ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login
    1. Topics
    2. Rob Dunn
    3. Topics
    • Profile
    • Following 3
    • Followers 5
    • Topics 19
    • Posts 215
    • Groups 1

    Topics

    • Rob DunnR

      Ransomware Conversation Derailment Discussion Fork

      Watching Ignoring Scheduled Pinned Locked Moved Water Closet
      70
      1 Votes
      70 Posts
      25k Views
      scottalanmillerS

      @JaredBusch said in Ransomware Conversation Derailment Discussion Fork:

      Unfortunately, by @scottalanmiller's apparent design, this will never come to be because he does not like it.

      How does my opinion influence it?

    • Rob DunnR

      Link in email notifications from ML is incomplete

      Watching Ignoring Scheduled Pinned Locked Moved Platform and Category Issues
      5
      0 Votes
      5 Posts
      1k Views
      Rob DunnR

      Here we go:

      0_1462539129747_2016-05-06 07_50_53-[MangoLassi] Cerber virus_ransomware making the rounds... - [email protected]

    • Rob DunnR

      Cerber virus/ransomware making the rounds...

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion virus ransomware spam
      28
      5 Votes
      28 Posts
      15k Views
      wirestyle22W

      @scottalanmiller said in Cerber virus/ransomware making the rounds...:

      @wirestyle22 said in Cerber virus/ransomware making the rounds...:

      @scottalanmiller said in Cerber virus/ransomware making the rounds...:

      @wirestyle22 said in Cerber virus/ransomware making the rounds...:

      @scottalanmiller said in Cerber virus/ransomware making the rounds...:

      @wirestyle22 said in Cerber virus/ransomware making the rounds...:

      @scottalanmiller said in Cerber virus/ransomware making the rounds...:

      @wirestyle22 said in Cerber virus/ransomware making the rounds...:

      @Nic said in Cerber virus/ransomware making the rounds...:

      @Dashrender said in Cerber virus/ransomware making the rounds...:

      @Nic said in Cerber virus/ransomware making the rounds...:

      @JaredBusch said in Cerber virus/ransomware making the rounds...:

      @Rob-Dunn said in Cerber virus/ransomware making the rounds...:

      @Kelly said in Cerber virus/ransomware making the rounds...:

      @Rob-Dunn said in Cerber virus/ransomware making the rounds...:

      Another cool thing that we're going to be doing, but not as a result of this infection, is evaluating and maybe implementing Cylance in lieu of Trend on our systems.

      I'm not sure if it's appropriate to say, but their engine seems revolutionary.

      What makes you say that Rob?

      Mostly that it's not conventional scanning, but instead it analyzes what the files do rather than just signatures or patterns. The closest comparison I can come up with is the way Android app permissions are broken down in the app store - - it can identify if a file's threat by the characteristics contained therein. Here's an analysis of the FreeConferenceCall.com installer:

      I really want to see a good comparison of Webroot and Cylance from someone not related to either company.

      My problem with Cylance was that there was no small business pricing. they started at something like 1000 licenses at their SpiceWorld 2015 demo. Only knocking it down to 500 during the show.

      Hopefully the testing companies will get there eventually. They're all so geared towards signature detections and it's hard to get them to change. That's why we don't show up in some of them, as they won't come up with a methodology that better reflects what we do.

      I liked Cylance's demo - go to totalvirus, download the last 100 uploaded viruii, and run them.

      That's a good start, but it's tough to truly get a zero day virus that hasn't been seen yet, for a real world test. If it's on virustotal then it's already been identified as a virus by most of the AV companies.

      No way to get around it entirely

      Run them side by side in the real world (honeypot kind of thing) and test.

      No I mean zero day viruses

      Me too.

      I don't have faith either would do the job

      Isn't the other choice... neither, though? Will "none" do the job?

      That's definitely a question

      What I mean is... certainly trust nothing for zero days, protect as much as you can. But part of that would be getting the best AV that you can. It's part of the security picture.

      Agreed

    • Rob DunnR

      Active Directory on a Linux box with Samba - - group policy central store?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion active directory group policy linux samba
      9
      4 Votes
      9 Posts
      5k Views
      scottalanmillerS

      Yes, I think that RSAT might actually care as if it does the wrong thing it won't see the files.

    • Rob DunnR

      So, there was a RC "drone" hovering above my house yesterday...I was kinda pissed.

      Watching Ignoring Scheduled Pinned Locked Moved Water Closet
      105
      0 Votes
      105 Posts
      20k Views
      gjacobseG

      Good enough lawyer should be able to get it dismissed.

      when his daughters told him a drone was flying over the neighborhood.

      This here is enough in some cases to have the charges thrown. As @JaredBusch stated,.. shotguns only have an effect range of so far... They could have been using the drone to scope out victims.

      I think he was well within his right,.. but then again - I've been thinking of getting my own sail plane.

      It'll be a tough case.

    • Rob DunnR

      Other network gear HP PoE switches

      Watching Ignoring Scheduled Pinned Locked Moved Water Closet
      6
      1 Votes
      6 Posts
      1k Views
      PSX_DefectorP

      Will five dorrar make you hollar? It switch long time!

    • Rob DunnR

      Anyone have WSUS and want to test a PowerShell script for me? It's benign...don't worry :)

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion
      6
      3 Votes
      6 Posts
      1k Views
      Rob DunnR

      @PSX_Defector Yep, that's it!

      I want to make sure that it just plain works with someone else's setup. You must have remoting enabled on server - an assumption on my part, but I don't even think about it being enabled any more, but considering the intended audience for the script, I should...!

      Basically this is to help troubleshoot WSUS issues - wrong port, etc.

      Thanks so much!

    • Rob DunnR

      SCCM...have you noticed an uptick in usage?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion
      5
      1 Votes
      5 Posts
      1k Views
      ?

      @scottalanmiller said:

      Hard to say but I feel like it is tied to the massive shift from VMWare to HyperV virtualization.

      I'd say that's has a lot to do with it. VMWare's offerings are becoming less and less attractive.

    • Rob DunnR

      Did SourceForge start re-integrating adware into their downloads again?

      Watching Ignoring Scheduled Pinned Locked Moved Water Closet
      32
      4 Votes
      32 Posts
      11k Views
      thanksajdotcomT

      @thecreativeone91 said:

      @thanksajdotcom said:

      Youtube Video

      I never liked the Revolution OS. They try to paint MS as the bad guy because they wanted to get the money they were suppose to be paid for BASIC and stop piracy. They should be paid for their software.

      There is no doubt the guys in the video are fanatics. However, they are also some incredibly important people in the history of IT. I love learning the history, and I take the dogma with a grain of salt.

    • Rob DunnR

      eWoman - post at SW

      Watching Ignoring Scheduled Pinned Locked Moved Water Closet
      6
      6 Votes
      6 Posts
      1k Views
      DashrenderD

      Agreed, thanks for the heads up.

    • Rob DunnR

      Avast! has a free offering for SMBs for an unlimited number of admins/devices

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion
      35
      6 Votes
      35 Posts
      4k Views
      AmbarishrhA

      That makes sense. For me, I am testing this on my home mac, and I would like to keep the web shield on, but not able to browse when it is on. Opened a ticket on Avast, lets wait for their feedback.

    • Rob DunnR

      Ubuntu box with static IP, how to get it to register with pfSense DNS?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion dns network pfsense linux
      8
      0 Votes
      8 Posts
      3k Views
      thanksajdotcomT

      @Rob-Dunn said:

      @thanksaj

      Yeah, all my experience has been with Windows DHCP, and you're right, configuring the DNS suffix and other options are easy as pie. On the pfSense/Linux side it's a bit...different...!

      I don't have much experience with pfsense. I've played with it a little but never actually set it up and used it. YMMV

    • Rob DunnR

      A quick story about my home media server crash (a headless Linux server) as a Windows guy

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion
      10
      3 Votes
      10 Posts
      2k Views
      scottalanmillerS

      Congrats on diving into Linux. I bet that you will find that BASH scripting is dramatically easier to get into than PowerShell too. 🙂

    • Rob DunnR

      Got tired of waiting for someone to update their subcategories plugin. for Helpdesk V2...

      Watching Ignoring Scheduled Pinned Locked Moved Self Promotion spiceworks
      20
      11 Votes
      20 Posts
      5k Views
      dafyreD

      I use this plugin on SW too. It is great!

    • Rob DunnR

      Barracuda Cloud Control Spam services outage

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion
      2
      0 Votes
      2 Posts
      843 Views
      scottalanmillerS

      Wow, that's surprising for someone like Barracuda to be offline. That's a major blow to their confidence rating.

    • Rob DunnR

      So, working on a little Node.js project...anyone have any experiences to share?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion
      9
      2 Votes
      9 Posts
      2k Views
      scottalanmillerS

      You should subscribe to their sale email. Two books minimum daily.

    • Rob DunnR

      User asked me about their "lab top computer" the other day...

      Watching Ignoring Scheduled Pinned Locked Moved Water Closet
      8
      2 Votes
      8 Posts
      1k Views
      StrongBadS

      Very cute.

    • Rob DunnR

      For those of you who are awakened in the middle of the night for some stupid crap...

      Watching Ignoring Scheduled Pinned Locked Moved Water Closet
      4
      2 Votes
      4 Posts
      830 Views
      Reid CooperR

      So true. So sadly true.

    • Rob DunnR

      Am I missing something...(email notifications?)

      Watching Ignoring Scheduled Pinned Locked Moved Water Closet
      8
      2 Votes
      8 Posts
      1k Views
      thanksajdotcomT

      @Dashrender said:

      Agreed, not desperate, but I would like it.

      Though once we get it, I don't think the 'inbox' should show all new posts, perhaps only subscribed ones.

      THAT is what I'M desperate for!

    • 1 / 1