PaulDotCom mailing list archives

Re: The dreaded outbreak scenarion


From: allison nixon <elsakoo () gmail com>
Date: Mon, 22 Oct 2012 01:02:48 -0400

DLL injection

What exactly are you talking about here?  Is this an outbreak of some worm
that abuses a windows networking protocol?  Like something Conficker-ish?

Make sure a machine is patched against these vulnerabilities before putting
them on the network.  The latest patch ought to do it.  Also using
firewalls to block ports used by the vulnerable service should help.

On Sun, Oct 21, 2012 at 11:25 PM, Pat <nutjob.ie () gmail com> wrote:

Hi Guys,

I'm pitching in to try and contain/slow/delay an outbreak while av
signatures have a chance to catch up and lessons are being learned the hard
way.

Is there any software tools available that can disable or block DLL
injection. This could help us slow down the spread.

(its far too late to suggest not running as admin in a 2k3 enviroment)



Regards,
Pat

_______________________________________________
Pauldotcom mailing list
Pauldotcom () mail pauldotcom com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com




-- 
_________________________________
Note to self: Pillage BEFORE burning.
_______________________________________________
Pauldotcom mailing list
Pauldotcom () mail pauldotcom com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com

Current thread: