Re: man in the middle



sweathog wrote:
4 firwalls/antivirus products in one month. I've come the the
conclusion that there is no security on the internet beyond
unplugging your machines permanently. I reformated 3 computors 5
times, reinstalled the windows xp sp2 and updated, and even went so
far as to change the mac addresses on the network cards. Within
days windows system security settings,and product firewalls would
change and it would be downhill from there,not counting the money
spent.

In conclusion I've had to cancel my personal isp and email
account,what was happening was that I would get these trial
versions of security software both downloaded and cds, like them,
buy them using https and then they would send me email confirmation
and a link to download the full versions.

Someone had cracked my email and was sending me to spoofed
websites. It didn't matter how often I would reformat and reinstal
the os after I found this out and NOT use the email.

My question is how is this possible that this hacker could still
track me?

PA Bear [MS MVP] wrote:
So How Did I Get Infected Anyway?
http://www.wilderssecurity.com/showthread.php?t=27971

sweathog wrote:
It is really as I said, there is no security. If this is all
microsoft has as an answer. Watch your active x when downloading
free programs.... big deal ! How about wuacle.exe which is the
windows update program being modified right from a clean format and
install,after your done with the instalation cd. You need the
active x to run that and you certainly need the updates.

You can be hacked in any number of ways - however - given your first post -
either you are being targeted by someone specifically for some vindictive
reason and your skill-set is not enough to match wits with their tools or
just the latter. ;-P

How about including the 92 security patches in new os instalation
cds so you don't have to go on-line to get them as a solution
instead.

Can be done by you, someone with the ability to follow directions and a CD
burner or in some cases - many more patches are already included in some
versions of the CD you can buy.

I'd buy a mac if I was certain that it couldn't also be dns cache
poisoning.

Go ahead - You'll probably run Windows on it as well - most current mac
users do. ;-)

To hell with it don't bother replying.

Why not?

You are - as I said - either being targetted and/or don't have the skills
necessary to prevent being hacked. You either are missing something more
obvious each time you supposedly 'start fresh' or whom ever is targeting you
has inside information that allows them to take over.

With a decent and properly configured NAT router, the Windows Firewall, a
good and properly obtained and updated AntiVirus and no 'questionable'
applications installed (trusted apps only, original installation media,
etc.) - what you say is happening to you would not happen without a slip up
on your part or someone who has inside access already.

--
Shenan Stanley
MS-MVP
--
How To Ask Questions The Smart Way
http://www.catb.org/~esr/faqs/smart-questions.html


.



Relevant Pages

  • [NT] Cumulative Security Update for Internet Explorer (MS04-025)
    ... Get your security news from a reliable source. ... * Microsoft Windows NT Workstation 4.0 Service Pack 6a ... Navigation Method Cross-Domain Vulnerability ...
    (Securiteam)
  • [NT] Vulnerability in HTML Help Allows Code Execution (MS05-001)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Get your security news from a reliable source. ... * Microsoft Windows XP Service Pack 1 and Microsoft Windows XP Service ...
    (Securiteam)
  • Re: The Myth of the secure Mac
    ... OEM Windows XP Home goes for a bit under $100. ... >> secure than Home. ... Though this really has nothing to do with security. ... Microsoft counts on third-party developers to provide more ...
    (comp.sys.mac.advocacy)
  • SecurityFocus Microsoft Newsletter #120
    ... Strengthening Network Security: FREE Guide Network security is a ... MICROSOFT VULNERABILITY SUMMARY ... Microsoft Windows File Protection Signed File Replacement... ... PlatinumFTPServer Information Disclosure Vulnerability ...
    (Focus-Microsoft)
  • SecurityFocus Microsoft Newsletter # 149
    ... MICROSOFT VULNERABILITY SUMMARY ... EveryBuddy Long Message Denial Of Service Vulnerability ... Intellitactics Network Security Manager ... Windows operating systems. ...
    (Focus-Microsoft)