republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Acer puts Active X hole on laptops
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
Credit Card Company's Help German Police. »
« D'Oh! Encrypted files, transfered, then reformated.  
AuthorAll Replies


Name Game
Premium
join:2002-07-07
North Myrtle Beach, SC

reply to vircotto
Re: Acer puts Active X hole on laptops

My advice to anyone who buys a new PC or laptop especially some of those Dell's would be to wipe it clean, reformat the whole drive and then have a tech reinstall the OS..nowdays all those "manufactures" put so much junk on the machine you are really buying a can of spam and junk third party proggies..unstable machines..and not just the hardware. No user will ever be in full control of the machine until the do.
--
Gladiator Security Forum »www.gladiator-antivirus.com/ Missing Kids »www.missingkids.com/


jansson_mark
Markus Jansson
Premium
join:2001-08-05
Finland

said by Name Game See Profile :

My advice to anyone who buys a new PC or laptop especially some of those Dell's would be to wipe it clean, reformat the whole drive and then have a tech reinstall the OS..
Unfortunally some manufactorers/resellers do NOT provide you with clean install XP cdroms, but rather their OWN restore cdroms...or in some cases simply some bizarre "recovery feature" (like hidden image stored in unpartitioned hdd space) that can only be activated with some bizarre programX inside the computer. This sucks. Really.

All what I want from manufactorer is XP:s install cdrom and possibly the drivers disk (or simply mentions about what drivers are needed). Thats all I need.
--
My computer security & privacy related homepage »www.markusjansson.net Use HushTools or GnuPG/PGP to encrypt any email before sending it to me to protect our privacy.


novaflare
The Dragon Was Here
Premium
join:2002-01-24
Barberton, OH

said by jansson_mark See Profile :

said by Name Game See Profile :

My advice to anyone who buys a new PC or laptop especially some of those Dell's would be to wipe it clean, reformat the whole drive and then have a tech reinstall the OS..
Unfortunally some manufactorers/resellers do NOT provide you with clean install XP cdroms, but rather their OWN restore cdroms...or in some cases simply some bizarre "recovery feature" (like hidden image stored in unpartitioned hdd space) that can only be activated with some bizarre programX inside the computer. This sucks. Really.

All what I want from manufactorer is XP:s install cdrom and possibly the drivers disk (or simply mentions about what drivers are needed). Thats all I need.
Know what you mean. The restore info isnt so much on unpartioned space its on a hidden (only from windows) partion. Its visable on most through good old fdisk if not fdisk its visable from a linux boot or live cd. Been a while sense i used fdisk but i beleive it has a option in there some where to create a hidden partion. Or maybe you simply leave them as a inactive partion.

The so called restore cds are more often than not the program x you mention and all the restore data or at least most is on the partion.

The single biggest problem with such partions is even though windows do not see them some truely nasty little viris and trojans do and because these are almost never more than fat 32 partions no security rules effect the partion. Non admins have full read right delete access to said partion.

So basically you execute viri x as non admin limited user and nothing happens then one day you decide youve got to much crap on your comp and restore to factory default. Now this viri x gets installed during restore and your screwed.

Lucky for all of us these little nasties are few and far between. Ive seen 3 examples of them in something like 8 years of cleaning up infections.

As for the whole not including a xp/os disk that just pisses me off. Personally i dont care one way or the other. I can get xp pro full retail version for 150. The guy who i buy from will be selling the vista ultimate edition just as relitivly cheap when its released same for all other versions. When i bought my xp pro i paid 199 instead of 299 so i fully expect vista ultimate to be about 200 cheaper from him than any where else.

Want cheap and 100% legal copies of windows oses shop the mom and pop shops. Forget online sales forget big retailers go mom and pop shops. The way such shops see it if they can cut you a great deal on a computer or hardware or software youll bring them all your buissness. Then they can make more of your hard earned money even when something might be a little more expensive.
--
Evil does exist and it has a face to often that face is one that should look on their child with love in their eyes.

Instead only hate exists in those eyes.


Owlbet
Ignite the Ice
Premium,MVM
join:2002-09-24
Palmer, AK
clubs:
·MTA Online

reply to Name Game
said by Name Game See Profile :

My advice to anyone who buys a new PC or laptop especially some of those Dell's would be to wipe it clean, reformat the whole drive and then have a tech reinstall the OS..nowdays all those "manufactures" put so much junk on the machine you are really buying a can of spam and junk third party proggies..unstable machines..and not just the hardware. No user will ever be in full control of the machine until the do.
said by jansson_mark See Profile :

Unfortunally some manufactorers/resellers do NOT provide you with clean install XP cdroms, but rather their OWN restore cdroms...or in some cases simply some bizarre "recovery feature" (like hidden image stored in unpartitioned hdd space) that can only be activated with some bizarre programX inside the computer. This sucks. Really.

All what I want from manufactorer is XP:s install cdrom and possibly the drivers disk (or simply mentions about what drivers are needed). Thats all I need.
I learned long ago to order recovery CDs when purchasing computers from Dell. I've also purchased computers "off the shelf" from Wal*Mart.

HP (Hewlett Packard) is the worse for loading it's junk on the same CD as the operating system. I've had the misfortune of owning two HP OEM computers and both recovery CDs included Back Web, AOL Free Trial Offers, etc. This useless garbage is reinstalled when the operating system is reinstalled.

Dell, however, only includes the operating system on their Recovery CD and none of the Dell-branded junk. Drivers are on another CD. In September, I purchased another Dell computer and even before that computer ever connected to the internet, the hard drive was wiped clean and the operating system reloaded. No junk was reinstalled along with the operating system.

severach

join:2002-09-12
Jackson, MI

reply to jansson_mark
You can make your own disk for any brand. You only need to run that infested OEM install just long enough to grab a few things. My Acer doesn't have that malware.

»www.msfn.org/board/index.php?showtopic=63258


La Luna
Surviving Ashraful
Premium
join:2001-07-12
Warwick, NY
clubs:
·Optimum Online
·Vonage

said by severach See Profile :

You can make your own disk for any brand. You only need to run that infested OEM install just long enough to grab a few things. My Acer doesn't have that malware.

»www.msfn.org/board/index.php?showtopic=63258
Comparatively speaking, Acer puts a lot less crap on their OEM's than many other brands. They didn't even pre-install Norton AV that came with mine, like so many others do.

This appears to be more of an error on their part, rather than a purposeful "malware" install.
--
~~Well, I think you're crazy, I think you're crazy, I think you're crazy, just like me...~~



javaMan
Premium,MVM
join:2002-07-15
San Luis Obispo, CA

said by La Luna See Profile :

. . .

This appears to be more of an error on their part, rather than a purposeful "malware" install.
Certainly true but it does demonstrate the vulnerability inherent in ActiveX. Well, maybe not so much ActiveX as the trustworthiness of the those who use it. Which, in the end, is perhaps really the same thing.
--
Woe unto them that call evil good, and good evil; that put darkness for light, and light for darkness. . . Isa. 5:20


La Luna
Surviving Ashraful
Premium
join:2001-07-12
Warwick, NY
clubs:
·Optimum Online
·Vonage

said by javaMan See Profile :

said by La Luna See Profile :

. . .

This appears to be more of an error on their part, rather than a purposeful "malware" install.
Certainly true but it does demonstrate the vulnerability inherent in ActiveX. Well, maybe not so much ActiveX as the trustworthiness of the those who use it. Which, in the end, is perhaps really the same thing.
Well, I think most of us already knew about ActiveX vulnerabilities (didn't we? ).

I'm glad they at least patched this pretty quickly, once they were alerted to it.
--
~~Well, I think you're crazy, I think you're crazy, I think you're crazy, just like me...~~


sharpy merc

join:2003-01-28
England


1 edit
said by La Luna See Profile :

I'm glad they at least patched this pretty quickly, once they were alerted to it.
What do you mean alerted to it. They put it on the bloody thing in the first place!

Kinda like "oops we forgot...Sorry people our bad."

more like " Oh crap we got caught!"


javaMan
Premium,MVM
join:2002-07-15
San Luis Obispo, CA

said by sharpy merc See Profile :

said by La Luna See Profile :

I'm glad they at least patched this pretty quickly, once they were alerted to it.
What do you mean alerted to it. They put it on the bloody thing in the first place!

Kinda like "oops we forgot...Sorry people our bad."

more like " Oh crap we got caught!"
I think in reading about it there was a note somewhere that mentioned that it wasn't even being used anymore and apparently no one had bothered to follow up and remove it. It was just being installed for no reason other than to serve as a possible vector for disastrous abuse.
--
Woe unto them that call evil good, and good evil; that put darkness for light, and light for darkness. . . Isa. 5:20


La Luna
Surviving Ashraful
Premium
join:2001-07-12
Warwick, NY
clubs:
·Optimum Online
·Vonage

reply to sharpy merc
said by sharpy merc See Profile :

said by La Luna See Profile :

I'm glad they at least patched this pretty quickly, once they were alerted to it.
What do you mean alerted to it. They put it on the bloody thing in the first place!

Kinda like "oops we forgot...Sorry people our bad."

more like " Oh crap we got caught!"
Tinfoil anyone?

Please read the article.
--
~~Well, I think you're crazy, I think you're crazy, I think you're crazy, just like me...~~

Forums » Up and Running » Security » SecurityCredit Card Company's Help German Police. »
« D'Oh! Encrypted files, transfered, then reformated.  


Monday, 09-Nov 17:43:33 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [61] VoIP Over 3G Still Not Working For iPhone
· [44] Verizon Keeps Swinging At AT&T
· [26] Bill Would Force ISPs To Block Financial Scams
· [14] Mediacom Hints At 50, 100 Mbps Speeds
· [11] Clearwire To Get Another $1.5 Billion
· [9] 15 States Have Now Gotten Broadband Mapping Money
· [4] AT&T Launching New 7.2 Mbps 3G Modem
Most people now reading
· Google Has Acquired Gizmo5 [VOIP Tech Chat]
· My cat is reluctant to exercise. [General Questions]
· Divorce advice... [General Questions]
· Framed for child porn 151; by a PC virus [Security]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· How in the world am I going to get into college? [General Questions]
· Windows 7 boot manager editing questions [Microsoft Help]
· Your ideal heroic 5-man class comp! [World of Warcraft]
· Blown out Ballasts [Home Repair & Improvement]
· Is Gear Score now the new requirement to get pug invite? [World of Warcraft]