PDA

View Full Version : Stop DCOM exploiting


Pretender
September 3rd, 2003, 07:25 PM
http://grc.com/dcom/

controler
September 3rd, 2003, 08:44 PM
Two thumbs up for Steve again :D
I have been using Kasperskys firewall for some time now an really like it. Have blocked 135 TCP and UDP in DCOM

con

spy1
September 4th, 2003, 02:20 PM
Thanks. Got it, used it and it didn't have any adverse effects on anything here. Thumbs up!

(Amazing - that and a M$ critical update on the same day - and my computer still works!) Pete

JacK
September 6th, 2003, 05:34 AM
Hello,

Any FW prevents this exploit.

I don't see any benefit to this little gadget : on NT OSs, you may disable this services in a breeze.

On win 98/Me, just rename rpcss.exe in rpcssold.exe for instance and you are done ;)

Be aware that depending what applications you are running, you might need DCOM on NT OSs.

St Gibson already made the same self promotion with UnPlug and Pray to turn off 2 services (UPnP and SSDP) last year.

Just self advertisement IMHO ;)

A 10 year kid could write a script closing those services : no need for a GUI promoting the rest of his stuff ;D

Rgds,

spy1
September 6th, 2003, 10:50 AM
JacK - There's an awful lot to be said for simplicity.

How many people out there do you think are running without firewalls?

How many people out there are going to know how to fix the problem manually? Bother to learn how and then do it?

How about the scenario where your firewall's icon continues to be there - but it's actually not working? Or what if your firewall's mis-configured?

Self-promotion? Or simplified self-protection? And, even if it were self-promotion - if the end result is that a whole lot more people's computers get more secure through the application of this program than would have otherwise - who cares?

Anyone who experiences problems after the application of the program would only have to "turn it off" to recover.

I see absolutely no downside to using this program (nor any of the other simple, effective programs Gibson puts out).

While having your level of knowledge and expertise would be wonderful indeed, most of us out here don't - and just want something quick, simple and effective to close the gap.

This little program does that. Pete

JacK
September 6th, 2003, 01:11 PM
-{ Quote: " quoting: spy1 link=board=20;threadid=13297;start=0#msg85678 date=1062859830]
JacK - There's an awful lot to be said for simplicity.
Hi Pete
How many people out there do you think are running without firewalls?
too much ;)

How many people out there are going to know how to fix the problem manually? Bother to learn how and then do it?
too few ;(
How about the scenario where your firewall's icon continues to be there - but it's actually not working? Or what if your firewall's mis-configured?
If you system is up to date even with the services running, no problem

Self-promotion? Or simplified self-protection? And, even if it were self-promotion - if the end result is that a whole lot more people's computers get more secure through the application of this program than would have otherwise - who cares?
You get a point :D
Anyone who experiences problems after the application of the program would only have to "turn it off" to recover.

I see absolutely no downside to using this program (nor any of the other simple, effective programs Gibson puts out).
The downside is the lambda user will never make the effort to undestand the way his OS works and never acquire a bit of knowledge

While having your level of knowledge and expertise would be wonderful indeed, most of us out here don't - and just want something quick, simple and effective to close the gap.
That 's the biggest problem : anybody wants everthing free of charge and free of effort but of course those little programs are useful and harmless. AFM I prefer teaching people to help them to gain their independancy
This little program does that. Pete
Sure ;)
" }-

Regards,

mR.MTLYPZYK
September 6th, 2003, 05:14 PM
http://www.wilderssecurity.com/showthread.php?t=12498;start=0#msg80332

Pretender
September 6th, 2003, 06:37 PM
There are so many people that have personal computers and aren't even updating security patches or anything. There is probably a large percentage of users that have no idea what a firewall is, spyware, etc. The way I see it is keep it as simple as possible and keep trying to remember where we were when we first heard "PC"........."What's that?!?!? "Firewall"......"My computers not near anything hot!!!" So on and on and on :o

Rickster
September 7th, 2003, 12:41 AM
Look how the membership has grown here the last two years. Everywhere I go, friends, family, novice busines oweners and so on, when asked what they're doing to protect themselves on-line, don't know what the heck we talk about here and I was one of them. Thanks to the gracious mentoring by people here at Wilders and people like Steve Gibson at GRC, people are finding simple, easy to use solutions that protect all of us in the end.

Not being a programmer, I'll never achieve the level of understanding the folks here who help us do, but by sharing what I've learned and encouraging others to visit here, I see them getting pretty excited about tackling security and privacy gaps that threaten all of us - it's one person at a time. I'm proud of this forum and everyone in it, including Steve Gibson at his site, where I first cut my teeth on the subject. I can't express the gratitude, or repay the generosity expressed by so many who help others through forums like this. Always keep sight of the concept of mentoring and the intended audience.

Thanks, Rick