• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

RPC DCOM Cleanup Worm

PowerMacG5

Diamond Member
Ripped from Slashdot:

"UnderAttack writes "This morning, the SANS Internet Storm Center posted a note about an increase in ICMP traffic, including a quick initial analysis. As it turns out, yet another worm, this time the W32/Nachi.worm, is going around taking advantage of the RPC DCOM vulnerability. The twist this time: the worm will actually clean up machines. It tries to download the correct patches from Windows Update and remove the Blaster worm." "

Pretty interesting. Someone created a worm that exploits the same thing as LovSan/Blaster, but this time removes the virus, and downloads the patch. Pretty cool. I wonder who wrote this, someone at Microsoft, or some noble virus writer that felt bad. Whoever it was, this is the best use of a security vulnerability. Use the vulnerability to fix itself.

Symantec link
 
Back
Top