 jdongEat A Beaver, Save A Tree.Premium join:2002-07-09 Rochester, MI kudos:1 | reply to Hot_Rats
Re: New 'Leaktest': Firewall Termination! said by Hot_Rats: said by jdong:
Besides, someone can just delete the NET command or restrict the SYSTEM32 folder, and your trojan's garbage....
Interesting idea, but, your trojan is still "garbage" if the user doesn't have permissions to install a service.
Yes, true and true... That's why you never use an Admin account as your primary...  -- ---This area is intentionally left blank.--- |
 Hot_RatsHe's Not Tor Johnson join:2003-07-08 Indianapolis, IN | But I get sooo tired of RunAs... at least I'm not a domain admin now! 
In all seriousness, that is a recommendation that Microsoft has made ridiculously hard to follow. I recall a much greater capacity for configuring groups & privileges in NT 4 than what is present in Group Policy for Windows 2000/2003 and/or XP; instead of that capacity getting better, it got worse.
So, unfortunately, I run as local admin on my workstation. Shame on me.  |