Notices
Computer & Technology Related Post here for help and discussion of computing and related technology. Internet, TVs, phones, consoles, computers, tablets and any other gadgets.

Win2K Serious Hack

Thread Tools
 
Search this Thread
 
Old 09 January 2002, 12:22 AM
  #1  
darlodge
Scooby Regular
Thread Starter
 
darlodge's Avatar
 
Join Date: Oct 2001
Location: Lovely Lancing in West Sussex
Posts: 3,449
Likes: 0
Received 0 Likes on 0 Posts
Smile

Nice one Jeff,

I'll have a look at this on Monday as I am not in a rush to sort out our boxes (just been made redundant )

Darren

[Edited by darlodge - 9/1/2002 12:22:16 AM]
Old 31 August 2002, 03:14 PM
  #2  
Jeff Wiltshire
Scooby Regular
 
Jeff Wiltshire's Avatar
 
Join Date: Nov 2000
Location: 412 Wheel HP Audi RS4
Posts: 2,021
Likes: 0
Received 1 Like on 1 Post
Angry

Another problem for microsoft....

I've actually tried this on both XP & Win2K server/workstation and it does work !.....time to get patching...

From W2KNews

I haven't seen much noise on this list about MS02-045 (Unchecked Buffer in Network Share Provider Can Lead to Denial of Service (Q326830)), but the implications are very nasty. Any unpatched WinNT/2K/XP or .NET machine on your network that's listening on port 139 and/or 445 can be crashed in about two seconds with a malformed SMB packet. I highly disagreed with Microsoft's assessment that this was only a "moderate" threat level to intranet and desktop systems because the exploit is so easy to perform.

It was bad enough in theory, but now a script-kiddie friendly GUI version of the exploit has been posted on PacketStorm, and it works against all of the above. We worked through the weekend to get a large percentage of our boxes patched - you may have to do the same. You can try for yourself at:
http://www.w2knews.com/rd/rd.cfm?id=...RN-PacketStorm
[Editor's note] The fact this thing is out now with a GUI and can sit on a desktop as an icon makes it really dangerous.

The Patch is here (MS02-45):
http://www.w2knews.com/rd/rd.cfm?id=020902RN-Patch

Need a fast way to roll out and manage patches, completely automatic?
http://www.w2knews.com/rd/rd.cfm?id=...N-UpdateEXPERT




Have fun


Jeff

[Edited by Jeff Wiltshire - 8/31/2002 3:16:32 PM]
Old 01 September 2002, 11:28 AM
  #3  
ChristianR
Scooby Regular
iTrader: (1)
 
ChristianR's Avatar
 
Join Date: May 2001
Location: Europe
Posts: 6,329
Likes: 0
Received 1 Like on 1 Post
Post

That new WinNuke from packetstorm is infected with the hacktool virus!
Old 02 September 2002, 09:56 AM
  #4  
Jeff Wiltshire
Scooby Regular
 
Jeff Wiltshire's Avatar
 
Join Date: Nov 2000
Location: 412 Wheel HP Audi RS4
Posts: 2,021
Likes: 0
Received 1 Like on 1 Post
Post

The file listed is not WinNuke
Old 02 September 2002, 04:20 PM
  #5  
shunty
Scooby Regular
 
shunty's Avatar
 
Join Date: Aug 2001
Location: wakefield
Posts: 2,082
Likes: 0
Received 0 Likes on 0 Posts
Thumbs up

Nice one Jeff - that update expert looks good, microsoft have just released a free one, so I have been informed, although havn't used it myself.

shunty
Old 02 September 2002, 04:51 PM
  #6  
ChristianR
Scooby Regular
iTrader: (1)
 
ChristianR's Avatar
 
Join Date: May 2001
Location: Europe
Posts: 6,329
Likes: 0
Received 1 Like on 1 Post
Post

that update expert looks v.good - trying the demo version at the mo. What is the microsoft one like? does it give central distribution to multiable xp/w2k clients?

any such products available for win9x ?
Old 02 September 2002, 05:49 PM
  #7  
RVeiga
Scooby Regular
 
RVeiga's Avatar
 
Join Date: Mar 2000
Posts: 225
Likes: 0
Received 0 Likes on 0 Posts
Cool

or....

http://www.pedestalsoftware.com/secexp/webscan/scan.htm


takes your pick
Related Topics
Thread
Thread Starter
Forum
Replies
Last Post
south_scoob
ScoobyNet General
22
03 October 2015 01:05 PM
Lillyart14
ScoobyNet General
24
01 October 2015 01:29 AM
Blue by You
Non Scooby Related
48
30 September 2015 01:27 PM
stipete75
Non Scooby Related
37
25 September 2015 02:27 PM
blackknight350
Projects
1
21 September 2015 11:25 PM



Quick Reply: Win2K Serious Hack



All times are GMT +1. The time now is 12:59 AM.