• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

New Internet worm affects Windows users

Page 2 - Seeking answers? Join the AnandTech community: where nearly half-a-million members share solutions and discuss the latest tech.
Originally posted by: deathkoba
Is it as bad as the Microsoft Windoze virus? Good thing I use a Macintosh. Never have to worry about anything. It just works. *shrug*

untill you try to install an exe.
 
Originally posted by: Chompman

Last I checked you can't remove IE since that is what microsoft said in their lawsuit against them since it's built in the OS.

Bring up any file box and you can just enter a website and it works.

Not sure what you did to get around that. 😛

This makes it possible

Microsoft are a bunch of FOS assholes, and they have deliberately made windows less and less configurable as the product has developed. If you follow the forums at http://www.msfn.org you can see where they have consistently released patches with no significant purpose other than to stymie such workarounds.

The installation referred to above (with the IE core fully stripped) does not have IE in any form. This means that the add/remove control panel will not display, .chm type help files cannot be viewed, and certain third party piece-of-crap programs that either use inline html during installation *cough*norton*cough* or as part of their interface *cough*gamespy*cough* will not function. There are easy workarounds for the former two, and the latter problem can be remedied by simply not using crappy software written by lazy blowholes.

imo 🙂
 
Originally posted by: myusername
Originally posted by: Chompman

Last I checked you can't remove IE since that is what microsoft said in their lawsuit against them since it's built in the OS.

Bring up any file box and you can just enter a website and it works.

Not sure what you did to get around that. 😛

This makes it possible

Microsoft are a bunch of FOS assholes, and they have deliberately made windows less and less configurable as the product has developed. If you follow the forums at http://www.msfn.org you can see where they have consistently released patches with no significant purpose other than to stymie such workarounds.

The installation referred to above (with the IE core fully stripped) does not have IE in any form. This means that the add/remove control panel will not display, .chm type help files cannot be viewed, and certain third party piece-of-crap programs that either use inline html during installation *cough*norton*cough* or as part of their interface *cough*gamespy*cough* will not function. There are easy workarounds for the former two, and the latter problem can be remedied by simply not using crappy software written by lazy blowholes.

imo 🙂

Hmmm, that is a interesting program but you have to be using 2000 or 2003. 🙁

I can never bring myself to format just to use that, I think I will just continue to use firefox. 😛
 
Originally posted by: Chompman
Originally posted by: myusername
Originally posted by: Chompman

Last I checked you can't remove IE since that is what microsoft said in their lawsuit against them since it's built in the OS.

Bring up any file box and you can just enter a website and it works.

Not sure what you did to get around that. 😛

This makes it possible

Microsoft are a bunch of FOS assholes, and they have deliberately made windows less and less configurable as the product has developed. If you follow the forums at http://www.msfn.org you can see where they have consistently released patches with no significant purpose other than to stymie such workarounds.

The installation referred to above (with the IE core fully stripped) does not have IE in any form. This means that the add/remove control panel will not display, .chm type help files cannot be viewed, and certain third party piece-of-crap programs that either use inline html during installation *cough*norton*cough* or as part of their interface *cough*gamespy*cough* will not function. There are easy workarounds for the former two, and the latter problem can be remedied by simply not using crappy software written by lazy blowholes.

imo 🙂

Hmmm, that is a interesting program but you have to be using 2000 or 2003. 🙁

I can never bring myself to format just to use that, I think I will just continue to use firefox. 😛

What? are you still using 98? 🙂
😉
 
Originally posted by: myusername
Originally posted by: Chompman
Originally posted by: myusername
Originally posted by: Chompman

Last I checked you can't remove IE since that is what microsoft said in their lawsuit against them since it's built in the OS.

Bring up any file box and you can just enter a website and it works.

Not sure what you did to get around that. 😛

This makes it possible

Microsoft are a bunch of FOS assholes, and they have deliberately made windows less and less configurable as the product has developed. If you follow the forums at http://www.msfn.org you can see where they have consistently released patches with no significant purpose other than to stymie such workarounds.

The installation referred to above (with the IE core fully stripped) does not have IE in any form. This means that the add/remove control panel will not display, .chm type help files cannot be viewed, and certain third party piece-of-crap programs that either use inline html during installation *cough*norton*cough* or as part of their interface *cough*gamespy*cough* will not function. There are easy workarounds for the former two, and the latter problem can be remedied by simply not using crappy software written by lazy blowholes.

imo 🙂

Hmmm, that is a interesting program but you have to be using 2000 or 2003. 🙁

I can never bring myself to format just to use that, I think I will just continue to use firefox. 😛

What? are you still using 98? 🙂
😉


Oops, I missed that xp part. 😱
 
Originally posted by: suse920
Originally posted by: deathkoba
Is it as bad as the Microsoft Windoze virus? Good thing I use a Macintosh. Never have to worry about anything. It just works. *shrug*

untill you try to install an exe.

:roll:

ANY Mac user or someone with half a brain would know better than to install bug ridden Windows programs when we already have ALL of the BEST applications for SERIOUS WORK designed from the ground up FOR the Mac OS. They are better designed, perform smoother and require far less effort to run compared with the displeasures of running similar programs on a PC..if you can even get it to install without dealing with DLLs, DRIVERS, the REGISTRY, DOS etc.

In the very rare event that there is no alternative software for the Mac, we can always fire up VPC which is actually just as fast as PC hardware since our PPC RISC processors are FAR more superior than your CHEAP Pentel Intium processors. Unfortunately the emulated environment is just as prone to viruses as it is running PC hardware but guess what? Since it's all running within an emulated environment within the Mac OS, the Mac isn't even affected by the viruses! What a JOKE!
 
Originally posted by: deathkoba
Originally posted by: suse920
Originally posted by: deathkoba
Is it as bad as the Microsoft Windoze virus? Good thing I use a Macintosh. Never have to worry about anything. It just works. *shrug*

untill you try to install an exe.

:roll:

ANY Mac user or someone with half a brain would know better than to install bug ridden Windows programs when we already have ALL of the BEST applications for SERIOUS WORK designed from the ground up FOR the Mac OS. They are better designed, perform smoother and require far less effort to run compared with the displeasures of running similar programs on a PC..if you can even get it to install without dealing with DLLs, DRIVERS, the REGISTRY, DOS etc.

In the very rare event that there is no alternative software for the Mac, we can always fire up VPC which is actually just as fast as PC hardware since our PPC RISC processors are FAR more superior than your CHEAP Pentel Intium processors. Unfortunately the emulated environment is just as prone to viruses as it is running PC hardware but guess what? Since it's all running within an emulated environment within the Mac OS, the Mac isn't even affected by the viruses! What a JOKE!

Everyone! The Mac E-Penis brigade has arrived. Bow down before their mighty RISC processors and fellate upon their OS! Their superiority is not to be challenged!
 
Anybody using SUS here? 899588 is not appearing in the list of available patches, which is very troubling to me. Is anyone else seeing this?
 
OK when MS releases a security update people look at it and exploit the hole they just patched.

How is this new?
 
Originally posted by: deathkoba
Originally posted by: suse920
Originally posted by: deathkoba
Is it as bad as the Microsoft Windoze virus? Good thing I use a Macintosh. Never have to worry about anything. It just works. *shrug*

untill you try to install an exe.

:roll:

ANY Mac user or someone with half a brain would know better than to install bug ridden Windows programs when we already have ALL of the BEST applications for SERIOUS WORK designed from the ground up FOR the Mac OS. They are better designed, perform smoother and require far less effort to run compared with the displeasures of running similar programs on a PC..if you can even get it to install without dealing with DLLs, DRIVERS, the REGISTRY, DOS etc.

In the very rare event that there is no alternative software for the Mac, we can always fire up VPC which is actually just as fast as PC hardware since our PPC RISC processors are FAR more superior than your CHEAP Pentel Intium processors. Unfortunately the emulated environment is just as prone to viruses as it is running PC hardware but guess what? Since it's all running within an emulated environment within the Mac OS, the Mac isn't even affected by the viruses! What a JOKE!
You're supposed to put the punchline at the end of the joke! 😀 😀 😀

But this was a good one, you had me LOLLERSKATING in my office chair!

 

Zotob/Plug and Play Worm Mitigation
-----------------------------------

Deny the following network ports at the firewall/border router:

INBOUND TCP 445 (Windows RPC, this may break several Windows based applications, sessions, etc.)

OUTBOUND UDP 69 (TFTP)
OUTBOUND TCP 1117 (IRC)
OUTBOUND TCP 1171 (IRC)
OUTBOUND TCP 4095 (IRC)
OUTBOUND TCP 5232 (IRC)
OUTBOUND TCP 6667 (IRC)
OUTBOUND TCP 8080 (IRC)
OUTBOUND TCP 8594 (IRC)
OUTBOUND TCP 18067 (IRC)
OUTBOUND TCP 30722 (IRC)
OUTBOUND TCP 33333 (IRC)

Deny the following IP addresses/URLs from connecting INBOUND or OUTBOUND:

ypgw.wallloan.com
spookestreet.afraid.org
spookystreet.udp-flood.com
sppokystreet.m00p.org
spookystreet.afraid.org
www.mailinator.com
tinyurl.com
72.20.27.115
72.20.41.139
nasa.darksin.net
nasahelp.darksin.net
xaeti.m00p.org
db23a.hack-syndicate.org
esxt.is-a-i love you.net
esxt.legi0n.net
www.rit.edu
wait.atillaekici.net
diabl0.turkcoders.net
l33t.freeshellz.org

At a minimum, make the following entries in your hosts file to prevent your machine from being pwned using IRC:

127.0.0.1 ypgw.wallloan.com
127.0.0.1 spookestreet.afraid.org
127.0.0.1 spookystreet.udp-flood.com
127.0.0.1 sppokystreet.m00p.org
127.0.0.1 spookystreet.afraid.org
127.0.0.1 www.mailinator.com
127.0.0.1 tinyurl.com
127.0.0.1 nasa.darksin.net
127.0.0.1 nasahelp.darksin.net
127.0.0.1 xaeti.m00p.org
127.0.0.1 db23a.hack-syndicate.org
127.0.0.1 esxt.is-a-i love you.net
127.0.0.1 esxt.legi0n.net
127.0.0.1 www.rit.edu
127.0.0.1 wait.atillaekici.net
127.0.0.1 diabl0.turkcoders.net
 
Problem is, like previous worms you can't just block port 445. I is needed by windows and windows networking.

Block on border firewalls/routers (and most have probably already done this as there was another security whole on this port) and allow only if you absolutely have to.
 
Back
Top