Author Topic: virus for winxp: remote process control failure  (Read 2283 times)

Offline MoMoney

  • Copper Member
  • **
  • Posts: 154
virus for winxp: remote process control failure
« Reply #15 on: August 12, 2003, 06:33:43 AM »
It found me too.  God-damn microsoft.  First CFS3 then this sht.

Offline Ripsnort

  • Radioactive Member
  • *******
  • Posts: 27251
virus for winxp: remote process control failure
« Reply #16 on: August 12, 2003, 08:28:37 AM »
My virus protection software and firewall protected me just fine.

Offline Fishu

  • Gold Member
  • *****
  • Posts: 3789
virus for winxp: remote process control failure
« Reply #17 on: August 12, 2003, 08:44:13 AM »
sounds like a scary mofo..

Good thing I should have it patched up, since windows update desn't find any necessary updates.

Offline Dinger

  • Silver Member
  • ****
  • Posts: 1705
virus for winxp: remote process control failure
« Reply #18 on: August 12, 2003, 11:26:05 AM »
interesting, huh?
The RPC buffer overflow issue has been around since windows 98.
A private security firm comes to M$ and says "we found this exploit, it could be nasty, and by the way, mention us in your press release".
Press release, patch, lots of chatter and news articles warning about impending attack.  Three weeks later, here it is.

Offline muckmaw

  • Gold Member
  • *****
  • Posts: 3874
virus for winxp: remote process control failure
« Reply #19 on: August 12, 2003, 11:37:25 AM »
Everyone squeakes about M$, but what about the miserable waste of flesh little salamanders who start these things?

You never hear about them getting arrested and doing time.

They really ought to be treated like E-Terrorists. Give 'em real prison sentences.

Little f*cks.

Offline Skuzzy

  • Support Member
  • Administrator
  • *****
  • Posts: 31462
      • HiTech Creations Home Page
virus for winxp: remote process control failure
« Reply #20 on: August 12, 2003, 11:39:48 AM »
Windows keeps several ports open all the time.  Go to a DOS box (XP/2K Start->Run, then type "command" and press )

In the box run "netstat -an" and it will list all your open ports for UDP and TCP.  Make sure you close down all programs before running this, or you could get quite a list.

The ports with "Foriegn Addresses" os all zero's are the ports Windows keeps open all the time.  They will get exploited, even if it is just a DOS attack.

The ports you cannot close down in Windows are ports TCP ports 135, 139, 445 (XP/2K) and UDP ports, 445 (XP/2K), 137, and 138.

The 13x ports are the NetBIOS ports and are used for file and printer sharing and have always been a security problem with all versions of Windows since W95.
Roy "Skuzzy" Neese
support@hitechcreations.com

Offline newguy

  • Nickel Member
  • ***
  • Posts: 444
virus for winxp: remote process control failure
« Reply #21 on: August 12, 2003, 11:47:42 AM »
Yea this is a nasty one. Been dealing with customers who have this for the last few days. Get yourself behind a firewall, preferably a router. I can see more viruses passed like this in the future.

Offline Creamo

  • Parolee
  • Platinum Member
  • ******
  • Posts: 5976
      • http://www.fatchicksinpartyhats.com
virus for winxp: remote process control failure
« Reply #22 on: August 12, 2003, 11:49:05 AM »
Of course, like Ripsnore, wasn’t taken by surprise either.

I have a non-electric vacuum pump to seal my bunker foods I bought at a Preprepardness Expo in Texas.

 Along with my diesel generator and Type 7 VHF radar and a two-level R6 bunker spread air traffic civil and military Mersey Radar, I’m set. The food will last for years.

Oh, and I patched WINXP, thank god.
« Last Edit: August 12, 2003, 11:53:52 AM by Creamo »

Offline AKIron

  • Plutonium Member
  • *******
  • Posts: 12772
virus for winxp: remote process control failure
« Reply #23 on: August 12, 2003, 11:56:39 AM »
The Internet is the new old wild west. If you ain't behind a farwall it's only a matter of time before you get plugged pardner.
Here we put salt on Margaritas, not sidewalks.

Offline muckmaw

  • Gold Member
  • *****
  • Posts: 3874
virus for winxp: remote process control failure
« Reply #24 on: August 12, 2003, 12:05:21 PM »
Iron-

I've got a firewall on my PC...I think it's a McCaffee job. Yes, it's a big white M in a red square. (Geez, I know nothing about computers).

Anyway, it was a free trial but I never dowloaded it. I just keep resetting the clock on my computer back 2 weeks to keep it going.

Is this protection enough? Should I pay for the damn thing or keep bumping my computer back 2 weeks?

Offline straffo

  • Persona Non Grata
  • Plutonium Member
  • *******
  • Posts: 10029
virus for winxp: remote process control failure
« Reply #25 on: August 12, 2003, 12:12:17 PM »
muck you can have sygate personal FW for free :

http://smb.sygate.com/products/spf_standard.htm

Offline fd ski

  • Silver Member
  • ****
  • Posts: 1525
      • http://www.northotwing.com/wing/
virus for winxp: remote process control failure
« Reply #26 on: August 12, 2003, 12:21:12 PM »
get a router with build in firewall. You can hook up more then computer and they are all covered.

Offline Curval

  • Plutonium Member
  • *******
  • Posts: 11572
      • http://n/a
virus for winxp: remote process control failure
« Reply #27 on: August 12, 2003, 12:28:37 PM »
My home machine has this...turned up this morning.

I'm p*ssed....my wife's relatives have been playing around on my computer and someone must have downloaded something.

:mad: :mad:
Some will fall in love with life and drink it from a fountain that is pouring like an avalanche coming down the mountain

Offline muckmaw

  • Gold Member
  • *****
  • Posts: 3874
virus for winxp: remote process control failure
« Reply #28 on: August 12, 2003, 12:30:17 PM »
Quote
Originally posted by fd ski
get a router with build in firewall. You can hook up more then computer and they are all covered.


Huh? What?


Could you put that in English?

Router? Is that a little black box thingy?

I am soooo confused.

Offline Dinger

  • Silver Member
  • ****
  • Posts: 1705
virus for winxp: remote process control failure
« Reply #29 on: August 12, 2003, 12:34:47 PM »
curval it's a port hack. All you have to be is connected to the internet.  No download necessary.