Microsoft Baseline Security Analyzer--Any Point?

Discussion in 'Software' started by omigosh, Apr 16, 2004.

  1. omigosh

    omigosh Private E-2

    Being a paranoiac, I thought I'd try this goodie from M/soft, and was pleased when it told me I had 'Stong Security' , though it did mention in passing that there were 3 things it couldn't verify, and that I might want to fix. When I clicked for details, I was referred to MS03-008, MS03-030, and MS03-051. Each of these referred me to other pages, and each of those 'other pages' referred me to yet more 'other pages', much of which were written in eliptical Martian!!!
    And another thing, if I didn't have broadband, the phone charges to find all this crap would have cost me the price of the decent bottle of wine I'm drinking as I write this. Perhaps that's my problem; I'm a drunk in charge of a computer!
    The end point of all this is: MS03-008 had been superseded by a M/soft patch issued ages ago--and yes, I had it installed on my system; MS03-030 led me on a merry dance that a mere beginner like me couldn't possibly follow, far less understand; and I just gave up on MS03-051 in disgust.
    Now I know I'm pretty stupid-- which is why I hang out with you guys http://www.majorgeeks.com/vb/images/icons/icon12.gif-- and I've only got 3 months computing experience, but I fail to see the point of all this circumlocution by Mr Gates and his gang.
    Is he just trying to keep the mastery of Windows for the geek elite--a privilege, to be reserved for the elect few? Does he really want to make people like me feel unwelcome in his special club? No-users, out-of-works, people who can't walk and chew gum, and geriatrics like me who've never touched a computer before a few months ago are definitely not welcome--at least that's how it seems. Can Linux be this hard?
    Sorry for the diatribe folks, but if it wasn't for the help I've received from you guys, I'd be well and truly stuffed.Here's raising my glass to you http://www.majorgeeks.com/vb/images/icons/icon13.gif
    So now for my question: has anyone ever found M/soft Baseline Security Analyzer useful?
    Cheers, Omigosh.
     
  2. goldfish

    goldfish Lt. Sushi.DC

    Yep. Harder, actually!

    If it says youre secure, youre probably alright. TBH baseline security analyser is only useful if youre running a server IMO (thats the only situation I've ever used it in). As long as you keep up to date with windows using http://windowsupdate.microsoft.com/ you should be fine.

    Please wait... researching!

    Ok Ill patch you up! Download these patches and install them and youre on your way. I'm presuming youre using 2k or XP, so if youre using otherwise (i doubt you are, i dont think BSA works on any other OS)

    MS03-008: Flaw in Windows Script Engine May Allow Code to Run

    Update DirectX for security
     
    Last edited: Apr 16, 2004
  3. goldfish

    goldfish Lt. Sushi.DC

    To uninstall FrontPage extentsions (you REALLY dont need these for normal operation..)
    FrontPage Server Extensions administrators can uninstall FrontPage Server Extensions in Add or Remove programs
    1.From the Start button, choose Control Panel.
    2.Select Add or Remove programs.
    3.Select Add/Remove Windows Components.
    4.Select "Internet Information Services (IIS)" and choose "Details...".
    5.Uncheck "FrontPage 2000 Server Extensions" and choose OK.
    6.Choose Next in the Windows Components Wizard and choose Finish.

    You're sorted! I agree MS isnt very good when it comes to explaining patches, but generally you just need to take their word for it if its a security issue. Unfortunatley. And Linux is even worse in this respect, even if the whole community trys to help newbies such as me, its still a very confusing and fundementally unfinished OS. It can work very efficiently, if you can get your head around it!
     
  4. alanc

    alanc MajorGeek

    Well, you've got to pay to play. Hence the MVP and MCSE programs. You can go for the formal training or be self-educated (or a combination of the two). Some companies will even pay for your training. But like any other educational pursuit, it requires commitment, time and money.
    I wasn't all that impressed, but I'm not running a server, as Goldy pointed out.
     
  5. omigosh

    omigosh Private E-2

    Thanks for your feedback guys. As always its always helpful, frequently amusing, and very encouraging to know that others have suffered the same trials and tribulations.http://www.majorgeeks.com/vb/images/icons/icon13.gif

    As they say in my homeland: Here's tae us, wha's like us, damn few and they're a' deid!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds