corsasport.co.uk
 

Corsa Sport » Message Board » General Chat » Computer people helpp!!! » Post Reply

Post Reply
Who Can Post? All users can post new topics and all users can reply.
Icon:
Formatting Mode:
Normal
Advanced
Help

Insert Bold text Insert Italicized text Insert Underlined text Insert Centered text Insert a Hyperlink Insert Email Hyperlink Insert an Image Insert Code Formatted text Insert Quoted text
Message:
HTML is Off
Smilies are On
BB Code is On
[img] Code is On
Post Options: Disable smileys?
Turn BBCode off?
Receive email notification of new replies?

willay

posted on 12th Aug 03 at 14:54

sooty, any links to prove your jabber?


willay

posted on 12th Aug 03 at 14:51

oh well if you still use 98/Me you deserve everything that comes at you.


Sooty

posted on 12th Aug 03 at 14:50

yep... its spreading to 98 and ME :D


willay

posted on 12th Aug 03 at 14:46

sooty, is there a new version in the wild attacking ME now? cause i heard it wasnt vuln to the current worm?


Sooty

posted on 12th Aug 03 at 14:45

quote:
Originally posted by Nismo
its the W32.blaster.Worm doing the rounds at the moment, its hitting loads of XP users. if your on ME / 98 then your safe.


Not anymore ;)


willay

posted on 12th Aug 03 at 14:44

yeah if the situation doesnt carm down, and from my firewall logs at the moment I'm getting 2-3 requests PER minute from the RPC worm I can see how big it is, shit is going to go down on the 16th :/ , Though is does really matter if the worm is targeting www.windowsupdate.com or an ip address, a worm which attacked msql servers I believe attacked the same website but instead it attacked the IP, what did Microsoft do? Just blackhole the IP and move the website onto a new one, easy (iirc) :lol:


Nismo

posted on 12th Aug 03 at 14:41

yeah but think of the size of the DoS attack, i work in IT support and all day its been people with this virus and not noing how to get rid of it.


willay

posted on 12th Aug 03 at 14:39

so 1996.


willay

posted on 12th Aug 03 at 14:39

personally i think its lame, and sounds like something from hyped up hacker movie.


Nismo

posted on 12th Aug 03 at 14:36

from the Symantec (norton) website,

If the current month is after August, or if the current date is after the 15th, the worm will perform a DoS on "windowsupdate.com."

With the current logic, the worm will activate the DoS attack on the 16th of this month, and continue until the end of the year.

The worm contains the following text, which is never displayed:

I just want to say LOVE YOU SAN!!
billy gates why do you make this possible ? Stop making money and fix your software!!


thats cool:D


willay

posted on 12th Aug 03 at 13:59

yep the new internet worm causing terror to winxp/win2k clients, if you got a firewall then block port 135 (you should be doing this already) that will stop any more attacks getting through, download all the latest patches from whatever.


Nismo

posted on 12th Aug 03 at 13:58

yeah

also check out microsofts statement

http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/bulletin/MS03-026.asp


Tiesto

posted on 12th Aug 03 at 13:55

its also called msbalst.exe too


Nismo

posted on 12th Aug 03 at 13:52

see

http://securityresponse.symantec.com/avcenter/venc/data/w32.blaster.worm.html


Nismo

posted on 12th Aug 03 at 13:52

its the W32.blaster.Worm doing the rounds at the moment, its hitting loads of XP users. if your on ME / 98 then your safe.


Tiesto

posted on 12th Aug 03 at 13:50

go control panel > Adminastritive tools > services > then go down page until you find "Remote Procedure Call" > Right click then Properties, > Click recovery and those three boxes change to dont ake action.

Once done that go alt-ctrl-del then processes and close the process of msblast.exe , once done that go search all files and folders and search for msblast, delete the msblast.exe file. then go here for microsoft patch = http://microsoft.com/downloads/details.aspx?FamilyId=2354406C-C5B6-44AC-9532-3DE40F69C074&displaylang=en

This is on XP though


Sam

posted on 12th Aug 03 at 13:44

Look at the Event Viewer for clues.


Kerry

posted on 12th Aug 03 at 13:44

http://www.corsasport.co.uk/board/viewthread.php?tid=83708


PainZ

posted on 12th Aug 03 at 13:43

My PC keeps getting this error message,

it pops up and then gives me 1 minute before my pc will shut down on its own, anyone know what it is?

I have already formatted this morning as i thought it may be a virus,
I have taking my case side of and have a HUGE desk fan blowing into it keeping the whole PC cool.

I havent changed any hardware inside the PC for ages

The error says

Windos must now restart becuase the Remote Procedure Call (RPC) service terminated unexpectedly

Any idea?

cheers

gotta go just got one now :/