Slashdot Mirror


RPC DCOM Worm On The Loose

GPez writes "The first of I'm sure many RPC DCOM worms affecting Windows is on its way, according to the Internet Storm Center. Patch those systems!" According to the site, "The worm uses the RPC DCOM vulnerability [affects Win2k through Server 2003] to propagate. Once it finds a vulnerable system, it will spawn a shell on port 4444 and use it to download the actual worm via tftp."

6 of 604 comments (clear)

  1. Im safe in windows 98 but preffer linux by urbieta · · Score: 1, Troll

    no need to reboot any time soon for that old windows 98 part since Im a linux junkie by now hehehe

  2. Re:Great by Znonymous+Coward · · Score: 0, Troll

    I believe the correct like is 207.44.202.162

    --

    Karma: The shiznight, mostly because I am the Drizzle.

  3. Re:I have already patched my entire network. by flatface · · Score: 0, Troll

    Even better, a Linux server on a firewall. Running Gentoo Linux. My box is tighter than a nervous virgin on prom night. Erm.. ^.^;;

  4. Re:I have already patched my entire network. by advocate_one · · Score: 0, Troll

    so you never set your system policies to prevent the downloading of certain file types then??? More fool you.

    --
    Donald 'Duck' Dunn: We had a band powerful enough to turn goat piss into gasoline.
  5. if your an admin who is concerned about this issue by shaitand · · Score: 0, Troll

    perhaps it's time to get a real operating system and quit playing with insecure toys.

  6. LOL! by pmz · · Score: 0, Troll

    Once it finds a vulnerable system, it will spawn a shell on port 4444 and use it to download the actual worm via tftp.

    HAHAHA!!! You bought it, you deal with it, suckers!