<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>SecurityGuy.org &#187; Windows</title>
	<atom:link href="http://www.securityguy.org/topic/secure-os/windows/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.securityguy.org</link>
	<description>The IT Security Blog</description>
	<lastBuildDate>Wed, 08 Sep 2010 13:45:29 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Shield from exploits</title>
		<link>http://www.securityguy.org/shield-from-exploits/</link>
		<comments>http://www.securityguy.org/shield-from-exploits/#comments</comments>
		<pubDate>Mon, 16 Feb 2009 15:56:55 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.securityguy.org/?p=325</guid>
		<description><![CDATA[So, you wanted some kind of protection from 0-day exploits&#8230; here it is. Amazing work by F-Secure! http://www.f-secure.com/weblog/archives/00001607.html From their website: You may also remember that Microsoft patched MS08-078 around the same time. Multiple versions of Internet Explorer were affected on multiple versions of the Windows OS and exploit code was circulating at the time. [...]]]></description>
			<content:encoded><![CDATA[<p>So, you wanted some kind of protection from 0-day exploits&#8230; here it is.</p>
<p>Amazing work by F-Secure! <a href="http://www.f-secure.com/weblog/archives/00001607.html">http://www.f-secure.com/weblog/archives/00001607.html</a></p>
<p>From their website:<span class="rss:item"></p>
<p>You may also remember that Microsoft patched <a href="http://www.microsoft.com/technet/security/bulletin/ms08-078.mspx">MS08-078</a> around the same time. Multiple versions of Internet Explorer were affected on multiple versions of the Windows OS and exploit code was circulating at the time. Exploit Shield 0.5 was able to proactively protect against those exploits.<span id="more-325"></span></p>
<p>Exploit Shield is designed to shield Web browsers between the development of an exploit and the release of the vendor&#8217;s patch.</p>
<p>To sum up, Exploit Shield provides:</p>
<p>•  <strong>Zero Day Defense</strong>: Protects unpatched machines.<br />
•  <strong>Patch-Equivalent Protection</strong>: Vulnerability &#8220;shield&#8221; updates.<br />
•  <strong>Proactive Measures</strong>: Heuristic detection techniques.<br />
•  <strong>Protects Against All Websites</strong>: Regardless if untrusted or trusted and malicious or hacked.<br />
•  <strong>Automatic Feedback</strong>: detected exploit attempts are automatically reported to F-Secure.</span></p>
<p><span class="rss:item"><img class="alignleft" title="shield" src="http://www.f-secure.com/weblog/archives/ExploitShield_060_Beta.png" alt="" width="620" height="533" /><br />
</span></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center">
<ul class="socials">
		<li class="shr-comfeed">
			<a href="http://www.securityguy.org/shield-from-exploits/feed" rel="nofollow" class="external" title="Subscribe to the comments for this post?">Subscribe to the comments for this post?</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.securityguy.org/shield-from-exploits/&amp;title=Shield+from+exploits" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.securityguy.org/shield-from-exploits/&amp;title=Shield+from+exploits" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.securityguy.org/shield-from-exploits/&amp;title=Shield+from+exploits&amp;desc=So%2C%20you%20wanted%20some%20kind%20of%20protection%20from%200-day%20exploits...%20here%20it%20is.%0D%0A%0D%0AAmazing%20work%20by%20F-Secure%21%20http%3A%2F%2Fwww.f-secure.com%2Fweblog%2Farchives%2F00001607.html%0D%0A%0D%0AFrom%20their%20website%3A%0D%0A%0D%0AYou%20may%20also%20remember%20that%20Microsoft%20patched%20MS08-078%20around%20the%20same%20time.%20Multiple%20versions%20of%20Internet%20Explorer%20we" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.securityguy.org/shield-from-exploits/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-misterwong">
			<a href="http://www.mister-wong.com/addurl/?bm_url=http://www.securityguy.org/shield-from-exploits/&amp;bm_description=Shield+from+exploits&amp;plugin=sexybookmarks" rel="nofollow" class="external" title="Add this to Mister Wong">Add this to Mister Wong</a>
		</li>
		<li class="shr-mixx">
			<a href="http://www.mixx.com/submit?page_url=http://www.securityguy.org/shield-from-exploits/&amp;title=Shield+from+exploits" rel="nofollow" class="external" title="Share this on Mixx">Share this on Mixx</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://www.securityguy.org/shield-from-exploits/&amp;title=Shield+from+exploits" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.securityguy.org/shield-from-exploits/&amp;title=Shield+from+exploits" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.securityguy.org/shield-from-exploits/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Shield+from+exploits+-+http://b2l.me/ebd9v&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.securityguy.org/shield-from-exploits/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>How to disable the use of USB storage devices</title>
		<link>http://www.securityguy.org/disable-usb-storage-devices/</link>
		<comments>http://www.securityguy.org/disable-usb-storage-devices/#comments</comments>
		<pubDate>Fri, 26 Sep 2008 14:05:54 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Windows]]></category>
		<category><![CDATA[disable usb]]></category>

		<guid isPermaLink="false">http://www.securityguy.org/?p=225</guid>
		<description><![CDATA[If you ever wanted to disable the use of USB storage devices at your organization, like USB flash drives or external hard drives, this article is for you. Look no further. You can do it with the built-in tools you have in your Active Directory environment. First, download the Group Policy Management Console here. Install [...]]]></description>
			<content:encoded><![CDATA[<p>If you ever wanted to disable the use of USB storage devices at your organization, like USB flash drives or external hard drives, this article is for you.</p>
<p>Look no further. You can do it with the built-in tools you have in your Active Directory environment.<br />
First, download the Group Policy Management Console <a title="GPMC @ MS" href="http://download.microsoft.com/download/a/d/b/adb5177d-01a7-4f04-bfcc-cb7cea8b5bb7/gpmc.msi">here</a>. Install it.</p>
<p>To prevent users from <strong>using</strong> usb drives, you will need <a class="downloadlink" href="http://www.securityguy.org/wp-content/plugins/download-monitor/download.php?id=1" title=" downloaded 764 times" >USB block ADM file (764)</a>.</p>
<p>To prevent users from <strong>writing to</strong> usb drives, you will need <a class="downloadlink" href="http://www.securityguy.org/wp-content/plugins/download-monitor/download.php?id=2" title=" downloaded 516 times" >USB write protect ADM (516)</a>.<br />
<span id="more-225"></span></p>
<p><strong>An additional step that needs to be performed before the above tip will work has to do with modifying the file access permissions for 2 files. You need to remove the SYSTEM access permissions from the usbstor.sys and usbstor.inf files.</strong></p>
<p>You can do so by right clicking these files &gt; Properties, then going to the Security tab. There you need to remove the line for the SYSTEM account.</p>
<p><strong>Note:</strong> Under some circumstances, the SYSTEM should have write access to these files during Service Pack installation. For example, when the SP is installed via GPO or SMS, the installation runs under the SYSTEM Account.</p>
<p>Service Pack needs to replace the files to a new version and without proper write access to the file, installation will fail&#8230; Therefore, before each SP deployment we need to allow access to the SYSTEM account for these files.</p>
<p><strong>Adding .ADM files to the Administrative Templates in a GPO</strong></p>
<p>In order to add additional .ADM files to the existing Administrative Templates section in GPO please follow the next steps:</p>
<ol>
<li>Open the Group Policy Management Console (or GPMC) from the Administrative Tools folder in the Stat menu, or by typing gpmc.msc in the Run command.Note: GPMC is not a built-in part of Windows 2000/XP/2003, and needs to be separately installed, yet remember it can only be used effectively on Windows Server 2003-based Active Directory.<br />
If you do not have GPMC or cannot install it then you&#8217;ll need to edit the GPO via the regular means, i.e. from Active Directory Users and Computers management tool (dsa.msc).</li>
<li>Right-click an existing GPO (or create an new GPO, then right-click on it) and select Edit.</li>
<li>Expand either the Computer settings or Users settings sections of the GPO. Go to the appropriate Administrative Templates section and right-click it. Select Add/Remove Templates.</li>
<li>In the Add/Remove Templates window click Add.</li>
<li>Browse to the location of the required .ADM file and click Open.</li>
<li>In the Add/Remove Templates window notice that the new .ADM file is listed, then click Close.<br />
Now re-open the Administrative Templates section and browse to the new settings location.</li>
</ol>
<p><strong>Disabling GPO settings filtering<br />
</strong><br />
Many custom Administrative Templates require you to remove the requirement to show policy settings that can be fully managed in the GPO editor. To do so follow the next steps:</p>
<ol>
<li>After completing the above procedure, browse to the newly added Administrative Template section.<br />
Note that the section is indeed listed, however in the right-pane is empty.</li>
<li>Right-click an empty spot in the right pane and select View &gt; Filtering.</li>
<li>In the Filtering window click to un-mark the &#8220;Only show policy settings that can be fully managed&#8221; option. Then click Ok.<br />
Notice how the available options are now displayed in the right pane.</li>
</ol>
<p>You can now configure these options as you please.</p>
<p><strong>Replicating the added .ADM files across the domain<br />
</strong><br />
When adding new .ADM files to any GPO you actually place new features in the Administrative Templates section for that GPO. These settings should be accessible from any DC, and should apply to any computer that is affected by that GPO.</p>
<p>However, if the .ADM files were added, for example, when sitting on DC1, how do you make sure they are also replicated to DC2, DC3 and so on?</p>
<p>Well, luckily for us, in most cases there are no additional configuration steps involved. When adding the new .ADM file it is automatically uploaded to the following location on the DC that was used to edit the GPO (usually &#8211; the PDC Emulator,</p>
<p>%SystemRoot%\SYSVOL\sysvol\domain name\Policies\{GPO GUID}\Adm</p>
<p>Because all of the SYSVOL folder is shared and automatically replicated all over the domain, the uploaded .ADM file will automatically replicated to all the GPO instances on all DCs in the domain.</p>
<p>However this might cause a problem when using too many templates and too many GPOs, especially on slow WAN links.</p>
<p>In Windows Server 2003, the size of the Administrative Templates has grown when compared to the same .ADM files in Windows 2000. As a result, the entire set of Administrative Templates has grown to almost 1.75MB. When you multiply this size by each Policy that SYSVOL contains, you can see that much space is devoted to these templates.</p>
<p>For example, for a large corporation with 1200 GPOs in place, the entire SYSVOL folder (where the GPOs are located on each DC) can take up more than 1GB of hard disk space. Replicating such a folder over the WAN (especially when promoting a new DC) can be very problematic.</p>
<p><strong>Removing .ADM files from an existing GPO<br />
</strong><br />
Whenever you do not need the added feature anymore you can simply reverse the process and instead of adding new .ADM files &#8211; removing them.</p>
<p>Before removing an Administrative Template, make sure you modify its policy settings and wait for Group Policy to refresh on all the computers that were supposed to be effected by the GPO. This is because removing an Administrative Template that was previously installed does not change or remove any Registry settings that the GPO deployed when Group Policy was last processed.</p>
<p><strong>UPDATE:</strong> <a href="http://www.intelliadmin.com/blog/2007/01/disable-usb-flash-drives.html">http://www.intelliadmin.com/blog/2007/01/disable-usb-flash-drives.html</a> is one good resource on locking the drives, too. Just run the exe&#8217;s from the bottom of the post and you should be fine.</p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center">
<ul class="socials">
		<li class="shr-comfeed">
			<a href="http://www.securityguy.org/disable-usb-storage-devices/feed" rel="nofollow" class="external" title="Subscribe to the comments for this post?">Subscribe to the comments for this post?</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.securityguy.org/disable-usb-storage-devices/&amp;title=How+to+disable+the+use+of+USB+storage+devices" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.securityguy.org/disable-usb-storage-devices/&amp;title=How+to+disable+the+use+of+USB+storage+devices" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.securityguy.org/disable-usb-storage-devices/&amp;title=How+to+disable+the+use+of+USB+storage+devices&amp;desc=If%20you%20ever%20wanted%20to%20disable%20the%20use%20of%20USB%20storage%20devices%20at%20your%20organization%2C%20like%20USB%20flash%20drives%20or%20external%20hard%20drives%2C%20this%20article%20is%20for%20you.%0D%0A%0D%0ALook%20no%20further.%20You%20can%20do%20it%20with%20the%20built-in%20tools%20you%20have%20in%20your%20Active%20Directory%20environment.%0D%0AFirst%2C%20download%20the%20Group%20Policy%20Manage" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.securityguy.org/disable-usb-storage-devices/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-misterwong">
			<a href="http://www.mister-wong.com/addurl/?bm_url=http://www.securityguy.org/disable-usb-storage-devices/&amp;bm_description=How+to+disable+the+use+of+USB+storage+devices&amp;plugin=sexybookmarks" rel="nofollow" class="external" title="Add this to Mister Wong">Add this to Mister Wong</a>
		</li>
		<li class="shr-mixx">
			<a href="http://www.mixx.com/submit?page_url=http://www.securityguy.org/disable-usb-storage-devices/&amp;title=How+to+disable+the+use+of+USB+storage+devices" rel="nofollow" class="external" title="Share this on Mixx">Share this on Mixx</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://www.securityguy.org/disable-usb-storage-devices/&amp;title=How+to+disable+the+use+of+USB+storage+devices" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.securityguy.org/disable-usb-storage-devices/&amp;title=How+to+disable+the+use+of+USB+storage+devices" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.securityguy.org/disable-usb-storage-devices/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=How+to+disable+the+use+of+USB+storage+devices+-+http://b2l.me/ebd9q&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.securityguy.org/disable-usb-storage-devices/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Video: How to secure Windows XP &#8211; Part 2 (Advanced level)</title>
		<link>http://www.securityguy.org/video-how-to-secure-windows-xp-part-2-advanced-level/</link>
		<comments>http://www.securityguy.org/video-how-to-secure-windows-xp-part-2-advanced-level/#comments</comments>
		<pubDate>Thu, 25 Sep 2008 19:34:44 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Video]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[securing]]></category>
		<category><![CDATA[windows xp]]></category>

		<guid isPermaLink="false">http://www.securityguy.org/?p=218</guid>
		<description><![CDATA[This is the second video on securing Windows XP for home use &#8211; for advanced users. P.S. You may want to watch it in &#8220;full screen&#8221; mode. Subscribe to the comments for this post? Share this on del.icio.us Digg this! Post this on Diigo Post on Google Buzz Add this to Mister Wong Share this [...]]]></description>
			<content:encoded><![CDATA[<p>This is the second video on securing Windows XP for home use &#8211; for advanced users.</p>
<p><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="600" height="400" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="src" value="http://blip.tv/play/gcoez7UbAA" /><embed type="application/x-shockwave-flash" width="600" height="400" src="http://blip.tv/play/gcoez7UbAA"></embed></object><br />
P.S. You may want to watch it in &#8220;full screen&#8221; mode.</p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center">
<ul class="socials">
		<li class="shr-comfeed">
			<a href="http://www.securityguy.org/video-how-to-secure-windows-xp-part-2-advanced-level/feed" rel="nofollow" class="external" title="Subscribe to the comments for this post?">Subscribe to the comments for this post?</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.securityguy.org/video-how-to-secure-windows-xp-part-2-advanced-level/&amp;title=Video%3A+How+to+secure+Windows+XP+-+Part+2+%28Advanced+level%29" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.securityguy.org/video-how-to-secure-windows-xp-part-2-advanced-level/&amp;title=Video%3A+How+to+secure+Windows+XP+-+Part+2+%28Advanced+level%29" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.securityguy.org/video-how-to-secure-windows-xp-part-2-advanced-level/&amp;title=Video%3A+How+to+secure+Windows+XP+-+Part+2+%28Advanced+level%29&amp;desc=This%20is%20the%20second%20video%20on%20securing%20Windows%20XP%20for%20home%20use%20-%20for%20advanced%20users.%0D%0A%0D%0A%0D%0AP.S.%20You%20may%20want%20to%20watch%20it%20in%20%22full%20screen%22%20mode." rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.securityguy.org/video-how-to-secure-windows-xp-part-2-advanced-level/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-misterwong">
			<a href="http://www.mister-wong.com/addurl/?bm_url=http://www.securityguy.org/video-how-to-secure-windows-xp-part-2-advanced-level/&amp;bm_description=Video%3A+How+to+secure+Windows+XP+-+Part+2+%28Advanced+level%29&amp;plugin=sexybookmarks" rel="nofollow" class="external" title="Add this to Mister Wong">Add this to Mister Wong</a>
		</li>
		<li class="shr-mixx">
			<a href="http://www.mixx.com/submit?page_url=http://www.securityguy.org/video-how-to-secure-windows-xp-part-2-advanced-level/&amp;title=Video%3A+How+to+secure+Windows+XP+-+Part+2+%28Advanced+level%29" rel="nofollow" class="external" title="Share this on Mixx">Share this on Mixx</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://www.securityguy.org/video-how-to-secure-windows-xp-part-2-advanced-level/&amp;title=Video%3A+How+to+secure+Windows+XP+-+Part+2+%28Advanced+level%29" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.securityguy.org/video-how-to-secure-windows-xp-part-2-advanced-level/&amp;title=Video%3A+How+to+secure+Windows+XP+-+Part+2+%28Advanced+level%29" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.securityguy.org/video-how-to-secure-windows-xp-part-2-advanced-level/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Video%3A+How+to+secure+Windows+XP+-+Part+2+%28Advanced+level%29+-+http://b2l.me/ebd9z&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.securityguy.org/video-how-to-secure-windows-xp-part-2-advanced-level/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Video: How to secure Windows XP &#8211; Part 1 (beginner level)</title>
		<link>http://www.securityguy.org/video-how-to-secure-windows-xp/</link>
		<comments>http://www.securityguy.org/video-how-to-secure-windows-xp/#comments</comments>
		<pubDate>Wed, 24 Sep 2008 23:21:52 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Video]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[secure]]></category>
		<category><![CDATA[securing]]></category>
		<category><![CDATA[tutorial]]></category>
		<category><![CDATA[windows xp]]></category>

		<guid isPermaLink="false">http://www.securityguy.org/?p=200</guid>
		<description><![CDATA[22 minute,  beginner level video guide on securing Windows XP]]></description>
			<content:encoded><![CDATA[<p>Video: Secure Windows XP &#8211; tutorial that teaches you how to secure your home or business computer.</p>
<p>Please check back for more advanced guides.</p>
<p><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="600" height="400" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="src" value="http://blip.tv/play/gcoez6oKAA" /><embed type="application/x-shockwave-flash" width="600" height="400" src="http://blip.tv/play/gcoez6oKAA"></embed></object></p>
<p>P.S. You may want to watch it in &#8220;full screen&#8221; mode.</p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center">
<ul class="socials">
		<li class="shr-comfeed">
			<a href="http://www.securityguy.org/video-how-to-secure-windows-xp/feed" rel="nofollow" class="external" title="Subscribe to the comments for this post?">Subscribe to the comments for this post?</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.securityguy.org/video-how-to-secure-windows-xp/&amp;title=Video%3A+How+to+secure+Windows+XP+-+Part+1+%28beginner+level%29" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.securityguy.org/video-how-to-secure-windows-xp/&amp;title=Video%3A+How+to+secure+Windows+XP+-+Part+1+%28beginner+level%29" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.securityguy.org/video-how-to-secure-windows-xp/&amp;title=Video%3A+How+to+secure+Windows+XP+-+Part+1+%28beginner+level%29&amp;desc=22%20minute%2C%20%20beginner%20level%20video%20guide%20on%20securing%20Windows%20XP" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.securityguy.org/video-how-to-secure-windows-xp/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-misterwong">
			<a href="http://www.mister-wong.com/addurl/?bm_url=http://www.securityguy.org/video-how-to-secure-windows-xp/&amp;bm_description=Video%3A+How+to+secure+Windows+XP+-+Part+1+%28beginner+level%29&amp;plugin=sexybookmarks" rel="nofollow" class="external" title="Add this to Mister Wong">Add this to Mister Wong</a>
		</li>
		<li class="shr-mixx">
			<a href="http://www.mixx.com/submit?page_url=http://www.securityguy.org/video-how-to-secure-windows-xp/&amp;title=Video%3A+How+to+secure+Windows+XP+-+Part+1+%28beginner+level%29" rel="nofollow" class="external" title="Share this on Mixx">Share this on Mixx</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://www.securityguy.org/video-how-to-secure-windows-xp/&amp;title=Video%3A+How+to+secure+Windows+XP+-+Part+1+%28beginner+level%29" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.securityguy.org/video-how-to-secure-windows-xp/&amp;title=Video%3A+How+to+secure+Windows+XP+-+Part+1+%28beginner+level%29" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.securityguy.org/video-how-to-secure-windows-xp/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Video%3A+How+to+secure+Windows+XP+-+Part+1+%28beginner+level%29+-+http://b2l.me/ebd3k&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.securityguy.org/video-how-to-secure-windows-xp/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Securing the Browser</title>
		<link>http://www.securityguy.org/securing-the-browser/</link>
		<comments>http://www.securityguy.org/securing-the-browser/#comments</comments>
		<pubDate>Thu, 14 Aug 2008 09:19:32 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.securityguy.org/?p=104</guid>
		<description><![CDATA[Well, I have searched long and wide, could not find better structured article on browser security. Just head over at http://www.cert.org/tech_tips/securing_browser/ and do what Will Dormann and Jason Rafail tell you. Best of luck! Subscribe to the comments for this post? Share this on del.icio.us Digg this! Post this on Diigo Post on Google Buzz Add [...]]]></description>
			<content:encoded><![CDATA[<p>Well, I have searched long and wide, could not find better structured article on browser security.</p>
<p>Just head over at <a href="http://www.cert.org/tech_tips/securing_browser/">http://www.cert.org/tech_tips/securing_browser/</a> and do what <span style="font-size: x-small;">Will Dormann and Jason Rafail tell you. </span></p>
<p>Best of luck!</p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center">
<ul class="socials">
		<li class="shr-comfeed">
			<a href="http://www.securityguy.org/securing-the-browser/feed" rel="nofollow" class="external" title="Subscribe to the comments for this post?">Subscribe to the comments for this post?</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.securityguy.org/securing-the-browser/&amp;title=Securing+the+Browser" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.securityguy.org/securing-the-browser/&amp;title=Securing+the+Browser" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.securityguy.org/securing-the-browser/&amp;title=Securing+the+Browser&amp;desc=Well%2C%20I%20have%20searched%20long%20and%20wide%2C%20could%20not%20find%20better%20structured%20article%20on%20browser%20security.%0D%0A%0D%0AJust%20head%20over%20at%20http%3A%2F%2Fwww.cert.org%2Ftech_tips%2Fsecuring_browser%2F%C2%A0and%20do%20what%20Will%20Dormann%20and%20Jason%20Rafail%20tell%20you.%20%0D%0A%0D%0ABest%20of%20luck%21" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.securityguy.org/securing-the-browser/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-misterwong">
			<a href="http://www.mister-wong.com/addurl/?bm_url=http://www.securityguy.org/securing-the-browser/&amp;bm_description=Securing+the+Browser&amp;plugin=sexybookmarks" rel="nofollow" class="external" title="Add this to Mister Wong">Add this to Mister Wong</a>
		</li>
		<li class="shr-mixx">
			<a href="http://www.mixx.com/submit?page_url=http://www.securityguy.org/securing-the-browser/&amp;title=Securing+the+Browser" rel="nofollow" class="external" title="Share this on Mixx">Share this on Mixx</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://www.securityguy.org/securing-the-browser/&amp;title=Securing+the+Browser" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.securityguy.org/securing-the-browser/&amp;title=Securing+the+Browser" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.securityguy.org/securing-the-browser/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Securing+the+Browser+-+http://b2l.me/ebeby&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.securityguy.org/securing-the-browser/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Log in to Windows with least privilege</title>
		<link>http://www.securityguy.org/log-in-to-windows-with-least-privilege/</link>
		<comments>http://www.securityguy.org/log-in-to-windows-with-least-privilege/#comments</comments>
		<pubDate>Mon, 11 Aug 2008 09:48:40 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.securityguy.org/?p=98</guid>
		<description><![CDATA[Usually, when you install Windows(tm), after installation you&#8217;re granted with Admin rights &#8211; very convenient to install programs initially, and configure your system. What people don&#8217;t do afterwards, is create a user with Guest priviledge and use it for their daily tasks! So what you should do? Once all your applications are installed and your [...]]]></description>
			<content:encoded><![CDATA[<p>Usually, when you install Windows(tm), after installation you&#8217;re granted with Admin rights &#8211; very convenient to install programs initially, and configure your system.</p>
<p>What people don&#8217;t do afterwards, is create a user with Guest priviledge and use it for their daily tasks!</p>
<p>So what you should do?</p>
<p>Once all your applications are installed and your system is fully configured with drivers etc, click on Start &#8211; &gt; Run &#8211; &gt; type <strong>lusrmgr.msc</strong>, press Enter, right-click on Users, create a new user, choose a nice password for it, Clear the check-box “<strong>User must change password at next log on</strong>” . OK. Next, right-click on the user you created, choose <strong>Properties</strong>, click on the <strong>Member of</strong> tab, remove Users group, click Add, type Guests in the box, click Ok.<br />
Right-click on the Admistrative user you used until now &#8211; be it Administrator and/or other user you selected during installation &#8211; and set a long, nice, hard to guess password for it using &#8220;Reset Password&#8221;. Make up something like &#8220;thisisalongandeasytorememberpassword&#8221; &#8211; some sentence only you know and will never forget, but is impossible for others to guess.</p>
<p>Next time you log in to Windows, choose the Low-priv account you created, and use it for your daily tasks &#8211; browsing, working, etc &#8211; when you need to perform any administrative tasks, just right-click on an installation file or other executable, choose &#8220;Run As&#8221;, and type in your Administrative credentials.</p>
<p>Done!</p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center">
<ul class="socials">
		<li class="shr-comfeed">
			<a href="http://www.securityguy.org/log-in-to-windows-with-least-privilege/feed" rel="nofollow" class="external" title="Subscribe to the comments for this post?">Subscribe to the comments for this post?</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.securityguy.org/log-in-to-windows-with-least-privilege/&amp;title=Log+in+to+Windows+with+least+privilege" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.securityguy.org/log-in-to-windows-with-least-privilege/&amp;title=Log+in+to+Windows+with+least+privilege" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.securityguy.org/log-in-to-windows-with-least-privilege/&amp;title=Log+in+to+Windows+with+least+privilege&amp;desc=Usually%2C%20when%20you%20install%20Windows%28tm%29%2C%20after%20installation%20you%27re%20granted%20with%20Admin%20rights%20-%20very%20convenient%20to%20install%20programs%20initially%2C%20and%20configure%20your%20system.%0D%0A%0D%0AWhat%20people%20don%27t%20do%20afterwards%2C%20is%20create%20a%20user%20with%20Guest%20priviledge%20and%20use%20it%20for%20their%20daily%20tasks%21%0D%0A%0D%0ASo%20what%20you%20should%20do" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.securityguy.org/log-in-to-windows-with-least-privilege/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-misterwong">
			<a href="http://www.mister-wong.com/addurl/?bm_url=http://www.securityguy.org/log-in-to-windows-with-least-privilege/&amp;bm_description=Log+in+to+Windows+with+least+privilege&amp;plugin=sexybookmarks" rel="nofollow" class="external" title="Add this to Mister Wong">Add this to Mister Wong</a>
		</li>
		<li class="shr-mixx">
			<a href="http://www.mixx.com/submit?page_url=http://www.securityguy.org/log-in-to-windows-with-least-privilege/&amp;title=Log+in+to+Windows+with+least+privilege" rel="nofollow" class="external" title="Share this on Mixx">Share this on Mixx</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://www.securityguy.org/log-in-to-windows-with-least-privilege/&amp;title=Log+in+to+Windows+with+least+privilege" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.securityguy.org/log-in-to-windows-with-least-privilege/&amp;title=Log+in+to+Windows+with+least+privilege" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.securityguy.org/log-in-to-windows-with-least-privilege/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Log+in+to+Windows+with+least+privilege+-+http://b2l.me/ebd3q&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.securityguy.org/log-in-to-windows-with-least-privilege/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Isolate Internet Explorer</title>
		<link>http://www.securityguy.org/isolate-internet-explorer/</link>
		<comments>http://www.securityguy.org/isolate-internet-explorer/#comments</comments>
		<pubDate>Fri, 08 Aug 2008 16:05:52 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.securityguy.org/?p=94</guid>
		<description><![CDATA[We&#8217;ve seen multiple exploits, when the users visits a malicious web site, and next the whole organization is compromised, the data is leaked, business loses A LOT of money. So, what are we going to do? Use Linux? Yeah, like there are no exploits for all Linux browsers, including the console based Lynx&#8230; yes, text [...]]]></description>
			<content:encoded><![CDATA[<p>We&#8217;ve seen multiple exploits, when the users visits a malicious web site, and next the whole organization is compromised, the data is leaked, business loses A LOT of money.</p>
<p>So, what are we going to do? Use Linux? Yeah, like there are no exploits for all Linux browsers, including the console based Lynx&#8230; yes, text only browsing is dangerous too!</p>
<p>Let&#8217;s imagine most our users are admins on their own machines. Or even Power users. Dangerous situation. What would I do? Run IE as&#8230; Guest! This is isolating internet explorer for safe browsing.</p>
<p>Here&#8217;s the How-To:<br />
Start &#8211; > Run &#8211; > type <strong>lusrmgr.msc</strong>, press Enter, right-click on Users, create a new user, choose a nice password for it, Clear the check-box &#8220;<strong>User must change password at next log on</strong>&#8221; &#8211; this account will be used only for running your internet facing applications like Internet Explorer, Firefox, Outlook, etc.</p>
<p>Next, right-click on the user you created, choose <strong>Properties</strong>, click on the <strong>Member of</strong> tab, remove Users group, click Add, type Guests in the box, click Ok.</p>
<p>To create a shortcut on the Desktop for the new Internet Explorer instance, right-click on the Desktop, choose New -> Shortcut, in the field for the program paste this (where newuser is the username of the user you created previously):<br />
runas /user:newuser &#8220;c:\Program Files\Internet Explorer\iexplore.exe&#8221;<br />
Press Next, when it asks for a name for the new shortcut, type Inernet Explorer, press Next, done.<br />
<strong>For Firefox:</strong> runas /user:newuser &#8220;c:\Program Files\Mozilla Firefox\firefox.exe&#8221;</p>
<p>The icon is not pretty, I know. Right-click on it, choose Properties, Change Icon, and choose a nice icon, maybe even the Internet Explorer one at the end of the list.</p>
<p><strong>Update:</strong> This does not work with IE7 in Vista, so to run IE7 as Guest, you will need to login with your new user. That is actually much better, as it will protect you from other threats from internet facing programs you run.</p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center">
<ul class="socials">
		<li class="shr-comfeed">
			<a href="http://www.securityguy.org/isolate-internet-explorer/feed" rel="nofollow" class="external" title="Subscribe to the comments for this post?">Subscribe to the comments for this post?</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.securityguy.org/isolate-internet-explorer/&amp;title=Isolate+Internet+Explorer" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.securityguy.org/isolate-internet-explorer/&amp;title=Isolate+Internet+Explorer" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.securityguy.org/isolate-internet-explorer/&amp;title=Isolate+Internet+Explorer&amp;desc=We%27ve%20seen%20multiple%20exploits%2C%20when%20the%20users%20visits%20a%20malicious%20web%20site%2C%20and%20next%20the%20whole%20organization%20is%20compromised%2C%20the%20data%20is%20leaked%2C%20business%20loses%20A%20LOT%20of%20money.%0A%0ASo%2C%20what%20are%20we%20going%20to%20do%3F%20Use%20Linux%3F%20Yeah%2C%20like%20there%20are%20no%20exploits%20for%20all%20Linux%20browsers%2C%20including%20the%20console%20based%20L" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.securityguy.org/isolate-internet-explorer/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-misterwong">
			<a href="http://www.mister-wong.com/addurl/?bm_url=http://www.securityguy.org/isolate-internet-explorer/&amp;bm_description=Isolate+Internet+Explorer&amp;plugin=sexybookmarks" rel="nofollow" class="external" title="Add this to Mister Wong">Add this to Mister Wong</a>
		</li>
		<li class="shr-mixx">
			<a href="http://www.mixx.com/submit?page_url=http://www.securityguy.org/isolate-internet-explorer/&amp;title=Isolate+Internet+Explorer" rel="nofollow" class="external" title="Share this on Mixx">Share this on Mixx</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://www.securityguy.org/isolate-internet-explorer/&amp;title=Isolate+Internet+Explorer" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.securityguy.org/isolate-internet-explorer/&amp;title=Isolate+Internet+Explorer" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.securityguy.org/isolate-internet-explorer/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Isolate+Internet+Explorer+-+http://b2l.me/ebeep&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.securityguy.org/isolate-internet-explorer/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Securing Windows XP, v2</title>
		<link>http://www.securityguy.org/securing-windows-xp-v2/</link>
		<comments>http://www.securityguy.org/securing-windows-xp-v2/#comments</comments>
		<pubDate>Fri, 08 Aug 2008 12:11:15 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.securityguy.org/?p=90</guid>
		<description><![CDATA[Well this one will be a short one. Wanted to bring to your attention a program I&#8217;m using for a long time on my personal computers and in my work &#8211; &#8220;Security and Privacy Complete&#8221;. I know, I know, name sounds like crappy shareware useless app, but it&#8217;s not. It is an opensource project hosted [...]]]></description>
			<content:encoded><![CDATA[<p>Well this one will be a short one.</p>
<p>Wanted to bring to your attention a program I&#8217;m using for a long time on my personal computers and in my work &#8211; &#8220;Security and Privacy Complete&#8221;. I know, I know, name sounds like crappy shareware useless app, but it&#8217;s not.</p>
<p>It is an opensource project hosted at SourceForge.net, <a href="http://sourceforge.net/projects/cmia/">http://sourceforge.net/projects/cmia/</a></p>
<p>Now, WARNING. If you are not sure about an option, do NOT check or uncheck it. I could show you the settings I use, but it is possible that in your situation you will need something else. Hover your mouse over the setting, read the balloon tip that shows up, if you understand it &#8211; decide on the setting. Google it if you don&#8217;t understand it.</p>
<p>First run: <strong>There is a button, Create a Backup. USE IT.</strong> You can restore from backup later, using the &#8220;Restore from backup&#8221; button. Do not change any settings before you have created a backup!</p>
<p>Direct download link: <a title="DOWNLOAD" href="http://downloads.sourceforge.net/cmia/Security_and_Privacy_Complete_3.2.2_EN.zip?modtime=1202659829&amp;big_mirror=0" target="_self">here</a></p>
<p>Settings explained: <br />
<a href="http://cmia.backtrace.org/en_system.html">http://cmia.backtrace.org/en_system.html</a>  <br />
<a href="http://cmia.backtrace.org/en_sicherheit.html">http://cmia.backtrace.org/en_sicherheit.html</a> <br />
<a href="http://cmia.backtrace.org/en_dienste.html">http://cmia.backtrace.org/en_dienste.html</a><br />
<a href="http://cmia.backtrace.org/en_media.html">http://cmia.backtrace.org/en_media.html</a><br />
<a href="http://cmia.backtrace.org/en_iex.html">http://cmia.backtrace.org/en_iex.html</a><br />
<a href="http://cmia.backtrace.org/en_firefox.html">http://cmia.backtrace.org/en_firefox.html</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center">
<ul class="socials">
		<li class="shr-comfeed">
			<a href="http://www.securityguy.org/securing-windows-xp-v2/feed" rel="nofollow" class="external" title="Subscribe to the comments for this post?">Subscribe to the comments for this post?</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.securityguy.org/securing-windows-xp-v2/&amp;title=Securing+Windows+XP%2C+v2" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.securityguy.org/securing-windows-xp-v2/&amp;title=Securing+Windows+XP%2C+v2" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.securityguy.org/securing-windows-xp-v2/&amp;title=Securing+Windows+XP%2C+v2&amp;desc=Well%20this%20one%20will%20be%20a%20short%20one.%0D%0A%0D%0AWanted%20to%20bring%20to%20your%20attention%20a%20program%20I%27m%20using%20for%20a%20long%20time%20on%20my%20personal%20computers%20and%20in%20my%20work%20-%20%22Security%20and%20Privacy%20Complete%22.%20I%20know%2C%20I%20know%2C%20name%20sounds%20like%20crappy%20shareware%20useless%20app%2C%20but%20it%27s%20not.%0D%0A%0D%0AIt%20is%20an%20opensource%20project%20hosted%20at" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.securityguy.org/securing-windows-xp-v2/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-misterwong">
			<a href="http://www.mister-wong.com/addurl/?bm_url=http://www.securityguy.org/securing-windows-xp-v2/&amp;bm_description=Securing+Windows+XP%2C+v2&amp;plugin=sexybookmarks" rel="nofollow" class="external" title="Add this to Mister Wong">Add this to Mister Wong</a>
		</li>
		<li class="shr-mixx">
			<a href="http://www.mixx.com/submit?page_url=http://www.securityguy.org/securing-windows-xp-v2/&amp;title=Securing+Windows+XP%2C+v2" rel="nofollow" class="external" title="Share this on Mixx">Share this on Mixx</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://www.securityguy.org/securing-windows-xp-v2/&amp;title=Securing+Windows+XP%2C+v2" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.securityguy.org/securing-windows-xp-v2/&amp;title=Securing+Windows+XP%2C+v2" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.securityguy.org/securing-windows-xp-v2/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Securing+Windows+XP%2C+v2+-+http://b2l.me/ebeeq&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.securityguy.org/securing-windows-xp-v2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Securing Windows XP &#8211; simplified</title>
		<link>http://www.securityguy.org/securing-windows-xp-simplified/</link>
		<comments>http://www.securityguy.org/securing-windows-xp-simplified/#comments</comments>
		<pubDate>Thu, 24 Jul 2008 08:09:32 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.securityguy.org/?p=71</guid>
		<description><![CDATA[Securing Windows XP is easy. You just need to follow a few hundred easy steps Seriously, I&#8217;ll try shortening this up. First, you need a *good* firewall. I don&#8217;t know about you, but I just don&#8217;t trust the built-in one. Don&#8217;t know anyone who knows what it is and trusts it, though&#8230; The best firewall [...]]]></description>
			<content:encoded><![CDATA[<p>Securing Windows XP is easy. You just need to follow a few hundred easy steps <img src='http://www.securityguy.org/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
<p>Seriously, I&#8217;ll try shortening this up. First, you need a *good* firewall. I don&#8217;t know about you, but I just don&#8217;t trust the built-in one. Don&#8217;t know anyone who knows what it is and trusts it, though&#8230;<br />
The best firewall I&#8217;ve come to use is <a title="Comodo Firewall" href="http://www.personalfirewall.comodo.com/download_firewall.html" target="_blank">Comodo Firewall</a> &#8211; it has a period of learning, let it know which apps are safe, you will be the mentor for a while &#8211; but it&#8217;s worth it. It&#8217;s rock solid.<span id="more-71"></span></p>
<p>Next thing in the list &#8211; windows update. Set it to Automatic (Click on Start &#8211; &gt; Run &#8211; type services.msc &#8211; press Enter &#8211; find Automatic updates, doubleclick on the service, set it to Automatic and start it. Remember this site, bookmark it and visit it regularly to check for new updates &#8211; <a href="http://www.update.microsoft.com/microsoftupdate/v6/default.aspx?ln=en-us">http://www.update.microsoft.com/microsoftupdate/v6/default.aspx?ln=en-us</a></p>
<p>Number 3: Security policy. You could do it automatically by <a title="NSA Windows XP security configuration guide" href="http://www.nsa.gov/snac/os/winxp/Windows_XP_Security_Guide_v2.2.zip" target="_blank">downloading pre-configured security policies from NSA</a> and follow the documentation, or if you prefer to know what you&#8217;re doing, and you are not in a domain network, click on Start, Run, type gpedit.msc, Enter. You will be presented with a tree view of settings, just go through them and set them to your preference.</p>
<div id="attachment_73" class="wp-caption alignnone" style="width: 310px"><a href="http://www.securityguy.org/wp-content/uploads/2008/07/mezer_07-24_11-11-35.jpg"><img class="size-medium wp-image-73" style="border: 0px;" title="mezer_07-24_11-11-35" src="http://www.securityguy.org/wp-content/uploads/2008/07/mezer_07-24_11-11-35-300x236.jpg" alt="gpedit.msc" width="300" height="236" /></a><p class="wp-caption-text">gpedit.msc</p></div>
<p>I strongly suggest reading the documentation in the above NSA link, though.</p>
<p>Number 4: Users. Install your apps as Administrator, and create a regular user for everyday use.<br />
Remove their membership from Users group, and make them members of Guests group.</p>
<p>Log in as Administrator only when needed to install or remove something. Why? Just do it, don&#8217;t ask questions. Set passwords for all users you create, including Administrator! How to create users? Click on Start, Run, type lusrmgr.msc (sounds crappy, I know, MS makes joke of us), press Enter,</p>
<div id="attachment_76" class="wp-caption alignnone" style="width: 310px"><a href="http://www.securityguy.org/wp-content/uploads/2008/07/mezer_07-24_11-17-55.jpg"><img class="size-medium wp-image-76" style="border: 0px;" title="mezer_07-24_11-17-55" src="http://www.securityguy.org/wp-content/uploads/2008/07/mezer_07-24_11-17-55-300x122.jpg" alt="users" width="300" height="122" /></a><p class="wp-caption-text">users</p></div>
<p>Click on Users &#8211; right-click on Administrator &#8211; set password &#8211; and set a password for your admin account. Right click on Users, create the users you will be working daily with.</p>
<p>Number 5: Never, EVER download any cracks, game patches, online video players, screensavers, etc, just don&#8217;t because most of them are infected by viruses, spyware, malware or trojans. Think about it: who will ever spend time and money to create a crack, website, free screensaver, and give them to you for FREE, if the program is not opensourced? No free beer out there. YOU GONNA PAY BASTARD! <img src='http://www.securityguy.org/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
<p>Number 6: This guide is short and helps secure your home pc to some acceptable level. You could check out the link I posted above with the NSA security configuration guide &#8211; if you really need deeper level of security for your XP box, implement it step-by-step.</p>
<p>Good luck!</p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center">
<ul class="socials">
		<li class="shr-comfeed">
			<a href="http://www.securityguy.org/securing-windows-xp-simplified/feed" rel="nofollow" class="external" title="Subscribe to the comments for this post?">Subscribe to the comments for this post?</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.securityguy.org/securing-windows-xp-simplified/&amp;title=Securing+Windows+XP+-+simplified" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.securityguy.org/securing-windows-xp-simplified/&amp;title=Securing+Windows+XP+-+simplified" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.securityguy.org/securing-windows-xp-simplified/&amp;title=Securing+Windows+XP+-+simplified&amp;desc=Securing%20Windows%20XP%20is%20easy.%20You%20just%20need%20to%20follow%20a%20few%20hundred%20easy%20steps%20%3AD%0D%0A%0D%0ASeriously%2C%20I%27ll%20try%20shortening%20this%20up.%20First%2C%20you%20need%20a%20%2Agood%2A%20firewall.%20I%20don%27t%20know%20about%20you%2C%20but%20I%20just%20don%27t%20trust%20the%20built-in%20one.%20Don%27t%20know%20anyone%20who%20knows%20what%20it%20is%20and%20trusts%20it%2C%20though...%0D%0AThe%20best%20fi" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.securityguy.org/securing-windows-xp-simplified/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-misterwong">
			<a href="http://www.mister-wong.com/addurl/?bm_url=http://www.securityguy.org/securing-windows-xp-simplified/&amp;bm_description=Securing+Windows+XP+-+simplified&amp;plugin=sexybookmarks" rel="nofollow" class="external" title="Add this to Mister Wong">Add this to Mister Wong</a>
		</li>
		<li class="shr-mixx">
			<a href="http://www.mixx.com/submit?page_url=http://www.securityguy.org/securing-windows-xp-simplified/&amp;title=Securing+Windows+XP+-+simplified" rel="nofollow" class="external" title="Share this on Mixx">Share this on Mixx</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://www.securityguy.org/securing-windows-xp-simplified/&amp;title=Securing+Windows+XP+-+simplified" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.securityguy.org/securing-windows-xp-simplified/&amp;title=Securing+Windows+XP+-+simplified" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.securityguy.org/securing-windows-xp-simplified/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Securing+Windows+XP+-+simplified+-+http://b2l.me/ebeer&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.securityguy.org/securing-windows-xp-simplified/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Secure Windows Vista (the hard way)</title>
		<link>http://www.securityguy.org/secure-windows-vista-the-hard-way/</link>
		<comments>http://www.securityguy.org/secure-windows-vista-the-hard-way/#comments</comments>
		<pubDate>Tue, 22 Jul 2008 17:34:27 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Windows]]></category>
		<category><![CDATA[vista]]></category>

		<guid isPermaLink="false">http://securityguy.org/?p=58</guid>
		<description><![CDATA[There are 2 roads you could take to secure your beloved Vista. You could download the shiny &#8220;Secure anti-malware + anti-spyware + anti-virus + firewall + virtual sex partner&#8221; program, and feel &#8220;secure&#8221; or.. you could follow this guide. And download the Windows Vista Security Configuration gude, written by the security community in collaboration with [...]]]></description>
			<content:encoded><![CDATA[<p>There are 2 roads you could take to secure your beloved Vista. You could download the shiny &#8220;Secure anti-malware + anti-spyware + anti-virus + firewall + virtual sex partner&#8221; program, and feel &#8220;secure&#8221; <img src='http://www.securityguy.org/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
<p>or..</p>
<p>you could follow this guide. And download the Windows Vista Security Configuration gude, written by the security community in collaboration with Microsoft(tm), and BE secure.</p>
<p>Get it <a href="http://securityguy.org/wp-content/uploads/2008/07/windows-vista-security-guide.zip">here</a> (as in here), at <a title="Microsoft Windows Vista Security Guide" href="http://technet.microsoft.com/en-us/bb629420.aspx" target="_blank">MS</a> or at <a title="NSA Vista Security guide" href="http://www.nsa.gov/snac/os/winvista/Windows%20Vista%20Security%20Guide.msi" target="_blank">NSA</a></p>
<p>You will need at least basic system administration knowledge to apply it, and.. don&#8217;t forget to make a backup of your system *before* you apply it. <span id="more-58"></span>I would say &#8220;Read the documentation first, apply knowledge second&#8221;, but we all know you would like to apply first and read the documentation second <img src='http://www.securityguy.org/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' />  so&#8230; In the folder &#8220;Security Templates&#8221; there are some .inf files. Copy them to <span style="font-size: 11pt; line-height: 115%; font-family: &quot;Calibri&quot;,&quot;sans-serif&quot;; mso-fareast-font-family: Calibri; mso-bidi-font-family: 'Times New Roman'; mso-ansi-language: EN-US; mso-fareast-language: EN-US; mso-bidi-language: AR-SA;">c:\windows\security\templates, click on Start, Run – mmc – Add/remove snap in – Add “Security Configuration and Analysis” and “Security Templates” snap-ins.</p>
<p class="MsoNormal" style="margin: 0in 0in 10pt;">You should see your new template in the list of the Security Templates snap-in. You can edit it’s settings from there, don’t forget to save it in the script original location, not only in C:\windows\security\templates.</p>
<p class="MsoNormal" style="margin: 0in 0in 10pt;">To review the template compared to the current settings on the box, right-click on “Security Configuration and Analysis”, choose Open Database, type newsecurity in the file field, choose Open (this will create a new configuration database). Right-click on<span style="mso-spacerun: yes;">  </span>“Security Configuration and Analysis” again, choose Import Template, and select your custom template. Right-click on “Security Configuration and Analysis” again, and choose Analyze Now.</p>
<p class="MsoNormal" style="margin: 0in 0in 10pt;">You could change the settings you don&#8217;t like, and then instead of &#8220;Analyze Now&#8221; you would need to choose &#8220;Configure Now&#8221;, and your computer will be configured with the new security settings.</p>
<p><font style="font-size: 11pt; line-height: 115%; mso-fareast-font-family: Calibri; mso-bidi-font-family: 'Times New Roman'; mso-ansi-language: EN-US; mso-fareast-language: EN-US; mso-bidi-language: AR-SA;" face="&quot;Calibri&quot;,&quot;sans-serif&quot;"></p>
<p class="MsoNormal" style="margin: 0in 0in 10pt;">But you have been warned: read the documentation first! And make a backup!</p>
<p></font></span></p>
<p class="MsoNormal" style="margin: 0in 0in 10pt;"> </p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center">
<ul class="socials">
		<li class="shr-comfeed">
			<a href="http://www.securityguy.org/secure-windows-vista-the-hard-way/feed" rel="nofollow" class="external" title="Subscribe to the comments for this post?">Subscribe to the comments for this post?</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.securityguy.org/secure-windows-vista-the-hard-way/&amp;title=Secure+Windows+Vista+%28the+hard+way%29" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.securityguy.org/secure-windows-vista-the-hard-way/&amp;title=Secure+Windows+Vista+%28the+hard+way%29" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.securityguy.org/secure-windows-vista-the-hard-way/&amp;title=Secure+Windows+Vista+%28the+hard+way%29&amp;desc=There%20are%202%20roads%20you%20could%20take%20to%20secure%20your%20beloved%20Vista.%20You%20could%20download%20the%20shiny%20%22Secure%20anti-malware%20%2B%20anti-spyware%20%2B%20anti-virus%20%2B%20firewall%20%2B%20virtual%20sex%20partner%22%20program%2C%20and%20feel%20%22secure%22%20%3AD%0D%0A%0D%0Aor..%0D%0A%0D%0Ayou%20could%20follow%20this%20guide.%20And%20download%20the%20Windows%20Vista%20Security%20Configuration%20g" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.securityguy.org/secure-windows-vista-the-hard-way/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-misterwong">
			<a href="http://www.mister-wong.com/addurl/?bm_url=http://www.securityguy.org/secure-windows-vista-the-hard-way/&amp;bm_description=Secure+Windows+Vista+%28the+hard+way%29&amp;plugin=sexybookmarks" rel="nofollow" class="external" title="Add this to Mister Wong">Add this to Mister Wong</a>
		</li>
		<li class="shr-mixx">
			<a href="http://www.mixx.com/submit?page_url=http://www.securityguy.org/secure-windows-vista-the-hard-way/&amp;title=Secure+Windows+Vista+%28the+hard+way%29" rel="nofollow" class="external" title="Share this on Mixx">Share this on Mixx</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://www.securityguy.org/secure-windows-vista-the-hard-way/&amp;title=Secure+Windows+Vista+%28the+hard+way%29" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.securityguy.org/secure-windows-vista-the-hard-way/&amp;title=Secure+Windows+Vista+%28the+hard+way%29" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.securityguy.org/secure-windows-vista-the-hard-way/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Secure+Windows+Vista+%28the+hard+way%29+-+http://b2l.me/ebees&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.securityguy.org/secure-windows-vista-the-hard-way/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
