Archive for the 'Uncategorized' Category

Getting Started On Vista – Performance Promise and Criticisms

Friday, October 5th, 2007

What can be said about the security and performance of Microsoft Vista?  Here are some of the Vista performance items that Microsoft lists on their site.

New to Vista (mostly new) is the Microsoft Diagnostic Infrastructure.  There are a set of instrumentation tools that make it easier for the Vista user to manage performance.  This includes being able to diagnose issues related to the system or applications starting up slowly and network-related delays.  Here are the diagnostics and tools.

Resource Exhaustion: This is a warning mechanism that displays a message when your resources are low and there is a potential data loss.  It points out which processes are using up the most resources, assists you to reclaim the resources, and then logs the event.

Memory Diagnostics: This tool works with the Microsoft Online Crash Analysis service – a service where you can upload error reports to Microsoft in the event of a crash that can be due to memory issues.  There is guided support and a queue to schedule a memory test once you have started your computer again.

Disk Diagnostics: This built-in diagnostic tool detects disk failures that are about to occur and then guides you through a process of backing up and recovering your data before it is lost.  The step-through process is one of backing up data, replacing the disk, and then restoring the data.

Network Diagnostics: This tool will identify the most hindering network connectivity issues and then it begins an automatic correction process.  Using graphs you can get a network diagnostic visual to assist in pinpointing the cause and to determine a solution.

There are many other features that are listed as well including:

  • Self-tuning and diagnostics
  • Startup, sleep, and shutdown performance
  • Quick app startup
  • New memory management technology (Windows SuperFetch)
  • Low priority I/O process management for multi-tasking,
  • Scheduled disk defragmentation
  • Windows HotStart for improved access to DVD’s and music (especially useful for mobile PCs)
  • Windows ReadyBoost ideal for taking advantage of USB flash drives as a memory cache
  • ReadyBoost utilizes USB storage devices to provide more high-speed memory using.

While there are many new features and performance tools offered there are many that have criticized Vista for a variety of faults and deficiencies.  For example, there are those that say the extras that are offered are not actually needed by the majority of users.  Backwards compatibility for third-party applications continues to be an Achilles heel for Microsoft.  There are also vulnerability issues and there could be more hacks as a result of User Account Control (UAC) design flaws.

Regardless of new entry points and attacks, malware authors will likely only need to tweak their coding to continue their assault using prior hacking apps and tools.  An article by Computerworld referenced David Milman, Rescuecom Corp. CEO (a computer support chain), as saying that Vista users as frustrated.  The recommendation is to wait until after the release of Service Pack 1 which is slated to be released in the first quarter of 2008.

So this concludes a brief blog entry into the realm of Vista performance and security offerings and criticisms.  Any real-life accounts of Vista are always welcome.

Is the “Virtual Sky” Falling?

Friday, August 31st, 2007

As this is my first blog entry I felt I had to write on something close to home. As a technical writer I have been writing pieces for online articles related to computer performance and security issues. I am three quarters of the way through an article about malware (“malicious software”) and it is taking far longer than I expected. I have tried to condense it as much as possible. It begins with a definition, lists the various types of malware, and briefly covers the transition from virus to malware. Recently, I did a first pass on a section related to attack vectors and security vulnerabilities and I am about to write on botnets and rootkits. As I work on this I am overwhelmed by just how much information is available on these subjects.

Last weekend I switched off my computer for the day and enjoyed an amazing day of bike riding and an incredible swim at a local lake. While warming in the sun and with the continuous reflection of light bouncing off the water, I attempted to explain to my new friend the work I was doing and the subject matter of my writing. Not only was it a challenge to bring this virtual existence into the refreshing day we were experiencing, but it was also difficult in another way. In the back of my mind, as I was talking, and even during the times I write, I can’t help but think… “Am I portraying a certain kind of message?” Am I saying in some way: “The virtual sky is falling… the virtual sky is falling”?

According to the available documentation malware and cyber crime is a serious issue and there is sufficient reason to be concerned. And yet, I don’t want to be an alarmist. How bad can it be? Most people that face this would be getting a few web cookies and popup ads. By some accounts, there will be those that will have their computers controlled by remote hackers (also known as “black hats” or “crackers”). Is this real and is there more to this?

Two days ago, the whole thing strikes close to home for me. A good friend of mine tells me that she has had some funds - a thousand dollars - taken from a bank account. The account is shared between her and her husband. When dealing with her bank, the rep assured her that this happens all the time and it was likely an error related to misdirected funds and they were investigating it. Soon after this someone from the bank tells her that it could be from malware or a virus and she should check her computer. She is using a MacIntosh and I find this interesting because from what I know, malware is not typically targeted at MacIntosh computers. I try and help from my end by attempting to find some free online scanning utilities. Finding some online scanning tool for the MacIntosh wasn’t leading to much success. She resolves herself to checking with the computer wholesalers, and the bank, the next day.

The next day, the Mac distributor that she speaks to says that there hasn’t been a virus on a Mac in 10 or 11 years. A contradiction from what I hear. The people I work with tell me that Macs are just as vulnerable but they are just not targeted as much because they have less of a market share. This was something I was fully aware of but I was glad to have confirmed it. My friend tells me in our next conversation that she had received an online correspondence a few days back which appeared to be from her bank. The email had seemed to look legit and it described a warning about an expiration which linked her to a web page where she had to submit her account credentials. Right away I knew what this was… a Phishing scam.

By using “hoax” or “spoof” emails these scammers appear legitimate. In some schemes, like this one, there is an urgent message, a web link is displayed, and the user is taken to a “spoofed” web page. The aim of the scam is to get a password, or PIN information, debit or credit card numbers, or social security numbers, or bank account information. Once you enter the credentials they can record the information and use it for other purpose such as transferring funds.

From what I know… it takes close examination of the email and the spoofed web page to detect that it is in fact a scam. The email message that my friend received stated that she must act immediately.

Here’s my little blurb… if in doubt of an email such as this, take some time to confirm it person-to-person or by phone with the financial institute. If you see a web page that looks like it could be a fake, examine the URL address to see if it is exact or if there are misspellings. Some of these tricksters are mimicking the web address by using two letter v’s (“vv”) instead of the letter w (“w”). You can also check to see if the address can be altered. If the site address is: “http://www.mybank.org/actow.html” you can try and truncate the URL so that you are taken to the home page: “http://www.mybank.org”. To read more about email spoofing, see: http://www.cert.org/tech_tips/email_spoofing.html.

One point of clarification has to do with PC’s and Macs. I usually slam Microsoft in my articles and here is an opportunity to balance the scales. Nothing against Macs but according to my online research, the first virus “in the wild” was spread via an Apple II floppy disc in 1981. There were viruses since then and up until the turn of the century. In May of 2001 there was the introduction of the first AppleScript worm. This virus uses Entourage or Outlook Express on Mac computers to spread emails to address book entries. All things considered, Macs are safer to use. However, as can be seen, no one is safe from the exploits of cyber crime and from the annoyance of viruses and security breaches.

When I research and study the reports available online I can’t help but write about this subject with a particular tone as this is important to me. I don’t know the full ramifications of it but it is a growing concern as we become more and more comfortable with our virtual conveniences. We rely on technology to be secure and to protect us from cyber nasties and we underestimate the potential of what is in fact a pandemic. I do not want to portray some message about disaster being eminent. It is a clear indication of our reliance on computer technology.

For many people who experience malware first-hand and take on their own private battle by trying to remove these items and regain control of their system, this is more than an a casual annoyance. As for other mass attacks and what the fallout will be… much of the outcome depends on how organized this threat is and how able users and solution providers are able to rally against it. There is the equivalent of an online “Neighborhood Watch”. You can check it out at: http://stopbadware.org/home/about.

There were very few people that were affected by the first virus that struck in 1981. It did include a little rhyme:

It will get on all your disks
It will infiltrate your chips
Yes it’s Cloner!
It will stick to you like glue
It will modify ram too
Send in the Cloner!

The cyber threats we face today have a greater impact and strike closer to home. They target and have an impact on our real world lives.