13 June 2005

Computer Virus Attack




Pardon the french but lim peh super pissed off today as my server kena hit by computer virus. Despite setting up the server like a fortress, it still went down like a ton of bricks. The first ever hit in 4 years.

I later found out that it was a Ch1nese virus (obvious clue: the virus message was in Ch1nese) and my current antivirus (Sim-Mern-Teck) completely missed it. A check with the software company's support website yielded no information, which probably means that this virus is so new that it hasn't shown up on the radar screen of the western world. I installed a Ch1na brand antivirus software and right away, out came the 2 flags pointing at the offending files.

The virus files belong to Tencent's QQ. A ch1nese variation of the ICQ instant messengers. Before I start off a panic frenzy over QQ, I have to say that the program itself does not carry the virus. Instead, it is the lack of security features (read: badly written software) that allowed the hackers to deliver their viral payload.

I was puzzled how QQ got there as I specifically warned my staff against installing it since day 1. It was long known and an established fact that this software is pure crap and guaranteed to bring you lots of grief.

I managed to trace and locate the idiot who installed the stoopid software on the server.

Let's just say that today was her last day with us. Stoopid arsehole...

The last time, I had a computer meltdown was on a client machine in the Finance department, 2 years ago. The "autopsy" pointed to a trojan downloaded and installed from a pronographic website. Naturally, the 2 guys in the department were my prime suspect. Based on the access log from the server, I already know which user is responsible. However, that alone was not enough to proof that the owner of the UserID in question is the real culprit as it may be a case of somebody using his account after the latter had forgotten to log off.

I gathered the whole department and asked for the person responsible to step up and admit it. None. No show of hands as they huddled together in a show of defiant solidarity.

No problem. I thought to myself as I already have a plan to counter this. Since nobody owned up, I fined each and every person in the department RMB 50 with the owner of the UserId in question, an additional RMB 50.

Half and hour later, the culprit came into my office and admit her crime, under intense pressure from her department colleagues. Surprise, surprise, it was a girl.

Here's the thing about the local folks here. They may be as close as brothers and sisters but, when it comes to money. It often is no surprise to find them more than ready to rat and sell you out. Such is the cruel reality of the Ch1nese culture over here.

1. aGentX left...
Monday, 13 June 2005 11:51 pm ::
an interesting way of managing, something new for me to learn about the work culture there.
hope my sim-mern-teck can do its job leh..and yes, your french is impressive, even when i am doing a monologue with it, it sounds good :D
2. anna left...
Tuesday, 14 June 2005 6:03 am
Glad that you found the culprit, but it was not without consequences.
3. JayWalk left...
Tuesday, 14 June 2005 9:26 am :: 
aGentx: Your work brings you to ch1na too? I am writing some more stuff about the workers mentality here. It is a difficult piece to write (read: painted myself into a corner) and still in draft for the longest time.... hopefully get it out before the week is over... again. (!)

Anna: I retracted my dismissal order from HR this morning.... I am such a softie.... sigh...
4. 9 left...
Tuesday, 14 June 2005 1:39 pm ::
hmm...previously unable to post on ur blog. Heh not surprised women are surfing porn...i have really liberal frens... :P
5. JayWalk left...
Tuesday, 14 June 2005 2:03 pm :: 
9: My policy in the office is quite lax. I don't object to my staff surfing the web (even pron) as long as it doesn't interfere with their work. 

What really bugs me are those who stupid stupid go and download and install all kinds of stupid programs and hence bringing down the entire machine. 

And I am the one being punished for it coz it would be me who would be wasting all that time, reformatting, reinstalling etc etc...

