oliver Day of SECURITYFOCUS.COM also using HOSTS files -> http://www.securityfocus.com/columnists/491
Now, I know you boys THINK you're "All That", but compared to he? I KNOW HE IS "ALL THAT"... & until one of you can show you've done what I did while you were still in diapers in this field possibly? Well... check it:
----
"My Name is Ozymandias: King of Kings - Look upon my works, ye mighty, & DESPAIR..."
Windows NT Magazine (now Windows IT Pro) April 1997 "BACK OFFICE PERFORMANCE" issue, page 61
(&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row).
WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)
PC-WELT FEB 1998 - page 84, again, my work is featured there
WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there
PC-WELT FEB 1999 - page 83, again, my work is featured there
CHIP Magazine 7/99 - page 100, my work is there
GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it
HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!
Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in this field besides coding only...
Lastly, being paid for an article that made me money over @ PCPitstop in 2008 for writing up a guide that has people showing NO VIRUSES/SPYWARES & other screwups, via following its point, such as THRONKA sees here -> http://www.xtremepccentral.com/forums/showthread.php?s=ee926d913b81bf6d63c3c7372fd2a24c&t=28430&page=3
What do I have to say about that much above? I can't say it any better, than this was stated already (from the greatest book of all time, the "tech manual for life" imo):
"But by the grace of God I am what I am: and his gr
-
I have used C/C++ as a pro & in academia + mor
"Anyone who seriously uses a hosts file as a filter should be shot on sight" - by silanea (1241518) on Monday July 13, @09:48AM (#28675467)
Really? Are you threatening to shoot me or Mr. Oliver Day of SECURITYFOCUS.COM -> http://www.securityfocus.com/columnists/491
?
He uses one. Just like I do... it works, read his article! Spybot S&D, a respected antispyware program, also uses them & helps make them stronger too... I suppose you know more than me, but Mr. Oliver Day & Spybot's people?
I must be standing in the PRESENCE OF A GOD (a troll god)...
----
"Anyone who relies on the Windows firewall alone for security should be publicly whipped, anyone who does so in a corporate environment should, again, be shot." - by silanea (1241518) on Monday July 13, @09:48AM (#28675467)
I don't, & in fact?
I layer on several layers of software protection, in the interests of "layered security" (the recommended trend by security pros in computers) &, that seems to be doing well for others, not just myself:
HOW TO SECURE Windows 2000/XP/Server 2003 & VISTA even, + make it "fun-to-do", via CIS Tool Guidance (& beyond):
http://www.tcmagazine.com/forums/index.php?s=e4473be2a007d388932bb27882f6f31c&showtopic=2662 [tcmagazine.com]
TESTIMONIALS OF ITS EFFECTIVENESS:
----
http://www.xtremepccentral.com/forums/showthread.php?s=97c1e368dad75689a8da7df5a0e97418&t=28430&page=3 [xtremepccentral.com]
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads.
APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA user @ xtremepccentral.com
----
(Myself, many others & even their clients no less, per this guide above I authored, & testimonial to its effectiveness (it has done well too for others, not just me & mine & was often made an essential guide @ 15/20 forums its on, 5/5 star rated, most viewed (to the tune of 250,000++ in 1 yrs. time across those forums no less & it even got me PAID $100 @ pcpitstop for writing it, which is why I posted to as a service to others, for free no less, to be of service to others on my part))
Have YOU done the same, Mr. Wannabe expert?
APK
P.S.=>
"Anyone who uses FORTRAN or "pascal" examples in relation to on-client security on a modern Windows OS should be hung up by their genitals. For the love of Christ, please do the world a favour and take a C/C++ class!" - by silanea (1241518) on Monday July 13, @09:48AM (#28675467)
Uhm, I like Borland C++ & have used it on professional assigments, as well as MSVC++ too (since version 2.0)... "Don't speak too soon, for the wheel's still in spin (& there's no tellin' who that it's namin' (cuz the loser now will be later the WIN)" - Bob Dylan, per the watchmen lately...
apk
-
Have you ever done what's in my list adhominem man
"Ah another classic post by Alexander Peter Kowalski, software developer/hyperbolic ranter. Don't take offense. That's the only way he knows to communicate." - by ikkonoishi (674762) on Monday July 13, @08:26AM (#28674725)
More "off-topic trollery" but no challenging my facts &/or tests + examples I posted to others above? Figures - this, along with effete sock puppet mod downs (which my post was modded up & now down again, due to the flock of trolls here appearing, off topic as usual with their ad-hominem attacks per the above quote?)
Not even a "NICE TRY" boys... your "online 'not men' tactics" fail in the light of facts... facts like THIS one (as I use facts, not off topic adhominem attacks as you are now, by way of comparison to the list below I have done, & clearly? YOU HAVE NOT lol):
"My Name is Ozymandias: King of Kings - Look upon my works, ye mighty, & DESPAIR..."
----
Windows NT Magazine (now Windows IT Pro) April 1997 "BACK OFFICE PERFORMANCE" issue, page 61
(&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row).
WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)
PC-WELT FEB 1998 - page 84, again, my work is featured there
WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there
PC-WELT FEB 1999 - page 83, again, my work is featured there
CHIP Magazine 7/99 - page 100, my work is there
GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it
HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!
Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in this field besides coding only...
Lastly, being paid for an article that made me money over @ PCPitstop in 2008 for writing up a guide that has people showing NO VIRUSES/SPYWARES & other screwups, via following its point, such as THRONKA sees here -> http://www.xtremepccentral.com/forums/showthread.php?s=ee926d913b81bf6d63c3c7372fd2a24c&t=28430&page=3
?
----
What do I have to say about that much above? I can't say it any better, than this was stated already (from the greatest book of all time, the "tech manual for life" imo):
"But by the grace of God I am what I am: and his grace which was bestowed upon me was not in vain; but I labored more abundantly than they all: yet not I, but the grace of God which was with me." - Corinthians Chapter 10, Verse 10
You guys, you trolls... you've got the devil on your backs with your off topic trollery & you burn time trying to attack me? Go to school, learn something about this art & science instead, & be of service to others... best advice I can give you, is "SATAN GET THEE BEHIND ME" & do something with your lives!
(Thanks for the laughs though boys, you are always fun to "get the better of" with ease... as per usual!)
APK
P.S.=> By this point, you guys evading my tests, points & facts + examples (as well as others having modded my post up but only to have you "mod it down again" in effete retaliation, has me laughing hugely - trolls: You're ALL THE SAME - too easy to get the better of, to easy to watch you have to go off topic & try adhominem attacks, too easy to watch you run from questions also like the one above... sooner or later, you run out of mod points, & wonder why you wasted them (then, my posts get modded up here again, & that's that - you only do that, to yourselves))... apk
-
"Or something?" TRY RESULTS LIKE THIS!
"Get a hardware firewall already, or NoScript or something" - by Fred_A (10934) on Monday July 13, @07:46AM (#28674431)Homepage
Per my subject-line, Fred? As to your "something"?? What would you think about results like this, on Windows???
----
HOW TO SECURE Windows 2000/XP/Server 2003, & even VISTA, + make it "fun-to-do", via CIS Tool Guidance (& beyond):
http://www.tcmagazine.com/forums/index.php?s=684fc342293777e89be01afad224dc63&showtopic=2662
----
A TESTIMONIAL TO ITS LAYERED SECURITY EFFECTIVENESS FOR A USER OF ITS POINTS & PRINCIPALS FOR HE AND HIS CUSTOMERS:
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads.
APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA, a user @ xtremepccentral.com who applied my guide above's points...
----
(AND, that guy above in THRONKA's NOT THE ONLY ONE WHO SEES THAT EITHER - the guide's become a 5/5 star rated one, or "most viewed" in forums, or made an "ESSENTIAL GUIDE", or sticky/pinned thread @ across 15/20 forums it has been on in 1 yrs' time, to the tune of 250,000++ views strong... but, more/MOST importantly is, it works, & is proof that Microsoft Windows CAN be secured... now, if only MS would ship Windows thus, eh?).
My guide's ALL about layered security, & as you can see? IT WORKS... unlike others' less comprehensive methods @ times... including yours, but... oddly?
My guide has your points & FAR MORE (for layered security, & IT WORKS) & HOSTS files (and why, see below, other notables in this field are noting it in fact as good) + a lot more too (& CIS Tool? What makes it easier for folks?? May appeal to you also, if you use Linux, Solaris, BSD's etc. et al also (it's multiplatform, based on industry best practices for each & helps large - see the results again for windows folks though, above, for your reference Fred & enjoy...)).
APK
P.S.=> As to "how it works in Windows", well it can use HOSTS files as an added layer of protection & even Mr. Oliver Day of SECURITYFOCUS.COM finds them useful & is thinking it may be time to "RESURRECT THE KILLFILE", from the 'olden days' (I was there too, sounds like YOU may have been too, on a *NIX judging from your reply no less), here -> http://www.securityfocus.com/columnists/491
Take a read, & "Drink that in, & digest it", Fred (some 'food for thought'), & thanks for your time... apk
-
LOL, knew it was you arstech trolls... apk
Per my subject-line above? THANKS FOR GIVING YOURSELF AWAY arstech troll... lol, too transparent (you're doubtless modding this down, but, your mod downs don't work vs. the facts & tests I put out, now do they?? Who do you think you are fooling @ THIS point, with an attempt @ an ad-hominem attack on myself???)
Ah, hilarious, but here we go (time to make you "eat your words" for what? Around the 5th time this week as I have in other threads where you tried this????)
"But you try and justify it all by talking about security so I figured hey, I'll see what this guys credentials are. Well, a quick search turned this up:
http://www.ca.com/us/securityadvisor/pest/pest.aspx?id=51276 [ca.com]
A piece of software that can arbitrarily run applications invisibly? Sorry what, did you really try and throw such a security threat onto consumer's PCs??" - by Anonymous Coward on Monday July 13, @05:00AM (#28673669)
AHEM, another test (readers, you're going to LOVE this one) PLUS, proofs as is usual from me vs. my "naysayers/detractors" like this one all thru this thread & others:
I want you to write NIR SOFER, or Dr. Mark Russinovich even of MS fame, & ask them if THEIR wares have been detected as malwares as mine has falsely!
(Nir & I have a conversation going on this too by the by)...
YES - soon, we're going to make another "break thru", with Nir's help & possibly the "good doctor's" also... in regard to 'false positives' by AV & AntiSpyware companies so please - do write NIR SOFER of Nirsoft fame...
AND, By the by?
My app is LISTED WITH ZERO THREAT LEVELS
(Fact is, almost to this day last year? I approached Greg Jensen about this, took their removal test, 21 questions? I do NOT violate even 1 of them (but, my program, like Dr. Russinovich's PSExec & other PsTools? Can be misused, unfortunately))
Now, they also list it & have since 2004 when a fool named "THOR SHROCK" (schmuck is more like it) put it up there as "Peter Kowalski", so I would never find it by querying google... all others removed it from their lists mind you, but not Thor SCHMUCK or CA.
(Fact is - I wrote it, in GOOD faith & with GOOD intent, for a forums person @ NTCompatible.com & decade ago or more, to launch Apache server for Windows "invisibly" since it would not by default in older models back then on Windows is all... but, like a gun (or ping even)? It can be misused, depending on parameters used (like ping of death) OR, what is loaded into it).
I can't control people, or how they use a program, anymore than I can with what folks do with guns which are useful, but also, deadly... & guns? Guns do NOT kill folks, people do.
APK
P.S.=> You seem "bent on discrediting me", ad-hominem, & apparently after you reading ALL my proofs above, & challenges above to my 'naysayers' which none dare to 'bite on' or try by this point?
WELL, this is ALL you are left with?
LOL... ok, fine, it's enough for me to see you "reduced to that", lol, but now? My turn (as to accomplishments of mine that help folks):
HOW TO SECURE Windows 2000/XP/Server 2003 & VISTA even, + make it "fun-to-do", via CIS Tool Guidance (& beyond):
http://www.tcmagazine.com/forums/index.php?s=e4473be2a007d388932bb27882f6f31c&showtopic=2662 [tcmagazine.com]
TESTIMONIALS OF ITS EFFECTIVENESS:
----
http://www.xtremepccentral.com/forums/showthread.php?s=97c1e368dad75689a8da7df5a0e97418&t=28430&page=3 [xtremepccentral.com]
"Its 2009 - still trouble free!
I was told last week by a co worker who doe
-
Some "FOOD 4 THOUGHT"... apk
Please read this thru, & consider its points (above & beyond what I wrote above)... thanks for your time:
"To really fix the security of windows they'd have to redesign it from the ground up" - by Anonymous Coward on Monday July 13, @03:13AM (#28673255)
All that's REALLY needed, is to "ship WINDOWS out the door", thus:
HOW TO SECURE Windows 2000/XP/Server 2003 & VISTA even, + make it "fun-to-do", via CIS Tool Guidance (& beyond):
http://www.tcmagazine.com/forums/index.php?s=e4473be2a007d388932bb27882f6f31c&showtopic=2662
TESTIMONIALS OF ITS EFFECTIVENESS:
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads.
APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA user @ xtremepccentral.com
----
"In any case any filtering / firewalling / proxying that windows itself can do generally can be done a LOT more efficiently by a dedicated function setup not running Windows but something like PFSENSE, IPTABLES, SQUID, SNORT" - by Anonymous Coward on Monday July 13, @03:13AM (#28673255)
WELL, the fellow above (& myself + others I can produce quotes from if you wish, no less, who have used my guide above)? MIGHT tend to disagree... lol!
AND, my guide (which goes FAR above the points I note here in this post you replied to, proactively showing users how to use layered security via easy points to follow + an EASY TO USE well noted tool, in CIS TOOL)?
My man - IT works & goes FAR beyond mere HOSTS files usage, which mind you? Even OTHER "security gurus", like Oliver Day of SECURITYFOCUS.COM "see the light on" & agree with me on, per this posting of his -> http://www.securityfocus.com/columnists/491
No... you CAN secure a Windows system to the levels that you don't see hassles like infections by malwares etc. et al... In fact, I am doing something here called "running naked" & NOT using ANTIVIRUS + ANTISPYWARES RESIDENT (which produce false positives, & slow you down etc. & sometimes just DO NOT WORK vs. threats they are not aware of, rootkits, or various new "blended threats", period)... no infestations, & THRONKA's heading on 2++ yrs. solid now with his clients seeing the same... myself? Thru my past 3 systems, 10++ yrs. now... no joke, no lie.
(AND, that guy above in THRONKA's NOT THE ONLY ONE WHO SEES THAT EITHER - the guide's become a 5/5 star rated one, or "most viewed" in forums, or made an "ESSENTIAL GUIDE", or sticky/pinned thread @ across 15/20 forums it has been on in 1 yrs' time, to the tune of 250,000++ views strong... but, more/MOST importantly is, it works, & is proof that Microsoft Windows CAN be secured... now, if only MS woul
-
READ please... thank you! apk
"The HOSTS file was never intended as a filtering mechanism, and MS, et al have no obligation to make it work or continue to work for that purpose." - by geekboy642 (799087) on Monday July 13, @02:06AM (#28672989)
Pretty CHEAP "cop out" that I say, but, have you considered its merits in LAYERED SECURITY? Oliver Day of SECURITYFOCUS.COM has, here -> http://www.securityfocus.com/columnists/491
----
"Run a proxy or firewall." - by geekboy642 (799087) on Monday July 13, @02:06AM (#28672989)
I do, & you had best read the rest of my post regarding the new WFP based single part firewall, AND WHAT ROOTKIT.COM FOUND, in regards to NDIS 6 based firewalls also (see my first post, you guys are SKIMMING & MISSING THE REST OF WHAT IT NOTES - because I cover what you state also, & all for "layered security" - thanks!)
HOSTS do work as a layered security filter though, regardless of what YOU state!
(AND, hey - Even "security guru" Oliver Day @ SecurityFocus.com sees its usage thus -> http://www.securityfocus.com/columnists/491
AND??
So do folks like "SpyBot Search & Destroy" also (since their app populates not only the HOSTS file, but, also files like Opera's Filter.ini, FireFox's block lists, & IE Restricted Zones also, for LAYERED SECURITY (this is the trend & recommended practice by security folks by the by, myself included))
AND, I want you to PLEASE, read this, all the way thru (and my original post, you guys are blowing off really important stuff to consider):
http://tech.slashdot.org/comments.pl?sid=1300193&cid=28673103
Read it ALL THE WAY THRU... thanks! "Drink it in, & digest it", then, form your opinions...
----
"The ludicrously minimal built-in firewall was never intended to be an anti-spyware utility. If you want to run dangerous code on your system, and not have it bypass your security, then relying on any version of Windows' firewall is insane. More than half of the windows GUI runs SUID root, for chrissakes!" - by geekboy642 (799087) on Monday July 13, @02:06AM (#28672989)
I don't depend on ANY single layer, & espouse LAYERED SECURITY... in fact, I wrote a guide that has gone across the internet in 1 yr. to a total views mark of 250,000++ by now & rated 5/5 stars, made an "ESSENTIAL GUIDE" @ nearly all forums it is on, plus showing folks (once they apply ALL my points, & practice a few simple things, including HOSTS files usage) stating things, like this, verbatim for themselves & even clients who paid them to implement it for them:
----
HOW TO SECURE Windows 2000/XP/Server 2003, & even VISTA, + make it "fun-to-do", via CIS Tool Guidance (& beyond):
http://www.tcmagazine.com/forums/index.php?s=684fc342293777e89be01afad224dc63&showtopic=2662
----
TESTIMONIAL TO ITS LAYERED SECURITY EFFECTIVENESS:
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client
-
LOL, love this first quote (you're wrong, face it)
"You have to manually disable playing of
.avi files, and then if you wish to play them, you have to go through a ridiculous scanning or conversion process. I consider that crippled." - by Americano (920576) on Wednesday July 01, @04:45PM (#28549235)I don't, & how can you? I can play
.avi files just FINE, & be safe - thanks for proving me correct, & having to try to make it seem like "it's still not working" when clearly, that's absolute b.s. per my results... As, again: I actually don't HAVE to disable quartz.dll or access to it, @ all - I just verify if the .avi I wish to play is legit, via VideoInspector (nice, useful, & freeware) & the "ridiculous scanning process"?Only takes seconds!
----
"Your "fixes" for many of the other fixes also included unregistering dll's or changing permissions on them in such a way that they probably will also break functionality elsewhere in the system. That is crippling the software." - by Americano (920576) on Wednesday July 01, @04:45PM (#28549235)
Where, because according to my guides I wrote up that go into THAT & FAR MORE (that works, even vs. "The MiGhTy CoNfiCkEr" worm?) Well, let's let others speak on that account, other than myself, shall we?
----
http://www.xtremepccentral.com/forums/showthread.php?s=ae352cd32542fe49a55fe00b11086449&t=28430&page=3 [xtremepccentral.com] [xtremepccentral.com]
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA (forums user @ xtremepccentral)
----
Thus, you see another person, besides myself, who is enjoying absolutely FULL function & stable, infestation free uptime... with relative ease.
A little bit of work, maybe 2++ hrs., tops, for YEARS to DECADES of stable uptime.
Just like NASDAQ sees running a high tpm 24x7 fabled "5-9's" of 99.999% uptime using Windows Server 2003, same as I do here in fact...
(Tough to argue with that, & certainly more sensible than spending a few G's on a Mac... because it's free, & CIS Tool makes MOST of it easy to do, very easy in fact, but bottom-line is, that it just works!)
----
"Windows is just as much at risk as Mac OS is in that regard, perhaps more so with so many services running with administrator level permissions." - by Americano (920576) on Wednesday July 01, @04:45PM (#28549235)
Did I say either was setup right out of the box? No, not once to you, or Ryuuteryaki (sp?) either... only that they can be improved, & that *NIX folks here + elsewhere usually seem to say this type of thing -> "Winblows/Wintendo sux, *NIX UBER ALLES!!!" but never admit their OS of choice has its hassles also.
APK
P.S.=>
"I've answered all of these questions for you previously, and in detail. Why do you keep demanding I repeat them?" - by Amer
-
You were hit hard, but WHY? You can stop it... apk
"My company was hit pretty hard by the conficker virus." - by goltzc (1284524) on Tuesday June 30, @04:04PM (#28533883)
Whose fault is that? You CAN prevent it, you know (from striking even), by doing a few simple things, such as what is listed here:
http://it.slashdot.org/comments.pl?sid=1159209&cid=27178753
----
Regarding "stalling" CONFICKER specifically:
----
"A.) STALL SERVER SERVICE (if you don't need a LAN/WAN to connect to & all you do is hit the internet on a single standalone machine)...
AND
B.) It recommends you stall out indiscriminate usage of javascript also!
Between those 2 measures (&, possibly
,b>ALSO, a HOSTS file that stops access to this CONFICKER worm's control servers -> http://forums.opendns.com/comments.php?DiscussionID=3043 which leads to said list here -> http://www.f-secure.com/weblog/archives/Downadup_Domain_Blocklist_February.txt )?Hey... YOU TELL ME, lol, IF it works, or not..."
----
It'll work... addtionally blocking ACL (access control lists) access to the autorun.inf files in the root of you drives helps also (vs. how it spreads from USB sticks etc. et al).
(Do all of the above, especially if you don't need to be sharing disks/folders/files from your system to users over the public internet or a local LAN/WAN (saving CPU cycles, RAM, &/or other forms of I/O as well you would be otherwise wasting because you are not using what the server service provides, file & print sharing), & it quite literally (@ least theoretically) should "PROOF YOU" vs. this worm).
APK
P.S.=> That was regarding the
/. article titled (from near when this worm was discovered):New Conficker Variant Increases Its Flexibility:
http://news.slashdot.org/article.pl?sid=09/02/20/239229 [slashdot.org]
on 02/20/3009 here on this website... apk
----
And, it works...
Heck, you CAN do without the server service, as a workstation on a LAN/WAN even (because iirc, workstation service allows for MOST of what you'd need anyways), & have full access to its services, like the internet for example, if you wish!
(HOWEVER - If you have to share files/folders from said system? THEN, you'll NEED the server service active!)
Otherwise? Not really - server service is NOT required, but you might have to apply your OWN updates though as an end-user minus the server service running, as stalling server service removes accessible shares & such that SERVER service provides!
(Which might adversely affect SMS & like updating from a central source in a work LAN/WAN environs (that'd be up to you & the user(s) in question though, & what your + THEIR needs are in such a situation)).
APK
P.S.=> I put that out, originally @ xtremepccentral.com, & later here on
/., because it works, on many levels!I did so, almost @ the time it began "blowing away" systems all over the place... because it worked!
Common-sense should have told you, as an administrator (assuming THAT is your role, or that of a network tech/engineer) that those were the simple steps to take (along with detectors to signal a removal candidate, but you never or should NEVER have seen it in the 1st place, if you did the above steps to your Windows NT-based machines)... apk
-
Impersonating me only shows you lose... apk
"Gaze in WONDER at it's genius YOU DIRTY LITTLE FAGGOT lol APK"
- by by Americano (920576) on Saturday June 27, @03:08PM (#28496587)
See my subject-line above, & realize that I don't use terms like "dirty little faggot", if you're going to impersonate me @ least, Americano...
(And, I guess I was correct: You DON'T have that PHD in English, now do you? You can stop trying to tell others how to write or what "good writing style" is, without one... that goes the same for your 'sidewalk surgeon/quack' assessments of others' mental states also, because you'll need a license to practice psychiatry and a PHD in it before anyone pays you any mind...)
APK
P.S.=> It must REALLY bother you that I have done well in written publication in this science (where you have not apparently), so here is the FULL LIST for your reference once more (since you stated it was only in "online journals", Americano):
"My name is Ozymandias, king of kings: Look on my works, ye Mighty, and despair!"
----
Windows NT Magazine (now Windows IT Pro) April 1997 "BACK OFFICE PERFORMANCE" issue, page 61
(&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row).
WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)
PC-WELT FEB 1998 - page 84, again, my work is featured there
WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there
PC-WELT FEB 1999 - page 83, again, my work is featured there
CHIP Magazine 7/99 - page 100, my work is there
GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it
HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!
Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in this field besides coding only... there are others, such as newspapers as well, but this will do, for now...
Lastly, being paid for an article that made me money over @ PCPitstop in 2008 for writing up a guide that has people showing NO VIRUSES/SPYWARES & other screwups, via following its point, such as THRONKA sees here -> http://www.xtremepccentral.com/forums/showthread.php?s=ee926d913b81bf6d63c3c7372fd2a24c&t=28430&page=3
----
AMERICANO - HAVE YOU DONE ANYTHING EVEN NEAR REMOTELY THE SAME?
(If so, prove it please, I evidently had to... thanks!)
The day you can do ALL of that? THEN, you can talk (but, of course? You NEVER WILL...lol!) - but before talking? LEARN TO READ, first... or, you'll have to keep "eating your words" troll... as you have here already 2x now... lol! apk
-
Time to eat your words to Tom & myself, Troll.
Seems others agree with me:
"What a fucking hypocritical lying little troll." - by tomhudson (43916) on Friday June 26, @03:29PM (#28486897) Journal
Amen, & agreed, 110%...
APK
P.S.=> The funniest part is, Americano tried to call ME that, here -> http://slashdot.org/comments.pl?sid=1267281&cid=28473695
"He's an ill-informed troll" - by Americano on Thursday June 25, @06:39PM (#28473695)
And, then I simply showed a FRACTION of where the poster he was so "vigorously defending" had made so many mistakes (technical ones), that were totally incorrect from the get-go no less -> http://slashdot.org/comments.pl?sid=1267281&cid=28484753 & yet?
SOMEHOW he was "modded up" (probably by "Americano" here, who is doubtless a 'sock puppet' account of the person he defends in "RyuuzakiTetsuya" there)...
OH, & by the way "Americano"? Like here, you 'skimmed' & screwed up, trying to put words into others' mouths as you did to Tom Hudson & now are "eating your own words" for... & you're going to have to EAT A FEW MORE, right now (hope you're not TOO full of your own shit, lol, by this point, because here it comes):
"and his posts usually simply break down into pointless ranting about how you can't say anything because you're not an "expert" - as defined by him - whereas he is an expert based on a handful of online journal publications, and thus his statements are unassailable." - by Americano on Thursday June 25, @06:39PM (#28473695)
Well, first of all, when/where I have been featured in written publications in the science of computing, it was in reputable written respected publications, such as these (Though, I have done well on forums & such over time also):
----
Windows NT Magazine (now Windows IT Pro) April 1997 "BACK OFFICE PERFORMANCE" issue, page 61
(&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row).
WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)
PC-WELT FEB 1998 - page 84, again, my work is featured there
WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there
PC-WELT FEB 1999 - page 83, again, my work is featured there
CHIP Magazine 7/99 - page 100, my work is there
GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it
HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!
Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in this field besides coding only... there are others, such as newspapers as well, but this will do, for now...
Lastly, being paid for an article that made me money over @ PCPitstop in 2008 for writing up a guide that has people showing NO VIRUSES/SPYWARES & other screwups, via following its point, such as THRONKA sees here -> http://www.xtremepccentral.com/forums/showthread.php?s=ee926d913b81bf6d63c3c7372fd2a24c&t=28430&page=3
HAVE YOU DONE ANYTHING EVEN NEAR REMOTELY THE SAME?
(If so, prove it please, I evidently had to... thanks!)
----
The day you can do ALL of that? THEN, you ca
-
Crapware OS? NASDAQ shows otherwise + others
"I'd hate to break this to you, but when I made the switch, my PC had died. Dead HDD, dead motherboard, dead PSU, and possibly dead RAM" - by RyuuzakiTetsuya (195424) on Tuesday June 23, @04:14PM (#28444411)
Well, I hate to break THIS tidbit, to you: I have trouble believing that!
Why?
Well, simple - You would have said it many posts ago...
(Not just the 1 other time you stated it, only recently no less, & when many others including myself said you overspent on a platform for a PC in Macs!)
I say that, because you can gain great security in Windows, as well as more speed + stability, IF you follow that guide of mine (or others, but I feel mine is quite a bit more comprehensive than most are online))...
So, personally? Yes - I think THAT is) a "Fable" on YOUR part, lol, because it took you SO LONG to 'come up with it'.
(To each his own right? I'm entitled to my opinions, like yours below (albeit, once more? NASDAQ's showing, See here -> http://slashdot.org/comments.pl?sid=1229203&cid=27909649 using SQLServer 2005 + Windows Server 2003 "does a job on that" opinion of yours (doesn't it?))
----
"Your guide is not a guide to necromancing dead PC hardware for free or even cheap" - by RyuuzakiTetsuya (195424) on Tuesday June 23, @04:14PM (#28444411)
Show me once where I said it was for THAT? Thanks...
----
"It's how to harden a crapware OS." - by RyuuzakiTetsuya (195424) on Tuesday June 23, @04:14PM (#28444411)
Yea, yea, that's YOUR OPINION... others who used my guide say way, Way, WAY differently (AND WITHOUT SPENDING $2,000 - $3,000 on a Mac):
----
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA (forums user @ xtremepccentral)
----
That's an end-user's experience along with his client's (which I see the same of, as well as MEK_LoveBug another poster here does also) - pretty NICE, you must admit!
That's also in addition to the "Fabled" NASDAQ data I used above, vs. your opinion here...
APK
P.S.=> I have to go grocery shopping now, talk later... apk
-
Infoworld Article TORN APART, point-by-point
Time to tear that article up, point-by-point, & show WHERE + HOW points in my article show how to do so:
(Here we go, & with how on EACH POINT I DISPUTE HERE, from this page -> See, "STEP #1 of 12 - SECURING SERVICES @ THE ACL/Security SID + POLICIES LEVELS" here -> http://www.xtremepccentral.com/forums/showthread.php?s=8836f6b40cf558ad4c613e2c72251270&t=28430 for verification of any statements I make here)
"All Windows background processes/daemons are spawned from a single hyper-privileged process and referred to as services.
By default, Windows launches all services with SYSTEM-level privileges.
SYSTEM is a pseudo-user (LocalSystem) that trumps Administrator (like UNIX's root) in privileges. SYSTEM cannot be used to log in, but it also has no password, no login script, no shell and no environment, therefore"
See point # 1 of the security guide I wrote, entitled "STEP #1 of 12 - SECURING SERVICES @ THE ACL/Security SID + POLICIES LEVELS"
There? Well - I SHOW ANYONE HOW SIMPLE/EASY IT IS TO RUN ANY SERVICE AS LESS THAN SYSTEM!
(In fact, "oddly enough? I mention MacOS, because just like in MacOS X & its daemons, Windows users can control this & set services to run in LESS THAN SYSTEM SERVICE (not all do, but many if not most, can be altered to do so & function perfectly))
Yes, even on older Windows 2000 (but, you have to make a lesser priveleged user here, piece of cake, just like Windows XP &/or Windows Server 2003 already do in less priveleged users/groups already)
"The activity of SYSTEM is next to impossible to control or log."
What? This is doable but WHY BOTHER, when you can just assign a service to another "log on" entity, other than SYSTEM, in any service's properties -> Log On tab... as I noted above & in STEP #1 of my security guide for Windows users!
"Most of the code running on any Windows system at a given time is related to services, most or all of which run with SYSTEM privileges, therefore"
First of all - there is a lot of OTHER code running too (drivers, @ RPL 0/RING 0 along w/ system core kernel code AND usermode programs that run under the privelege context of the user logged in running them)
Secondly & Again - Many of which CAN be altered for backgrounded services as I noted above, IF IT IS SERVICES INVOLVED!
(Once more - It's simple to run as lesser priveleged user entities you have already as many services DO allow (LOCAL SERVICE, or NETWORK SERVICE)... AND? Windows XP &/or Server 2003 service packs even set some of them to less than "SYSTEM" once they were applied also (from the oem install defaults))
This is ALL noted in my article - Mr. Tom Yager of INFOWORLD must have overlooked its points!
"Successful infection of running Windows software carries a good chance of access to SYSTEM privileges."
Not "unique to Windows" by ANY means:
Privelege Escalation Exploits exist on MacOS X now, currently, & ARE UNPATCHED - This sword? Cuts 2 ways...
Fact is - The SINGLE KNOWN SECURITY VULNERABILITY THAT EXISTS FOR MACOS X in fact? Lists this @ SECUNIA.COM as a possible (along with DOS/DDOS & System Access, that also 'come along for the ride' on that one).
"Windows buries most privileged software, service executables and configuration files in a single, unstructured massive directory (SYSTEM32) that is frequently used by third parties. Windows will notify you on an attempt to overwrite one of its own system files stored
-
Javascript limit+HOSTS file & more? BrowserSec
"I do have the facts." - by RyuuzakiTetsuya (195424) on Tuesday June 23, @12:21AM (#28434635)
Where are they, & where did I state anything different than what you have here below next:
"The fact is, unless you're running something that opens ports and leaves you waiting to accept packets from somewhere, you're safe. Period." - by RyuuzakiTetsuya (195424) on Tuesday June 23, @12:21AM (#28434635)
I've been saying that all along, show us where I haven't?
"Your browser is always a vector for infection, but nothing you can(Other than regular patching) do can really stop a compromised browser from performing a privilege escalation then doing whatever the fuck it wants" - by RyuuzakiTetsuya (195424) on Tuesday June 23, @12:21AM (#28434635)
LOL, javascript, is the "deliverer/harbinger of doom" here...
My guide suggests javsscript limited usage - I also noted it here, in addition to other measures to secure a browser (my guide covers TONS more that work as well "layered onto" those for COMPLETE AS POSSIBLE PROTECTION)!
AND, ABOVE ALL ELSE? Evidence, that it surely seems to work out well for this person quoted below in THRONKA (since javascript via browsers AND ADOBE delivers 95% of the hacks/cracks/malware, even in adbanners) as well as his client & her kids, + MEK_LoveBug a responder here and myself (plus many others I can produce who did well or liked the guide I wrote up for them that allows them to avoid SPENDING $2,000 - $3,000 for no good reason, when securing Windows is a CIS Tool usage + some minor rules & education for them?)...
SO - You spent #2,000 for a Mac? Well, & could have done THIS, for free (instead of running from Windows, doubtless but apparently because of your NOT doing stuff like below, in Windows)
----
HOW TO SECURE Windows 2000/XP/Server 2003 & even VISTA, + make it "fun-to-do", via CIS Tool Guidance (& beyond):
http://www.tcmagazine.com/forums/index.php?showtopic=2662
----
& had results like these on Windows, 4 free also:
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA (forums user @ xtremepccentral)
... apk----
"Linux is pretty damn close though" - by RyuuzakiTetsuya (195424) on Tuesday June 23, @12:21AM (#28434635)
It's got security issues galore in it's time too, & other hassles (sound system coding Adobe said, for instance, is a nightmare & recently, ext4 caused file damage/losses & still does if a coder doesn't alter his coding (how many can be reached for that @ once etc. et al) for filesystem usages, forcing wholesale rebuilds of any app that talks to the sys
-
Straw men spend $2000 for no good reason imo, lol
"You are officially an idiot." - by RyuuzakiTetsuya (195424) on Monday June 22, @11:53PM (#28434419)
Well, I didn't spend $2,000++ when I can do as well security-wise, free... so, who's the idiot, rotflmao?
MATH TIME! 271 known vulnerabilities over time, & for the version of Windows I use no less, vs. MacOS X latest @ 971 known security vulnerabilities over time? Do the math, unless you find it TOO difficult that is... lmao!
Both have 1 known unpatched hole - but, I can fix mine 2 ways, & F A S T, plus within 4 clicks tops on 1, & less on the other.
Can you patch the single MacOS X flaw that produces 3 problems in the hack present still, of System Access/DDOS-DOS/Prilege Escalation exploit?
If so? How so... using CHOWN (which your original "security recommendations" for MacOS X users "StRaNgEL" omitted (not)).
(You had to use it in the end, vs. that known exploit MacOS X has, & also to stop the attack the likes we discussed me doing to you (which I don't do stupid stuff like that, period - fact is, I use my saavy to help others against it!))
(See, that last one, privelege escalation attacks? YES - happens on Macs too, despite you only saying Windows had that in your rant of which I can easily counter each point vs. Windows posts of yours here...)
That's just another proof of my stating the *NIX crew is either not that good, or, state 1/2 truths.. readers decide from those choices I say after all this, lol!.
(AND, by the by? HIGH end Macs I've seen go for $3,000 after all is said & done - I did guess 1 thing wrong: I thought you might have bought "the very best" but, like your security measures?? LOL, you don't... read on!)
"you can buy a mac for under a grand." - by RyuuzakiTetsuya (195424) on Monday June 22, @11:53PM (#28434419)
Yea, lol, U can blow THAT much ca$h, or this 4 free:
----
HOW TO SECURE Windows 2000/XP/Server 2003 & even VISTA, + make it "fun-to-do", via CIS Tool Guidance (& beyond):
http://www.tcmagazine.com/forums/index.php?showtopic=2662
----
& had results like these on Windows, 4 free also:
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA (forums user @ xtremepccentral)
... apk----
NOW, minus the usage of CHOWN on your part? You suggested this originally no less:
----
"Here's my OS X safety guide: "Don't download warez. Or, if you do, whenever it prompts you for a username and password, never give it. Ever. Also, your computer will occasionally ask you to install updates and reboot. I suggest doing this. Unless you know what you're doing,
-
You overspent, face it... give up!
"No, you don't." - by RyuuzakiTetsuya (195424) on Monday June 22, @10:25PM (#28433503)
Others' results seem to say otherwise, see here, again (so it "sinks in"):
$1,500, BEFORE TAX?? LOL... and you abandoned Windows, which can be secured FAR better than its defaults, & you conceded that much finally...???
Hey, you could have spent 1-2 hours using this:
----
HOW TO SECURE Windows 2000/XP/Server 2003 & even VISTA, + make it "fun-to-do", via CIS Tool Guidance (& beyond):
http://www.tcmagazine.com/forums/index.php?showtopic=2662
----
And had results like this:
----
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA (forums user @ xtremepccentral)
... apk----
You suggested this originally no less:
----
"Here's my OS X safety guide: "Don't download warez. Or, if you do, whenever it prompts you for a username and password, never give it. Ever. Also, your computer will occasionally ask you to install updates and reboot. I suggest doing this. Unless you know what you're doing, never enable Apache, FTP access, SSH or remote desktop. Ever."" - by RyuuzakiTetsuya (195424) on Tuesday June 16, @07:44AM (#28346135)
----
And, by way of comparison? Here is what Apple themselves recommend:
----
APPLE SECURITY GUIDES FOR MACOSX -
http://www.apple.com/support/security/guides/
(Straight from the horses' mouth, Apple Computer, the people that invented that Operating System + type of personal computer, no less...)
----
What YOU recommended, original, above in quotes? That IS quite a lot LESS than the folks @ Apple themselves recommend... & funny: The recommendations, from Apple computer no less? They are CLOSE to the levels I recommend for Windows NT-based OS of modern variety (
(2000/XP/Server 2003 & to a good extent, even VISTA & beyond as well) such as changing ACL (analogous to SeLinux MAC (mandatory access control) via the kernel hooking addon to Linux, which isn't native to its original builds, & only lately have linux distros distribute it or AppArmor (iirc, this is the name of the one other than SeLinux))
LOL: Later, you suggest & USED, CHOWN... but you did not suggest that to others in your "security recommendations for Mac users", why is that?
BECAUSE you HAD to use to secure your MacOS X setup fully vs. various attacks!
(Including your "test" you wanted done, and it fits what the people from SECUNIA.COM recommend vs. the single known exploit that exists on MacOS X (that produces 3 problems of System Access, Privelege escalation, & DOS/DDOS),
-
You overspent (money) vs. 1-2 hours of work
You overspent this:
"My macmini was only 500 and my macbook was only 999. You can get a MacBook Pro for 1,129. MacBook Airs are now only 1,500! Talk about a straw man argument." - by RyuuzakiTetsuya (195424) on Monday June 22, @09:59PM (#28433265)
That's what? $1,500, BEFORE TAX?? LOL... who's the "straw man"???
(Plus, you abandoned Windows, which can be secured FAR better than its defaults, & you conceded that much finally... & NASDAQ shows 99.999% stable & secure uptime using Windows Server as I do????)
Hey, you could have spent 1-2 hours using this:
----
HOW TO SECURE Windows 2000/XP/Server 2003 & even VISTA, + make it "fun-to-do", via CIS Tool Guidance (& beyond):
http://www.tcmagazine.com/forums/index.php?showtopic=2662
----
And had results like this:
----
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA (forums user @ xtremepccentral)
... apk----
You suggested this originally no less:
----
"Here's my OS X safety guide: "Don't download warez. Or, if you do, whenever it prompts you for a username and password, never give it. Ever. Also, your computer will occasionally ask you to install updates and reboot. I suggest doing this. Unless you know what you're doing, never enable Apache, FTP access, SSH or remote desktop. Ever."" - by RyuuzakiTetsuya (195424) on Tuesday June 16, @07:44AM (#28346135)
----
And, by way of comparison? Here is what Apple themselves recommend:
----
APPLE SECURITY GUIDES FOR MACOSX -
http://www.apple.com/support/security/guides/
(Straight from the horses' mouth, Apple Computer, the people that invented that Operating System + type of personal computer, no less...)
----
What YOU recommended, original, above in quotes? That IS quite a lot LESS than the folks @ Apple themselves recommend... & funny: The recommendations, from Apple computer no less? They are CLOSE to the levels I recommend for Windows NT-based OS of modern variety (
(2000/XP/Server 2003 & to a good extent, even VISTA & beyond as well) such as changing ACL (analogous to SeLinux MAC (mandatory access control) via the kernel hooking addon to Linux, which isn't native to its original builds, & only lately have linux distros distribute it or AppArmor (iirc, this is the name of the one other than SeLinux))
LOL: Later, you suggest & USED, CHOWN... but you did not suggest that to others in your "security recommendations for Mac users", why is that?
BECAUSE you HAD to use to secure your MacOS X setup fully vs. various attack
-
No, here is what I advocate/espouse, on security
"When you are using a computer, are you going to advocate complete safety with no margin for error or failure? No acceptable risk at all?" - by RyuuzakiTetsuya (195424) on Monday June 22, @09:07PM (#28432635)
No, I am only advocating DOING AS GOOD A JOB AS IS POSSIBLE, & according to those that have used the guide I wrote up for it, here:
----
Again -> http://www.xtremepccentral.com/forums/showthread.php?s=ae352cd32542fe49a55fe00b11086449&t=28430&page=3 [xtremepccentral.com]
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA (forums user @ xtremepccentral)
----
Users of my guide apparently do as I have seen, no problems... & it works, AND FOR LESS THAN THE UPWARDS OF (or greater than) the $3,000 you spent on your Mac!
You said (profanely as was your usual earlier @ least repeatedly), "Buy a F'ing Mac" - Well, users can take 1-2 hours & get the SAME from Windows... for less than $3,000, this is certain!
That is, as long as they follow some rules + recommendations that only take 1-2 hours to put into place, especially using CIS Tool!
(Which is, as Bert64 a member here put it, while securing Linux even? Is just a "point & click affair you answer questions to & follow what it says" - he ended up going from a 46/100 up to 90/100 on SuSE Linux (albeit under emulation/VM, which have THEIR share of problems too, per here -> IT: Security Flaw Hits VAserv; Head of LxLabs Found Hanged http://it.slashdot.org/story/09/06/09/1422200/Security-Flaw-Hits-VAserv-Head-of-LxLabs-Found-Hanged )
I say this, because YOUR ORIGINAL SUGGESTIONS were:
"Here's my OS X safety guide: "Don't download warez. Or, if you do, whenever it prompts you for a username and password, never give it. Ever. Also, your computer will occasionally ask you to install updates and reboot. I suggest doing this. Unless you know what you're doing, never enable Apache, FTP access, SSH or remote desktop. Ever."" - by RyuuzakiTetsuya (195424) on Tuesday June 16, @07:44AM (#28346135)
----
Funniest part is, you later used chown work, vs. myself attacking your machine (upon your request but I did not do to avoid trouble potentially @ least, in case someone else clicked on it, & despite you saying "it's ok if a forums user asks for it" (to which I put up my own bad experience there, it is NOT "ok to do" even then, even if you meant well as I did in my tale about that!))
Which you HAD to use, by using Chown WORK, to secure your MacOS X setup fully vs. various attacks (including your "test" you wanted done by ME, and it fits what the people from SECUNIA.COM recommend vs. the single known exploit that exists on MacOS X (that produces 3 problems of System Access, Privelege escalation, & DOS/DDOS), just as I rec
-
Once more - Quit avoiding my questions... apk
Answer the questions, quit avoiding them (they're bolded, not quoted, & end in question marks - ok? That ought to be simple enough for the likes of yourself):
Are you telling us that a javascript exploit via a webbrowser in its default launch configuration is "immune" to javascript exploits on MacOS X? Alternately, what about scriptable documents, such as Adobe Reader can do (iirc, even on MacOS X it can & this too, has been exploited both locally AND remotely)?
Answer THAT, please...
(LOL! Man, rhia ought to be about as good as your saying "MacOS X has NEVER BEEN PATCHED" & now? You have to admit it has been, after the JAVA patch Apple FINALLY issued yesterday clearly illustrated for us all to see (to see that you are nothing more than a zealot who cannot see reason, or that you are ignorant)... lmao!)
----
"A single Java flaw that took months to patch with no actual threat in the wild" - by RyuuzakiTetsuya (195424) on Wednesday June 17, @02:33PM (#28364331)
Again, simple: As I have said earlier here repeatedly - Your OS & other *NIX's are hidden by "security by obscurity"... & I am NOT the only pro in this field that holds that viewpoint, see the quote below:
I.E.-> Not enough folks use it, to make it worthwhile for hacker/cracker types to target (certainly NOT by comparison to the market share of Windows, which dwarves all of *NIX-dom combined in fact, & certainly on the most used hardware platform there is, in x86) for it to be a target of malware makers/hacker-cracker types... AND? I am not the only person who holds that view either - take a read:
http://www.totaltele.com/view.aspx?ID=446406&Page=0
(In regard to the slashdot article entitled "The next Ad you click may be a virus", it is its source, here, from yesterday -> http://it.slashdot.org/article.pl?sid=09/06/15/2056219 )
----
"Hackers are like any other criminal out there. They look for opportunities where there is the largest number of people gathered, because they will get the best return on their efforts," says Hemanshu Nigam, who oversees safety, security and privacy for News Corp.'s online properties, including MySpace. News Corp. also owns Dow Jones, publisher of The Wall Street Journal"
----
AND? Most folks are "gathered" on Windows usage, worldwide, period!
So - IF the "year of the (insert *NIX variant here) desktop" ever happens (hasn't yet, though I have been hearing THAT diatribe propoganda for nearly 15 yrs. now & it never happens)?
Then, you'll see THAT *NIX get "hit" just as much as Windows does (perhaps more, because of the arrogance of people like yourself that think you need no protective measures online (funny though, that even *NIX servers ride behind firewalls don't they?))...
That all "said & aside", by someone other than myself no less who was quoted in said article? This is a reply to your obvious lack of know-how in your reply:
"Being a dedicated Windows user for about 10 to 15 years has gotten me to really think for myself. I thought, "Maybe I want a machine that isn't going to die just from browsing the web." Then I got a Mac. - by RyuuzakiTetsuya (195424) on Wednesday June 17, @04:02PM (#28365501)
You "thought"? That's a first... AND?? You didn't "think" enough... others who used what my guide entails in its points think, and SEE, quite differently:
----
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing o
-
Reduced to tossing NAMES my way?
"Why are you polluting slashdot with your MS FUD that's largely been debunked?" - by RyuuzakiTetsuya (195424) on Tuesday June 16, @07:44AM (#28346135)
Anyone is free to read this exchange, & make up their OWN minds... but, they ought to note you are reduced to what my subject line states, directed DIRECTLY my way (the sure sign of defeat in intelligent debate)
"I'm pretty sure that the folks here really don't buy your garbage" - by RyuuzakiTetsuya (195424) on Tuesday June 16, @07:44AM (#28346135)
Sure, sure, but I am "BIG ON PROOFS", so, how about 100 times of my being "modded up" here +1 (harder on us "A/C" posters on +1 no less, we start @ zero) - +5 max then?
See here for that list (only partial, but it will do to disprove your crap) -> http://news.slashdot.org/comments.pl?sid=1229289&cid=27933241
So much for THAT, lmao!
(Look before you leap... & on THAT note?)
"Who the hell are you?" - by RyuuzakiTetsuya (195424) on Tuesday June 16, @07:44AM (#28346135)
Since you ask? Ye shall receive...
Windows NT Magazine (now Windows IT Pro) pril 1997 "BACK OFFICE PERFORMANCE" issue, page 61
(&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row).
WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)
PC-WELT FEB 1998 - page 84, again, my work is featured there
WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there
PC-WELT FEB 1999 - page 83, again, my work is featured there
CHIP Magazine 7/99 - page 100, my work is there
GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it
HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!
Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in this field besides coding only...
Lastly, being paid for an article that made me money over @ PCPitstop in 2008 for writing up a guide that has people showing NO VIRUSES/SPYWARES & other screwups, via following its point, such as THRONKA sees here -> http://www.xtremepccentral.com/forums/showthread.php?s=ee926d913b81bf6d63c3c7372fd2a24c&t=28430&page=3
HAVE YOU DONE ANYTHING EVEN NEAR REMOTELY THE SAME?
(If so, prove it please, I evidently had to... thanks!)
THAT LIST ALONE?
Well - It might help answer that question since you're asking it so I give the evidences thereof, easily verifiable, & disprove some of your other comments just like the proof above did, lol... again - look before you leap!
"You're an idiot" - by RyuuzakiTetsuya (195424) on Tuesday June 16, @07:44AM (#28346135)
The very second you have to toss names MY way? You've lost... I only called the person who "modded you up" a fool, but I do NOT recall calling YOU any names... show me where I did please? Thanks.
"You're incredibly uninformed and not really providing any real information on how a given Mac or *NIX box would be taken down in similar ways to Windows machines." - by RyuuzakiTetsuya (195424) on Tuesday June 16, @07:44AM (#28346135)
Really? The lists I put up show QUITE otherwise...
-
Re:Correction
"Home users really don't have to worry about Samba file/print sharing owning their machine like NetBIOS on Windows users have to worry about their machines being similarly owned." - by RyuuzakiTetsuya (195424) on Saturday June 13, @03:18AM (#28318001)
Neither do Windows NT-based OS users, once they cut the "SERVER" service... that controls all/each of the things you note, & if they only have a SINGLE system @ home, or more that are not "networked to one another"? Problem solved... easily! You can layer on more defenses ontop of that simple measure, just in case you DO 'suck in' a malware that reactivates it, & the guide I post below, shows how!
----
"Sure, disabling autorun, running firewalls, virus scanners, etc. is great computing practice, I think it's more to expect from a typical home user who just wants the damned thing to work regardless" - by RyuuzakiTetsuya (195424) on Saturday June 13, @03:18AM (#28318001)
Want to "do it right", & as EASY as possible? See here:
----
HOW TO SECURE Windows 2000/XP/Server 2003 & even VISTA, + make it "fun-to-do", via CIS Tool Guidance (&, beyond):
http://www.tcmagazine.com/forums/index.php?s=da9e00ecfeb1ec4065b3c748e4ee4e02&showtopic=2662
----
And, it works...
(Nicest part is, that the CIS Tool makes it as SIMPLE as it gets for Windows XP users to secure themselves @ the registry + filesystems levels by guiding them as to what to do & the directions are detailed enough & good, & then using Windows Server 2003's "SCW" (security configuration wizard) does as well, & it's "built in" as an addon you can install in Windows Server 2003).
APK
P.S.=> Layered security, above & beyond the std. practices of a software firewall, antivirus, &/or antispyware programs resident + how to make it as easy as it gets (due to the CIS Tool making it so) to have a secured Windows NT-based OS of modern variety, step-by-step, & for a user's opinion of it (just one of MANY)? See here:
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA (forums user @ xtremepccentral)
... apk -
Re:Viruses Aren't a Problem in Linux
"I'm sure you already know about unix permissions and SELinux. Have you tried running Firefox via chroot on windows yet? Linux is more secure, period. It's not perfectly secure, but it has never had a major virus. Neither, AFAIK, has Mac OS X. Also, linux can be made more secure than just about any other OS, without losing functionality." - by Anonymous Coward on Friday June 12, @11:29AM (#28308857)
I sure do, & note it in this article (yes, it's for Windows, & allows securing Windows NT-based OS of "modern variety" (2000/XP/Server 2003 & even VISTA etc. et al) FAR better than they are by default) ->
----
HOW TO SECURE Windows 2000/XP/Server 2003 & even VISTA, + make it "fun-to-do", via CIS Tool Guidance (& Beyond):
http://www.tcmagazine.com/forums/index.php?s=1cfece2a1c826e6840c98db9377ac9c8&showtopic=2662
----
CIS Tool is also noted well by COMPUTERWORLD, & is MULTIPLATFORM (meaning *NIX users (BSD &/or Linux variants + SOLARIS users can use it as well)... in fact, Bert64, a user here on
/.? His results are featured in that guide, 1st post... & he used SuSe Linux iirc!SeLinux is a set of kernel hooks (kernel patching) that allows better than std. *NIX permissions, but then again? So do Windows NT-based OS' ACL's... & yes, they work:
Would you like to see others' results which have been just like my own from that guide above?
(With myself & others seeing no virus/trojan/spyware/malware in general infections here for more than a decade using the principals &/or techniques my article above notes on Windows)? I can supply them, just ask (url's & quoted testimonials)
Try this one, for starters:
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA (forums user @ xtremepccentral)
----
"It's a very nice troll, but we're not talking out of our asses here." - by Anonymous Coward on Friday June 12, @11:29AM (#28308857)
Funny: The lists I put up of over 50++ virus/trojans/worms & other exploits possible on Linux in my previous responses to you, DO seem to show QUITE otherwise...
APK
P.S.=>
"The wikipedia article is cute." - by Anonymous Coward on Friday June 12, @11:29AM (#28308857)
Sure is: It shows over 37++ virus/trojans/worms & other exploits possible (or, were possible) on Linux... apk
-
"My Name is Ozymandias. Look upon my works"
"You claim that you're a professional. Prove it" - by ion.simon.c (1183967) on Sunday May 03, @08:52PM (#27811101)
I've answered ALL of your questions (the ones that matter, & I did so, w/ out writing out a book to do so), here -> http://tech.slashdot.org/comments.pl?sid=1219095&cid=27806379
HOWEVER - You by way of comparison, screwed up on several points throughout this exchange, shown by your erroneous points I quoted no less in my replies, such as:
1.) HOSTS files -> http://slashdot.org/comments.pl?sid=1219095&cid=27803005
2.) DNS Servers -> http://slashdot.org/comments.pl?sid=1219095&cid=27803627
3.) Logon scripts & Group Policies usage -> http://slashdot.org/comments.pl?sid=1219095&cid=27800951
4.) SeLinx being implemented via kernel hooking/kernel patching -> http://tech.slashdot.org/comments.pl?sid=1219095&cid=27806379
5.) Services patching &/or cutoffs for security -> http://slashdot.org/comments.pl?sid=1219095&cid=27802917
6.) What the definition of "System Hardening" is -> http://slashdot.org/comments.pl?sid=1219095&cid=27800687(AND, more that you were incorrect on, but that list will do!)
----
Also, as far as the quote of yours I put up above initially?
The day you have appeared this many times in reputable printed publications in this art & science, + have commercially sold application code to your credit, as I have here:
----
Windows NT Magazine (now Windows IT Pro) pril 1997 "BACK OFFICE PERFORMANCE" issue, page 61
(&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row).
WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)
PC-WELT FEB 1998 - page 84, again, my work is featured there
WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there
PC-WELT FEB 1999 - page 83, again, my work is featured there
CHIP Magazine 7/99 - page 100, my work is there
GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it
HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!
Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in this field besides coding only...
Lastly, being paid for an article that made me money over @ PCPitstop in 2008 for writing up a guide that has people showing NO VIRUSES/SPYWARES & other screwups, via following its point, such as THRONKA sees here -> http://www.xtremepccentral.com/forums/showthread.php?s=ee926d913b81bf6d63c3c7372fd2a24c&t=28430&page=3
----
OR, even something as simple as this many "mod ups" here, as I have:
----
+5 'modded up' posts by "yours truly":
-
The day you have done all this? THEN, talk
"You claim that you're a professional. Prove it" - by ion.simon.c (1183967) on Sunday May 03, @08:52PM (#27811101)
Well:
The day you can appear in respected publications and widely recognized contests in this field (Ms Tech-Ed), or have commercially sold application code to your credit? (as I have on each of those grounds in this art & science)?
----
Windows NT Magazine (now Windows IT Pro) pril 1997 "BACK OFFICE PERFORMANCE" issue, page 61
(&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row).
WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)
PC-WELT FEB 1998 - page 84, again, my work is featured there
WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there
PC-WELT FEB 1999 - page 83, again, my work is featured there
CHIP Magazine 7/99 - page 100, my work is there
GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it
HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!
Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in this field besides coding only...
Lastly, being paid for an article that made me money over @ PCPitstop in 2008 for writing up a guide that has people showing NO VIRUSES/SPYWARES & other screwups, via following its point, such as THRONKA sees here -> http://www.xtremepccentral.com/forums/showthread.php?s=ee926d913b81bf6d63c3c7372fd2a24c&t=28430&page=3
----
OR, even these many "mod ups" here on YOUR postings Ion.SIMIAN.c?
----
+5 'modded up' posts by "yours truly":
http://it.slashdot.org/comments.pl?sid=170545&cid=14210206
http://hardware.slashdot.org/comments.pl?sid=175774&cid=14610147
http://it.slashdot.org/comments.pl?sid=1139485&cid=26975021
http://it.slashdot.org/comments.pl?sid=1139485&cid=26974507
----
+4 'modded up' posts by "yours truly":
http://slashdot.org/comments.pl?sid=161862&cid=13531817
http://developers.slashdot.org/comments.pl?sid=167071&cid=13931198
----
+3 'modded up' posts by "yours truly":
(LOOK @ THIS NEXT ONE BELOW, lol)
http://developers.slashdot.org/comments.pl?sid=155172&cid=13007974
http://it.slashdot.org/comments.pl?sid=166850&cid=13914137
http://slashdot.org/comments.pl?sid=175857&cid=14615222
http://slashdot.org/comments.pl?sid=273931&threshold=1&commentsort=0&mode=thread&cid=
-
You're blind, dyslexic, or a troll (see inside)
"Yes, I have. I've been using computers since the Tandy 1000 TL. That one was produced in... 1986, 1987 or so." - by ion.simon.c (1183967) on Saturday May 02, @05:43PM (#27801111)
And, evidently NOT doing much with them either... &, you surely showed your behind about ACL's in NT-based OS in your other replies too (you messed up hugely, lol, give up already).
----
"Point me to a place in any of your forum postings where you say the equivalent of "See here for a hosts file that is not out of date." - by ion.simon.c (1183967) on Saturday May 02, @05:43PM (#27801111)
Boy, you either have not read it, or are dyslexic... see here ->
As I said before?
My HOSTS file's updated from sources like:
Stopbadware.org
SRI
SpyBot "S&D"
Dancho Danchev ZDNet Blog
PLUS - Other reputable HOSTS file shown on WIKIPEDIA's entry for HOSTS filesAND, in my posts here I said that Folks can email me for a current one, & many do -> http://www.tcmagazine.com/forums/index.php?s=8b87fa331607ccbe8078215f389936c2&showtopic=2662&st=0&start=0
(See post #6 there, dyslexic blind man)
----
"You and I have already talked about your accomplishments" - by ion.simon.c (1183967) on Saturday May 02, @05:43PM (#27801111)
Yes, & you have NOTHING like them (lol, so much for your WASTING TIME on PC's, all these years), see below... again!
----
"You've demonstrated none of the knowledge that you claim to have." - by ion.simon.c (1183967) on Saturday May 02, @05:43PM (#27801111)
Funny, these say otherwise (&, they carry a lot more "weight" than your mere unqualified opinion):
----
Windows NT Magazine (now Windows IT Pro) April 1997 "BACK OFFICE PERFORMANCE" issue, page 61
(&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row).
WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)
PC-WELT FEB 1998 - page 84, again, my work is featured there
WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there
PC-WELT FEB 1999 - page 83, again, my work is featured there
CHIP Magazine 7/99 - page 100, my work is there
GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it
HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!
Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in this field besides coding only...
Lastly, being paid for an article that made me money over @ PCPitstop in 2008 for writing up a guide that has people showing NO VIRUSES/SPYWARES & other screwups, via following its point, such as THRONKA sees here -> http://www.xtremepccentral.com/forums/showthread.php?s=ee926d913b81bf6d63c3c7372fd2a24c&t=28430&page=3
----
"Nuff said", except for the quote from Shelley's poem & the film, "The Watchmen", below... lol!
P.S.=> "My name is Ozymandias, king of kings: Look on my works, ye Mighty, and despair!"
... apk -
Yes, I am right (thanks for agreeing) Ion.SIMIAN.c
"Right... " - by ion.simon.c (1183967) on Saturday May 02, @02:20PM (#27799759)
Yes, I am, as-per-usual, especially when I showed you how often DNS servers get hacked (just recently in New Zealand last week, see below - would you like a few more of the same, in those types of evidences?)
----
Hackers hijack DNS records of high profile New Zealand sites
April 21st, 2009
http://blogs.zdnet.com/security/?p=3185
----
I suggest you read that, again!
(Mainly, because that is EXACTLY what "DNS Poisoning" is about - redirecting users to a bogus website for say, www.slashdot.org, to their site loaded with malscripted traps)
Man - At this point? I strongly suspect you do NOT know what you are talking about (& are trying to "save face" here @ this point now, with double-talk b.s.!)
----
"How is some clueluess user going to find the very latest copy of the hosts file that you're distributing when you've put several hundred different revisions across several thousand different forums?" - by ion.simon.c (1183967) on Saturday May 02, @02:20PM (#27799759)
There is only 1, & they email me for it (otherwise, they get an older one that is VERY tiny, no need to disable the DNS client either since it is small, & it's only for speed really, by blocking adbanners in that tiny older one)...
I.E.-> My latest one is updated, daily, from numerous reputable sources (ZDNet's Dancho Danchev, StopBadware.org, SRI, & even Spybot "Search & Destroy" lists, to name only some of them)
----
"Would you recommend to your 3000-identical-Windows-machines-at-a-site clients that they install the latest
.MSI of EnterpriseApp v4.0 by burning a disc, taking it to each computer -one at a time-, logging in with a root account, open Explorer, double click the .MSI, answer the installer's questions, wait for the installer to complete, and move on to the next machine?" - by ion.simon.c (1183967) on Saturday May 02, @02:20PM (#27799759)Man, either YOU cannot read, or you don't understand what I noted last post:
LOGON SCRIPTS can merge
.reg files settings for reconfiguration, via batch .bat or .cmd files...OR
Group Policies via AD distribution can do much of this as well, and for different areas/things!
(Have you ever done anything of this nature as a network administrator or tech? Apparently not!)
APK
P.S.=>
"you're doing the internet a disservice by spraying copypasta across the web." - by ion.simon.c (1183967) on Saturday May 02, @02:20PM (#27799759)
This guy says QUITE otherwise, take a read (opinions vary, lol):
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill.
I told him yes, but I just eliminated the half life in windows that you usually get.
He said good point.
So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads.
APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easie
-
Results users obtained say otherwise... apk
"Also, your guide? It's not hardening." - by ion.simon.c (1183967) on Friday May 01, @08:57PM (#27794675)
I'll have to disagree with you: It absolutely is (considering you are, for example, "fortifying" a file, like a custom HOSTS file, the registry, & others vs. known bad sites etc.) - &, especially when it gets others w/ results like this:
----
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)"
THRONKA@xtremepccentral.com
----
It most certainly is a form of "system hardening".
(Especially considering it's not just registry reconfigurations & such, but far more!)
AND? Hey - It just works!
(& in my P.S. below is another example of that & how/why)
----
"No amount of registry tweaking and software uninstallation can make Windows match up to the results from either of those projects." - by ion.simon.c (1183967) on Friday May 01, @08:57PM (#27794675)
OH, I "beg to differ", & so does NASDAQ!
(NASDAQ sees 99.999%/fabled "5-9's" of 'uptime' that Windows Server 2003 + SQLServer 2005 have achieved for NASDAQ (The world's largest electronically traded stock exchange & a very high "tpm" environs), since 2005, on the "industrial front", for nearly 5 yrs. now)
----
NASDAQ Migrates to SQL Server 2005:
http://windowsfs.com/enews/nasdaq-migrates-to-sql-server-2005
----
&, also see here ->
----
NASDAQ Performance Statistics
http://www.nasdaqtrader.com/Trader.aspx?id=MarketShare
"NASDAQ is renowned for its high performance technology and has proven reliability with 99.999+% uptime. Whats more, firms count on NASDAQ for unsurpassed speed and tested capacity to execute trades quickly and efficiently."
APK
P.S.=> Again, & I have noted this in other posts here?
My buddy Jack (who has a "penchant for Pr0n" & the indiscriminate usage of javascript on EVERY site he visits (bad move, because today that is one of the MAIN "delivery/attack mechanisms" used in these things being put on others' machines)) went from literally getting 200++ malwares on his system per WEEK, down to MAYBE 1-2 a year &, the couple he gets, are a result of his use of javascript (& he knows + admits it)... after his application of my guide's steps.
Thus, once more, via such an example, albeit again (like THRONKA's written results above) from an "end-user" this time (not NASDAQ's fine example on the industrial front)?
It works! apk
-
E.G.- Hackers hijack DNS records 04/21/2009
" DNS changes *Very* quickly." - by ion.simon.c (1183967) on Friday May 01, @09:47PM (#27794995)
That has NOTHING to do with an adbanner, bad adbanner, or bad website blocking custom HOSTS files!
(That was the main reason & purpose of noting them in my guide)...
E.G./I.E.-> HOSTS files that use 0, 0.0.0.0, or 127.0.0.1 (no DNS server broadcasts those, mind you) to block out known bad adbanners, bad websites, etc. et al!
( & the security portion of using a HOSTS file is largely that, not "hardcoding" in your favorite websites into it so you avoid DNS round-trip lookups of URL-to-IP address resolutions )...
AND, as far as "DNS Servers changing", AND, their reliability for URL-to-IP address resolutions?
(BOY, do they... )
See here:
Hackers hijack DNS records of high profile New Zealand sites
April 21st, 2009
http://blogs.zdnet.com/security/?p=3185
(That's VERY recent, & only a SINGLE EXAMPLE of "DNS poisoning", & that goes on quite a lot (especially the past 6 yrs. or so now)).
----
"There's a reason why most IT professionals prefer centralized installation systems over manually walking to each of the systems that they manage and installing each piece of software a machine at a time." - by ion.simon.c (1183967) on Friday May 01, @09:47PM (#27794995)
The guide deals in things that can be "mass deployed" via Group Policies (or via logon scripts via
.reg file merges, or HOSTS file copies to local machine nodes on a network, in the same manner)...So - how is this not the same? The guide shows a user on a single machine how to do this (& it states it is geared to single machines @ home online on the internet, though it also warns what to do, or not to do, on a LAN/WAN (especially an AD one)).
(E.G.-> You'd "prototype" a single machine with diff. wares a particular company uses OR custom develops, & then deploy the hardened settings across the rest once you have a proven, working, & useable setup)
APK
P.S.-> The bottom-line however, IS that the guide's recommendations are largely "industry based practices" for the OS tested per CIS Tool, AND, that it just works!... an example thereof:
----
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)"
THRONKA@xtremepccentral.com
----
apk
-
See here then, Keruo... apk
"My guess would be" - by Keruo (771880) on Friday May 01, @02:22PM (#27790545)
Something along the lines of this:
----
HOW TO SECURE Windows 2000/XP/Server 2003, & even VISTA, + make it 'fun-to-do', via CIS Tool Guidance (&, beyond):
http://www.tcmagazine.com/forums/index.php?s=205e8f8ebee94af1add5ec477faf8a70&showtopic=2662 [tcmagazine.com]
----
It's doable, w/ about 1-2 hours, TOPS, of your time, in order to "security-harden" a Windows NT-based OS of modern variety, yourself... that's how/why!
A QUOTE FROM THE ARTICLE THAT I KNOW IS NOT TRUE:
---
"The only problem is, you have to join the Air Force to get it."
----
SO - How do I know, besides my actually SEEING the results I have seen for myself, paying clients, friends & family?
Well, here is a quote from an end-user that applied that guide above in the 1st url I posted, as evidence thereof:
----
http://www.xtremepccentral.com/forums/showthread.php?s=7de5812b7341873cc5e6ee9582f21bf9&t=28430&page=3 [xtremepccentral.com]
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)"
THRONKA@xtremepccentral.com
----
Where even "normal end-users" can get results, like that, by taking 1-2 hrs. of their time, TOPS, to apply some settings given to they by CIS Tool (a multiplatform gauge/benchmark of std. industry-based best practices for each OS platform tested)
"Nuff said"...
APK
P.S.=> Following the security hardening guidelines provided by NIST can do very nearly the same thing, so, I imagine a lot of that & what is in the security guide I authored up there in the 1st URL in 2007-2008 is what has been applied to it (vs. the easily mass-deployed stock/oem std. model of XP most folks get)... and?
THE MILITARY HAS GOTTEN 'SECURITY-HARDENED BUILDS' OF WINDOWS, before (circa 2004 in fact), see here:
----
US military gets its own secure version of Windows:
23 November 2004
http://www.techworld.com/opsys/news/index.cfm?newsid=2666 [techworld.com]
----
& they have to, as you can all see, based on this report, yet again...
Makes sense though - because new exploits + vulnerabilities arise, & people LEARN HOW TO "GET AROUND" RESTRICTIONS, though, many times to their OWN dismay... apk
-
"You have to join the Air Force to get it" = b.s.!
"Nothing can make Windows (or any other OS) completely secure if it's connected to a network" - by PapaSmurph (249554) on Friday May 01, @02:37PM (#27790805) Homepage
THE MILITARY HAS GOTTEN 'SECURITY-HARDENED BUILDS' OF WINDOWS, before (circa 2004 in fact), see here:
----
23 November 2004
US military gets its own secure version of Windows
http://www.techworld.com/opsys/news/index.cfm?newsid=2666
----
& they have to, as you can all see, based on this report, yet again...
Makes sense though - because new exploits + vulnerabilities arise, & people LEARN HOW TO "GET AROUND" RESTRICTIONS, though, many times to their OWN dismay!
SO, that "all said & aside", & what I quoted from you? YES - I'm inclined to agree!
(Albeit only IF a person doesn't have a "Security-Hardened" & FULLY (current) service pack + hotfix applied system, & ONLY on 1 grounds:
That being People Themselves... (I.E.-> People "break/bend rules", ALL THE TIME, & when it gets them in a jam? Then, they call for help, & complain about Windows etc. et al))
E.G.-> I have a pal named Jack that followed this guide I wrote, & he went from having 200+ malware infestations a week, down to maybe 1-2 a year now. He knows what did he in as well! (He has a "penchant for Pr0n", & he also used javascript almost indiscrimately/unlimitedly (is there such a word in the latter? lol) on every website he visits (this he has cut way, Way, WAY down on, & in turn, so did his infections also))...
Still, I have evidences of folks that CAN "follow rules" (for their own good no less), & I provide THEIR results (1 of them) below, for "contrast & compare" type scenarios vs. my buddies' experience above... This guide below, really works (&, you don't have to be in the US Military to get it, you can do it, yourself):
----
HOW TO SECURE Windows 2000/XP/Server 2003, & even VISTA, + make it 'fun-to-do', via CIS Tool Guidance (&, beyond):
http://www.tcmagazine.com/forums/index.php?s=205e8f8ebee94af1add5ec477faf8a70&showtopic=2662
----
It's doable, w/ about 1-2 hours, TOPS, of your time, in order to "security-harden" a Windows NT-based OS of modern variety, yourself... that's how/why!
A QUOTE FROM THE ARTICLE THAT I KNOW IS NOT TRUE:
---
"The only problem is, you have to join the Air Force to get it."
----
How do I know, besides my actually SEEING the results I have seen for myself, paying clients, friends & family?
Well, here is a quote from an end-user that applied that guide above in the 1st url I posted, as evidence thereof:
----
"Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my ho
-
Problem is, you have to join the Air Force = b.s.
"If they can make it more secure, why don't they offer everyone the secure version?" - by slashkitty (21637) on Friday May 01, @02:30PM (#27790685) Homepage
You can do it, yourself, is why... &, here is how:
----
HOW TO SECURE Windows 2000/XP/Server 2003, & even VISTA, + make it 'fun-to-do', via CIS Tool Guidance (&, beyond):
http://www.tcmagazine.com/forums/index.php?s=205e8f8ebee94af1add5ec477faf8a70&showtopic=2662
----
It's doable, w/ about 1-2 hours, TOPS, of your time, in order to "security-harden" a Windows NT-based OS of modern variety, yourself... that's how/why!
A QUOTE FROM THE ARTICLE THAT I KNOW IS NOT TRUE:
---
"The only problem is, you have to join the Air Force to get it."
----
How do I know? Besides the results I have seen for myself, paying clients, friends & family? Well, here is a quote from an end-user that applied that guide above in the 1st url I posted, as evidence thereof:
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point.
So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads.
APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)"
THRONKA@xtremepccentral.com
----
"Nuff said...", as the saying goes... for now, @ least!
APK
-
Re:Summary is biased... &, you're not?
"Disabling the server and browser services, among others, are the first things I do with a windows system. Yes, this means no file sharing from a windows machine, but how often do you do that anyways on most home single system setups?" - by Gr8Apes (679165) on Friday May 01, @12:10PM (#27788357)
As do I, & IF you read the links to the "HOW TO SECURE Windows 2000/XP/Server 2003 & even VISTA + make it 'fun-to-do', via CIS Tool Guidance" guide that I had put into my previous post you responded to? You'll see that, & FAR more...
(The nice part is, the CIS Tool checks for VERY SIMILAR THINGS between ALL of the OS' (such as filesystem security etc. & more))...
----
"It's true that this will block most worms, as there will be few open ports left. It still doesn't mean that the system is secure" - by Gr8Apes (679165) on Friday May 01, @12:10PM (#27788357)
You won't hear any argument from me about that, because you're correct imo as well...
Which is mainly why the guide I put up has far more in it than just that in its content.
(The guide has done well for itself, but more importantly for others who used it, & in roughly a year's time online (250,000++ views across 20 forums, & most times with it being in the top 1-5 most viewed of all time in said forums in such a relatively short timeframe, as well as being made an "essential guide" or "sticky/pinned thread" across said forums, plus being highly rated (5/5 star type stuff) or otherwise complimented in its content in said forums)).
It just works!
APK
P.S.=>
"The fact that much code runs through DLLs with system level access allows for buffer overflows to basically run anything they want at root level, so if you hit anything external like a web page, you're vulnerable" - by Gr8Apes (679165) on Friday May 01, @12:10PM (#27788357)
Again true, but as far as webpages?
I recommend stalling the indiscrimate usage of javascript (for one thing) for not only added security (because if you look @ places like SECUNIA.COM or SECURITYFOCUS.COM as just 2 examples? MOST ATTACKS TODAY LEVERAGE IT via misuse for such attacks) but, also as a bonus? More speed results! In other words:
ONLY USE JAVASCRIPT WHERE IT ABSOLUTELY HAS TO BE USED FOR FULL FUNCTION REQUIRED BY THE END USER (good examples thereof are sites that do online commerce &/or banking).
Blocking out known bad sites is also covered in its DNS servers &/or HOSTS file section as well vs. such sites... details are in those url's I posted in my last post, in case yourself OR anyone else reading, is interested... & yes, again, it works... proof? Ok, from an end-user:
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point.
So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads.
APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)"
THRONKA@xtremepccentral.com
----
apk
-
Re:Summary is biased... &, you're not?
"I mean first of all Windows 2000 is currently still the most rock solid, impenetrable OS you can use. There is no reason to think a more secure OS has been released since that time." - by iamhigh (1252742) on Friday May 01, @10:25AM (#27786703)
Windows 2000 (&, later Windows versions) can be made to be VERY secure, by security-hardening them, & secured based on "industry best practices"!
(Per the multiplatform CIS Tool, which also mind you, runs on various *NIX OS', such as Solaris, quite a few BSD variants (since you noted it in your 2nd url (no MacOS X though afaik)), & yes - Linux too), quite easily - heck, the CIS Tool makes it actually sort of "FUN" to do (almost like running a PC performance benchmark test).
In fact, Windows 2000 Pro, specifically, can be made to CIS Tool score to the tune of a 99.058/100 score on this test:
& the HIGHEST *NIX score I have seen, to date, came from Bert64 (a member here) ->
http://www.xtremepccentral.com/forums/showthread.php?s=7de5812b7341873cc5e6ee9582f21bf9&t=28430
That was done on SuSE Linux @ 90/100 on CIS Tool, AND, like Windows? It came up from its default score of 46/100 (just as Windows typically does, same range of score initially by default).
(The makers of the test say not to compare "apples to oranges" (in other words, OS-to-OS score comparisons), but, my point IS there - they all can be further secured above the "norm" & that probably goes for things like SeLinux bearing Linux distros as well)).
APK
P.S.=> You *NIX guys often fail to note that market share of desktop & server markets matters in terms of how often these OS' are attacked - & that's obvious as to WHY Windows is the most attacked: Today's malware authors aren't after only making mischief & getting "bragging rights": They're about getting INFORMATION, that leads to monies from YOUR WALLET/BANK ACCOUNTS, etc. et al... &, they're going to target the LARGEST SINGLE BODY OF USERS OUT THERE, today, in order to do so... & guess what? Yes, that's right - that's Windows users! Make MacOS X or Linux (or even another BSD variant) the "top dog" out there, market-share-wise?? That'd then become "the most attacked" from a single codebase for attack, because they are out to "hit the largest mass they can with a single shot"... apk
-
Re:Summary is biased... &, you're not?
"I mean first of all Windows 2000 is currently still the most rock solid, impenetrable OS you can use. There is no reason to think a more secure OS has been released since that time." - by iamhigh (1252742) on Friday May 01, @10:25AM (#27786703)
Windows 2000 (&, later Windows versions) can be made to be VERY secure, by security-hardening them, & secured based on "industry best practices"!
(Per the multiplatform CIS Tool, which also mind you, runs on various *NIX OS', such as Solaris, quite a few BSD variants (since you noted it in your 2nd url (no MacOS X though afaik)), & yes - Linux too), quite easily - heck, the CIS Tool makes it actually sort of "FUN" to do (almost like running a PC performance benchmark test).
In fact, Windows 2000 Pro, specifically, can be made to CIS Tool score to the tune of a 99.058/100 score on this test:
& the HIGHEST *NIX score I have seen, to date, came from Bert64 (a member here) ->
http://www.xtremepccentral.com/forums/showthread.php?s=7de5812b7341873cc5e6ee9582f21bf9&t=28430
That was done on SuSE Linux @ 90/100 on CIS Tool, AND, like Windows? It came up from its default score of 46/100 (just as Windows typically does, same range of score initially by default).
(The makers of the test say not to compare "apples to oranges" (in other words, OS-to-OS score comparisons), but, my point IS there - they all can be further secured above the "norm" & that probably goes for things like SeLinux bearing Linux distros as well)).
APK
P.S.=> You *NIX guys often fail to note that market share of desktop & server markets matters in terms of how often these OS' are attacked - & that's obvious as to WHY Windows is the most attacked: Today's malware authors aren't after only making mischief & getting "bragging rights": They're about getting INFORMATION, that leads to monies from YOUR WALLET/BANK ACCOUNTS, etc. et al... &, they're going to target the LARGEST SINGLE BODY OF USERS OUT THERE, today, in order to do so... & guess what? Yes, that's right - that's Windows users! Make MacOS X or Linux (or even another BSD variant) the "top dog" out there, market-share-wise?? That'd then become "the most attacked" from a single codebase for attack, because they are out to "hit the largest mass they can with a single shot"... apk
-
Re:Wait a second... Definitely: Read here vs. that
"I thought Windows was secure. Why not use that? *cough* *cough*" - by Anonymous Coward on Tuesday April 28, @05:30AM (#27743003)
Yes, why not? Especially w/ results like these (from BOTH 'end users', & from a high tpm (transactions per minute) industrial environs):
NASDAQ keeps on running 24x7, into the fabled "5-9's" of 99.999% uptime using Windows Server 2003 + SQLServer 2005 (in failover clusters) since late 2005, acting as the official dissemination system of official trade data:
----
NASDAQ Migrates to SQL Server 2005:
http://windowsfs.com/enews/nasdaq-migrates-to-sql-server-2005
&/or
NASDAQ Uses SQL Server 2005 - Reducing Costs through Better Data Management:
"NASDAQ, the worlds first electronic stock market replaced its aging mainframe computers with Microsoft® SQL Server 2005 on two 4-node clusters to support its Market Data Dissemination System (MDDS). Every trade processed in the NASDAQ marketplace goes through the system with Microsoft® SQL Server 2005 handling some 5,000 transactions per second at market open. The system also responds to about 10,000 queries a day and is able to handle real-time queries against data without slowing the database down."
+
Case Studies - Financial Services:
http://www.microsoft.com/sqlserver/2005/en/us/cs-financial-roi.aspx?pf=true [microsoft.com]
"NASDAQ Deploys SQL Server 2005 to Support Real-Time Trade Booking and Queries
NASDAQ, which became the worlds first electronic stock market in 1971, and remains the largest U.S. electronic stock market, is constantly looking for more-efficient ways to serve its members. As the organization prepared to retire its aging large mainframe computers, it deployed Microsoft® SQL Server 2005 on two 4-node clusters to support its Market Data Dissemination System (MDDS). Every trade that is processed in the NASDAQ marketplace goes through the MDDS system, with SQL Server 2005 handling some 5,000 transactions per second at market open. SQL Server 2005 simultaneously handles about 100,000 queries a day, using SQL Server 2005 Snapshot Isolation to support real-time queries against the data without slowing the database. NASDAQ is enjoying a lower total cost of ownership compared to the large mainframe computer system that the SQL Server 2005 deployment has replaced."
----
SO, that all "said & aside" - You want PROOF of that "stability/uptime", you say?
OK, see here -> http://www.nasdaqtrader.com/Trader.aspx?id=MarketShare [nasdaqtrader.com]
"NASDAQ is renowned for its high performance technology and has proven reliability with 99.999+% uptime. Whats more, firms count on NASDAQ for unsurpassed speed and tested capacity to execute trades quickly and efficiently."
----
AND, now, from an end-user's perspective, once Windows has been "security-hardened" (& CIS Tool helps make THAT an 'easier job' for end-users too)?
See this -> http://www.xtremepccentral.com/forums/showthread.php?s=e8281208df2ccba74470d6c68e047d40&t=28430&page=3
----
"ts 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said
-
"Moving away from Windows is necessary" = b.s.
"Moving away from Windows is simply necessary judging by the kinds of attacks described" - by erroneus (253617) on Saturday April 18, @07:13PM (#27631191) Homepage
No, it's not, IF you know how to secure it, per a guide such as this one -> http://www.tcmagazine.com/forums/index.php?s=ced36a7f152cf6e6f138af849a4fe3a7&showtopic=2662
Where people who have used it (end users-wise), have gotten results such as this one:
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads.
APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)"
THRONKA @ xtremepccentral.com
----
And, as far as stability/uptime, AND SECURITY, in a corporate environs (and, in a high tpm example no less)?
Look no further than NASDAQ, here:
----
NASDAQ Migrates to SQL Server 2005:
http://windowsfs.com/enews/nasdaq-migrates-to-sql-server-2005 [windowsfs.com] [windowsfs.com] [windowsfs.com]
----
Where Windows Server 2003 + SQLServer 2005 does, and has done for YEARS now mind you, a great job of being the official disseminator of trade data @ NASDAQ, running into the "fabled 5-9's" of 99.999% uptime for years now, 24x7, via failover clustering... that was back in 2006 (possibly earlier, as that is only the date of the article)...
Best of ALL? Hey, it's Windows!
(Which means you probably already own & are familiar w/ Microsoft + Win32 applications on every level of use there is...)
APK
P.S.=> How secure an OS is, is dependent on the person(s) running the machine/network, & their diligence as well as "know-how"... this extends to ANY OS there is, period, and you ALL know it (despite the "Pro-*NIX" bias this website has bigtime)... additionally?
The ONLY reason Linux is not as victimized, is because it is less used. Now, make Linux take as much share of the market as Windows enjoys? Linux WILL be hit as hard, if not harder...
I.E.-> Today's malware makers are after your personal information and monies, after all, & they shoot @ the largest target there is - Windows!
I mean, hey - the very fact that webbrowsers on Linux can run Javascript alone indicates they are just as vulnerable, via the webbrowsers themselves, as is Windows...
(& please, don't try to tell us "*NIX is invulnerable", because this -> http://blogs.zdnet.com/security/?p=3157 clearly shows otherwise, & is only a "portent of things to come")... apk
-
"Windows should be ruled out" = b.s.
"One thing which is absolutely clear; Windows should be ruled out" - by rtfa-troll (1340807) on Sunday April 19, @04:16AM (#27634457)
Not if you know how to secure & administer it, properly (this goes for ANY OS out there mind you), per a guide such as this one:
http://www.tcmagazine.com/forums/index.php?s=7e43749a95b34ffdc7e782a0d5bedc58&showtopic=2662
Where users who have applied it have experienced results such as this one:
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009 No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads.
APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)"
THRONKA @ xtremepccentral.com
----
And, as far as the stability AND SECURITY of a Windows machine, in a HIGH TRANSACTIONS-PER-MINUTE (TPM) ENVIRONS? Look no further than NASDAQ:
(Because, for stability? Windows has DEFINITELY "made it", & well (w/ proof thereof below) in that area, as well, per this evidence thereof)
Windows Server 2003 + SQLServer 2005 does, and has done for YEARS now mind you, a great job of being the official disseminator of trade data @ NASDAQ, running into the "fabled 5-9's" of 99.999% uptime for years now, 24x7, via failover clustering... that was back in 2006 (possibly earlier, as that is only the date of the article):
----
NASDAQ Migrates to SQL Server 2005:
http://windowsfs.com/enews/nasdaq-migrates-to-sql-server-2005 [windowsfs.com] [windowsfs.com]
----
Best of ALL? Hey, it's Windows!
(Which means you probably already own & are familiar w/ Microsoft + Win32 applications on every level of use there is...)
APK
P.S.=> The ONLY reason Linux is not as victimized, is because it is less used... make Linux take as much share of the market as Windows enjoys? Linux WILL be hit as hard, if not harder...
I.E.-> Today's malware makers are after your personal information and monies, after all, & they shoot @ the largest target there is - Windows!
I mean, hey - the very fact that webbrowsers on Linux can run Javascript alone indicates they are just as vulnerable, via the webbrowsers themselves, as is Windows...
(& please, don't try to tell us "*NIX is invulnerable", because this -> http://blogs.zdnet.com/security/?p=3157 clearly shows otherwise, & is only a "portent of things to come")... apk
-
Proofs on YOUR end, possibly? I have 10++... apk
I've done most ALL of that, if not ALL, + FAR MORE, & CAN PROVE IT (unlike you - & though I do NOT really LIKE doing this part below? Now, I have to, since you have "put out yours" etc./et al)...
ALL, via these easily verified "tidbits" to evidence that for myself (in addition to MIS (b.s.) &/or Comp. Sci. (associates) degrees + coursework above & beyond that as well, like the certs YOU have for example):
---
Windows NT Magazine (now Windows IT Pro) April 1997 "BACK OFFICE PERFORMANCE" issue, page 61
(&, for work done for EEC Systems/SuperSpeed.com on PAID CONTRACT (writing portions of their SuperCache program increasing its performance by up to 40% via my work) albeit, for their SuperDisk & HOW TO APPLY IT, took them to a finalist position @ MS Tech Ed, two years in a row).
WINDOWS MAGAZINE, 1997, "Top Freeware & Shareware of the Year" issue page 210, #1/first entry in fact (my work is there)
PC-WELT FEB 1998 - page 84, again, my work is featured there
WINDOWS MAGAZINE, WINTER 1998 - page 92, insert section, MUST HAVE WARES, my work is again, there
PC-WELT FEB 1999 - page 83, again, my work is featured there
CHIP Magazine 7/99 - page 100, my work is there
GERMAN PC BOOK, Data Becker publisher "PC Aufrusten und Repairen" 2000, where my work is contained in it
HOT SHAREWARE Numero 46 issue, pg. 54 (PC ware mag from Spain), 2001 my work is there, first one featured, yet again!
Also, a British PC Mag in 2002 for many utilities I wrote, saw it @ BORDERS BOOKS but didn't buy it... by that point, I had moved onto other areas in this field besides coding only...
Lastly, being paid for an article that made me money over @ PCPitstop in 2008 for writing up a guide that has people showing NO VIRUSES/SPYWARES & other screwups, via following its point, such as THRONKA sees here -> http://www.xtremepccentral.com/forums/showthread.php?s=ee926d913b81bf6d63c3c7372fd2a24c&t=28430&page=3
---
Was fun... all of it (mostly)!
----
"I wrote several hundred thousand lines of code" - by Nos. (179609) on Wednesday April 15, @01:21AM (#27582591) Homepage
HEY: I've written MANY MILLIONS of lines of code, & in @ LEAST 10 different languages as well, PLUS, over a 16++ yrs. long PROFESSIONAL career in this field, & in both sharewares/freewares that have even gone into COMMERCIALLY SOLD SUCCESSFUL WARES also...
(Again - See Windows IT Pro magazine above, for instance, on that account, which also did well @ MS Tech-Ed 2 yrs. in a row, in the HARDEST CATEGORY THERE, of SQLServer performance enhancement, as a single "f'instance" thereof)...
(That's changed though, especially the past 10 yrs. now, & to mostly "enterprise class projects" (millions of lines in size, when I code that is) the past 10++ yrs. now, MOSTLY (while coding - I do other things on various jobs or during coding jobs, also))
----
"very few people are going to notice a savings of 30ms on the load time of their favourite sites (and that savings is only the FIRST time its loaded that day - depending the cache times)" - by Nos. (179609) on Wednesday April 15, @01:21AM (#27582591) Homepage
I do, & did...
You, 'suddenly now' seem to "fail to recall" that many others (notable even/perhaps), also use HOSTS files for not only security benefits they provide in extra layered security, which YOU conceded/agreed to, immediately... but, also for SPEED!
Others such as Mr. Oliver Day of SECURITYFOCUS.COM as well (whom I quoted earlier, in HIS noting speed gains particularly while websurfing & using a HOSTS file) here ->
-
Re:Neither do I, because of these 2 issues
Hello again Bert64: "LTNS"
(By the by, I broke a 99.958/100 on CIS Tool here -> http://www.xtremepccentral.com/forums/showthread.php?s=ac7c69ed984b7cd7f315ac4c27b34384&t=28430&page=3 , on Windows 2000 Professional desktop system for a client (hope you remember our conversation in regards to that, because I left you a note on Theo DeRaadt stating that the use of VM's to run OS' introduces more complexity & thus, more room for errors/security holes, & in the VM engine itself (which DOES make some sense - "more moving parts = more room for potential breakdown" type thinking))).
Anyhow/anyways, in response to your points now:
----
"Sure, users may try to resist the newest versions of windows because they don't like them, but sooner or later they will have no choice" - by Bert64 (520050) on Monday April 13, @02:49PM (#27560715) Homepage
I am one of those users, & mainly because of the removal of PORT FILTERING (which, if you saw their reasoning for this, from the VISTA resource kit? You'd LAUGH most likely Bert)
I.E. - MS said it was removed because none of the methods of software firewalls, IP Security Policies, nor Port Filters automatically "sync" from a single control point... Ok: Big deal!
That IS what you want, & mainly, because they each operate @ diff. levels of the IP stack, & that IS THEIR STRENGTH because of it!
Again, "take 1 of the 3 (Port Filters, IP Security Policies, or Software Firewalls) down (which malware OFTEN seeks to do no less)"?
The others are still standing in the way because they operate @ a diff. level of the IP stack, which is analogous to chain locks (IP Security Policies), deadbolts (Port Filters), & door handle locks (software firewalls)... I.E.-> Ms has HARMED "layered security" in VISTA &/or Windows 7 in doing this!
That, and HOSTS files being able to use 0 as a blocking IP address vs. 0.0.0.0 (next least efficient, & VISTA + Windows 7 can still use this one @ least, vs. -> ) &/or 127.0.0.1 (worst of the lot for speed &/or efficiency up off disk)...
----
"Crippling of OpenGL was clearly done to force the use of DirectX, games which use OpenGL are easier to port to other platforms. MS will always do what's best for them, not what's best for the users." - by Bert64 (520050) on Monday April 13, @02:49PM (#27560715) Homepage
Agreed, 110%... too bad too! On OpenGL from my "pov" & that of a pal:
A pal of mine named Mike M., who the other day slipstreamed in SP#3 + all the current hotfixes to make a new XP image using NLite (good front-end for this), because of the other set of reasons I noted in "DRM" &/or OpenGL gaming (he likes Quake 4, & VISTA would not play it for he).
I agree that MS has been doing "preinstalls" for decades (per my previous quote of your words in the paragraph prior to this one) - but, this time, due to all of the above? I think their plan is "backfiring" now!
I say that, because they have harmed one of their GOOD "linchpins", of backward compatibility, in OpenGL for instance, & YES, I agree w/ your reasons here of "DirectX Uber Alles"... &, that latter one drives me away as well (like my pal Mike I mentioned above? Well, I too, like Quake 4 or Doom III, & other OpenGL games - IDSoftware "fan" here is why).
(However, never before had MS truly, REALLY "tore out" things you could do on previous 32-bit versions of Windows, like OpenGL, & never had "DRM" either - well, once they took out the IP Forwarding GUI control in 2000 (vs. NT 4), & that was easy to fix IF you required the use of it (registry TCPIP section, HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters & the IPEnableRouter value there))
----
-
Re:Microsoft Begs Win 7 Testers To Clean Install
You said - "Because claiming that it (windows) is now "as secure" is a ludicrous assertion" well I have applied the CIS Tool and other guidance in this guide here -> http://www.tcmagazine.com/forums/index.php?s=f480901f4791e58ae53a34fb5fb31431&showtopic=2662 and have been malware infection free for more than 6 months now. In that guide also is where Linux was shown, just like Windows is out of the box, to only score 46/100 on the CIS Tool (a benchmarking system of security based on industry best practices for many Operating Systems) by default. Once security hardened, Windows is shown to be able to get to a 99.058/100 score, and Linux was only capable of reaching 90/100 (from a user named Bert64 who posts here no less). I applied this guide after seeing testimonies here -> http://www.xtremepccentral.com/forums/showthread.php?s=c92dde4c57f7304da17d4f3b38fef1e3&t=28430&page=3 of a users' there (Thronka) and his stating that even after more than 1 years' usage of Windows, the users own systems and those of his paying clients have seen no slowdowns (they go faster if anything, because I definitely now do, and cutting off services that run by default I did not need alone did that much for me, besides performance and security registry hacks, plus more), and have not been infected by malware of any kind due to practices recommended in that guide. It's good, because for more than 1/2 a year now, I have experienced the same and I used to get at least 10 infections a month. No more, and yes, on Windows. Windows can be secured quite easily once you are shown how to do it properly.
-
Re:Microsoft Begs Win 7 Testers To Clean Install
"Is as secure? Uhhhhh - you'll have to offer more than a "take my word" statement to that effect. Windows what, is as secure as what, exactly? You are hoping that Win7 is as secure as SEL?" - by Runaway1956 (1322357) on Thursday April 09, @04:13PM (#27523671) Homepage
Windows IS easily as secure as an SeLinux kernel hook addon bearing Linux distro in fact, if not moreso, once they are security hardened, & that IS what SeLinux adds onto "normal Linux" distros!
(I say this, because the highest score I have seen on the CIS Tool multiplatform benchmark of security test based on "industry best practices" for each OS tested's security settings/configurations, was 90/100, whereas I have seen & done a Windows 2000 Professional system up to 99.058/100, & a Windows Server 2003 (server-class) OS up to 86/100 (& ALL of them, inclusive of *NIX distros, usually score 46/100 or so, outta-the-box/oem-stock configured))
The evidence to this is here -> http://www.xtremepccentral.com/forums/showthread.php?s=c92dde4c57f7304da17d4f3b38fef1e3&t=28430&page=3f &, even more of it exists in reply to your next statement I will quote next:
----
"Ahem. You'll excuse me if I wait for a LOT of people to start saying so? Experience teaches us that every time Microsoft enhances their security, first, people defeat that security on their own machines, then the crackers defeat that security from the outside." - by Runaway1956 (1322357) on Thursday April 09, @04:13PM (#27523671) Homepage
To that? Read this user's testimonial of NO VIRUS/TROJAN/SPYWARE/ROOTKIT/MALWARE-IN-GENERAL infestations for more than 1++ yrs. strong now for himself, his family, & his paying client(s) as well, after the security guidance of CIS Tool & a guide I authored, which he used & followed to the letter in detail:
PERTINENT QUOTE/EXCERPT EVIDENCE THEREOF:
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point.
So from 2008 till 2009 No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads.
APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)"
THRONKA @ -> http://www.xtremepccentral.com/forums/showthread.php?s=c92dde4c57f7304da17d4f3b38fef1e3&t=28430&page=3
----
AND, as far as addtional stability &/or security, albeit, this time on the "industrial front", in a high-transaction 24x7 operation? Witness Windows Server 2003 + SQLServer 2005 acting as the OFFICIAL disseminator of trade data @ NASDAQ for over 5++ yrs. now, w/ uptime going well into the "fabled '5-9's'" of 99.999% uptime:
----
NASDAQ Migrates to SQL Server 2005:
http://windowsfs.com/enews/nasdaq-migrates-to-sql-server-2005
----
(Linux being 'superior to that' is a judgement call, & one that largely depends on the person/team(s) admin'ing it also... this goes for A
-
Re:Microsoft Begs Win 7 Testers To Clean Install
"Is as secure? Uhhhhh - you'll have to offer more than a "take my word" statement to that effect. Windows what, is as secure as what, exactly? You are hoping that Win7 is as secure as SEL?" - by Runaway1956 (1322357) on Thursday April 09, @04:13PM (#27523671) Homepage
Windows IS easily as secure as an SeLinux kernel hook addon bearing Linux distro in fact, if not moreso, once they are security hardened, & that IS what SeLinux adds onto "normal Linux" distros!
(I say this, because the highest score I have seen on the CIS Tool multiplatform benchmark of security test based on "industry best practices" for each OS tested's security settings/configurations, was 90/100, whereas I have seen & done a Windows 2000 Professional system up to 99.058/100, & a Windows Server 2003 (server-class) OS up to 86/100 (& ALL of them, inclusive of *NIX distros, usually score 46/100 or so, outta-the-box/oem-stock configured))
The evidence to this is here -> http://www.xtremepccentral.com/forums/showthread.php?s=c92dde4c57f7304da17d4f3b38fef1e3&t=28430&page=3f &, even more of it exists in reply to your next statement I will quote next:
----
"Ahem. You'll excuse me if I wait for a LOT of people to start saying so? Experience teaches us that every time Microsoft enhances their security, first, people defeat that security on their own machines, then the crackers defeat that security from the outside." - by Runaway1956 (1322357) on Thursday April 09, @04:13PM (#27523671) Homepage
To that? Read this user's testimonial of NO VIRUS/TROJAN/SPYWARE/ROOTKIT/MALWARE-IN-GENERAL infestations for more than 1++ yrs. strong now for himself, his family, & his paying client(s) as well, after the security guidance of CIS Tool & a guide I authored, which he used & followed to the letter in detail:
PERTINENT QUOTE/EXCERPT EVIDENCE THEREOF:
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point.
So from 2008 till 2009 No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads.
APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)"
THRONKA @ -> http://www.xtremepccentral.com/forums/showthread.php?s=c92dde4c57f7304da17d4f3b38fef1e3&t=28430&page=3
----
AND, as far as addtional stability &/or security, albeit, this time on the "industrial front", in a high-transaction 24x7 operation? Witness Windows Server 2003 + SQLServer 2005 acting as the OFFICIAL disseminator of trade data @ NASDAQ for over 5++ yrs. now, w/ uptime going well into the "fabled '5-9's'" of 99.999% uptime:
----
NASDAQ Migrates to SQL Server 2005:
http://windowsfs.com/enews/nasdaq-migrates-to-sql-server-2005
----
(Linux being 'superior to that' is a judgement call, & one that largely depends on the person/team(s) admin'ing it also... this goes for A
-
Windows can be secured quite easily & well
"I don't claim that the $100M would go to zero if Windows were eliminated in favor of more secure servers and desktops, but it would be a lot lower. - by Anonymous Coward on Wednesday April 08, @08:39PM (#27512281)
Would it be? I state that, because even SeLinux can use SOME work for "security-hardening" & the tool that can show that much to anyone, is the multiplatform CIS Tool...
(Which a benchmark of security basically, based on industry "best practices" for Linux variants, BSD variants, Windows variants, & other *NIX variants also)
Once CIS Tool's points are applied to Windows (to the tune of a 99/100 score being possible)?
It helps a great deal & makes 'security-hardening' Windows, either professional/workstation class OR server versions of Windows, easier & the end-result is a Windows setup that IS, much more secure.
Case-in-Point/Example (of a user who had applied it in early 2008, & he is running malware infestation FREE, to the current date):
(From an End-User's perspective)
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point.
So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads.
APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)"
THRONKA @ -> http://www.xtremepccentral.com/forums/showthread.php?s=6f9097928745786bab6ab447b252b33e&t=28430&page=3
----
Thus, as you can see? Securing Windows IS fairly easily possible, & especially via the CIS Tool + its guidance... it works! The guide he used IS part of that thread in which he made his statement, in that very posting there, & his results are very good thusfar.
APK
P.S.=> Also - The guide goes "above & beyond" CIS Tool, in many ways, also, in order to help secure Windows NT-based OS' of modern variety (such as 2000/XP/Server 2003, & to an extent, the principles in that guide apply to VISTA &/or Windows 7 as well (I just wish they'd put back PORT FILTERING gui controls into them, AND, allow 0 as a valid blocking IP address in the HOSTS file in VISTA &/or Windows 7 also - the removal of port filtering adversely affects the concept of "layered security" in them, & only allowing 0.0.0.0 or 127.0.0.1 as blocking IP addresses in HOSTS files only promote inefficient bloat))... apk
-
Windows can be secured, to a 99/100 CIS Tool score
"There is so much legacy cruft in Windows I doubt it will ever be secure" - by NaCh0 (6124) on Monday April 06, @12:30PM (#27477443)
Untrue, because w/ a LITTLE work on the users' part, Windows can be made very secure, & stable (+ faster as well, as a bonus)...
Case in point/example:
PERTINENT QUOTE/EXCERPT:
----
"Its 2009 - still trouble free!
I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point.
So from 2008 till 2009, No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008.
Great stuff!
My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads.
APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)"
THRONKA
----
Thus, as you can see, Windows can be made secure, quite easily, via using the CIS Tool Security analysis multiplatform security benchmark system (based on industry 'best practices' for securing various Operating Systems), as outlined in this guide (which is what THRONKA, the person quoted above, used in fact) -> http://www.tcmagazine.com/forums/index.php?s=28c75dd785e7ae225a4ccd092e4155b5&showtopic=2662
APK
-
2000 = nearly same security features 4 most things
"no security features (say goodbye to NX bit and other hardening features)" - by Kaboom13 (235759) on Friday March 27, @09:33AM (#27356273)
There's no DEP (data execution prevention - or, what you're calling the NX/no-execute bit), but, it's not "exactly fair" to come down on Windows 2000 as hard as you have, & make it seem that you are saying it has no other 'security-hardening features' (which may not have been your intent, but it surely came off that way, imo @ least).
I say that, because I can show you an example of Windows 2000, after security-hardening, which scored a 99.6/100 on the industry "best practices" based CIS Tool, seen here -> http://www.xtremepccentral.com/forums/showthread.php?s=13014d1430ba8b705514e789dce012d7&t=28430&page=3
(Which happens to be the highest score I have seen to date, & I've been using this tool since late 2005 iirc... & a Windows 2000 Pro system scored that, on said respected & well-noted multi-platform benchmark of security program).
APK
P.S.=> 2000 also lacks certain "user entities", by default, that Windows XP/Windows Server 2003, VISTA/Server 2008, & Windows 7 doubtless have (which comes into play on things like File & Registry ACL permissions, as well as those used for securing services more), but - you can make "less priveleged users" of your own by assigning them lesser rights to 'emulate that' on Windows 2000, if needed... apk