How to encrypt hard drive

Reading Time: < 1 minute

The following question was posted by a visitor:

Is there such thing as encrypting your hard drives so that if you did get someone trying to access data via online hacking it would make the entire harddrive encrypted: instead of just encrypting a folder, the entire system i mean.

Answer:

Yes, you can use http://www.truecrypt.org/

As always, make sure you take a backup of your data first. Create a recovery key if the option is available, incase you lose your password. Always test first.

Windows was unable to find a certificate to log you on to the network

Reading Time: < 1 minute

You come across  the following message ‘Windows was unable to find a certificate to log you on to the network’ when connecting to your wireless network. Wireless is connected but you are unable to surf the Internet. Try the below to resolve:

Step 1

1) Right click on your wireless icon found towards the bottom right within the task bar
2) Click view available wireless networks
3) Click change advanced settings
4) Click the wireless networks tab
5) Click properties
6) Click the authentication tab
7) Untick ‘Enable IEEE 802.1x authentication for this network’
8.) Click OK and OK again

Step 2 – If Step 1 does not work, make sure you have the latest Windows updates installed.

Step 3 -If step 2 does not work and you have Windows XP Service Pack 2 installed, upgrade to XP Service Pack 3. Service Pack 3 can be downloaded from http://update.microsoft.com

Remove Conficker from network

Reading Time: 2 minutes

Conficker has affected millions of machines from around the world. See Three million hit by Windows worm. It has since affected over 9 millions machines and growing.

To remove Conficker from your network, first download Microsoft Patch here. (KB958644). Conficker will attack machines which do not have this patch installed. You can use a script to push out the update – click here. Or you could push out via WSUS. If you don’t have a WSUS server it’s worth installing one. Carry out tests on a few machines before rolling out to all machines on a network.

Stop the virus from spreading, by clicking here. The link will help you disable auto run and reduce permissions on scheduled tasks. Conficker will also create scheduled tasks and use them to spread. You may find that lots exist on your machines. Such as AT1, AT2, AT3 and if you check the properties of each one you will find that they point to files such as hjskja.dll xldddd.dll and other wierdly named file names. You could use a script to remove such tasks from your machines. See Delete scheduled task via script

Make sure you don’t have any easy to guess usernames and passwords on your network.

Ensure all your machines have AV installed. If you use Sophos AntiVirus and wish to automate the deployment of Sophos AntiVirus see Deploy Sophos AntiVirus via script  (Check machines with AV installed are up dating and reporting no errors.

Run scans on your server and ensure that they are patched with the latest Windows Security and critical updates.

If you rely on system restore on your machines, Conficker will also remove restore points on the machines it infects. To disable system restore via group policy see Disable System Restore via Group Policy

F-Secure have created a list of blacklisted domains which the virus uses which you may want to block – click here

Once you have locked down your network, download the Sophos Removal tool and deploy via group policy – See Sophos Removal Tool (This tool can also be used on non Sophos AV machines)

The standalone version of the Sophos Removal Tool for Conficker can be found at Stand alone Conficker Removal Tool (This tool can also be used on non Sophos AV machines)

Finally deploy http://support.microsoft.com/kb/891716

Note: Test before applying to a live enviroment

It’s not a easy process and will take time before it’s totally removed.

Some useful links below:

McAfee
MSDN

Have you changed your wireless router password?

Reading Time: < 1 minute

Wireless Internet access has become very popular within our homes. The benefit of being able to wonder around the home and garden without cables is great, but after configuring your wireless network did you remember to change the default admin password on your router? Most would answer No!!

Not changing the admin password and not encrypting your wireless router is an open door for hackers to be able to access your network/router. It is still possible to hack a secure wireless network but it makes it more difficult and may put hackers off. Non secure networks are an easy target so hackers will not waste their time hacking secure networks when there are lots of non secure networks being broadcasted. 

When a hacker accesses your wireless network, they obtain an ip address by your router known as DHCP. I’m not going to go into too much detail of how one can access your router for security reasons but once connected there are ways once can access your router and if you have not changed the default password, can easily access your router and do as they wish.

I would recommend:

1) Change the default admin password on your wireless router
2) Enabling encryption by setting up a secure key
3) Stop your router from broadcasting your wireless network name (SSID)
4) Configure filtering so only certain machines you own can access your network.

If the above has not got you to thinking about securing your wireless network, then may be the next paragraph will.

One who accesses your wireless network could make fraudulent orders using a stolen credit. When the police investigate your home will be the targeted first as it was your Internet connection which was used.

Machine locks after screen saver activation

Reading Time: < 1 minute

If you find you are having to unlock your machine after your screen saver becomes active, you can easily disable this feature by following the instructions below:

1) Right click on your desktop
2) Click properties
3) Click the ‘screen saver’ tab
4) Untick ‘On resume, password protect’