Explore topic-wise InterviewSolutions in .

This section includes InterviewSolutions, each offering curated multiple-choice questions to sharpen your knowledge and support exam preparation. Choose a topic below to get started.

1951.

Solve : Firefox 2.0.0.6 is released?

Answer» YEP!

JonasFireFox doesn't seem to like this setup. There was an issue POSTED at the Mozilla Forums about the very same thing...
I'll try and digout the link.Thanks but do not BOTHER searching it is to slow at my computer.
Or could that be the reason Why FireFox is that slow too?
IE7 is much faster but I'll like FireFox!

JONAS
1952.

Solve : NEC and Hitachi team to water-cool hard drives?

Answer»

Quote from: Jonas Wauters on August 08, 2007, 04:08:49 PM

What about a water cooled monitor?
So you don't NEED a LCD it will be projected on the water.
And you WOULD have a waterfall at the same time.
I'm going to be rich!!!



Don't improvise and get in the shower while holding your CRT monitor.
It would be enlightening. You'd get a charge out of it.

To Late.
Wii:"I got a new haircut and hair color in only a second." Wauw!
Again something that will make me rich I only have to find a way to change that hair color (Black isn't that interesting)... hmm...
Lol

Jonas

EDIT: I should stop this B******T I forgot that we aren't in Off topic. Sorry.Quote from: Jonas Wauters on August 08, 2007, 04:08:49 PM
What about a water cooled monitor?
So you don't need a LCD it will be projected on the water.
And you would have a waterfall at the same time.
I'm going to be rich!!!

Jonas

Already been done.

http://www.youtube.com/watch?v=Z2LUz2WVcekWell is there anything that hasn't been done before??
I MUST say that is amazing!
Thanks for the link Nathan I enjoyed it.

Jonas
1953.

Solve : Microsoft to test free, ad-supported version of Works?

Answer»

By Jose Vilches, TechSpot.com
Published: August 2, 2007, 9:15 AM EST


Microsoft is reportedly taking a step into the ad-supported software business by rolling out a limited pilot of an ad-supported version of its Microsoft Works low-end productivity application over the next few months.

"Consumers, if they're given a choice of paying for something, or getting an ad-subsidized version of it, as long as it's not intrusive, and it helps them, there is an opportunity to consider whether that might be a model that works in certain applications and test the waters," Microsoft CHIEF software architect said.
In the face of rising competition from GOOGLE and other Internet rivals offering their suite of business software services supported by advertising or subscriptions, it should come as no surprise to see the largest software MAKER interested in testing ad-supported software. Microsoft plans to preinstall Works on computers and display advertisements stored in cache, which will refresh when the user is connected to the Internet. Privacy advocates will be glad to know that Microsoft won't be parsing the contents of Works documents to deliver ads, though they have applied for a patent to do just that.

The Works application consists of word processor, calendar, dictionary, project organizer and spreadsheet applets along with a personal database module called Works Database
. The latest paid version, Works 9.0, was launched this week for an estimated retail price of $39.95. Microsoft has not disclosed either which PC makers will distribute the ad-supported version during the pilot period or the markets for the test program.

http://www.techspot.com/news/26416-microsoft-to-test-free-adsupported-version-of-works.htmlI don't believe it... MS has actually found a way to make Works suck more than it already did. Incredible! Quote from: Deerpark on August 03, 2007, 04:39:02 AM

I don't believe it... MS has actually found a way to make Works suck more than it already did. Incredible!
LOL . . . seconded.
only used Works once, then uninstalled it.
OpenOffice FTW!I'd have to agree with the last two posts, MS Works was not a greatest word processor, however it did do ok and may be an ok SOLUTION for an online processor.

However, that being said Microsoft is joining late int he game with already a lot of other competition and I couldn't imagine Microsoft doing a lot with a works online solution when they have their bread and butter product: OFFICE.
1954.

Solve : WebMail more vulnerable than ever?

Answer»

Quote

New Tool Automates Webmail Account Hijacks
Black Hat

LAS VEGAS -- Logging into your MySpace, Facebook, Yahoo!, Gmail or Hotmail account over a wireless connection just got a lot more dicey, as researchers here at the Black Hat hacker conference today demonstrated a new set of tools that help automate the hijacking of those accounts.

Full StoryPersonally I've always thought doing any type of logging in with any type of wireless connection WOULD be risky. ESPECIALLY at a cafe or public hot spot. It's way too easy to eaves drop or pickup wireless signals, if I'm at a hot spot I just do web browsing and nothing that requires a login.

Of course not everyone has that luxury so just keep in mind to log in only on secure pages (https) and keep in mind things like FTP and e-mail messages are not encrypted so someone could easily read your e-mail you're SENDING and receiving. Finally, even if it's encrypted that doesn't mean something like this article (unencrypted cookie) can't exist and that doesn't mean someone can't unencrypted the data (although that's not as likely).

Wireless is just too easy to intercept, making it difficult to secure.hey guys , heres a clip from a show , that's aired here in the UK , i think you may find it interesting ......

http://www.youtube.com/watch?v=pgBHjZUKW54

Tony

Its shows just how easy it really is you hack wireless...... but there is no malicious software shown on how to do it its perfectly safe Yeah SAW this awhile ago on YouTube was on the popular video list I was browsing through once. Pretty interesting for those who have not seen it. Those familiar with the vulnerabilities may not find it as interesting.We only have a MAC filter installed by a specialist.
A while ago I heard from Deerpark that this isn't a safe way.
Now I see it is a safe way (when combined with WPA.)
Now my QUESTION is is it necessary to change my settings.

Jonas Maybe you should show your father that video Jonas. It might change his mind. Well here is his answer: "They suggest a MAC-filter so we have a good protection.
That WPA is only EXTRA."
I tried explaining that it is the other way around.
But he trust the specialist before me(with is normally actually.)
Well lets hope there isn't a hacker who want to hack our network with bad intentions.
I should call that guy of the movie.

Jonas

1955.

Solve : Microsoft gears up for nine patches next week?

Answer»

Critical XML Core Services bug sounds similar to a pair of exploited flaws from '06

August 09, 2007 (Computerworld) -- Microsoft Corp. today said it will release nine security updates next Tuesday, half again as many as last month, TARGETING flaws in Windows, Office, Internet Explorer and Virtual PC.

Of the nine BULLETINS expected Aug. 14, six will be labeled "critical," Microsoft's highest rating, with the remaining three ranked "important." Vulnerabilities slated to be fixed by eight of the nine updates, however, have been pegged as remote code executable, a SURE sign that the bugs are very dangerous, and if exploited, could easily allow a PC to be hijacked by hackers.

Microsoft Windows, including Vista, will be the focus of four of the nine updates, with one of those Vista fixes pegged critical. Other critical patches will be provided for Microsoft Office in general, Excel in particular, Visual BASIC 6.0 and IE, the company's market-leading browser. Of the bulletins labeled important, fixes will be issued for Windows Vista, Windows Media Player, Virtual PC and Virtual Server and IE.

Vista is especially hard-pressed in the advance notification, which Microsoft posted to its security site early today. Five of the nine, or just over half, of the updates patch Vista or a component of the new operating system, such as IE7 or Media Player 11.

Four nonsecurity updates that Microsoft considers "high priority" will also post next week via Windows Update, Microsoft Update and Windows Server Update Services. The note did not hint, however, whether the two Vista hot FIX packs now available for manual download will be among that group; Microsoft has promised that the performance and reliability hot fixes will offered up through Windows Update, but has refused to say when.

http://www.computerworld.com/action/article.do?command=viewArticleBasic&taxonomyName=windows&articleId=9029883&taxonomyId=125

1956.

Solve : Is black the new green??

Answer»

Reducing climate change by saving energy is an important effort we should all join, and that's why we're very glad to SEE the innovative thinking going into a VARIETY of solutions. One idea, suggested by the site called "Blackle" (which is not related to Google, by the way, though the site does use our custom search engine), is to reduce energy used by monitors by providing search with a black background. We applaud the spirit of the idea, but our own analysis as well as that of others shows that making the Google homepage black will not reduce energy consumption. To the contrary, on flat-panel monitors (already estimated to be 75% of the market), displaying black may actually increase energy USAGE. Detailed results from a new study confirm this.

LinkIf this is a real problem, maybe our members could do their part by throwing away their crt monitors. That should HELP ? Well instead of consering about those little energy adjustment they should lower the power use of street LIGHTS. That is the main use of Power.

Jonas

1957.

Solve : Coming to your laptop: 1.2TB hard drives?

Answer»

As hard drive manufacturers relentlessly pursue packing greater AERIAL density on smaller devices, Fujitsu Computer Products of America Inc. may have an ace in the hole. The COMPANY is announcing later this week that it has created ideally "ordered" alumina nanohole patterns for isolated bit-by-bit recording on a large disk area.

With that feat, Fujitsu says it has SUCCESSFULLY demonstrated the ability to perform basic read/write capability of each individual nanohole of the patterned media using a typical flying head on a rotating disk. That breakthrough could lead the company to produce hard drives with storage capacities of up to 1.2TB on a two-platter, 2.5-in. drive as soon as 2010, noted Joel Hagberg, vice president of business development at Fujitsu Computer Products of America, a wholly owned subsidiary of Tokyo-based Fujitsu Ltd.

Link1.2TB that is a lot of space for a laptop.
I only have 80 GB (And a external HD of 160GB) and it is more than enough.
But I know there are people who will never have enough space.
Well if you ask my opinion 1.2 TB is just too much you don't need it. (for a NORMAL laptop user.)

Jonas That's the same think Bill Gates said about 64k. Personally, I say you can never have enough, unless of course it was some how unlimited, with increased sizes of applications, operating systems, games, etc. you can never have too much. Off course you can never have to much.
But in stead of increasing the Harddrive it would be better to have much cheaper, quicker and larger RAM. (8GB will be enough for the next 5 years.)
I know we got to go with the revolution and everything will be better quality and therefore it will need more space but going from 100GB to 1.2TB is a big step don't you think?
I know the computer business is going quick but you don't want to go to quick and upgrade things to big and that way you don't get time to upgrade it all together.
The Ultimate HD is 1 byte per Molecule. (Had to learn that on school, finally something interesting!)
But if too much people concentrate them on just the HD the rest will not be able to follow.
And OK they will get better too but I think it is better to find a good balance.
This will sound stupid but in some way its true I only overreacted(I don't know the real English word but its something like that) a bit.

Jonas Quote from: Jonas Wauters on August 10, 2007, 05:33:50 PM

1.2 TB is just too much you don't need it. (for a normal laptop user.)
Jonas
Then I guess i'm not a normal laptop user.....
Or maybe because this one I have here only has 3gb out of 10gb free space...
1958.

Solve : OCZ releases SPD-flashing tool to the public?

Answer»

By Justin Mann, TechSpot.com
Published: August 7, 2007

It's rare when you find a company that encourages overclocking. Not so rare as it was 10 years ago, but still not something you are accustomed to. Even rarer is a company that will go so far as to letting you reprogram the firmware on their hardware to such an intricate level as the SPD on memory. OCZ, reaching out to their enthusiast CUSTOMER base, is definitely going out on a limb here with their latest offering. “SPD-Z” as it is called will allow someone to alter SPD settings on OCZ memory modules, allowing someone to tweak memory in a level never before possible.

It isn't fully open-ended, however, REQUIRING that you download an SPD file from the OCZ forums, which the SPD tool can then flash the memory with. The reasonings are sound. Particularly with the high-end modules and chipsets that supported non-JEDEC certified speeds, people want and need greater flexibility over how to configure their memory. Further, many memory modules will require different timings based on what chipset and what CPU is being used at the time. For people that are really in to overclocking or tweaking, this is definitely an interesting tool to look at.

The SPD-Z utility only works with OCZ memory modules, and is a Windows-only program. The program is considered to be in beta, so beware if you are planning on tinkering. They mention it should work with any motherboard, regardless of the existing chipset.

http://www.techspot.com/news/26492-ocz-releases-spdflashing-tool-to-the-public.htmlInteresting. Although for anyone who's going to try this out I wouldn't be trying it on a primary computer being that it's an overclock utility that's still in beta. Sounds like the ultimate goal is to SELL more RAM...Funny you say that Patio, the egg company sent me an email this morning- they are having what looks like a pretty nice sale on dual channel Ram kits this weekend.
If anyone is LOOKING to upgrade on some nice memory, you might check them out...

1959.

Solve : Custom built computer?

Answer»

Quick inquiry.....does anyone know the name of a Colorado-based company that specializes in custom building computers? They do also offer pre-built packages. I visited their site several years ago, thought they had great products and reasonable pricing.....now I can't remember who they were!!!! lolHonestly not familiar with any MAJOR mod computer company in Colorardo. MAY want to GO through some of the top RESULTS in Google.

1960.

Solve : Bendable Batteries?

Answer»

Some very interesting applications come to mind...

Full Story

LINK correctedI saw this earlier today( thanks for posting) , the ramifications if this could be made practical would be huge.* I'm sure this caught your eye in terms of COMPUTER components ?

REVISED **

>>> Patio's story <<<

Here's the story Patio was talking about

http://www.breitbart.com/article.php?id=D8R0CGT00&show_article=1Patio,
Your link takes me to a Microsoft support PAGE explaining "How to take ownership of a file or folder in Windows XP".

What does that have to do with "Bendable Batteries"? I'm confused as well..."How to take ownership of a file or folder in Windows XP"

Well I didn't know that is a trick to bend you laptop batteries. It isn't working with me though.

Jonas well if you had have read Honvetops's post you would have seen that it was "corrected" Aww man, I wanted a picture....

EDIT:

Yay

http://techon.nikkeibp.co.jp/article/HONSHI/20060726/119486/

I think it's it...wouldn't the appropriate word for this be "flexible"? If anybody is interested, here is another variation of the story. (No pictures though.)Quote from: Kip on August 14, 2007, 04:13:14 PM

(No pictures though.)
Dam...Still a good site
1961.

Solve : Web Site Offers to Ruin People's Lives for $20 a Month?

Answer» This isn't even funny but thought inquiring minds might like to read this.......

A service offering a complete "revenge package" in which people can destroy the financial status and relationships of their enemies at the click of a mouse is being offered over the Internet.

For as little as $20 a month, customers of the confidentialaccess.com Web site can make the credit ratings of people they dislike plummet, and even have them suspected of fraud.

Victims' bank accounts can be shut down remotely and all their essential utilities cut off.


Fake e-mails and text messages which purport to come from someone else, such as the victim's spouse, can be sent containing false accusations of affairs or *censored* liaisons.

[Editor's note: At one point Monday morning, the front page of www.confidentialaccess.com had been replaced by a lengthy ad offering content optimization on RSS feeds.

What appeared to have been the original front page later reappeared, with "revenge" services no longer offered, but many other fraudulent documents such as fake driver's licenses and bank statements still available.]

The new "revenge" services are the latest example of the harm the Internet can cause individuals.

A British House of Lords committee report published last week described criminality on the Web as so bad that it was like "the Wild West."

The Web site, which also offers to create perfect "novelty" copies of any documentation necessary to enable the customer to gain revenge, promises its services "can create mayhem."

"CA [Confidential Access] can make it so someone couldn't even get an ice cream cone on credit again," the site promises.

One way of doing this, it explains, is to apply repeatedly for credit using the victim's name and multiple addresses, leading inevitably to a red flag from Britain's Credit Industry Fraud Avoidance System (Cifas) or similar agencies.

Credit is then stopped until an investigation by Cifas decides whether the subject has been the perpetrator or victim of fraud.

CA offers further ideas of how to use its services.

"Create some false payslips [paychecks] and SEND them back returned to the victim's employer and watch them lose their job," it advises.

"Destroy a person's bank account using our novelty bank statements. Bank accounts are like gold dust now; return[ing] a novelty bank STATEMENT with their details back to the bank works for killing someones [sic] credit card account.

"Watch your victim cry when all his/her accounts are closed."

The Web site states that even accounts on eBay, the auction Web site, and PayPal, the Internet payment system, can easily be sabotaged.

Many of its activities may be illegal. Senior police sources said confidentialaccess.com, which is apparently hosted on a Singapore-based Internet server but run by Britons, is under investigation by more than one force.

The operators, who claim also to have bases in Hong Kong, Dublin and Boston, offer to fabricate a large range of documents, ranging from U.K. driving licenses, car-ownership papers and Ministry of Transport certificates to tax forms, paychecks and bank statements.

Most items are priced at a few hundred dollars but basic membership, which entitles customers to many of the "revenge" options, costs $20 a month.

Payments can be made either over the Internet or directly into a British bank account in the name of A.J. Smith.

Once the money is received, items are dispatched within a week or two.

The Web site boasts of the ultra-genuine appearance of its fakes, which are also intended to be used by customers to acquire credit from banks.

The Web site operators even offer to register customers on the electoral rolls to a variety of properties with which they have no connection.

Verbal and written references for non-existent employment records are also supplied.

The Web site's forum pages are full of glowing testimonials from satisfied customers who have apparently used CA products.

The Sunday Times obtained a fake British driving license for $600 using a bogus name and the photograph of one of the FBI's most wanted terrorists — Adam Yahiye Gadahn, aka "Azzam the American," who has been accused of being an Al Qaeda operative.

His picture appears on the fake license, complete with a realistic-looking hologram and markings, next to a false name.

Confidential Access claims to be offering LEGAL services, but the IDENTITY of its operators, who use the name the Caxess Corporation, is hidden behind untraceable phone numbers and P.O. box numbers that lead to offshore courier companies.

The Web site subscribes to the revenge ethos in other ways too.

On its forum, its site administrator displayed a letter from a fraud investigator for the Royal Bank of Scotland in which he requests that the Singapore server take down the site because it is breaching trademark law.

In response, the site's operators have posted the man's home address, together with the name of his partner, and suggested that subscribers post excrement through their letterbox.

Other CA members suggest deflating his car's tires, instigating a credit inquiry on him and even "paying him a visit."

Sources at the Royal Bank of Scotland confirmed that the man, whose identity is being protected by The Sunday Times, has received threatening phone calls.

A bank spokesman said the site had recently been reported to the police.

Richard Clayton, a Cambridge University researcher on Internet security and adviser to the House of Lords science and technology committee, said, "I have never come across a site devoted to offering revenge in this way before.

"The only similar thing is one or two of the extreme right-wing Web sites which list addresses and suggest people go and beat up political opponents."

http://www.foxnews.com/story/0,2933,293097,00.html



Wow

Heh, my computer won't even let me access the site .You know what, I just tried myself (no good) just a guess here *

The story / article is from Fox News website- the link to that companies website must be getting hammered today. Probably crashing their server or something ?Maybe it's only accecible in certain places Sure
I can't access it either I hope they got caught and busted and are now in gail!
They don't deserve less!

Jonas Their website works for me.
They now deny that they are breaking the law.

Quote from: ConfidentialAccess.com
REVENGE IS A DISH BEST SERVED COLD
Statement Issued By Caxess Corporation


On the 12th August 2007 The Sunday Times published a Story about CA. You can view The Lies Here.

Caxess DO NOT sell revenge packages, neither do we judge how our members choose to use the extensive range of CA products & services.

Our services could indeed be used for Revenge, however revenge is a private matter, and there can be many legal and illegal ways to gain revenge upon someone. CA is all about private matters, and freedom of choice our community can vouch on it!

CA actively promote a different way of life, our organisation is not here to tell you what to do. If you want revenge go and get it! CA don’t need to sell a package all the products that could be used for revenge are for sale in our shop. Fake texts, fake bank Statement’s are NOT illegal!

Revenge products are sold everywhere, revenge is in the mind it’s not a service; check out your local DIY, what can you buy for revenge? Weedkiller, spray paint, rat poison all spring to mind!

So What Or Who Are CA

Ok, simply put, CA provides a cure to an illness, a work around for the system and that's a good thing because the system is wrong, it fails the people it purports to serve and protect, and it does this because although it purports to serve and protect it is actually a system of control in disguise.

CIFAS members = corrupt, unlawful, DAMAGING, self righteous, destructive, has only its members (and their shareholders) interests at heart (and the money it makes for the directors), no accountability....

CA = Forthright, empowering, learned, independent, not accountable to anyone, has it's members and the common people's interests at heart...

The righteous will prevail, and in that action CIFAS and other organisations like them will fail, as should all other flawed systems like it that seek to use credit to control and enslave ordinary people.

Credit is a consumable item, just like sand that is used in the building of a house, so better that there be no credit, than credit only for the benefit of those that own banks!

Lending and borrowing is a business partnership in which both parties take on a degree of risk.

The borrowers risk is often bourne out of need, and the lenders risk often bourne out of greed.

Only God can decide which of the two will have made a sound investment.

Remember “Revenge Is A Dish Best Served Cold”

Caxess Corporation
that dog looks awesome ! Quote from: honvetops on August 14, 2007, 05:28:13 PM
that dog looks awesome !

Thank you for the compliment.

He was a stray.
One day he lay down in our backyard.
We gave him some hot dogs and brought him in our house.
He has been with us ever since. The website work again. http://www.confidentialaccess.com/
How can it be that those persons aren't arrested??
Man I can't believe that you can do such stuff at WWW without getting caught.

Jonas Didn't "Raptor" say awhile back he was getting a new job ? What are you trying to say?

Jonas

BTW: I heard he was working on a new forum he was going to create.These guys need to pay my ex-girlfriend a visit.LOL, Chris , as bad as these people are, it does have some rather interesting possibilities ! These guys must be related to the guy on "Cheaters" ON TV he has no apathy !
1962.

Solve : Physicists have 'solved' mystery of levitation?

Answer»

Making something hover/levitate is quite simple...controlling it's movement is the hard part.Quote from: reaper_tbs on August 14, 2007, 08:35:44 AM

that's from a video game BUDDY.. it looks like the sims even... could be wrong though. you could have at least USED the "hover" technology from doom 3 at least it's more VISUALLY appealing.
but ok..
Well it looked realistic.

Jonas Will something FLOAT if it's density is less than AIR?
1963.

Solve : New computer interface: Blow on the screen?

Answer»
Perhaps huffing at your computer might get you somewhere if research at the Georgia Institute of Technology comes to fruition.

Shwetak Patel and Gregory Abowd from Georgia Tech have published a paper that describes how to use a computer microphone to determine where on a screen a person is blowing. The technique, which they call BLUI for Blowable and Localized User Interaction, can distinguish between the different sounds air makes depending on where the BREATH is directed.

Link

Bad breath ? ?.....Ctrl-Alt-Delete.

First we had mouses with BALLS, but everyone thought the ball wasn't sensitive enough.

After that, we headed towards the laser mouses. PRETTY good, very accurate but that wasn't good enough for the people who wanted to use their mouse on a rough surface, So:

The optical mouse was MADE so it can be used on all types of surfaces. Now they're thinking "why use a mouse when you don't need one at all?"

After the mouse era, we go towards the touch screen where people just touch the screen instead of having to move your hand AROUND a desk.

Now people have gotten so lazy, they've decided to effortlessly blow on the screen...Not necessarily for lazy people but more of an interface for people with disabilities who cannot move their hands to operate a mouse.I can see this having a lot of complications, but it's a big step in the right direction for users with disabilities. Can't wait to start seeing help threads about these on the forums. Heh.
1964.

Solve : Thanksgiving Bugfix?

Answer» http://www.smh.com.au/news/technology/flaw-leaves-microsoft-looking-like-a-turkey/2007/11/23/1195975914416.html
funny how this doesn't affect the US...That is interesting how US customers are not affected by it. Could give a potential hacker IDEAS of where the flaw is if it's only affecting these distributions of Windows.Actually it affects all users...the writer was taking some journalistic liberties without referring to any specifics.
The exploit affects Windows XP installs without SP2 installed.That makes more sense to me Patio. I personally couldn't think of too many ways there WOULD be exploits in a different countries windows XP.It's a twisted form of journalism ...no specifics...no answers.
Actually i BELIEVE you originally posted an article related to this from the EU...Hey look at that you have 12345 posts.

But yeah the TWO articles sounded SIMILAR and I even re-read the one I posted earlier. But because it was stated that this only affected non US customers I assumed they were two different issues.Can i request to freeze them at that point ? ?
OOoops i posted again !No option to freeze post counts. Although if you really wanted to I could create you a unique group that wouldn't count any additional posts and reset you back to 12345. But I'd imagine you're just joking around.Nope ...i'm serious.
Let's experiment with this unique group...

Just Kidding.

1965.

Solve : BitDefender Online Scanner ActiveX Control Buffer Overflow - Highly critical!!!?

Answer» TITLE:
BitDefender Online Scanner ActiveX Control Buffer Overflow

SECUNIA ADVISORY ID:
SA27717

VERIFY ADVISORY:
http://secunia.com/advisories/27717/

CRITICAL:
Highly critical

IMPACT:
System access

WHERE:
>From remote

REVISION:
1.1 originally posted 2007-11-21

SOFTWARE:
BitDefender Online Scanner 8.x
http://secunia.com/product/16611/

DESCRIPTION:
GREG Linares has reported a vulnerability in BitDefender Online
Scanner, which can be exploited by malicious people to compromise a
user's system.

The vulnerability is caused due to an input validation error within
the OScan8.ocx / OScan81.ocx ActiveX control when handling arguments
passed to the "InitX()" method. This can be exploited to cause a
heap-based buffer overflow by prepending TWO "%" characters to the
argument of the AFFECTED method.

Successful exploitation allows execution of ARBITRARY code.

The vulnerability is reported in version 8.0. Other versions may also
be affected.

SOLUTION:
Update to the latest version (OScan82.ocx).
http://www.bitdefender.com/scan8/ie.html
1966.

Solve : Windows XP SP3 boasts speed boost, testers claim?

Answer»
Windows XP Service Pack 3 (SP3), the update scheduled to RELEASE next year, runs Microsoft Corp.'s Office suite 10% faster than XP SP2, a performance testing software developer reported Friday.

Link*sigh* Is it worth it?I find it interesting they are holding back the XP SP release until after the Vista SP1 is released...

The XP SP3 has been released to BETA testers.look at this *

Windows XP outshines Vista in benchmarking test


New tests have revealed that Windows XP with the beta Service Pack 3 has twice the performance of Vista, even with its long-awaited Service Pack 1.

Vista's first service pack, to be released early next year, is intended to boost the operating system's performance. However, when Vista with the Service Pack 1 (SP1) beta was put through benchmark testing by RESEARCHERS at Florida-based software DEVELOPMENT company Devil Mountain Software, the improvement was not overwhelming, leaving the latest Windows iteration outshined by its predecessor.

Vista, both with and without SP1, performed notably slower than XP with SP3 in the test, taking over 80 seconds to complete the test, compared to the beta SP3-enhanced XP's 35 seconds.


Vista's performance with the service pack increased less than 2 percent compared to performance without SP1--much lower than XP's SP3 improvement of 10 percent. The tests, RUN on a Dell XPS M1710 test bed with a 2GHz Core 2 Duo CPU and 1GB of RAM, put Microsoft Office 2007 through a set of productivity tasks, including creating a compound document and supporting workbooks and presentation materials.

In response to the test, a Microsoft spokesperson said in a statement that although the company understood the interest in the service packs, they are "still in development" and will continue to evolve before their release. "It has always been our goal to deliver service packs that meet the full spectrum of customer needs," the spokesperson said.

If SP1 does not evolve sufficiently, it could be another setback for Vista, with many businesses waiting to adopt the operating system until the service pack is released.

http://www.news.com/Windows-XP-outshines-Vista-in-benchmarking-test/2100-1016_3-6220201.htmlPersonally, I can't wait for this to finally be released. There are ways to get a copy of the beta version, but that's one beta I'm DEFINITELY too afraid to try on my computer.So far nothing has BLOWN UP on me here...Quote from: CBMatt on November 27, 2007, 09:03:39 AM
Personally, I can't wait for this to finally be released. There are ways to get a copy of the beta version, but that's one beta I'm definitely too afraid to try on my computer.
You mean Win XP SP3 (beta), not the Vista SP1 (beta), right?Quote from: soybean on November 27, 2007, 09:45:23 AM
Quote from: CBMatt on November 27, 2007, 09:03:39 AM
Personally, I can't wait for this to finally be released. There are ways to get a copy of the beta version, but that's one beta I'm definitely too afraid to try on my computer.
You mean Win XP SP3 (beta), not the Vista SP1 (beta), right?

Yessir. Sorry for not specifying.10% improvement . . . if that carries over, even partly, to anything but MS Office, I'll be glad.
1967.

Solve : Netscape Multiple Vulnerabilities - Highly critical!!!?

Answer»

TITLE:
Netscape Multiple Vulnerabilities

SECUNIA ADVISORY ID:
SA27800

VERIFY ADVISORY:
http://secunia.com/advisories/27800/

CRITICAL:
HIGHLY critical

IMPACT:
Cross Site SCRIPTING, DOS, System access

WHERE:
>From remote

SOFTWARE:
Netscape 9.x
http://secunia.com/product/14690/

DESCRIPTION:
Netscape has acknowledged some vulnerabilities in Netscape Navigator,
which can be exploited by malicious people to CONDUCT cross-site
scripting and cross-site request forgery ATTACKS or potentially to
compromise a user's system.

For more information:
SA27605
SA27725

SOLUTION:
Update to version 9.0.0.4.
http://browser.netscape.com/downloads/

1968.

Solve : Microsoft challenges the Ipod...again...?

Answer» http://www.nytimes.com/2007/11/29/technology/personaltech/29pogue.html?ref=personaltech

Quote
new second-generation Zune music/photo/video player is a pleasure to use.
Pleasure to use? you mean like Vista?Quote from: CARBON Dudeoxide on NOVEMBER 28, 2007, 07:34:59 PM


Quote
new second-generation Zune music/photo/video player is a pleasure to use.
Pleasure to use? you mean like Vista?

lol. I watched AOTS last night and they showed this. They said the Ipod was still better but the zune was CATCHING up. I think PSP still most evolved because it has the biggest badest thing of all... THE INTERWEB!
1969.

Solve : Firefox 3?

Answer»

The future of Firefox

With the launch of Safari on the iPhone this summer, the more recent release of Opera Mini 4, and all the fuss about the Google Android mobile OS, there's been a lot of mobile browser hype of late. Most of us still browse the Web on our trusty PCs, however. So what's going on for us desktop surfers?

There hasn't been a whole lot of browser news ever since Internet Explorer 7 and Mozilla Firefox 2 squared off last October. Last night, Firefox fired the first shot in the next skirmish with the first beta release of Firefox 3.

Never an organization to put marketing deadlines ahead of the product, this beta release was originally expected back in July, but late is better than never. The new Firefox 3 beta 1 release includes some notable security features such as ONE-click Web site verification and automatic testing of outdated plug-ins.

The prerelease also shows off some of the planned personalization features, such as a star button for quickly adding bookmarks and a Smart Places folder with access to frequently visited sites and pages (which sounds quite a bit like the Speed-Dial feature in Opera 9.)

Firefox 3 beta 1 was released to the Mozilla developer community for testing purposes only, but that doesn't mean that anyone can't take a look at the new version. Whenever using beta or prerelease software, we always recommend that you back up your data first.

http://www.download.com/8301-2007_4-9820775-12.html?tag=nl.e415I may take it for a ride on my Win 2K machine.Ooh, nice.
Stepping up the development cycle a little, aren't they?It looks like Firefox gets slower with a new version:
http://celtickane.com/projects/jsspeed2007.php
Some more readings:
http://www.download.com/8301-2007_4-9820775-12.html?tag=nl.e415yeah, it looks like their security features are the slowing down culprit~ though with fios it is somewhat not noticed.. I "being not too savy with the browsers" wish someone would tell me how to cancel the *censored* synchroniser pop~up I keep GETTING from firefox?

I bet its from some upgrade/ download I did.... don't know how to get rid of the upgrade thingy ?Pop-up about synchronizing what?t least the gentleman on the test page illustrated the obvious:

Quote

The numerical score generated by this test is relative, meaning that results from different browsers are not comparable between different computers. A comparison between two different computers will have more variables than just javascript ENGINE speed.

P.S. It's still a BETA
P.S.S. Preliminary reports have shown 1/3 less memory usage which is one of the main goals of the new version...
As far as i can tell the jury is still out on this.More reading:
http://www.lockergnome.com/windows/2007/11/22/firefox-3-looks-pretty-foxy/Quote from: Broni on November 23, 2007, 10:59:56 AM
More reading:
http://www.lockergnome.com/windows/2007/11/22/firefox-3-looks-pretty-foxy/
I watched the video there. The features sound impressive. If they can do all that and yet improve performance, a point stated on the page, then I'd say that's quite an accomplishment.Firefox hasn't been able to sway me just yet, but I look forward to playing around with the new version.Quote from: CBMatt on November 27, 2007, 08:58:41 AM
Firefox hasn't been able to sway me just yet, but I look forward to playing around with the new version.

Let me GUESS...

Maxthon ? ?

Opera ? ?

How many guesses do i get ? ?

Hmm, how about...three more guesses. Heh.

You know, I've actually never even used Maxthon. Might have to give that a try.I'm afraid that if I upgrade to 3.0, my Firefox add-ons (Adblock, CustomizeGoogle, Google Toolbar, PDF Downloader, Forecastfox, etc) will not function properly or at all, so I will hold off for a while until those add-ons are compatible.

I found that you can mitigate Firefox's EXCESSIVE memory consumption by taking three steps:

1) Limiting the quantity of add-ons that you use (I'm guilty of this)

2) Disabling the phishing filter

3) Add this integer to about:config - browser.cache.memory.capacity: 32768

1970.

Solve : Again MS, again IE?

Answer» Hackers hijack web search results

A huge campaign to poison web searches and trick people into VISITING malicious websites has been thwarted.
http://news.bbc.co.uk/2/hi/technology/7118452.stm

My friend writes:
Quote
I have detected ONE such "search result" earlier TODAY! But of course I am SAFE, using Unix and Linux

WINDOWS lovers, get your rickety poor man's OS patched IMMEDIATELY before the Russian mobsters turn your PC into a drug-advertising bot!
1971.

Solve : 10 Tech Pioneers: Where Are They Now??

Answer» http://www.pcworld.com/article/id,139726/a...ml?tk=nl_cxanws

These former technology LUMINARIES have all taken DIFFERENT paths. How different? One's a country doctor, one's a budding movie mogul, and one teaches toddlers--and he's not even alive.

One of the rarest things in high tech is finding a major company that's STILL being run by the people who started it. Once you get past Bill Gates, Michael Dell, and Steve Jobs (part deux), the list gets pretty thin mighty fast.

In some cases, that's because the founders moved on, either voluntarily or otherwise. In others, it's because the company imploded, was acquired, or simply disappeared down the dot-com MEMORY hole.

We tracked down some of the more noteworthy tech people (and a couple of inanimate objects) whose careers have taken interesting or unusual twists: the PC pioneer turned country doctor, the dot-com wunderkind who's now a budding movie mogul, and the would-be BILLIONAIRE who chose a different path at a crucial moment.

Where are they now? Read on to find out.Since he included a stuffed Pet and a robot in his article i gave it the same amount of credibility....
He's out of material and missed many of the true pioneers in the industry.Quote from: patio on November 30, 2007, 10:32:34 AM
He's out of material and missed many of the true pioneers in the industry.
I agree. No mention of numerous icons such as Gordon Moore, co-founder of Intel, and many others.
1972.

Solve : Google removes thousands of malware sites?

Answer» http://sunbeltblog.blogspot.com/

On Monday, Sunbelt Software's security blog revealed that thousands of malware redirects were showing up in search engine results. Network bots designed to post relevant keywords and spam LINKS in various ONLINE forms (think forum posts or blog comments) helped attackers claim high-ranking search engine positions for various obscure and seemingly innocuous search terms. According to Sunbelt, two of the thousands of terms were "infinity" and "hospice." Yeah, that's cool. Search for hospice information for a sick friend or family member, potentially get your system infected with nasty malware.

On Tuesday, Sunbelt revealed more information about the ill-effects clicking on these fake links could have on a vulnerable system (as a reminder - ALWAYS keep your browser and Internet security tools up to date). Best case scenario - you might end up with one of those annoying toolbars and pop-up ads for fake security software. Worst case? Your computer could be used to generate false-clicks for the attacker's pay-per click programs (so they infect your system so that you can make them money), or worse still, that bot could load other malware/worms/trojans onto the unprotected system. Further investigation also revealed that these SEO-poisoning attacks were TARGETED at Google, although other search engines may have also been victim to the attacks.

Google has cleansed more than 40,000 of these hosting sites from their index, so for now - it looks like the biggest source of this sort of attack has been taken offline.OK - you might be thinking, spam search results show up everyday - why is this a big deal? It's a big deal because the techniques used for these attacks was more clever and thought out than the typical SEO-poisoning. It's also a big deal just based on the sheer scale of sites and domains dedicated to hosting these links and because of the malware involved.

It's great the Google stepped up and cleansed the index so quickly after being made aware of the problem, but this should be a big (or continuing) wake-up call to users who don't stay up to date with security updates or don't have some sort of Internet security solution. And while Windows users are obviously the users who are most directly affected by these types of attacks, having these kinds of search results show up as relevant, even if the link can't harm your system, is bad for the Internet community as a whole.

There's lots of talk within the tech community, especially the blogosphere about using SEO and how it's GOOD for bloggers and doesn't negatively affect readers/searchers/regular users. This is a lie. Instead of Search Engine Optimization, SEO should really stand for Search Engine Opportunism, because that's what it really is. Look, we certainly don't object to gaining revenue from ads or PAGE-views on a web site, that's why we are able to do what we do; we do object to gaming the system and using loopholes to insert web sites into search queries that really have nothing to do with the content. Techniques to make sure your relevant content shows up in corresponding searches is one thing -- inserting back-door code that is aimed at getting higher page ranks and more page views, regardless if the targets are actually correct, is another. To us, the type of SEO attacks revealed this week are only a few steps away from what tons of bloggers/websites do every day: purposely try to game search engines just so they can get more hits to their site, and by extension, maybe make a few extra dollars. Unless you are running a straight-up scam link-farm or very, very lucky -- the highest search engine rank in the world is not going to have lasting benefits if the content is nonexistent.Uhh....Congratulations Google.....removes thousands... i heard there were tens of thousands... not good...Not just google....yahoo and other major portals/search engines were affected as well.
1973.

Solve : VLC Media Player ActiveX Plugin and FLAC Vulnerabilities - Highly critical!!!?

Answer»

TITLE:
VLC Media Player ActiveX PLUGIN and FLAC Vulnerabilities

SECUNIA ADVISORY ID:
SA27878

VERIFY ADVISORY:
http://secunia.com/advisories/27878/

CRITICAL:
HIGHLY critical

IMPACT:
DoS, System access

WHERE:
>From remote

SOFTWARE:
VLC media player 0.x
http://secunia.com/product/7788/

DESCRIPTION:
Some vulnerabilities have been reported in VLC Media Player, which
potentially can be exploited by malicious people to compromise a
user's system.

1) An error within the ActiveX plugin of VLC Media Player can be
exploited to overwrite certain memory zones and execute arbitrary
code when a user e.g. visits a malicious website.

Note: This affects the Windows versions only.

2) Some vulnerabilities are CAUSED due to the use of a vulnerable
version of the FLAC library, which contains multiple integer
overflows.

For more information:
SA27210

Note: This may affect the Windows and MAC OS X binaries only.

SOLUTION:
Update to version 0.8.6d.
http://www.videolan.org/vlc/

1974.

Solve : Erratum Plagues Quad-Core Opterons, Phenoms?

Answer» ANOTHER blow to AMD. They've called for a stop SHIP on their quad core cpus. They've been behind for a year and a half already, and now this..... Can't SAY it breaks my heart, I'm all Intel anyways.

http://hardware.slashdot.org/article.pl?sid=07/12/04/237248
1975.

Solve : With SP1, Microsoft plans to ditch the Vista “kill switch”?

Answer» http://blogs.zdnet.com/Bott/?cat=12

The case for Windows Vista Service Pack 1 just got a lot stronger.

When SP1 ships sometime in early 2008, it will strip away one of Vista’s most annoying features and remove one of the most persistent objections to Vista’s adoption. Microsoft plans to remove the infamous “kill switch” from Windows Vista when SP1 is installed, restoring the Windows Genuine Advantage (WGA) program to its original role as a series of persistent but nonlethal notifications.

Vista activationIn a confidential briefing ahead of today’s formal announcement, WGA senior product manager Alex Kochis laid out the changes for a handful of reporters and analysts. One of the BULLET points on Kochis’s PowerPoint deck was especially blunt:
Quote
“Based on customer feedback, we will not reduce user functionality on systems determined to be non-genuine”
Those italics are in the original, suggesting that the WGA team has finally realized that they need to react forcefully to a year of embarrassing WGA glitches, server outages, and nonstop customer complaints. Beginning with the final, released version of SP1 next year (the modified WGA code will be missing from all but the most exclusive of SP1 betas), Microsoft plans to roll back WGA to its original format as a series of notifications that nudge and nag but don’t block access to any installed programs or Windows features.

The Softies responsible for WGA, including Kochis, wince when they hear the term “kill switch.” They prefer a more benign description, reduced functionality mode, when talking about the final step in Vista’s progression of penalties for any system that fails to pass its ONLINE test of activation status. But as I noted last year:
Quote
Microsoft denies that this is a “kill switch” for Windows Vista, even giving it a separate question and answer in its mock interview announcing the program. Technically, they’re right, I suppose. Switching a PC into a degraded functionality where all you can do is browse the Internet doesn’t kill it; but it’s arguably a near-death experience
In current retail COPIES of Vista, there are dire consequences for failing to activate a retail copy of Windows Vista after 30 DAYS or ignoring the three-day “grace period” when a system falls out of tolerance after too many hardware changes. When the timer runs out, the desktop turns black and its icons disappear and the Start menu vanishes. You can copy your personal data files, but you can’t open them, and you’re granted the right to use Internet Explorer for one hour before being forcibly logged off.

In its post-SP1 incarnation, the penalty for ignoring these activation notices is … more activation notices. The most annoying change is an Activate Now dialog box that forces you to wait 15 seconds before the matching Activate Later option is available to be clicked.

With SP1 installed, a Vista system that fails validation - one that Microsoft calls “non genuine” - will continue to work exactly as before. All programs will run, the Aero interface will keep its transparent window borders and whizzy effects, ReadyBoost will remain enabled, and there won’t be any time limit on your user session. If your copy of Windows is flagged as ”non genuine,” you’ll have to deal with some minor annoyances: the desktop background is a solid black (the better to SEE the “non genuine” label in the desktop’s lower right corner). If you change your desktop to something less stark, a scheduled task will paint it black again one hour later, and you’ll see a small “Activate Now” alert in the same location, which you’re free to ignore.

Restrictions on Windows Update will remain unchanged. If your system is flagged as “non genuine,” you’ll still get critical security updates, but you’ll need to pass a WGA validation check before you can download optional updates and new, signed drivers.

But that’s it. Under the new system, you can run Vista indefinitely as long as you’re willing to put up with a few nag screens.

The new SP1-era WGA code is designed to detect two of the most common Vista cracks: one tries to fool Vista into thinking that it’s an OEM copy with a matching OEM BIOS; the other rolls the mandatory activation checks ahead to 2099 or some other ridiculously distant date. Both the OEM BIOS and Clock Timer hacks are detected when SP1 is installed; the goal, says Microsoft, is to alert innocent or naive consumers who’ve been ripped off by crooked system makers or who purchased hacked Vista copies from shady online vendors. But even those known fakes will run indefinitely if you choose to ignore the messages.

Microsoft says the new notifications will lead to online “get legal” offers comparable to those for XP:

* Windows Vista Home Basic, $89
* Windows Vista Home Premium, $119
* Windows Vista Business, $145
* Windows Vista Ultimate, $199

Ironically, those prices are significantly better than the retail prices that you’ll find from legitimate Windows resellers. In theory, at least, a consumer could install a copy of Windows Vista without a product key, refuse to activate the system for 30 days, and then purchase a perfectly legal license at a discount using Microsoft’s online offer.

This drastic change in Microsoft’s WGA system is only the latest in series of attempts to smooth WGA’s rough edges. In August, Kochis apologized on Microsoft’s WGA blog for an outage that incorrectly flagged thousands of customers’ systems as “non genuine.” In October, Microsoft removed the WGA validation requirement from IE7 downloads. Two weeks ago, on November 20, Kochis promised to “build more trust in WGA” by improving its back-end systems, its response times, and its customer support.

Getting rid of the “kill switch” is a much better way to build that trust.I have to agree, this was one of the most annoying things about Vista... still not enough to convince me to upgrade though. XP still works fine for me and I'll just keep it for now if you don't mind, Mr. Gates. I'll believe it when i see it...ZDNet has been wrong before.The same thing is reported by Associated Press.Quote from: patio on December 04, 2007, 10:50:53 AM
I'll believe it when i see it...AP has been wrong before.
Quote from: patio on December 04, 2007, 10:50:53 AM
I'll believe it when i see it...Microsoft has lied before.

Oh wait... that's not what you said.
1976.

Solve : Interesting Web Browsers You Have Never Heard Of?

Answer»

This SITE LISTS more then 100 of them:
http://www.smashingmagazine.com/2007/11/21/web-browsers-you-have-never-heard-of/Quote from: Broni on JANUARY 23, 2008, 10:06:48 PM

This site lists more then 100 of them:
http://www.smashingmagazine.com/2007/11/21/web-browsers-you-have-never-heard-of/

Interesting
1977.

Solve : Vista SP1 gets a little closer?

Answer» http://www.edbott.com/weblog/?p=1824



Microsoft just posted a release candidate of Vista Service Pack 1 (http://windowsvistablog.com/blogs/windowsvista/archive/2007/12/05/announcing-windows-vista-sp1-release-candidate-rc.aspx) for its gaggle of official beta testers. The code will be unveiled for PUBLIC scrutiny next week.

As for the final release schedule, here’s what Microsoft’s Nick White REPORTS:

Quote
[W]e’re on track to complete and release SP1 in the first quarter of 2008. When SP1 is complete and we reach our release to manufacturing (RTM) MILESTONE, then shortly after the standalone installer will be released to the Web in two waves. The first wave will consist of the standalone installer (x86 and x64) for the 5 initial languages — English, French, Spanish, German and Japanese. These languages will be deployed shortly after the RTM milestone. The second wave will launch 8-12 weeks after the first and will consist of all remaining languages, for both chip architectures (x86 and x64)

I’ve finished downloading the x86 and x64 betas and will pass along my experiences when I can. For what it’s worth, “release candidate” is still beta. It can and will have bugs, so don’t even think about installing this not-quite-ready-for-prime-time player unless you know what you’re signing up for.

The good NEWS is that previous betas in this series have been easy to remove. I expect this release to follow in that tradition.
I don't know how these people are ignoring the Non-Disclosure Agreement...i had to AGREE to it.
1978.

Solve : Computer Randomly Plays Classical Music - Windows 98?

Answer»

I was searching the web and I found this in a MS KB article:

Quote

During normal operation or in Safe mode, your computer may play "FUR Elise" or "It's a SMALL, Small World" seemingly at random.

The web page can be found here:

http://support.microsoft.com//default.aspx?scid=kb;en-us;261186surely this is a late april fools joke?Quote from: hyperhedron on December 04, 2007, 10:28:52 PM
surely this is a late april fools joke?

ROTFL.

When I VISITED fakebill.wordpress.com this thing came up!!

Clicked on the link and checked the address and sure enough, it was from Microsoft.com.Someone must have slipped that in there somehow. Microsoft NEVER puts links to techs outside of Microsoft to help you fix the problem.

Quote
For aditional related information, please see the following DFI Technologies Web site:
http://www.dfiusa.com/support/tech-support.html (http://www.dfiusa.com/support/tech-support.html)

Microsoft provides third-party contact information to help you find technical support. This contact information may change without notice. Microsoft does not guarantee the accuracy of this third-party contact information.
Quote from: dairyman on December 04, 2007, 08:38:32 PM
I was searching the web and I found this in a MS KB article:

Quote
During normal operation or in Safe mode, your computer may play "Fur Elise" or "It's a Small, Small World" seemingly at random.

The web page can be found here:

http://support.microsoft.com//default.aspx?scid=kb;en-us;261186

That's pretty cool..... I think I'm going to unplug my cpu fan just to hear it..... APRIL FOOLSNah, the PC is obviously trying to improve the user's taste. Quote from: Dilbert on December 06, 2007, 11:42:56 PM
Nah, the PC is obviously trying to improve the user's taste.



Would WINDOWS really do that?nothing is below these people......

1979.

Solve : Skype skype4com URI Handler Heap Corruption Vulnerability - Highly critical!!!?

Answer»

TITLE:
Skype skype4com URI Handler Heap Corruption Vulnerability

SECUNIA ADVISORY ID:
SA27934

VERIFY ADVISORY:
HTTP://secunia.com/advisories/27934/

CRITICAL:
Highly critical

IMPACT:
System access

WHERE:
>From remote

SOFTWARE:
Skype for WINDOWS 1.x
http://secunia.com/product/4250/
Skype for Windows 2.x
http://secunia.com/product/7268/
Skype for Windows 3.x
http://secunia.com/product/12919/

DESCRIPTION:
A vulnerability has been reported in Skype, which can be exploited by
malicious people to compromise a user's system.

The vulnerability is caused DUE to an error in the "skype4com" URI
handler when processing short string values and can be exploited to
corrupt memory.

Successful exploitation allows execution of arbitrary code when a
user e.g. visits a malicious website.

The vulnerability is reported in versions prior to 3.6 Gold released
on 2007-11-15.

SOLUTION:
Update to version 3.6 Gold released on 2007-11-15 or LATER.

1980.

Solve : Microsoft to Self Destruct?

Answer»

"I stumbled across this fascinating Microsoft tutorial entitled "How to JUSTIFY a Desktop Upgrade." It's an attempt to coach IT professionals on how to sell Windows desktop upgrades internally. APPARENTLY the value of Vista is not readily apparent, requiring detailed instructions on how to connive and cajole into an upgrade from XP. The most intriguing thing about the tutorial is its implicit rejection of Microsoft's older technology. Just a few years ago Microsoft was PITCHING the world on how secure and cool XP was. Now it's telling US largely the opposite, implying that XP is a security threat, costs too much to run, and so on. With Microsoft marketing against itself, perhaps the Mac and Linux camps can simply wait for Microsoft to self-destruct?"

http://slashdot.org/article.pl?sid=07/12/10/1327208Oh crap, now that Microsoft is going to die, we'll all have to switch to Mac OS X!!!
I CAN'T LIVE WITHOUT MSFT!!

LOL. Nah, I'll just switch to Ubuntu Linux or Fedora.Quote from: dairyman on December 10, 2007, 10:30:31 PM

Oh crap, now that Microsoft is going to die, we'll all have to switch to Mac OS X!!!
I CAN'T LIVE WITHOUT MSFT!!

LOL. Nah, I'll just switch to Ubuntu Linux or Fedora.

I just switched back to Fedora last week... I feel so much better

They do this every time they release a new OS... this or that is WRONG with the old system, this or that is better, you'll save more money doing this, throw the old one out because it's not secure, blah blah blah...I wouldn't hold my breath waiting for MS to self-destruct....Microsoft may self-destruct very soon..... and Amiga may take the lead as the top desktop os.
Don't worry, I won't sell all my Microsoft stock anytime soon. (Partly because I don't have any)
1981.

Solve : Windows 7 to launch sooner ??

Answer»

Quote

Windows 7 pushed forward 10:51AM, Wednesday 23rd January 2008
Reports are suggesting that Microsoft is considering pushing forward the release date of Windows 7, its SUCCESSOR to Vista.

APC Magazine claims to have seen Microsoft's roadmap for the operating system, and reports that the software giant is gunning for a 2009 release to manufacturing, a year earlier than initially planned.

The roadmap apparently contains three distinct MILESTONE builds for Windows 7, with the first build, M1, apparently already shipped to PARTNERS for code validation.

M1 is reported to be ENGLISH language only, but is shipping in both 32-bit and 64-bit versions. M2 is SLATED to ship in April or May, while M3 is expected some time in the third quarter of 2008.

Full Story[/u]
1982.

Solve : Microsoft DirectX SAMI/WAV/AVI File Parsing Vulnerabilities - Highly critical!!!?

Answer»

TITLE:
Microsoft DirectX SAMI/WAV/AVI File Parsing Vulnerabilities

SECUNIA ADVISORY ID:
SA28010

VERIFY ADVISORY:
http://secunia.com/advisories/28010/

CRITICAL:
Highly critical

IMPACT:
System access

WHERE:
>From remote

OPERATING SYSTEM:
Microsoft WINDOWS 2000 Server
http://secunia.com/product/20/
Microsoft Windows 2000 Professional
http://secunia.com/product/1/
Microsoft Windows 2000 Datacenter Server
http://secunia.com/product/1177/
Microsoft Windows 2000 Advanced Server
http://secunia.com/product/21/
Microsoft Windows Server 2003 Datacenter Edition
http://secunia.com/product/1175/
Microsoft Windows Server 2003 Enterprise Edition
http://secunia.com/product/1174/
Microsoft Windows Server 2003 Standard Edition
http://secunia.com/product/1173/
Microsoft Windows Server 2003 Web Edition
http://secunia.com/product/1176/
Microsoft Windows Storage Server 2003
http://secunia.com/product/12399/
Microsoft Windows Vista
http://secunia.com/product/13223/
Microsoft Windows XP Home Edition
http://secunia.com/product/16/
Microsoft Windows XP Professional
http://secunia.com/product/22/

SOFTWARE:
Microsoft DirectX 10.x
http://secunia.com/product/16896/
Microsoft DirectX 7.x
http://secunia.com/product/1913/
Microsoft DirectX 8.x
http://secunia.com/product/1914/
Microsoft DirectX 9.x
http://secunia.com/product/1915/

DESCRIPTION:
TWO vulnerabilities have been reported in Microsoft DirectX, which
can be exploited by malicious PEOPLE to compromise a user's system.

1) An error within the DirectShow technology when parsing SAMI
(Synchronized Accessible Media Interchange) files can be exploited to
execute ARBITRARY CODE on a user's system when a specially crafted
file is opened.

The vulnerability has been reported in DirectX 7.0 and 8.1 and later
versions are not affected.

2) An error within the DirectShow technology when parsing AVI and WAV
files can be exploited to execute arbitrary code on a user's system
when e.g. visiting a malicious website.

The vulnerability has been reported in DirectX 7.0 through 10.0.

SOLUTION:
Apply patches.

Windows 2000 SP4 with DirectX 7.0:
http://www.microsoft.com/downloads/details.aspx?FamilyId=06196774-5a11-4525-b53c-8cb000738949

Windows 2000 SP4 with DirectX 8.1:
http://www.microsoft.com/downloads/details.aspx?FamilyId=ccb872bd-fc06-4a3f-ac70-3c9a42d57b37

Windows 2000 SP4 with DirectX 9.0c:
http://www.microsoft.com/downloads/details.aspx?FamilyId=03b14ce0-5189-4803-8151-6ac5cb6a9179

Windows XP SP2 with DirectX 9.0c:
http://www.microsoft.com/downloads/details.aspx?FamilyId=04a8f8d3-69f9-4445-baab-f45616a6b9b7

Windows XP Professional x64 Edition (optionally with SP2) with
DirectX 9.0c:
http://www.microsoft.com/downloads/details.aspx?FamilyId=f096c500-e765-4e75-8443-7ffec4ddf149

Windows Server 2003 SP1/SP2 with DirectX 9.0c:
http://www.microsoft.com/downloads/details.aspx?FamilyId=d80a295a-baf9-4981-8a28-1b4207ecc5f7

Windows Server 2003 x64 Edition (optionally with SP2) with DirectX
9.0c:
http://www.microsoft.com/downloads/details.aspx?FamilyId=378086ea-60b8-409f-970a-fcfd62025150

Windows Server 2003 with SP1/SP2 for Itanium-based systems with
DirectX 9.0c:
http://www.microsoft.com/downloads/details.aspx?FamilyId=2e6ea4bb-9f4f-46fb-9d51-e20b15e61a89

Windows Vista with DirectX 10.0:
http://www.microsoft.com/downloads/details.aspx?FamilyId=bfa571bc-e43f-45e3-bc98-4086985c99aa

Windows Vista x64 Edition with DirectX 10.0:
http://www.microsoft.com/downloads/details.aspx?FamilyId=3d8803da-108b-4b9d-a039-84932dce8e42

1983.

Solve : Free on-line file format conversion?

Answer»

Pretty IMPRESSIVE list of FILES:
http://media-convert.com/ (150MB)
http://www.youconvertit.com/ (300MB)

1984.

Solve : Intuit Products AnswerWorks ActiveX Control Buffer Overflow - Highly critical!!!?

Answer»

TITLE:
INTUIT Products AnswerWorks ACTIVEX Control Buffer Overflow

SECUNIA ADVISORY ID:
SA26670

VERIFY ADVISORY:
http://secunia.com/advisories/26670/

CRITICAL:
Highly critical

IMPACT:
System access

WHERE:
>From remote

SOFTWARE:
TurboTax 2006
http://secunia.com/product/15083/
TurboTax 2005
http://secunia.com/product/15558/
TurboTax 2004
http://secunia.com/product/16890/
TurboTax 2003
http://secunia.com/product/16889/
Quicken 2008
http://secunia.com/product/16891/
QuickBooks Simple START 3.x
http://secunia.com/product/16887/
QuickBooks Simple Start 2007
http://secunia.com/product/16888/
QuickBooks Simple Start 1.x
http://secunia.com/product/16886/
QuickBooks Enterprise 7.x
http://secunia.com/product/16885/
QuickBooks Enterprise 6.x
http://secunia.com/product/16884/
QuickBooks Enterprise 5.x
http://secunia.com/product/16883/
QuickBooks 2007
http://secunia.com/product/16882/
QuickBooks 2006
http://secunia.com/product/16881/
QuickBooks 2005
http://secunia.com/product/16880/
Intuit ProSeries 2006
http://secunia.com/product/16904/
Intuit ProSeries 2005
http://secunia.com/product/16903/
Intuit ProSeries 2004
http://secunia.com/product/16902/
Intuit ProSeries 2003
http://secunia.com/product/16901/
QuickTax 2003
http://secunia.com/product/16905/
QuickTax 2004
http://secunia.com/product/16906/
QuickTax 2005
http://secunia.com/product/16907/
QuickTax 2006
http://secunia.com/product/16908/
QuickBooks 2003
http://secunia.com/product/16909/
QuickBooks 2004
http://secunia.com/product/16910/
Intuit Clearly Bookkeeping 2003
http://secunia.com/product/16911/
Intuit Clearly Bookkeeping 2004
http://secunia.com/product/16912/
QuickBooks Credit Card Processing Kit
http://secunia.com/product/16913/
QuickBooks Invoice Manager
http://secunia.com/product/16914/

DESCRIPTION:
Parvez Anwar has discovered a vulnerability in various Intuit
products, which can be exploited by MALICIOUS people to compromise a
user's system.

The vulnerability is caused due to a boundary error in the
third-party AnswerWorks ActiveX control.

For more information:
SA26566

The vulnerability is confirmed in TurboTax Basic 2005. Please see the
vendor's advisory for a list of affected products and versions.

SOLUTION:
Apply patches.
http://support.quickbooks.intuit.com/support/qbupdate2007/Default.aspx

1985.

Solve : Internet Explorer Multiple Code Execution Vulnerabilities - Extremely critical!!?

Answer»

TITLE:
Internet Explorer Multiple Code Execution Vulnerabilities

SECUNIA ADVISORY ID:
SA28036

VERIFY ADVISORY:
HTTP://secunia.com/advisories/28036/

CRITICAL:
Extremely critical

IMPACT:
System access

WHERE:
>From remote

SOFTWARE:
Microsoft Internet Explorer 5.01
http://secunia.com/product/9/
Microsoft Internet Explorer 6.x
http://secunia.com/product/11/
Microsoft Internet Explorer 7.x
http://secunia.com/product/12366/

DESCRIPTION:
Some vulnerabilities have been reported in Internet Explorer, which
can be exploited by malicious people to COMPROMISE a user's system.

1) An error exists in the way Internet Explorer handles errors when
accessing objects, which have not been correctly initialised or that
have been deleted.

2) Another error exists in the way Internet Explorer handles errors
when accessing objects, which have not been correctly initialised or
that have been deleted.

3) A third error exists in the way Internet Explorer handles errors
when accessing objects, which have not been correctly initialised or
that have been deleted.

4) An error when displaying web pages CONTAINING certain unexpected
method calls to HTML objects can be exploited to corrupt memory.

NOTE: This vulnerability is reportedly being actively exploited.

Successful exploitation of the vulnerabilities may allow execution of
arbitrary code when a user e.g. visits a malicious website.

SOLUTION:
Apply patches.

Windows 2000 SP4 with Internet Explorer 5.01 SP4:
http://www.microsoft.com/downloads/details.aspx?FamilyId=B3BD16EA-5D69-4AE3-84B3-AB773052CEEB

Windows 2000 SP4 with Internet Explorer 6 SP1:
http://www.microsoft.com/downloads/details.aspx?FamilyId=BC8EDF05-262A-4D1D-B196-4FC1A844970C

Windows XP SP2 with Internet Explorer 6:
http://www.microsoft.com/downloads/details.aspx?FamilyId=6E4EBAFC-34C3-4DC7-B712-152C611D3F0A

Windows XP Professional x64 Edition (optionally with SP2) and
Internet Explorer 6:
http://www.microsoft.com/downloads/details.aspx?FamilyId=F5A5AF23-30FB-4E47-94BD-3B05B55C92F2

Windows Server 2003 SP1/SP2 with Internet Explorer 6:
http://www.microsoft.com/downloads/details.aspx?FamilyId=BF466060-A585-4C2E-A48D-70E080C3BBE7

Windows Server 2003 x64 Edition (optionally with SP2) and Internet
Explorer 6:
http://www.microsoft.com/downloads/details.aspx?FamilyId=074697F2-18C8-4521-BBF7-1D0E7395D27D

Windows Server 2003 with SP1/SP2 for Itanium-based SYSTEMS and
Internet Explorer 6:
http://www.microsoft.com/downloads/details.aspx?FamilyId=B3F390A6-0361-4553-B627-5E7AD6BF5055

Windows XP SP2 with Internet Explorer 7:
http://www.microsoft.com/downloads/details.aspx?FamilyId=B15A6506-02DD-43C2-AEF4-E10C1C76EE97

Windows XP Professional x64 Edition (optionally with SP2) and
Internet Explorer 7:
http://www.microsoft.com/downloads/details.aspx?FamilyId=C092A6BB-8E62-4D90-BDB1-5F3A15968F75

Windows Server 2003 SP1/SP2 with Internet Explorer 7:
http://www.microsoft.com/downloads/details.aspx?FamilyId=34759C10-16A5-42A2-974D-9D532FB5A0A7

Windows Server 2003 x64 Edition (optionally with SP2) and Internet
Explorer 7:
http://www.microsoft.com/downloads/details.aspx?FamilyId=7DCCCE5A-7562-448B-A345-CF1CC758E35C

Windows Server 2003 with SP1/SP2 for Itanium-based systems and
Internet Explorer 7:
http://www.microsoft.com/downloads/details.aspx?FamilyId=8414F3FB-216A-4D46-B590-4C1F304DFF91

Windows Vista with Internet Explorer 7:
http://www.microsoft.com/downloads/details.aspx?FamilyId=26D303DA-BB2E-4555-96F1-BECB0E277341

Windows Vista x64 Edition with Internet Explorer 7:
http://www.microsoft.com/downloads/details.aspx?FamilyId=C5E88E0B-A4C2-4690-91D9-326800030A16

1986.

Solve : MS08-001 exploit released?

Answer» http://forums.spywareinfo.com/index.php?showtopic=111760

Quote from: SpywareInfo Forums
FYI...

- http://preview.tinyurl.com/364gvn
January 17, 2008 (Infoworld) - "...The code is not available to the general public (Ed. note: "Yet"). It was released Thursday to security professionals who USE Immunity's Canvas computer security TESTING software. It causes the Windows system to crash but does not let the attacker run malicious software on the victim's system... The bug is PARTICULARLY troublesome for two reasons. First, it affects a widely used Windows component that is turned on by default. WORSE, no user interaction is required to trigger the flaw, meaning that it could be exploited in a self-copying worm attack. MS patched the flaw in its MS08-001 update**, released last week, but it takes time for enterprise users to test and install Microsoft's patches..."
* http://seclists.org/dailydave/2008/q1/0017.html
17 Jan 2008

** http://www.microsoft.com/technet/security/...n/ms08-001.mspx
January 8, 2008 - Critical

- http://atlas.arbor.net/briefs/index#1659842965
January 17, 2008 - "...Analysis: Like we anticipated, an exploit is now available in limited release. However, this issue should not affect too many networks, as the attackers need subnet access to send the traffic to the victim..."
1987.

Solve : Computer program fakes chatroom flirting?

Answer»

As reported by Reuters:

Quote

Internet chatroom romantics beware: your next chat may be with a clinical computer, not a passionate person, trying to win your personal data and not your HEART, an online security firm says.

A Russian website called *Blocked Russian URL* is advertising a software tool that, it says, can simulate flirtatious chatroom exchanges. It boasts that it can chat up as many as 10 women at the same time and persuade them to hand over phone numbers.

An Australian anti-virus software firm, PC Tools, has warned that the software could be abused by identity fraudsters trying to harvest people's personal details online. The Russian site denied it was intended for identity fraud.

The programme, so far available only in Russian, will go on sale around February 15, just after St Valentine's Day, said the *Blocked Russian URL* website.

"Not a single girl has yet realised that she was communicating with a programme!" it said, adding that the programme could also simulate virtual sex online.

"It's happened - a programme to tempt GIRLS over the internet!" said the site. "Within half an hour the CyberLover programme will introduce you to ... girls, exchange photos and perhaps even a contact phone number," it states.

Chatrooms have developed into a popular social networking section of the internet, where people can converse anonymously by keyboard on any topic, from flirting to fishing.

CyberLover's website explains that the settings on its programme can be changed to attract men, persuade people to visit a website or encourage them to top up mobile telephone credit, and that all the data collected will be stored.

CAN FOOL USERS

A spokesman for PC Tools said the programme had a "terrifyingly well-organised" interaction that could fool users into giving up personal details and could easily be converted to work in other languages.

"As a tool that can be used by hackers to conduct identity fraud, CyberLover demonstrates an unprecedented level of social engineering," Sergei Shevchenko, Senior Malware Analyst at PC Tools, said in a statement.

"It employs highly intelligent and CUSTOMISED dialogue to target users of social networking systems."

He said the programme "can monitor Internet browser activity, automatically recognise and fill in the fields in the web pages, generate keystrokes and mouse clicks, and post messages, URLs, files and photos."

"It can do exactly what users normally do when they are online, only in an automated pre-programmed way."

The *Blocked Russian URL* site denied the programme did anything wrong, saying it only gathered information that chatroom users themselves were volunteering.

"The programme can find no more information than the USER is prepared to provide," one of the site's employees, who gave his name only as Alexander, said in an emailed reply to Reuters questions.

"It maintains a dialogue with a person, but is not engaged in hacking or any other such schemes, I think this should be obvious," he said.

"If you have someone who is ready to hand over secret information to the person they are chatting to after having known them for all of five minutes, then in that case a leak of information is possible."
1988.

Solve : Got an XBox Live account ? ??

Answer»

Quote

As an apology to customers who faced major ONLINE service problems after the holiday season, Microsoft said TODAY that it would allow all XBOX 360 owners to download the game Undertow free of charge.

The game usually costs $10, but will be free to all Xbox owners with an Xbox Live account -- either the $50-per-year Gold ACCOUNTS or free Silver accounts -- from Wednesday, January 23 to Sunday, January 27.

Full Story
1989.

Solve : The world's smallest 1.8 inch HDD - 160 GB?

Answer»

Actually, I guess this is old news, since the article is about 3 months old, but I don't recall hearing about this:

http://www.gizmag.com/go/7983/

"September 8, 2007 With hard disk capacity accelerating faster than Moore’s Law for computer chips, Toshiba nudged ahead of Hitachi today when it announced the commercialization of the world’s largest 1.8-inch hard disk drive. DUBBED the MK1626GCB, the DEVICE offers a storage capacity of 160GB, and Toshiba has started to SHIPPING samples. The disk is clearly destined to END up inside the next generation of consumer electronics requiring high capacity storage in a small form-factor – notebooks, personal media players, and high def digital video cameras."

"The new drive has an improved read-write head and enhanced magnetic layer that boosts recording density, and achieves an areal density of 353 mega-bit per square millimeters (228 GIGABITS per square inches). The drive uses CE-ATA (an HDD interface that optimizes performance in consumer electronics applications) and fulfils another key criteria for drives destined for battery-powered portable electronics, in that it is 33% more energy efficient than Toshiba’s current range-topping 1.8-inch HDD, the MK1011GAH."

1990.

Solve : Polar MultiClipboard FREE?

Answer» http://www.polarsoftware.com/products/multiclipboard/index.asp

... you need Polar MultiClipboard!
If needed, Polar MultiClipboard saves all the clips you have ever copied, although you can also limit the number of clips to be saved. Furthermore, MultiClipboard enables you to save clipboards permanently and to assign a shortcut key to each of them.

At the same time, Polar MultiClipboard enables you to use clipboards from your network neighbours, as well as giving them access to yours, but only if and when you want it. The options are: Not Shared; Share to all users; Share to selected users.

Using multiclipboard
To save something to your clipboard simply copy or cut it by pressing CTRL+C or CTRL+X or right click on the mouse and select Copy/Cut. Polar MultiClipboard then automatically stores it.

An item can be retrieved easily by selecting it from the multicliboard list and pasting it by pressing Enter or more conveniently by using HotKeys which can insert the clip straight into an application.

Polar MultiClipboard can be your best FRIEND - by customizing its wide RANGE of options, you can make it behave just the way you want it to!

When and where to use it?
There are various situations where you'll find Polar MultiClipboard a time and energy saving tool. Not only does it enable you to use an unlimited number of copied items, but you can also save your clips into a permanent clipboard and whenever you need that text (a block of text perhaps) you can simply PASTE it with just one keystroke.

Besides that, how many times have you wanted to send your colleague a picture, or a block of text (s)he needs for his/her work. Using Polar MultiClipboard makes it so easy and super quick - just press CTRL+C and your network neighbours can use your clips! Wow, that sounds like a very good clipboard utility. I've been using M8 Free Multi Clipboard for a few months and have found it useful. But, I see Polar MultiClipboard has more features. I may try it, and switch from M8.Broni,
How long are you testing these new apps before listing all of them ? ?patio...
Most of them, never.
However, I always pick up programs, which look interesting, and they always (no exception) are recommended by trustworthy sites.
I never post any application, whicj have anything to do with changing some important computer settings (say, "miracle" tools).

soybean...
Me too. I've been using 101 Clips, which work fine, but it limits me to 30 clips, and it doesn't have permanent clips option.I just found out, that this is very old application (ca 1999 - 16 bit)), and it won't even install on my Vista.

But, here is a link to the newest version:
http://m8software.com/newfeatures/freeclip.htm

This is why i ASKED...
Not free.Quote
This is why i asked...
So, are you , or what?....LOL

Quote
Not free.
It's free, but it looks identical like "101 Clips", which I've been using for a while.Why do they call it 101 Clips when it saves 25 ? ?

That would be "25 Clips".
BTW, what do you use?maybe we need to create a new forum for posting software utilities, useful or OTHERWISE, that have or haven't been tested by the postee. ie Broni. Quote from: michaewlewis on January 17, 2008, 06:40:31 PM
maybe we need to create a new forum for posting software utilities, useful or otherwise, that have or haven't been tested by the postee. ie Broni.

Actually, Broni has a forum: Here.Are you sending me home?....LOLUhh... well, let's just say that I am sending you home. Don't ask questions.

LOL

Nah, I ain't sending you home.
1991.

Solve : Microsoft Excel File Handling Code Execution - Extremely critical!!!?

Answer»

TITLE:
Microsoft Excel File Handling Code EXECUTION

SECUNIA ADVISORY ID:
SA28506

VERIFY ADVISORY:
HTTP://secunia.com/advisories/28506/

CRITICAL:
EXTREMELY critical

IMPACT:
System access

WHERE:
>From remote

SOFTWARE:
Microsoft Excel 2003
http://secunia.com/product/4970/
Microsoft Excel Viewer 2003
http://secunia.com/product/7700/
Microsoft Excel 2002
http://secunia.com/product/4043/
Microsoft Excel 2000
http://secunia.com/product/3054/
Microsoft Office 2000
http://secunia.com/product/24/
Microsoft Office 2003 Professional Edition
http://secunia.com/product/2276/
Microsoft Office 2003 Small Business Edition
http://secunia.com/product/2277/
Microsoft Office 2003 Standard Edition
http://secunia.com/product/2275/
Microsoft Office 2003 Student and Teacher Edition
http://secunia.com/product/2278/
Microsoft Office 2004 for Mac
http://secunia.com/product/8713/

DESCRIPTION:
A vulnerability has been reported in Microsoft Excel, which can be
exploited by malicious people to compromise a user's system.

The vulnerability is caused due to an unspecified error in the
handling of Excel files and can be exploited via a specially crafted
Excel file with malformed header information.

Successful exploitation allows execution of arbitrary code but
requires that the user is tricked into opening a malicious Excel
file.

NOTE: According to Microsoft, this is CURRENTLY being actively
exploited.

The vulnerability is reported in the following versions:
* Microsoft Office Excel 2003 Service Pack 2
* Microsoft Office Excel Viewer 2003
* Microsoft Office Excel 2002
* Microsoft Office Excel 2000
* Microsoft Excel 2004 for Mac.

SOLUTION:
Do not open untrusted Excel files.

For Microsoft Excel 2003, the vendor recommends using the Microsoft
Office Isolated Conversion Environment (MOICE) or Microsoft Office
File Block policy. Please see the vendor's advisory for details.I have Office 2003 but I believe I'm safe. http://www.microsoft.com/technet/security/advisory/947563.mspx says: "At this time, our initial investigation indicates that customers who are using Microsoft Office Excel 2007 or Microsoft Excel 2008 for Mac, or who have installed Microsoft Office Excel 2003 Service Pack 3 are not affected by this vulnerability."

I have Service Pack 3 installed.

1992.

Solve : Apple QuickTime Multiple Vulnerabilities - Highly critical!!!?

Answer» TITLE:
Apple QuickTime Multiple Vulnerabilities

SECUNIA ADVISORY ID:
SA28092

VERIFY ADVISORY:
http://secunia.com/advisories/28092/

CRITICAL:
Highly critical

IMPACT:
DoS, System access

WHERE:
&GT;From remote

SOFTWARE:
Apple QuickTime 7.x
http://secunia.com/product/5090/

DESCRIPTION:
Some vulnerabilities have been reported in Apple QuickTime, which can
be exploited by malicious people to compromise a user's system.

1) A boundary error in the handling of QTL files can be exploited to
cause a heap-based buffer overflow when a user views a specially
crafted QTL file.

Successful exploitation may allow execution of arbitrary code.

2) Various unspecified errors exist in QuickTime's Flash media
handler, which can be exploited to execute arbitrary code.

The vulnerabilities are reported in Apple QuickTime prior to version
7.3.1.

SOLUTION:
UPDATE to Apple QuickTime version 7.3.1.

QuickTime 7.3.1 for PANTHER:
http://www.apple.com/support/downloads/quicktime731forpanther.html

QuickTime 7.3.1 for Tiger:
http://www.apple.com/support/downloads/quicktime731fortiger.html

QuickTime 7.3.1 for LEOPARD:
http://www.apple.com/support/downloads/quicktime731forleopard.html

QuickTime 7.3.1 for Windows:
http://www.apple.com/support/downloads/quicktime731forwindows.html
1993.

Solve : Ever Joined the Sears ‘My SHC Community’? Then Sears is Spying On You?

Answer» HERE



Sears, once known as “where America shops” should now be known as “where America gets spied on.” That’s because Sears has installed spyware on the computers of any of their Sears’ customers who signed up for the Sears “My SHC Community” (SHC stands for “Sears Holdings Corporation”), spying on not only what they buy, but on everything they do on the Internet.

True, they actually did disclose that the software they installed on their customers’ PCs “monitors all of the Internet behavior that occurs on the computer on which you install the application, including … filling a shopping BASKET, completing an application form, or checking your … personal financial or health information,” but the disclosure came buried deep within a privacy policy that was more than 50 screens long.

And, in case you didn’t quite catch that, yes, it said including checking your “personal financial or health information“!

After a CUSTOMER clicked “join” to join the My SHC Community, Sears would download VoiceFive software, using comScore spying technology, onto their customer’s computer.

The story was FIRST broken by Benjamin Googins, of Computer Associates, who concluded that “Sears.com is pushing software with extensive user tracking capabilities and doing a very poor job of obtaining informed consent – if at all. After the proxy software is installed on the user’s system there is nothing on the user’s desktop to indicate their every move on the Internet is being collected and sent to a third PARTY market research company, comScore.”

Separately, but relatedly, Sears was also sued this week for failing to ADEQUATELY protect the private information of their customers stored on the Sears ManageMyHome.com website, when it came to light that it was dead easy for anybody to view the private shopping information of any Sears customer using just the customer’s name, address, and telephone number.

The lawsuit was filed by a customer whose private details were, in fact, open to exploitation on the Manage My Home site, and alleges that the site is “fatally flawed and was designed in such a way as to significantly compromise the private information of its customers.” The lawsuit goes on to say that “At the most simple level, anyone can now access Sears’s customers private purchase history, meaning that a nosy person can find out how much his neighbor spent on a new washing machine or lawnmower. More problematically, marketing companies can mine the Managemyhome website for data about Sears customers, in order to transmit detailed advertisements for additional products and/or warranties.”

Sears has issued a statement saying that “We take our customers’ privacy concerns very seriously. We appreciate the efforts of those who brought the issue to our attention.”
1994.

Solve : Microsoft Surface?

Answer»

Not percisely news, not EXACTLY off TOPIC...

MICROSOFT Surface, the multi-touch screen software that has already been discussed on the forums already.

HERES a video that really points out some of the key features:
http://video.stumbleupon.com/#p=hx2d9x5k2g

And their website:
www.microsoft.com/surface

1995.

Solve : Office 2007 SP1 Installation Fails with Error 78F?

Answer»

Just FYI:
http://windowsbbs.com/showthread.php?t=69580I thought it was an RC and not the final SP1...did i oversleep ? ?
Ditto for XP's "SP3".......................Right on. I wasn't clear enough.

1996.

Solve : US Bans Spare Lithium Batteries from Checked Bags?

Answer» HERE

New rules will go into effect on Jan. 1 that prohibit air passengers in the U.S. from carrying spare lithium batteries in their checked baggage.

The new rules, announced Friday by the U.S. Department of Transport, are designed to reduce the risk of fires in aircraft. Lithium batteries have been identified as a possible cause of several aircraft fires.

Passengers will still be able to carry lithium batteries in checked bags if they are installed in a device like a laptop or digital camera. But loose batteries will need to be put in a plastic bag and carried on the plane as hand luggage, the DOT said.

The rules also limit each passenger to two "extended-life" lithium batteries. These are larger batteries with more than 8 grams of EQUIVALENT lithium content, examples of which are pictured in the DOT's statement.

The rules are also described at the SafeTravel.dot.gov Web site.

In February 2006 a United Parcel Service flight LANDED at Philidelphia International Airport after the crew detected a fire in its cargo. The National Transportation Safety Board said later that it found several burned out laptop batteries on the plane, and could not rule them out as a possible cause of the fire.

Lithium batteries are a fire hazzard because of the heat they can generate when they are damaged or suffer a short CIRCUIT, the NTSB said at a hearingabout the Philidelphia incident last July.

"Several lithium battery incidents have occurred in recent years, including a lithium-ion battery fire that occurred less than two months ago on an airplane in Chicago," the NTSB said.

Several big makers of laptops and cell phones, including Dell and Nokia, have recalled batteries recently because of flaws that CREATED a potential fire hazzard.
1997.

Solve : Adobe Flash Player Multiple Vulnerabilities - Highly critical!!!?

Answer»

TITLE:
Adobe Flash PLAYER Multiple Vulnerabilities

SECUNIA ADVISORY ID:
SA28161

VERIFY ADVISORY:
http://secunia.com/advisories/28161/

CRITICAL:
Highly critical

IMPACT:
Unknown, Security Bypass, Cross Site Scripting, Manipulation of data,
EXPOSURE of sensitive information, Privilege escalation, DoS, System
access

WHERE:
>From remote

SOFTWARE:
Adobe Flash Player 9.x
http://secunia.com/product/11901/
Adobe Flash CS3
http://secunia.com/product/14231/
Adobe Flex 2.x
http://secunia.com/product/14760/
Macromedia Flash 8.x
http://secunia.com/product/7024/
Macromedia Flash Player 7.x
http://secunia.com/product/2634/
Macromedia Flash Player 8.x
http://secunia.com/product/6153/

DESCRIPTION:
Some vulnerabilities have been reported in Adobe Flash Player, where
one vulnerability has an unknown impact and others can be exploited
by malicious, local users to gain escalated privileges and by
malicious people to bypass certain security restrictions, conduct
cross-site scripting and HTTP request splitting attacks, disclose
sensitive information, cause a Denial of Service (DoS), or to
potentially compromise a user's system.

1) An error when parsing specially crafted regular expressions can be
exploited to cause a heap-based buffer overflow.

For more information see vulnerability #7 in:
SA27543

2) An unspecified error in the parsing of SWF files can potentially
be exploited to execute arbitrary code.

3) An error exists when pinning a hostname to an IP address. This can
be exploited to conduct DNS rebinding attacks via allow-access-from
elements in cross-domain-policy XML documents.

4) An error exists in the enforcing of cross-domain policy files.
This can be exploited to bypass certain security restrictions on web
servers hosting cross-domain policy files.

5) Input passed to unspecified parameters when handling the
"asfunction:" protocol is not PROPERLY sanitised before being
returned to the user. This can be exploited to inject arbitrary HTML
and script code in a user's browser session in context of an affected
site.

The vulnerability does not affect Flash Player 7.

6) Input passed to unspecified parameters when calling the
"navigateToURL" function is not properly sanitised before being
returned to the user. This can be exploited to inject arbitrary HTML
and script code in a user's browser session in context of an affected
site.

The vulnerability only affects the Flash Player ActiveX Control for
Internet Explorer.

7) An unspecified error can be exploited to modify HTTP headers and
conduct HTTP request splitting attacks.

An error within the implementation of the Socket or XMLSocket
ActionScript classes can be exploited to determine if a port on a
remote host is opened or closed.

9) An error within the setting of memory permissions in Adobe Flash
Player for Linux can be exploited by malicious, local users to gain
escalated privileges.

10) An unspecified error exists in Adobe Flash Player and Opera on
Mac OS X.

For more information see vulnerability #3 in:
SA27277

The vulnerabilities are reported in versions prior to 9.0.115.0.

SOLUTION:
Update to version 9.0.115.0.

Flash Player 9.0.48.0 and earlier for Windows, Mac, and Linux:
http://www.stage.adobe.com/go/getflash

Flash Player 9.0.48.0 and earlier - network distribution:
http://www.stage.adobe.com/licensing/distribution

Flash CS3 PROFESSIONAL:
http://www.adobe.com/support/flash/downloads.html

Flex 2.0:
http://www.stage.adobe.com/support/flashplayer/downloads.html#fp9

NOTE: This is reportedly the final security bulletin that Adobe will
supply for users of Adobe Flash Player 7 (formerly Macromedia Flash
Player 7).

1998.

Solve : Emails Warning of Jury Duty Scam Are Based on Fact?

Answer» http://www.theinternetpatrol.com/emails-warning-of-jury-duty-scam-are-based-on-fact

The FBI is warning of a jury duty scam, and the warning is being EMAILED around the United States, as the fraud continues. POLICE in Colorado Springs, for example, have emailed the following warning to Colorado residents:

“Here is a new scam that is out and about.

This has been verified by the FBI (their link is also included below). Please pass this on. It is spreading fast so be prepared should you get this call. Most of us take those summonses for jury duty seriously, but enough people skip out on their CIVIC duty, that a new and ominous kind of fraud has surfaced.

The caller claims to be a jury coordinator. If you protest that you never received a summons for jury duty, the scammer asks you for your Social Security number and date of birth so he or she can verify the information and cancel the arrest warrant. Give out any of this
information and bingo; your identity was just stolen.

The fraud has been reported so far in 11 states, including Oklahoma, Illinois , and Colorado . This (swindle) is particularly insidious because they use intimidation over the phone to try to bully people into giving information by pretending they are with the court system. The FBI and the federal court system have ISSUED nationwide alerts on their web sites, warning consumers about the fraud.”

Explains the FBI, “The phone rings, you pick it up, and the caller identifies himself as an officer of the court. He says you failed to report for jury duty and that a warrant is out for your arrest. You say you never received a notice. To CLEAR it up, the caller says he’ll need some information for “verification purposes”-your birth date, social security number, maybe even a credit card number.”

Evil!

“This is when you should hang up the phone. It’s a scam,” adds the FBI website.
1999.

Solve : Yes, You Can Download All of Your iTunes Purchases Again?

Answer» http://www.theinternetpatrol.com/yes-you-can-download-all-of-your-itunes-purchases-again

What’s a person to do when their hard drive crashes, and they lose all of the songs that they purchased from iTunes? There is no option to re-download all of your iTunes purchases offered through either iTunes or the Apple website. However, while you may get chastised for not backing up your iTunes library (which you will do from now on, right?), it is possible to redownload all of your iTunes songs purchased through iTunes again, and restore your iTunes purchases.

First, it’s important to understand that Apple has a policy of not LETTING people download iTunes MUSIC purchases more than once per purchase, and that UNDOUBTEDLY has to do with royalties that they have to pay on each download. So you get to download the song that you purchase through iTunes exactly once.

And Apple strongly URGES you (and rightly so) to backup your iTunes library (and of course you should always make a regular backup of all of your data).

But, shift happens, and what can you do if, somehow, you lose your only copies of the songs that you have downloaded through iTunes?

Well, as it happens, Apple isn’t heartless, and they do have a way for you to recover those songs that you purchased and downloaded through iTunes.

But first, you have to make ABSOLUTELY sure that you don’t have any copies, anywhere.

Once you are really sure that those iTunes songs are gone, you can fill out a form at the Apple site, and explain your situation, and, as likely as not, they will very quickly flip a switch on your iTunes account, so that the next time you log into the iTunes store with the iTunes program, you’ll find that your iTunes selections are ready for you to download again.

Just don’t abuse it, and for goodness sakes, backup your hard drive!

Here’s the link:

Form to request to download iTunes purchases again:
http://www.apple.com/support/itunes/store/browser/
2000.

Solve : Windows XP Service Pack 2 download?

Answer» SOMEONE was LOOKING for this download, but I can't find that THREAD (LAZY?), so here you go:
HTTP://www.pcworld.com/downloads/file/fid,64993/description.html?tk=nl_Top10