Quick w32.blaster question

Fiveohhh

Diamond Member
Jan 18, 2002
3,776
0
0
Just wondering if you need to open an attachment to get it, or if it works on its own somehow. I reada a few descriptions, and it sounded like something needed to be executed, but not for sure.
Thanks
 

NogginBoink

Diamond Member
Feb 17, 2002
5,322
0
0
Originally posted by: CraigRT
the patch?

The patch that was released about a month ago.. MS03-026.

Anyone who's kept up to date on windows update would not be hit by this attack.
 

lowtech1

Diamond Member
Mar 9, 2000
4,644
1
0
You don't have to download it to get infected. Just disable RPC in services and you should be okay to go. Also apply NTFS security policy (create & Deny Everyone group to al permission) on tftp.exe under System32 directory, then update & patch your computer as soon as you can.
 

MrBond

Diamond Member
Feb 5, 2000
9,911
0
76
Originally posted by: lowtech
You don't have to download it to get infected. Just disable RPC in services and you are should be okay to go. Also apply NTFS security policy (create & Deny Everyone group to al permission) on tftp.exe under System32 directory, then update & patch your computer as soon as you can.
isn't RPC one of those services a lot of stuff depended on (ie: disabling makes the computer as useful as it would be unplugged from the wall). The patch is tiny, might as well do it right.

I read this morning any unpatched PC can be expected to be infected within 25 minutes of connecting to the internet.
 

lowtech1

Diamond Member
Mar 9, 2000
4,644
1
0
Originally posted by: MrBond
Originally posted by: lowtech
You don't have to download it to get infected. Just disable RPC in services and you are should be okay to go. Also apply NTFS security policy (create & Deny Everyone group to al permission) on tftp.exe under System32 directory, then update & patch your computer as soon as you can.
isn't RPC one of those services a lot of stuff depended on (ie: disabling makes the computer as useful as it would be unplugged from the wall). The patch is tiny, might as well do it right.

I read this morning any unpatched PC can be expected to be infected within 25 minutes of connecting to the internet.
Remote Procedure Call (RPC) is use for remote access. RPC also use for HTTP (if you are runing IIS server). Disable RPC & audit the tftp.exe (Trivial File Transfer Protocol) should stop the Blaster worm that is currently runing out there & stop any hacker that try to use the trtpd flaw on your computer. Best method is to keep up with the patch, have a firewall & stop/audit services that you are not using, or simply unplug your computer from the internet.
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |