On my network the machines have no access at all to their C: drive. But if a user visits a porn site it can stick an icon on the start menu and create a directory in the c: drive.
How do they do this and how can i stop them doing this?
I don't think Javascript can do this, but an Active-X control certainly can. You might want to see if there's a way to configure their browsers to not allow OCX downloads.
Other than that, it's a user-education issue. NEVER click "OK" when asked to install software.
If your users have been doing this, they've probably got some spyware installed on their machines too, and your corporate secrets are public knowledge now. Buy a site license for AdAware (
and make sure it's signature files stay up to date (or a similar product).
A corporate internet policy is a good thing to have, too. Especially if upper management is willing to enforce it.
One trick I've seen people do to escape detection is to terminal-service into a server, and surf porn from there. That way the IP address that gets logged in your Firewall is the server, and not their desktop. You'd have to match the logfiles up to find out who's behind it.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.