Major Windows Exploit

2»

Comments

  • Scorpion571Scorpion571 Join Date: 2002-11-24 Member: 9800Members
    Since I am running Windows ME OS, this exploit isn't a threat to me?
  • kuperayekuperaye Join Date: 2003-03-14 Member: 14519Members, Constellation
    OMG THANK YOU COMMANDO I LOVE YOU....

    ohh well enuff of that im gonna blast msblast.exe outta the water with my ha/gl/welder
  • BeastBeast Armonkyi Join Date: 2003-04-21 Member: 15731Members, Constellation
    <!--QuoteBegin--Scorpion571+Aug 12 2003, 02:51 AM--></span><table border='0' align='center' width='95%' cellpadding='3' cellspacing='1'><tr><td><b>QUOTE</b> (Scorpion571 @ Aug 12 2003, 02:51 AM)</td></tr><tr><td id='QUOTE'><!--QuoteEBegin--> Since I am running Windows ME OS, this exploit isn't a threat to me? <!--QuoteEnd--> </td></tr></table><span class='postcolor'> <!--QuoteEEnd-->
    As said by fam:
    "Windows ME is so bad it breaks any virus that tries to run on it" But hey, thats my opinion also hehe <!--emo&:D--><img src='http://www.unknownworlds.com/forums/html/emoticons/biggrin.gif' border='0' style='vertical-align:middle' alt='biggrin.gif'><!--endemo-->
  • kuperayekuperaye Join Date: 2003-03-14 Member: 14519Members, Constellation
    i think nav just fixed it WOOOHOOOO w00t w00t w00t now i can play ns LAG FREE
  • devicenulldevicenull Join Date: 2003-04-30 Member: 15967Members, NS2 Playtester, Squad Five Blue
    edited August 2003
    <!--QuoteBegin--kuperaye+Aug 11 2003, 10:18 PM--></span><table border='0' align='center' width='95%' cellpadding='3' cellspacing='1'><tr><td><b>QUOTE</b> (kuperaye @ Aug 11 2003, 10:18 PM)</td></tr><tr><td id='QUOTE'><!--QuoteEBegin--> i think nav just fixed it WOOOHOOOO w00t w00t w00t now i can play ns LAG FREE <!--QuoteEnd--></td></tr></table><span class='postcolor'><!--QuoteEEnd-->
    Somehow I don't think it would cause lag..
    and if nav means norton antivirus,
    close it and you reduce your lag anymore <!--emo&:)--><img src='http://www.unknownworlds.com/forums/html/emoticons/smile.gif' border='0' style='vertical-align:middle' alt='smile.gif'><!--endemo-->
    I know that version 5 was a huge memory/processor hog..
    Dunno about later version but I'd guess they were

    Edit: I doubt nav would fix it, it may include a firewall that blocks ports
  • criticaIcriticaI Join Date: 2003-04-07 Member: 15269Banned, Constellation
    Wow, this thing is nasty. I've been getting calls from all of my relatives with computer problems. So far I haven't seen an NT based system that wasn't infected.

    Yuck! *bump* (no doubt more people need to see this)
  • PoofatPoofat Join Date: 2003-06-17 Member: 17434Members
    <!--QuoteBegin--devicenull+Aug 11 2003, 02:06 PM--></span><table border='0' align='center' width='95%' cellpadding='3' cellspacing='1'><tr><td><b>QUOTE</b> (devicenull @ Aug 11 2003, 02:06 PM)</td></tr><tr><td id='QUOTE'><!--QuoteEBegin--><a href='http://www.grc.com' target='_blank'>www.grc.com</a> Has more information
    <a href='https://grc.com/x/portprobe=135' target='_blank'>Click this link</a> to see if you are vulnerable.
    If the above link says "Closed" or "Stealth" You are not vulnerable, if it says "Open!" you are.<!--QuoteEnd--></td></tr></table><span class='postcolor'><!--QuoteEEnd-->
    I wouldn't put too much faith in this site, It seems to have alot of the "YOUR COMPUTER IS PLOTTING AGAINST YOU" scare tatics going on. Apparently you fail their 'TruStealth Analysis' test if you have tcp/22 open for ssh.
  • kuperayekuperaye Join Date: 2003-03-14 Member: 14519Members, Constellation
    no i did the steps and nav deleted it but my firewall lagged me when i played
  • CommandoCommando Join Date: 2002-05-22 Member: 657Members, NS1 Playtester
    Bumping this as it could still be important.
  • HAMMER22HAMMER22 Join Date: 2003-06-18 Member: 17476Members
    AH! Help, why am i always the only one who can't get the problem fixed <!--emo&:(--><img src='http://www.unknownworlds.com/forums/html/emoticons/sad.gif' border='0' style='vertical-align:middle' alt='sad.gif'><!--endemo-->

    Whenever my computer starts up now it ends SVCHOST.exe and i can't click links on webpages, and many pages are screwed up! I'm starting to get scared here someone help figure this out, i tried to use commando's tutorial but once again i was the only one it didn't seem to work for!

    Any more ideas from you guys would be nice

    PS: I run Win2000 pro
  • devicenulldevicenull Join Date: 2003-04-30 Member: 15967Members, NS2 Playtester, Squad Five Blue
    <!--QuoteBegin--Poofat+Aug 11 2003, 11:04 PM--></span><table border='0' align='center' width='95%' cellpadding='3' cellspacing='1'><tr><td><b>QUOTE</b> (Poofat @ Aug 11 2003, 11:04 PM)</td></tr><tr><td id='QUOTE'><!--QuoteEBegin--> <!--QuoteBegin--devicenull+Aug 11 2003, 02:06 PM--></span><table border='0' align='center' width='95%' cellpadding='3' cellspacing='1'><tr><td><b>QUOTE</b> (devicenull @ Aug 11 2003, 02:06 PM)</td></tr><tr><td id='QUOTE'><!--QuoteEBegin--><a href='http://www.grc.com' target='_blank'>www.grc.com</a> Has more information
    <a href='https://grc.com/x/portprobe=135' target='_blank'>Click this link</a> to see if you are vulnerable.
    If the above link says "Closed" or "Stealth" You are not vulnerable, if it says "Open!" you are.<!--QuoteEnd--></td></tr></table><span class='postcolor'><!--QuoteEEnd-->
    I wouldn't put too much faith in this site, It seems to have alot of the "YOUR COMPUTER IS PLOTTING AGAINST YOU" scare tatics going on. Apparently you fail their 'TruStealth Analysis' test if you have tcp/22 open for ssh. <!--QuoteEnd--> </td></tr></table><span class='postcolor'> <!--QuoteEEnd-->
    The test works atleast, its the simplest way I've found to check if the port is open..
    Only thing I go there for is the port scanner for my comp
    Alot of it is trying to scare you..
    It isnt trying to sell you anything,
    WTH is "'TruStealth Analysis' test", just scan the common ports with the portscanner and if any are open that shouldn't be.. you know something is wrong..
    Like I have port 80 open for apache on my computer.. just ignore the ports you know you opened..

    Its better then the sites that are like: "OMG! Your computer is broadcasting an IP address, buy this $50 to stop privacy leaks" Ugh.. I've run into sites that say if someone knows your IP address they can get information like your name. address, all that good stuff..
    Sad...
    Well maybe if you use IE they can get all that stuff <!--emo&:)--><img src='http://www.unknownworlds.com/forums/html/emoticons/smile.gif' border='0' style='vertical-align:middle' alt='smile.gif'><!--endemo-->
    Mozilla > IE
  • RavlenRavlen Join Date: 2002-11-08 Member: 7713Members
    I work for a high speed ISP, and we got hit hard by it. There were so many people vulnerable, that it took out our residential network, more or less. As more and more people got infected (through the dcom exploit), they would start to go out and spam other computers. This worked exponentially, and eventually there was so much traffic that our routers were completely clogged up.

    In a few days, all those computers that are still infected will attack microsoft using a DoS attack, and I'm sure our network might get congested again, heh. So, the virus CAN cause lag in NS. For me, I was getting 300+ from my usual ~50ms servers, because the virus was so rampant here. At work, we maxxed out our support queue all day as well, doh <!--emo&:(--><img src='http://www.unknownworlds.com/forums/html/emoticons/sad.gif' border='0' style='vertical-align:middle' alt='sad.gif'><!--endemo-->

    If you want to know if you got infected before you patched, hit ctrl-alt-delete and check for msblast.exe. You can also just do a search for the file using a file search.

    Ravlen
  • wlibaerswlibaers Join Date: 2002-11-15 Member: 8685Members
    Heh, this is sich in more way than one:

    - The most popular (or at least most widely used, probably most cursed too) operating systems have severe security flaws on release, which can be exploited is the system merely connects to the internet.

    - The fix has been available for a while now. Still, loads of people get hit.

    - Loads of people are running servers with ports open to the world, while they have no reason to do so (if you need it just for your machine, run it on a loopback interface). The reason why they do so appears to be because it's an OS default.
Sign In or Register to comment.