pen-test
[Top] [All Lists]

RE: Boot floppy

To: <pen-test@securityfocus.com>
Subject: RE: Boot floppy
From: Mifa <mifa@stangercorp.com>
Date: Thu, 12 Apr 2007 08:58:24 -0500
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
Reply-to: Mifa <mifa@stangercorp.com>
Resent-date: Fri, 13 Apr 2007 02:50:30 -0600 (MDT)
Resent-from: pen-test-return-1078483933@securityfocus.com
Resent-message-id: <20070413085030.94D95143BF8@outgoing2.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
Thanks for the info.  Backups are not done on a machine thats off our network.  
I can not access my admin privilages becasue the machine is not on a domain and 
is not simply locked with windows. Further , the admin account is 
disabled/missing; to be honest Im not shure how.  I had hoped to do a quick 
reboot from a floppy because its fast.

 We suspect that we  have someone who is sending company job files to another 
company. If so this would make the second person doing such.  One of our 
employes left this company to start another company and he had friends.   We 
dare not point out any one without proof or fire anyone without knowing we the 
correct person; especially when this person has been with the company most of 
its existance.  To get that proof I think the hardware key logger would be a 
good option to get the password ect then log in, but not any good for the 
longer term.   Also, we are keeping a copy of all emails.  The other option is 
to disclose our suspecions and have him turn in the computer the next time he 
comes into the office; which we will do if we must.  Being a small company 
based on trust its the last option short of fireing wich the owner will not do 
without proof.  Now you see the sensitive delima here.  We do have every right 
and policy, but....


------------------------------------------------------------------------
This List Sponsored by: Cenzic

Are you using SPI, Watchfire or WhiteHat?
Consider getting clear vision with Cenzic
See HOW Now with our 20/20 program!

http://www.cenzic.com/c/2020
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>