OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Russ (Russ.CooperRC.ON.CA)
Date: Wed Sep 19 2001 - 07:50:33 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    -----BEGIN PGP SIGNED MESSAGE-----

    I've had a bunch of messages regarding URLScan. Some people have
    complained that they have to install URLScan in order to get the
    instructions on how to configure it. Still more have said they cannot
    find any instructions.

    1. URLScan.exe, the download, is a .cab file (self-executing zip
    file). Like Hotfixes, it can be expanded to a directory by running
    URLSCAN /C, if you run URLSCAN /? you'll be presented with a list of
    options.

    2. When URLScan is installed you will see a file called URLSCAN.TXT
    in your %systemroot%\system32\inetsrv\urlscan directory. This file
    contains complete instructions and examples for all of the options.

    Microsoft really should put this file up as a page link from the
    advisory page (or turn it into a KB article and provide a link to
    it).

    Remember, Microsoft clearly states that URLScan is for "experienced"
    web administrators, its not for everyone, not a supported tool (e.g.
    its like resource kit tools), and may cause more harm than good (by
    generating huge log files or degrading your system performance when
    under attack).

    Cheers,
    Russ - NTBugtraq Editor

    -----BEGIN PGP SIGNATURE-----
    Version: PGP Personal Privacy 6.5.2

    iQCVAwUBO6iUmRBh2Kw/l7p5AQHS+QQAvJ8/nHmYcsc/zTbtjzRHR3crmTfpE9Ou
    abR3wmRT2ygUPzUMikIj0VNLYPDrKmPSYHvXKwHhdvTO1u6FClUUcEfQY2sown6r
    Yvt7F2WiMzmt4e4Y79MUSzAtN6hqxP6qW0k7rJOey0HGNMgGrvdKEdpmIXhz9inB
    0qwiB0XjFzo=
    =Uamd
    -----END PGP SIGNATURE-----

    ============================================================================
    Delivery co-sponsored by Trend Micro, Inc.
    ============================================================================
    TREND MICRO SCANMAIL FOR EXCHANGE 2000 -- SECOND to NONE

    If you are worried about email viruses, you need Trend Micro ScanMail for
    Exchange. ScanMail is the first antivirus solution that seamlessly
    integrates with the Microsoft Exchange 2000 virus-scanning API 2.0. ScanMail
    ensures 100% inbound and outbound email virus scanning and provides remote
    software management. Download a FREE 30-day trial copy of ScanMail and find
    out why it is the best:
    http://www.antivirus.com/banners/tracking.asp?si=8&BI;=240&UL;=/smex2000
    ============================================================================