Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Recent content by jbrackett

  1. jbrackett

    remote spyware/adware removal tool

    If you are trying to avoid having to manually install the client on each desktop, Pest Patrol installs from the main console via network share. That is one aspect of the product I had very few problems with. "The Crystal Wind is the storm, and the storm is data, and the data is life. You have...
  2. jbrackett

    NAV2004 and spyware

    As I understand it, both Network Associates (McAfee), and Symantec are working on solutions for the problems presented by spyware. I've seen mixed reviews on their effectiveness just now, so it appears that the jury is still out (especially compared to programs that are specifically designed...
  3. jbrackett

    Virus?(yahoo update and DSL.exe)

    Quick correction. I mentioned "webimmune.com" - that should be "www.webimmune.org". Sorry about that. "The Crystal Wind is the storm, and the storm is data, and the data is life. You have been slaves, denied the storm, denied the freedom of your data. That is now ended; the whirlwind is upon...
  4. jbrackett

    Virus?(yahoo update and DSL.exe)

    Sounds similar to (but not quite identical to) something I ran into last weekend. Have you checked your domain controller security logs? If you find that there are certain machines/ip addresses that are repeatedly hitting generic administrative accounts, then you may be up against the same...
  5. jbrackett

    remote spyware/adware removal tool

    Take a look at the thread I am/was (been very busy with an AD & Outlook 2003 upgrade) doing in "Where can I go to purposely infect a machine for testing?" (thread760-918748). While I wouldn't say that Pest Patrol is a cure-all, it definitely makes remotely managing and cleaning desktops MUCH...
  6. jbrackett

    ePO Product Protection Report - No Agent?

    I had my time in the barrel with the SOX auditor today, and he wanted to see that we had adequate protection for our 4.5.1 boxes as well as our 7.x boxes. I ran the Product Protection Report and noticed that there were 28 machines listed under "No Agent". Can someone clarify this for me? If...
  7. jbrackett

    Winsit.dll flooding network / hammering admin accounts

    Finally heard back from WebImmune. Turns out that a new variant of Sdbot bit us. Below is the pertinent info from the email they sent back. Spoke with a tech at McAfee & he says they have presently found more than 60k variants of this bugger. A.V.E.R.T. Sample Analysis Issue Number: 1422867...
  8. jbrackett

    Winsit.dll flooding network / hammering admin accounts

    There is always that possibility, I suppose. But it would have to have been someone with more knowledge than the average user, by far. As a followup, I received another call from our on site contractor yesterday (Sunday) evening. He says he found a Microsoft security release to this issue...
  9. jbrackett

    Winsit.dll flooding network / hammering admin accounts

    Our last step in our active directory migration takes place this weekend, and I received a call at 1:30 am from the New Orleans location doing the migration saying that they appear to be having trouble hitting our domain controllers due to excessive network traffic. Consultant handling the...
  10. jbrackett

    Interesting test of current malware scanner performance

    Excellent. Thanks for the post. "The Crystal Wind is the storm, and the storm is data, and the data is life. You have been slaves, denied the storm, denied the freedom of your data. That is now ended; the whirlwind is upon you . . . . . . Whether you like it or not." "Trent the Uncatchable"...
  11. jbrackett

    New virus?

    Looks like W32/Wallon.worm.a. This worm spreads by sending a hyperlink via email to addresses harvested from the Windows Address Book (WAB). The worm contains its own SMTP engine and uses the default SMTP server specified in the Internet Account Manager. Sent messages attempt to trick users...
  12. jbrackett

    Virus/Worm?

    McAfee calls this one "W32/Bagle.az@MM", and you called it correctly. A third party has the virus, and it is spoofing the address fields. Some info from their web site: This is a mass-mailing worm with the following characteristics: * contains its own SMTP engine to construct outgoing...
  13. jbrackett

    Where can I go to purposely infect a machine for testing?

    I just read back over my previous post and realized that you can't really tell who is saying what. Everything between "so here goes..." and my The Crystal Wind... signature is the Pest Patrol tech. "The Crystal Wind is the storm, and the storm is data, and the data is life. You have been...
  14. jbrackett

    Where can I go to purposely infect a machine for testing?

    Okay, here are the comments fro Pest Patrol tech support. I'll have to respond to him later, but I told you guys I'd let you know what I heard, so here goes... ______________________________ Comments From PestPatrol Technical Specialist: Let me see if I can hit some of the major concerns that...
  15. jbrackett

    Evaluating Trend Micro

    I have to disagree with guod. I will admit that the older versions of McAfee VScan and ePO were harder to maintain, but Version 7.0 Enterprise and later, combined with ePO 3.0 and later are much more stable, allow you to adjust the percentage of processor usage, maintain large numbers of...

Part and Inventory Search

Back
Top