The bad guys win again!

Seems like a few people have been fleeced of their money via a bogus Olympic ticketing web site.

 As you can see www.beijingticketing.com looks very professional and there really isn’t much to give it away as being a scam. A story in the Sydney Morning Herald gives you some of the dollar figures for people who have been fleeced, and it ain’t small money!

This again demonstrates how sophisticated the bad guys are becoming in the quest to part you from your money. There is no simply solution to overcoming this issue because if you can fool the human at the keyboard you are well on your way to payday.

I know hindsight is 20/20 but if you read the About us page you do find some grammar issues like:

“We are special for providing sold out event tickets in very economical prices.”

and

“For being in the ticket market since a long time we have become very popular in football fans and music lovers”

Now I admit that bad grammar on a sophisticated web site does warrant concern but I don’t think it would have mattered in this case. Simply because most people would have been taken in by the professional look of the web site and secondly most would not have bothered to check the About page. Finally, grammar issues could have been put down to the site being converted from Chinese (maybe).

So all in all a very hard one for even the most vigilant computer user to pick. I suppose the only adage that can be applied is “if it seems to good to be true, then chances are it is”.

Bad guys 2 – Internet users 0

Do lots of emails make you feel important?

I’ve been doing some research and contemplation about emails of late. Interestingly, I came across the following article from Slate called – The E-Mail Addict. The article raises a number of issues with email that I think most people, including myself fall, into.

 

To start with, ever do this?

 

“people have a tendency to simply open their inboxes and scroll up and down for several minutes, knocking off two or three messages so they feel better”

 

It is all too easy isn’t it? Not feeling like doing anything, drifting along, what can I do you, you think? Rather than face an unpleasant or difficult task that NEEDS doing it is so much easier simply to scroll through your inbox and delete or reply to one or two emails. You now feel that you’ve done something so you drift off onto something else. Sound familiar?

 

Secondly, what about this?

 

“Lots of e-mail makes you feel important”

 

So, not only is email a good time waster for most workers but the more they get interrupted by email and the more they store in their inboxes the more “important” they feel. Silly isn’t it?

 

There was a time when emails were are real productivity improvement but sadly they have plainly become an excuse to waste time. Why? Simply, people have allowed the technology to control them. They have lost the discipline of saying enough is enough. They have become so insecure that they need emails to confirm their self worth. Ad infinitum.

 

Finally, consider:

 

Today, scholars talk of the “communication enslavement” that occurs when someone sends e-mail to someone else.

 

I had never really thought of it that way but in many cases this is right on the money. You send some an email and EXPECT a reply and EXPECT the reply instantaneously.

 

It is interesting if you take a step back and really have a look at the VALUE of Internet communications (in all their forms). Consider whether they are really improving your productivity or are they simply giving you something to do and something to feel good about. It is a brave person that can walk away from emails in today’s overloaded environment but the studies seem to indicate that unless you do you are doomed to life tethered to a machine. That certainly isn’t suppose to be the way it should be, in my my opinion.

 

I will happily admit that I fall into the same traps as well but I am trying to do something about it. My starting point? The Four Hour Work Week by Timothy Ferris (see my review, in my opinion a must read), and yes I am reading it AGAIN!   

Countering disinformation

There is plenty of unjustified negative press out there about Windows Vista but the saddest part has been how Microsoft has let these myths perpetuate. Well no more! Take a look at the Mojave Experiment.

 

The best way to prove what a ‘croc’ most of the anti-Vista propaganda has been is to bring in some people who profess a dislike for Vista (although never having seen it themselves), show them a ‘new’ version of Windows (called Mojave), then tell them they are looking at Vista.

 

The results speak for themselves.

Romeo Charlie 1

Well, I’ve just finished installing SBS 2008 RC1. Again, it is such a piece of cake I don’t see how anyone is going to make money out of installing the software myself. All you have to do basically is provide a server, domain and login name and everything else is done automatically.

 

I did however notice that with this version you MUST have at least 4GB of RAM installed to allow the installation to complete. This is a little strange since you don’t really need that amount of RAM to get it running. Because I’m running SBS 2008 RC1 on a Hyper V machine I just allocated 4GB of RAM during the install and then reverted back to 2GB once the installation was complete. Geeze, I love virtualization (as you should know by now).

 

Apart from the RAM issue the other thing I noticed was that SBS 2008 RC1 wanted to set itself to the highest screen resolution it could. Simple enough to change back after the fact but a bit of a pain during the installation. I had a quick look at Sharepoint and all that looks identical but can’t be 100% sure until I have a more in depth look shortly.

 

It hasn’t been long between RC0 and RC1 has it now, also factor that SBS 2008 isn’t due for release until November (still 4 months away) and I’ll be interested to see whether any more releases become available. I’m guessing we’ll see RC2 but probably no more. SBS 2008 is going to be the most ready to market version of SBS I reckon we’ve had.

Thanks Wayne

I recently gave our resident SBS Guru and MVP, Wayne Small, a look at my Windows Sharepoint Operations Guide so he could give me some feedback based on his own extensive experience with Sharepoint and publishing technical material. I am pleased to say that he has written a nice review in one of his recent blog posts.

 

In it he says:

 

“It gives great overview in how to perform many of the tasks that you will need to do in a SharePoint installation, along with real world experience where it varies from the official Microsoft line.  I’d suggest you check it out if you are doing work with SharePoint as it will save you time and money.”

 

I’d just like to say thanks to Wayne for taking the time to firstly have a look at what I have created and secondly to give my work such a positive wrap, I really appreciate it.

Why the bad guys will always win

Seen an email like this lately? Now to most techie types we would know that this certainly smells like some form of malware, but what about to a “normal” user? The following scenario really happened, the names have been changed to protect the innocent.

User – “My machine says that it is infected with spyware”
Techie – “Where does it say that?”
User – “Down the bottom right hand side of the screen. It says Windows has detected you machine is infected with spyware”
Techie – “Do you have anti-virus and is it up to date?”
User – “Yes, I have PC-cillian and it is up to date”
Techie – “Ok, I’ll remote in and have look”

Sure enough the machine appears to be infected with spyware, however after running a full system scan with PC-Cillian nothing is detected.

Techie – “Did you open email attachments today?”
User – “Yes, I opened one from UPS”
Techie – “Why? Did you send a parcel via UPS?”
User – “No”
Techie – “Are you expecting a parcel from UPS?”
User – “No”
Techie – “So, why did you open it?”
User – “I thought I was getting a surprise package”

Well, ladies and gentlemen the user sure did get a surprise package. For when they opened and ran the attachment it installed a hidden service in multiple locations on the disk, in the registry and so on. Thus, the machine was now infected.

Techie – “What did you do after you ran the attachment?”
User – “I went and did my Internet banking”

This story just keeps getting better and better doesn’t it? Firstly, the user gets their system infected with spyware by actually RUNNING an unknown attachment, which infects their system. Then, even though the system warns them there is an issue they simply ignore that fact and go and do Internet banking. We pick up the story again….

Techie – “I think you had better go and check your bank balances because there is chance someone has stolen your passwords”
User – “They can do that?”

Sure enough, checking the bank balances on a “known” clean machine, it turns out the maximum daily withdrawal amount has been transferred to an unknown account today, strangely not that long ago.

Techie – “You had better go and change all your Internet banking passwords”
User – “I don’t want to do that it is such a pain”
Techie – “Well if you don’t they are going to keep taking money out of your account”
User – “They can do that?”
Techie – “They have your password remember?”
User – “Better go and change my password eh?”
Techie – “Very good idea and in the meantime I’ll try and clean up this machine”

Very interesting that this UPS_service.exe spyware had completely slipped through PC-Cillian. After searching the web there didn’t appear to be much about how to clean up the infection. So it had to be manually removed from the registry, the disk system and then the system restored to a previous time. After running multiple scans on the machine it WOULD APPEAR to be clean, but you can never now be 100% sure.

User – “Whatta you mean you can’t be 100% sure”
Techie – “Look, I have done everything I can think of to remove it but if PC-Cillian isn’t even detecting it how can you be 100% sure?”
User – “But I want to be 100% sure?”
Techie – “Wipe the disk and start again”
User – “WHAT???”
Techie – “Sorry. Once a bad guy has control of your system, it ain’t yours anymore. You can try and throw them out but who knows what other tricks and back doors they have created for themselves”
User – “All that because I opened an attachment?”
Techie – “Yup”

This is why the bad guys are ALWAYS going to get around any technological protection you put in place. If they can fool the human being to over ride all these safe guards then why even attempt to try and circumvent the technology? Go straight for the human weakness because you know it will work EVERY time.

Education is the key. NEVER EVER trust something unsolicited from the Internet and THINK before opening ANY attachment.

You have been warned!

More SBS 2008 videos

No, these are not from me but from a business called NetoMeter (which I came across while reading the Small Business Tech Ramblings blog). The videos cover quite a range of SBS 2008 topics which should help with many common topics, including adding SSL certificates and doing bare metal restores.

 

Having done my own videos on similar topics I am interested to understand the business motivation behind creating such videos. They would appear to be aimed at driving business towards the remote support options provided by NeoMeter. I think this a very innovative business model and indicates to me that SBS 2008 support is really going to be able to be provided almost anywhere in the world.

 

If you are a reseller don’t be fooled into thinking that business owners are going to keep coming to you for support or to set up their systems. Using resources like these videos they will probably buy some bundle at the local PC supermarket, get their systems operational (that being quite easy to do with SBS 2008 now), then when they need assistance where are they going to turn first? I’ll put my money on NetoMeter first and someone in the yellow pages second.

 

It’s a competitive world out there and the skills required to install SBS 2008 have dropped in my opinion, not increased. This means life as an SBS reseller has gotten harder, not easier. Unless you have some angle or “special sauce” as I spoke about in a recent post you are going to be the poorer for it.