Zone Alarm Pro Security Issue

devine952

Member
Dec 17, 2000
81
0
0
I am running Win 2K and the IIS component is installed and running.

I am running Zone Alarm PRo and McAfee antivirus.

This has happened several times. For some reason TFTP.exe tries to access the internet, but I can't see a reason for it needing to unless someone is attempting to hack my pc. Apparently it is the Trivial File Transfer Protocol service application. Can anyone tell me what it is for, whether it is important, and whether I should allow it to access internet or not.

Many thanks.

 

Palek

Senior member
Jun 20, 2001
937
0
0
It always helps to do a quick search on Google. This is one of the links I found after doing a search for TFTP.EXE.

TFTP.EXE Security Problem

According to this page, TFTP.EXE is a"Windows firmware update program supplied by Linksys and UMAX as part of their firmware update .exe files". Apparently there is some security problem associated with this file because there are quite a few security articles on the web related to it. If you do not have a Linksys or UMAX router, then you should be very worried, because there is another file named tftp.exe that comes with Win2k and XP and this is what it can do:

exploiting IIS unicode bug using tftp.exe
IIS remote execution vulnerability

I recommend that you read up on these articles. And do some additional searching...

<Edit>Unless you really need IIS I recommend that you uninstall it. If you do not use your machine as a web server, then you definitely do not need IIS.</Edit>