"Sebastian G." <seppi@seppig.de> after much thought,came up with
this jewel in news:5orcc8Fo7d60U1@mid.dfncis.de:

> Maximus the Mad wrote:
>
>
>>> When you assume that the user is logged in as an administrator,
>>> the entire discussion about security is void.

>>
>> Out here in the real world,that is what most users do.

>
>
> That doesn't make the discussion at this point any less void.


But that is reality.
>
>>
>>>> You don't need to restart the
>>>> system to take advantage. Windows will access the host file
>>>> anytime it sees a dns request...*shrug*
>>>
>>> It won't reloaded cached requests though.
>>>
>>>> So you practice safe hex and use a limited account for most of
>>>> your day to day tasks right?
>>>
>>> Dunno what exactly you mean with safe hex,

>>
>> Safe-Hex
>> http://www.claymania.com/safe-hex.html

>
>
> As I said: Might be different from my understanding. Just #1
> (Install, use and update anti-virus software) has hardly anything
> to do with real security. Even considering to keep on abusing MSIE
> and MSOE as webbrowser and mail client under #2 isn't secure
> either, what's about "# Install a good firewall"? One should
> definitely wonder why "Backup your data regularly" isn't the
> listed as #1...
>
> > I don't know. What does stop you? Afraid of getting caught
> > perhaps?

>
> I meant technically. I can tell you that the bad guy per se isn't
> afraid to get caught. As from the user side: Why should I start
> playing a cat-and-mouse game where I'm always the loser?


I thought that was the idea.
>
>> If you look up MVPS hosts file
>> http://www.mvps.org/winhelp2002/hosts.htm
>> and scroll down,the page says to "Disable DNS Client" if using
>> W2K/XP/Vista.

>
>
> Which is even more stupid, at least for the given arguments.
> But still less stupid than the entire HOSTS file approach.
>


Turning off DNS Client prevents breakage.

--
Virus Removal http://max.shplink.com/removal.html
Keep Clean http://max.shplink.com/keepingclean.html
Tools http://max.shplink.com/tools.html
Change nomail.afraid.org to gmail.com to reply by email.