Uncategorized

Malware Taxonomy

A working group has formed to move towards establishing official language and terminology for describing malware to assist communicating and fighting malware. The working group is trying to establish the Malware Attribute Enumeration and Characterization (MAEC) language. There are a number of benefits to establishing a common malware terminology: eliminating innacuracy in describing malware, reduced duplication of efforts, improved awareness of malware, and decreased response time.

The Introduction to MAEC white paper was released yesterday and offers a promising start. From the abstract:

Follow-Up: Firefox Phishing Site Taken Down

Follow-Up: Firefox Phishing Site Taken Down

I got a lot of positive feedback on my article Is Your Firefox Genuine? Phishing at its Phinest! where I identified a site that had repackaged Mozilla Firefox and wrapped it up in a bunch of malware. The site was getting a decent amount of traffic, I suspect, because it was advertising itself well and was often the top sponsored result for Firefox-related searches on Bing. I tried multiple times to get a hold of Microsoft’s advertisement group to request that they drop the advertisement, but they were unreachable “for reasons beyond [their] control.” Little did I know, there was an easier way to prevent people from installing this malware all along…

The Book Seer – Book Recommendations for What's Next

The Book Seer is a very straight-forward web app that would be useful to anybody looking for recommendations as to what they should read next. When you visit the site, you see a gentleman in the background with a speech bubble over his head. The speech bubble has two blanks where you put the title and author of the last book you read as if the guy is saying it. Both title and author are required but once you’ve filled out the fields simply hit the arrow to get your recommendations.

Seesmic Look – A Polished, Functional Twitter Client

I’m in no way a die-hard Twittard, but I do use it to promote new articles and spout off random comments (140 characters or less) every once in a while. That being said, I did find the free application Seesmic Look to be very helpful in understanding and organizing all the information in Twitter to be a bit more functional and informative. I have a guest article over at Freewaregenius that highlights this application and its highs and lows. Check out the full article at Freewaregenius: Seesmic Look – A Polished, Functional Twitter Client.

Best Way to Recover from Hanging Group Policy Deployed Software

Deploying software through group policy is a great way to ensure all computers are up-to-date and running the same version but unfortunately, not everything runs as smoothly as we would like. I ran into a problem last Friday trying to deploy the updated Java RE 6 Update 18 where the antivirus would tie up the installer until the install process timed out. This only happened on 5 machines out of hundreds, but through it I think I found some best practices to do when you have a hung deployment trying to install on a computer.

From Parts to PC – A Guide to Building a Computer in 25 Easy Steps

After years of working with computers: taking out and replacing components, opening them up, upgrading them, and generally being comfortable inside them, I built my first PC years ago. I’m mostly self-taught on building computers, but I’ve got a number of from-scratch computers under my belt now and thinking about it, once you have the parts it’s pretty straight forward. This list is procedural memories from my mind, so feel free to add to this list any corrections or best practices that you have.