Re: URLScan

2002-03-20 Thread dumbwabbit
y want to check > some of the groups there and post a question or two. > I haven't worked > with URLScan to the depth of knowing this one off > the top of my head, > but if I recall correctly, it *can* be done. > > Charlie > > dumbwabbit wrote: > > > Hmm, I woul

Re: Restricting cmd.exe access

2002-03-20 Thread dumbwabbit
MS actually recommends moving a number of system files (eg., cmd.exe ftp.exe netstat.exe and others) OUT of \winnt and \winnt\system32, putting them in a folder on a separate partition, and setting strict ACLs on that directory to ONLY allow full control to System and Administrators. If you follow

Re: Netscape Communicator vs IE

2002-03-16 Thread dumbwabbit
Heh, the fact that Microsoft even has to release patches, whereas the security vulnerabilities related to Netscape come every 6 months to a year? Which seems to be a more stable, secure application in this light? Makes Netscape my favorite. 4.79 baby. 6 is OK, nice email features, no Microsof

RE: URLScan

2002-03-16 Thread dumbwabbit
Hmm, I would NOT recommend opening up the .exe extension. Rather, you may want to consider redirecting them to an FTP site, either your own, or the Citrix download location (if there is one, sorry I don't know, never used this client). Baad security risk to allow .exe just my .02 --- "Bo

Re: Legal problem - IDS - Commercial Vs Open Source.

2002-01-29 Thread dumbwabbit
Hmm, I believe that almost WITHOUT EXCEPTION, ALL EULA's from any company I have ever done business with disclaimed liability on behalf of that company should their product not work in some way. Basically, the way I interpret it, whether it's Microsoft OS EULA, GNU, or homegrown, NO company is re

RE: Security for new small company

2002-01-16 Thread dumbwabbit
I also like the GB-100 and GB-1000 by GnatBox, nice hardware device with great features, good price, very reliable. I have used both over the past year. --- Brad Bendily <[EMAIL PROTECTED]> wrote: > > 3Com has some hardware Firewall products that are > meant to be used > in a small office enviro

Re: Portscanning from Windows XP machine

2002-01-11 Thread dumbwabbit
--- MadHat <[EMAIL PROTECTED]> wrote: > At 05:06 PM 1/7/2002 -0800, e-CraftZone wrote: > >Angry IP Scanner 1.87 from Angryziber is good. > It's very fast. Also > >includes command line usage. > >http://www.angryziber.com/ipscan/ > > Appears to have a problem with WinXP so it does not > fit the

Help with legal document - network probing agreement

2002-01-07 Thread dumbwabbit
Hi all. I'm trying to become more involved with infosec as it pertains to independent consulting, network auditing, security advisor status etc. I have worked as CSO/MIS for a mid-sized firm for the last 2 years, and a small company for 3 years before that. My current job function at my full-tim

RE: Exchange 2000

2001-12-11 Thread dumbwabbit
Network Associates' GroupShield has the same functionality of being able to automatically block/delete/quarantine any specified attachment types. --- Marco Bicca ® <[EMAIL PROTECTED]> wrote: > At 16:25 12-06-2001, Brent Scott wrote: > Yep, for sure, you should use NAV For Exchange 2.51 > ;-) ... P

Re: rid of spamming on web email

2001-12-11 Thread dumbwabbit
See inline comment. --- "Jay D. Dyson" <[EMAIL PROTECTED]> wrote: > -BEGIN PGP SIGNED MESSAGE- > > On 6 Dec 2001 [EMAIL PROTECTED] wrote: > > > Could you please tell me what one can do to > counter these spammers... > > My email address has been hidden under the BCC: > tag and the unsu

Re: Win2K and Lview.exe -- am I infected?

2001-12-11 Thread dumbwabbit
Use MD5sum to compare your source file to system file. Get HandleEx (don't remember from where, sorry), Fport (maps running processes to ports - from Foundstone), and some of the utilities from SysInternals - ListDLLs, Process Explorer, TokenMon, WinObj - between these, you should be able to dete

RE: Exchange 2000

2001-12-09 Thread dumbwabbit
Outlook 2000 SP2 (or SP1 with Email Attachment Security Update), Outlook 2002 both have this capability. I have never implemented it, nor read too much about it, so I can't give too many specifics. But the info is available on Microsoft's site. With these clients and Exchange 5.5 or 2000, you can

Re: Ip Spoofing I Think

2001-12-02 Thread dumbwabbit
What type of Email server? If it is Exchange, you need to disallow unauthorized SMTP relaying. Also, you should enable logging on SMTP interface in Exchange. See following link: http://www.slipstick.com/exs/relay.htm If you are not using Exchange, we need to know which email server you are using

Re: NAT/PAT (Hide NAT) Vulnerabilities?

2001-12-01 Thread dumbwabbit
Couple of thoughts off the top of my head: 1) The router itself may have vulnerabilities - see the relatively recent incidents with the Alcatel routers, and the 3Com DSL routers, an older one with Zyxel Prestige routers, the @Home cable modem enumerations 2) What about if you get hit with a tr

Re: packet sniffer

2001-11-22 Thread dumbwabbit
I am partial towards Ethereal (the Beta version looks really nice), and Analyzer (Netgroup Politecnico). --- BurntCircuit <[EMAIL PROTECTED]> wrote: > im looking for a good windows NT/2K/maybe XP pro) > packet sniffer to monitor > the comming and goings of a few programs that i dont > trust. woul

Re: permission for nero

2001-10-25 Thread dumbwabbit
I had the same problem with Nero. I generally use my workstation as a Power User or User, and only log in as Administrator when I need to install drivers etc. Nero gave me the same problem you describe, I wrote to them twice and never heard back. I was finally able to get Nero to work by changin

RE: Detecting weak passwords free tool

2001-10-23 Thread dumbwabbit
lc isn't free. but it DOES work very well... i insisted that we purchase it for my it dept. - we use it on a monthly basis. --- Robert Clark <[EMAIL PROTECTED]> wrote: > Lophtcrack > > Robert Clark > MCSE, MCP+I, MCP, A+ > MIS - Texas Cellular > > -Original Message- > From: Javier Palo