Search This Blog


Friday, April 03, 2015

Clustrmaps Resetted

As indicated by, it seems that my clustrmap data might had been destroyed... So following their suggestion, I recreated the account. Hopefully I will get back my stats... I can only hope.

Wednesday, March 25, 2015

Kali KEYEXPIRED 1425567400 KEYEXPIRED 1425567400 KEYEXPIRED 1425567400

While updating Kali Linux, I got a rather strange message:
KEYEXPIRED 1425567400 KEYEXPIRED 1425567400 KEYEXPIRED 1425567400

Somehow that indicate that the keys used for GPG is likely to be expired. 

I dig a bit and found that the way to update the keys is as follows:
apt-key adv --keyserver hkp:// --recv-keys 7D8D0BF6

Now your Kali should be updating normally again!
BTW, Kali v1.1.0a is out. Maybe its a good time to reinstall the latest version!

Monday, March 02, 2015

Download Windows 7 ISO from Microsoft

There are times you loses your Windows 7 machine and you will need to find some way to resinstall it, but then you realized you have no Windows 7 CD!

Well, that has been a problem and it is finally solved now when you can legally download the Windows 7 ISO from Microsoft and not from other other unverified sources where you might be installing spyware to your system.

Simply go to this website and key in your CDKEY and you are all ready to download it!

Trillian and MSN

As MSN chat is closing down slowly, the original server "" is no longer available and as such messagers like Trillian will fail to connect to the MSN chat network.

A simple solution is luckily available for now, simply change your MSN server address to :

And it will work. For now. 

Solution is also highlighted on the official Trillian forum:

Thursday, October 02, 2014

Chinese AV "Patches" Windows XP

As all of you know, Windows XP is dead.
Or it is? As far as the Chinese community is concerned, there is still hope.

Several AV companies had pushed for a special product where we do not see anywhere else in other markets known as "XP Protection". Basically, the AV Product claim to be able to protect even the unpatched XP against these new vulnerabilities and attacks.

Don't take my word for it. Recently, at "The EXP Challenger Contest". a total of 179 hackers and security experts coming from all over the world have tried to compromise Windows XP computers running:

  • 奇虎 360 XP盾甲 
  • 腾讯电脑管家(XP专属版本)
  • 金山毒霸 XP防护盾

In the 13 hours event, only 腾讯 was broken in 57 seconds by "shaheshang", followed by 金山 later. Qihoo managed to withstand all the attacks.

So, what does this mean? Maybe for those Chinese who are not going to upgrade to new Windows for whatever reasons, they could use these products to actually provide them protection and continue to use Windows XP?

But there is a epilogue to the story. At the end of the event, a hacker "小小小乖兔" managed to break through 奇虎 as well. So, it does means that, maybe hard, but there is a way. Nothing is invulnerable.

So, I guess at least with such products around, it is safe to assume if the clients in Chinese are still using Windows XP, they will be deploying at least one of these products.

And lastly, all the listed products had been updated and are FREE.

Friday, August 29, 2014

Microsoft Re-Patch Tues Aug 2014

It seems that due to the BSOD patches being retracted few weeks back, Microsoft had been working hard to restore the status of these vulnerabilities, especially when some of them are critical. Sure enough, we see a new patch that is suppose to replace the previous patch and I think for those who had not uninstalled the patches according to my post here:

You should apply this whether or not you had it uninstalled since this is quite critical in my opinion.

Just use your Windows Update and you should see this patch available now!

Tuesday, August 19, 2014

Microsoft Aug Patch Tue Could Cause BSOD

Yes, no joke~! 4 of the suspected Patch Tue updates for Aug 2014 were suspected to cause some users to crash or BSOD. Judging from the descriptions, it will only be a matter of time when the criteria are met. In fact, it is Microsoft who advise users to UNINSTALL these patches ASAP!

Don't worry,  let me walk you through this. Hopefully when you are now reading this, your PC has not crashed yet. Then the steps are simpler (I did not say it is simple, just not as complicated).

If your Windows is still alive... Time to uninstall those patches. According to Microsoft:
Open the Programs and Features item in Control Panel, and then click View installed updates. Find and then uninstall any of the following update that are currently installed:
  • KB2982791
  • KB2970228
  • KB2975719
  • KB2975331
Well, firstly, not very helpful. The patches are not arranged by KB numbers and the search somehow do not deal with these numbers either.
But luckily, you can still sort them by name and you should be looking for these two:
Security Update for Microsoft Windows (KB2982791)
Update for Microsoft Windows (KB2975719)

Based on the descriptions, it is very likely you will only have one of these:
2975719 August 2014 update rollup for Windows RT 8.1, Windows 8.1, and Windows Server 2012 R2 
2975331 August 2014 update rollup for Windows RT, Windows 8, and Windows Server 2012
So you might want to look for the other one instead if you are still on Windows 8.0

So, I guess its perfectly normal to have just one of them. As for the other missing one:
2970228 Update to support the new currency symbol for the Russian ruble in Windows

It sound like I may not have it because I do not have the Russian language installed? Likely.

Well if you are a bit out of luck and had the BSOD, you will have to go into safe mode to save that. The details are on their page at:

I strongly suggest you print that out on a working computer. Or be lazy and just system restore back to the previous month... That will probably work.

Monday, August 18, 2014

Download Opera Offline Installer

As more and more of the installers, especially for browsers, goes online, their installers had became smaller and smaller. In fact, most of these installers pulls the actual installation right from the Internet during installation. What you actually download is nothing more than a downloader.

So today, let's visit Opera. The default installer is the one you get when you click the big Blue button in the above screen. But however, do you see a smaller line of text just below it? Yes, that is the link to the Offline Installer. This is very useful when you are in an environment with funky proxy (that doesn't really work) or without Internet. You Opera can still be updated using a Thumbdrive or something along that line.

Grab Opera (both online and offline installer) at:
Or just grab the Offline Installer here:

Monday, August 04, 2014

Turn Off Facebook Video Autoplay

Facebook has recently introduced a new feature which will autoplay video posted as you scroll to it. While there are reasons why this is cool, there are also reason why you may not want to do so. Let me name a few. For example, when you are on limited or charged bandwidth, playing some useless MTV posted yb your friend is definitely not a good idea. But more seriously, if there is a way found to be able to exploit the video codec on your browser, you will be 0wned as soon as the autoplay starts. Without even clicking anything!

Well, its easy to disable this feature actually.
1. Upper Right corner, click on the dropdown settings menu. Select Settings.
2. On the left side, select the Video tab.
3. Check the autoplay to off on your right panel.

That works for Desktop. What about on Android? Well, it is just as easy.
1. Open your Facebook app.
2. On the Left sidebar, tab App Settings.
3. Check Auto-Play Videos on Wi-FI Only.

Now, wait right there. That doesn't disable the autoplay totally. In fact, you can't. It will play when you are in Wifi mode. If I find a way to do so, I will update this blog.

Similarly, you can do it on iOS. Very similar steps. And since I couldn't care less about iOS I would skip the instructions here.

Hope this helps you.

Friday, July 25, 2014

Manual Update for Kaspersky Product

Ever have an issue with the massive downloading of update from Kaspersky product? This is especially bad when you are stuck in a location where bandwidth is a concern since the update could well be over 100MB sometimes.

But little do people know that there is in fact a way to update Kaspersky offline and this makes a lot of senses if you have more than 1 PC requiring the same update. Today, let's take a look at a BETA product from Kaspersky themselves call Kaspersky Updater 2014 for Windows.

This is quite a straight forward program. Just download the archive, extract it and run the updater. This is what you will see.

1. Select Applications. Choose the EXACT version you are using because the updates are different.
2. Select Settings. Choose whether you want just signatures or modules updates as well.
3.  Just Update it then.

This end the part the updater has to do. The rest is about configuring your Kaspersky product to take in the update. In general, this is the instructions, but may varies slightly from version to versions.

1. Open your product settings and look for Update.
2. There should be a update source option, select it and point it to the directory you downloaded the update from. It could be in temp under the updater and so on.
3. Update your product.

Hope this helps you guys!

Thursday, June 05, 2014

Sandboxie v4.12 Fail Installation due to VC Redistribution Library

Sandboxie is an awesome on-the-fly sandbox application for Windows! It provides you the functionality of running an application in a sandbox just by a right-click. No VMWare or VM to manage.

Recently, there is a new update to v4.12, but it appears that many people are having issues installing it. The main culprit is the VC++ Redistribution library download and it looks something like this:

Basically, even if you updated your VC++ Redist manually, the download will still happen and likely fail again and again. To overcome this, Sandboxie actually had setup standalone version of their installer and it will solve the problem, but I still strongly suggest you update your VC++ Redist manually first before downloading this and running it.

Get the standalone installer of Sandboxie here:

Thursday, May 29, 2014

Diyomate K9 Firmware Update A20 14-5-8

Well, it seems that a lot of people had been looking for the firmware to update your Diyomate K9 and it was nowhere to be found, even on Diyomate's website. Actually, to be honest, it IS on Diyomate's site here:

But it doesn't say K9 anywhere right? Yes, that is because the K9 box uses a chip call A20 (AllWinner) and Diyomate release the firmware according to the chipset rather than the Box model. Now you will see that there are 2 firmware release in May for A20.
So, what is the differences? Well in case you did not know,the K9 is one of the few model from Diyomate that ships with an option to have either Android or Ali YunOS. So theses 2 files corresponds to the 2 different options. And the good news is that in case you had chosen the wrong version, you just need to reflash it or if you want to change to the other favors, you too can just flash that in.

Ask me, personally, I prefer Ali YunOS and in fact, that is what you actually paid a little bit more for!

Have fun with your upgraded firmware! (Please copy all your important files to your SDCard first before flashing...)

Wednesday, May 28, 2014

Windows XP Extended Support Till 2019 Registry Hack

I am not the first to disclose this registry trick to change your Windows XP into Windows XP POS Edition. The purpose of doing so is that while all other desktop edition of Windows XP had been withdrawn from support, the POS (Point-of-sale) version is however still supported until 2019. This essentially give you extended support on your Windows XP.

HOWEVER, even if this trick works to give you updates until 2019, Microsoft will make some assumptions. For example, people will not be using it wo surf the web, read email, load Youtube of Facebook etc. Because this is a POS system, which is pretty much those dump terminal operated by sales in stores. So what does that mean? It mean you will not be FULLY protected anyway. IE will probably never be fixed. So, my advise is still to just ditch Windows XP and upgrade to Windows 7/8 as a long term solution.

Anyway, here is the simple hack. Put the following into a text file and save it as WinXP2019.reg :

Windows Registry Editor Version 5.00

Double click this file to have Regedit execute it. That is all to it.

Thursday, May 15, 2014

Kali Linux Slow Update

For those using Kali, you must had noticed how slow and painful it is to update the Linux. Unless you have a very fast internet, which will not be the case on a oil rig or the space shuttle. Just kidding about that. But its slow. That's a fact.

What I am going to show you here is a simple tweak and it will work much faster. And I am not talking about private or custom repository, which I strongly discourage as these are not verified and could contain something else which you do not want on your Linux.

Let's find a file call sources.lst in /etc/apt. Open it and look for Now, all you need to do is to change it to You should have 2 instances of it if you are using the default installation.

Now do you normal apt-get update && apt-get upgrade and you will see the differences. While Repo and Http are both official Kali sources, there are slightly different, but I do not suppose most users will be affected by this differences.

Well, good luck updating and happy pen-testing!

Wednesday, May 14, 2014

Adobe Flash Player 13 Full Offline Installer - Fixing the stopped at 7% Error

The latest Flash Player 13 may had stopped downloading for some at 7% and giving a message:
"Lost connection. Trying to reconnect..."
And actually it does nothing of that sort...

The Flash installer had been one of the worse nightmare ever. For a start, its a EXE executable, but because of whatever reason, something its saved as a ZIP and you can imagine the mess of confusion it is to average user.

Then the download is horrible and I get 10% success rates only in some places.

To top that up, the installer is ALWAYS deleted once it is ran and no matter if it is successful or not! Obviously a waste of bandwidth.

I had talked about it again and again in the past:

My advise is DON'T use Flash. Really. Given the track record, its probably one of the easiest door to open on your PC if not the MOST. And most of the bigger players had long given up on Flash, like Apple (not surprising) and finally Google in Android 4.4.

But if you really have no choice, need to run it in a VM etc, there is still the option to download it.
Just go to :

And I really want to stop hot-linking the direct EXE file now since Flash is updated ever so often and that last thing I need is to misdirect someone into downloading a old version.

But hopefully, I will not need to post this for Flash 14 (if it will ever exist...)

Tuesday, May 06, 2014

Change in Domain

From the old, the blog is now moved to
You may want to update your bookmark etc.

Thanks for the support for all these years!

Wednesday, April 09, 2014

System Restore Saves the Day!

Microsoft System Restore

This has been in system a long time ago, since XP perhaps. While most of the time, we only hear about how this feature waste space and cause delay during installation, we had totally forgotten when it would become useful.

In fact, for me, even in the days of Windows 8.1, this feature prove to be useful. What actually happened to me was that I was migrating one of my PC from a ATI (AMD) graphics card to a Nvidia one.


It is no surprise that ATI and Nvidia driver would not play nice together. The fatal mistake was however my own. I had forgotten to remove the old ATI driver before shutting down and plug in my Nvidia card. After testing, I wanted to change back to my ATI card and this time, even when I remember to uninstall the Nvidia driver, it just give me the famous "Black Screen of Death" at the Windows 8 login. I had tried reinstalling the ATI driver (but it won't install when the Nvidia card is in) and install-remove the Nvidia driver, but it just wont boot up when the ATI card is in, but perfectly OK on the Nvidia. I guess it could be a "feature" so that you won't switch back to your own card... LOL

Anyway, in the end, during the boot option, I click "Advance Option" and decided to try a System Restore, fortunately was just before the swap since the Direct X was updated. Guess, what? It solved all the issue and I got it up on the very next reboot (even though System Restore did took a while).

So, ask yourself is that little bit more of HDD space worth it? To me, definitely, since HDD space is cheap nowadays and System Restore actually manages itself not to overuse the space anyway. And one thing is for sure, I would add more restore point in the future. And lastly, Thanks Microsoft for implementing this nice feature! 

Monday, April 07, 2014

Uninstall Orbit from Chrome

I am sure at some point of time you may uninstall one of the downloaders such as Orbit:

Don't get me wrong, I am not saying its a bad downloader, but it just happen that I could not use it effectively in office.

Anyway, what I am going to described probably may affect some of you out there. What happened to me was that during the installation, my Google did not exist completely. I had manually close Chrome, but somehow one of the instance must still be running during the uninstallation. Anyway, the result is that Orbit is not cleanly uninstalled. Whenever I tried to download something, it would still redirect to Orbit (and worse, it doesn't work anymore)

So, let's see how to clean up this mess.
1. Before you start, make sure Orbit is no more around (uninstallation from Control Panel)
2. Close all instances of Chrome. (Use task manager to check that here is no more instances running too)
3. Now, let's find the file "nporbit.dll". You can use search or under these directories:
4. Delete the file.
5. Open up chrome and type "chrome://plugins/"
6. Find Orbit Downloader and disable it.

That's all you need to. Well to fully clean everything, you can always reinstall Orbit. Reboot and uninstall Orbit... But its just kinda of troublesome...

Wednesday, April 02, 2014

Agnitum Outpost Security Suite Pro v9.1

Ok, I promised I will be giving (technically, I am just linking) a 1 year free license to a paid AV. The good news is that, it is not only an AV, but a full Security Suite including the firewall and all. So, which one is it? Its Outpost Security Suite Pro v9.1.

So, how good do you think it is? Outpost had always been a really good firewall, and at a time, even the best FREE firewall around. It had also been winning awards from many popular polls such as VB100.

See the awards here:

Some of the features:
  • Anti-Malware module with greater detection accuracy
  • Two-way firewall for secure network connections
  • Proactive Protection module to preemptively block unknown and zero-day threats
  • SmartDecision technology to facilitate secure decision-making
  • Web control with fast web content filtering to protect your PC from web-borne threats
  • System and Applications Guard to keep installed software and OS protected
  • Self-protection technology to maintain continuity of protection
  • The 4th generation of SmartScan optimization technology for fast subsequent malware scans
  • USB virus protection to prevent malware which spreads via USB devices
  • Program activity tracker to review file and registry activity in real time
  • Entertainment mode (for games and video) and Auto-Learn 2.0 (for beginners)
Read more about Outpost Security Suite v9.1

I hope that had gotten you excited. Now, you must be screaming how to get this free?
Thanks to Computerbild, visit this page in Russian:

But not to worry, this is roughly what it translates to:

And this is the important part. You need to key in this Key (manually) :

I suggest you key in your email so that you would received support information from Agnitum.
Then in the next page you should get a key (with many alphanumeric letters). Make sure you copy and paste it into notepad and SAVE IT! It will not be send to your email again.

Just download one of the following installers here:
32 Bits Installer
64 Bits Installer
Do a installation and proceed to register your product. Paste in ONLY the bunch of alphanumeric letters, skip the name, email etc. I know its not straight forward, but just make sure no extra line break and such and you will get it right.

Enjoy your 1 year free of Outpost Security Suite Pro!
Please leave a thanks if you appreciate this. And do pick up a copy of Computerbild while you are in Moscow!

What AV Survey End

It had been a long time since I updated the Antivirus poll and I know its not fantastic, but at least it seems to me that people who voted made good use of FREE antivirus such as Microsoft or Avast (FREE version I presumed). Well, maybe that will guide my direction that more people actually wants to get hold of a good paid AV.

The results however does not tally with the real market trends out there, but of course that because its only for visitor on my blog. But don't worry, the poll is not a waste effort. In fact in the next 5 minutes, I would share a 1 year license of a paid AV with you!

Amazon Gift Cards!

Thanks for viewing!

Copyright © 2008, All rights reserved.