Re: [Full-Disclosure] Windows Dcom Worm Killer

From: Joey (joey2coolat_private)
Date: Wed Aug 13 2003 - 01:05:29 PDT

  • Next message: Sebastian Niehaus: "Re: [Full-Disclosure] Re: Windows Dcom Worm planned DDoS"

    I suggest that you also disable DCOM completely with
    the dcomcnfg utility. More info is available at the
    address below. Be sure to remove all of the DCOM
    "Default Protocols" including TCP to stop windows from
    listening on port 135
    
    http://www.uksecurityonline.com/husdg/windowsxp/close135.htm
    
    --- w g <xillwillxat_private> wrote:>  Directions:
    >  2. All done  :) ... next step 
    >     W32.Blaster.Worm exploits the DCOM RPC
    > vulnerability. This is described in Microsoft
    > Security Bulletin MS03-026, 
    >     and a patch is available there. You must
    > download and install the patch.Also buy an antivirus
    > and keep it 
    >     updated weekly . Also I'd suggest getting a
    > firewall to protect from any outside intruders.
    
    __________________________________
    Do you Yahoo!?
    Yahoo! SiteBuilder - Free, easy-to-use web site design software
    http://sitebuilder.yahoo.com
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html
    



    This archive was generated by hypermail 2b30 : Wed Aug 13 2003 - 01:45:08 PDT