Skip to main content

How to Secure Windows XP & Office XP

Posted September 2002 by Steve Sinchak

How to Secure Windows XP

  1. Download and install Windows XP SP1 from:
     ( http://download.microsoft.com/download/whistler/SP/SP1/WXP/en-us/xpsp1_en_x86.exe )

  2. Download and install Office XP SP1 & SP2 (if you have Office XP installed) from:
     ( http://download.microsoft.com/download/officexpstandard/sp/oxpsp1/w98nt42kmexp/en-us/oxpsp1.exe )

and..

( http://download.microsoft.com/download/officexpstandard/sp/oxpsp2/w98nt42kmexp/en-us/oxpsp2.exe )

Note: If you get a "Error 1328" during the install (Possibly because your key is invalid) you will need to download the administrative versions of the service packs:

( http://download.microsoft.com/download/officexpstandard/sp/oxpsp1/w98nt42kmexp/en-us/oxpsp1a.exe )

and..

( http://download.microsoft.com/download/officexpstandard/sp/oxpsp2/w98nt42kmexp/EN-us/oxpsp2a.exe )

For more information on updating Office using the administrative versions of the serivce packs, visit (This address has been removed, but you can use Google to view a 'cached' version of the page):
 ( notorious.dezines.com/notorious/articles/xpsp1.htm )


Windows XP SP2

The first security patch for Windows XP SP2 is available...

XP Security fix:IE SSL man-in-the-middle
This update resolves the "Certificate Validation Flaw Could Enable Identity Spoofing" vulnerability in Windows XP. Download now to prevent an attacker from attempting identity spoofing using certificates.

( http://download.microsoft.com/download/whistler/Patch/Q328145/WXP/EN-US/Q328145_WXP_SP2_x86_ENU.exe )


Download the Microsoft Baseline Security Analyzer from:
 ( http://download.microsoft.com/download/win2000platform/Install/1.0/NT5XP/EN-US/mbsasetup.msi )

This program will analyze your computer system and advise you on possible security problems and how to fix them.


Remove Unessessary Services
Start -> Settings -> Control Panel -> Administrative Tools -> Services


Remove IPC$ Share Remote Netbios Attack Vulnerability

  1. Open Regedit
  2. HKEY_LOCAL_MACHINE -> System -> CurrentControlSet -> Control -> Lsa -> restrictanonymous
  3. Change "Value Data" from 0 to 1
  4. This will disable remote logon to a null IPC$ share

Consider Installing a Firewall:
 ( www.zonealarm.com )


Make sure Microsoft Messanger is up to date (MS Messanger should automatically check for updates)


Download and run Ad-aware to remove any spyware on your system:
 ( http://www.lavasoftusa.com )


Headspin

Related Posts


If you own a Google Chromecast streaming device, you can easily share a browser tab in Chrome browser or even your entire desktop.  This can be very useful when presenting from your laptop or if you just want to watch something on a big screen that is only on your PC.  The only requirement is you must be on the same network as your Chromecast...

Read More

If you are a fan of minimalist desktop experiences, hiding the desktop icons are an easy way to clean up the Windows interface.  Instead of saving everything to your desktop, use the default profile folders such as downloads and documents.  Actually hiding all the icons on your desktop is a very simple customization hidden in the right-click context menu.  Just right-click on the desktop, select View...

Read More

Google security researchers have published details about a major security flaw found in the SSL protocol that is used to encrypt data transferred between your browser and a web server. SSL is typically used in situations where logon credentials are validated...

Read More

Enabling two-factor authentication is a great way to add an additional level of protection to your Microsoft account.  Even if your password is stolen, your account is still protected because two-factor authetication requires an additional level of verification to log in. Microsoft calls their version of two-factor authentication "two-step verification" and it works by providing you with a random code...

Read More