Hello

Welcome, Guest. Please login or register.
Did you miss your activation email?

Author Topic: I think I have that bloody worm  (Read 3094 times)

Offline ##RaCeR##
  • Legendary Member
  • ******
  • Posts: 4963
  • Karma: +10/-0
I think I have that bloody worm
« Reply #45 on: August 14, 2003, 04:04:57 PM »
^^

Sounds like it. It apparently does different things on different versions of the operating system.

Offline theomen
  • Legendary Member
  • ******
  • Posts: 7762
  • Karma: +10/-0
    • http://
I think I have that bloody worm
« Reply #46 on: August 14, 2003, 04:07:31 PM »
that\'s the worm, quick fix is delete msblast.  You can also type in shutdown -a in your command prompt, to override the shutdown and then download blaster fix from the symantec web site.

Offline Halberto
  • \'99, \'03, \'05, \'07
  • Legendary Member
  • ******
  • Posts: 6599
  • Karma: +10/-0
I think I have that bloody worm
« Reply #47 on: August 14, 2003, 04:23:43 PM »
Thanks, I can download porn now :)

Offline Cyrus
  • You want this?
  • Legendary Member
  • ******
  • Posts: 2454
  • Karma: +10/-0
    • http://
I think I have that bloody worm
« Reply #48 on: August 14, 2003, 04:28:26 PM »
For all that are suffering the Rath of wrom_msblast.a here is a link to a really good site that will help you get rid of it http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_MSBLAST.A

Hope that helps!

CyRus

Plus about the firewall if you have xp its built in just gotta turn it on.
When did I realize I was God? One day I was praying and suddenly realized I was talking to myself.[/font]

Offline Capcom
  • Hero Member
  • *****
  • Posts: 921
  • Karma: +10/-0
    • http://
I think I have that bloody worm
« Reply #49 on: August 14, 2003, 07:03:52 PM »
Quote
Originally posted by mm
you think a hardware firewall has a little gnome inside the box magically checking each packet?

:rolleyes:


:rolleyes: Port 135 has no real reason to enter the network. Thus no magic GNOMES needed. Though it may all be magical to you.:D

Offline GigaShadow
  • Information Minister
  • Legendary Member
  • ******
  • Posts: 5610
  • Karma: +10/-0
    • http://
I think I have that bloody worm
« Reply #50 on: August 15, 2003, 05:33:04 AM »
Quote
Originally posted by Cyrus
Umm Number one problem I can see in this thread is the amount of people who use Norton Antivirus....... PLEASE!!! If you want a good virus scanner go out and get pccillin from trend http://www.trend.com plus you can download a respectable mblast cleaner on there site that can run from a disk in dos. This worm causes no real damange so for god sake dont fdisk and reinstall thats just stupid.


Norton isn\'t bad - I use it at home and haven\'t had a problem and when the worm infected my laptop I used the symantec cleaner to get rid of it.  FYI I use AVG on my laptop because it doesn\'t use many system resources.

I think most people who got this didn\'t have an up to date virus definition and secondly, the number one problem is the amount of people who didn\'t patch back in July when MS issued the announcement of the flaw.
\"The inherent vice of capitalism is the unequal sharing of blessings; the inherent virtue of socialism is the equal sharing of miseries.\"  - Churchill
[/i]
[/size]One Big Ass Mistake America

Global Warming ROCKS!!!![/b]

Offline Living-In-Clip

  • Legendary Member
  • ******
  • Posts: 15131
  • Karma: +10/-0
    • http://
I think I have that bloody worm
« Reply #51 on: August 15, 2003, 05:35:25 AM »
....Two "magical words" guy\'s...

WINDOWS UPDATE [/u]

Ohhh...Pretty ...fixes these problems...Oh wait is Windows Update [/u] reserved for "nerds"?
:")

Offline mm
  • clyde\'s boss
  • Legendary Member
  • ******
  • Posts: 15576
  • Karma: +10/-0
    • http://
I think I have that bloody worm
« Reply #52 on: August 15, 2003, 05:48:21 AM »
there\'s over 65,000 ports on your computer

take a pick


:rolleyes:
\"Leave the gun. Take the cannoli.\" - Clemenza

Offline THX
  • nigstick
  • Legendary Member
  • ******
  • Posts: 8158
  • Karma: +10/-0
I think I have that bloody worm
« Reply #53 on: August 15, 2003, 08:21:08 AM »
I have no firwall, lotsa ports opened on my router, and no virus protection on my main machine and I didn\'t get the virus.  I just installed the patch weeks ago.  I heard tommorrow is supposed to be the day when the virus is going to launch an attack of MS\'s help site. :eek:

\"i thought america alreay had been in the usa??? i know it was in australia and stuff.\"
-koppy *MEMBER KOPKING FANCLUB*
\"I thought japaneses where less idiot than americans....\" -Adan
\"When we can press a button to transport our poops from our colon to the toilet, I\'ll be impressed.\" -Gman

Offline Capcom
  • Hero Member
  • *****
  • Posts: 921
  • Karma: +10/-0
    • http://
I think I have that bloody worm
« Reply #54 on: August 15, 2003, 02:54:49 PM »
Quote
Originally posted by mm
there\'s over 65,000 ports on your computer

take a pick


:rolleyes:


Most are listed for certain applications. It is not rocket science. Ports such as the messenger service have no use coming in. Hell port 80 should not be unless a connection is established. Unless of course you run a web server.

MM I realize you say you work with computers, but it appears the only work you do with them is post on boards non stop attempting to degrade individuals.

Offline mm
  • clyde\'s boss
  • Legendary Member
  • ******
  • Posts: 15576
  • Karma: +10/-0
    • http://
I think I have that bloody worm
« Reply #55 on: August 15, 2003, 02:58:50 PM »
i didn\'t degrade anyone, it\'s like you hear something about computers on the news, and you regurgitate it here

most ports are NOT listed for certain apps.  below port 1024 is for common apps.  if messenger service has no use coming in, how will you get a message?
\"Leave the gun. Take the cannoli.\" - Clemenza

Offline Capcom
  • Hero Member
  • *****
  • Posts: 921
  • Karma: +10/-0
    • http://
I think I have that bloody worm
« Reply #56 on: August 15, 2003, 03:06:28 PM »
MM are you even aware of what messenger service 135 is?

If memory serves me right. It is the same port used in net send messages. Or atleast an initiator.

I also hate to break it to you, but it is not regurgitation off of the media. I am current in the IT field. I can list the initials behind my name if you wish. I almost guarantee it is a longer list than yours.

EDIT: MM don\'t take it personal. I am not, and doubt I ever will be a fan of software firewalls. Especially when you can pick up somthing like a cisco pix 501 for a couple hundred bucks. This part I am about to regurgitate from what I have read. I believe norton internet security had problems with this worm. The simple fact of the matter is that the operating system still controls the software.

EDIT again: Here is a quick list of tcp-ip ports used. You will notice a tremendous amount above port 1024. 1024 may have been the limit 2-3 years ago??
http://www.iana.org/assignments/port-numbers
« Last Edit: August 15, 2003, 03:45:59 PM by Capcom »

Offline Lord Nicon
  • The Member
  • Legendary Member
  • ******
  • Posts: 4205
  • Karma: +10/-0
    • http://
I think I have that bloody worm
« Reply #57 on: August 15, 2003, 06:20:19 PM »
Good ol Win98:p
Originally posted by ##RaCeR##
I don\'t have comprehension issues, you just need to learn how to communicate.
Yessir massir ima f*** you up reeeeal nice and homely like. uh huh, yessum ; ).
Debra Lafave Is My Hero ;) lol

Offline Halberto
  • \'99, \'03, \'05, \'07
  • Legendary Member
  • ******
  • Posts: 6599
  • Karma: +10/-0
I think I have that bloody worm
« Reply #58 on: August 15, 2003, 07:55:57 PM »
God Dammit, there are ZERO pics of Ogre on the internet.

Offline Samwise
  • Moderator
  • Legendary Member
  • ******
  • Posts: 12129
  • Karma: +10/-0
    • http://151.200.3.8/~vze29k6v/you.html
I think I have that bloody worm
« Reply #59 on: August 16, 2003, 06:45:52 AM »
If the guy who coded the worm wanted it to attack MS Update at a certain date, wouldn\'t it be wiser if it didn\'t make itself visible with the whole "60 secs to restart" deal? People will know something\'s up and (try and) get rid of it... not the way I would have designed it personally. :)
RRRRRRRRRRRRRRRRRRAPETIME!
(thanks Chizzy!)

 

SMF spam blocked by CleanTalk