| Forum Home | ||||
| Press F1 | ||||
| Thread ID: 36499 | 2003-08-12 00:01:00 | Who is NT Authority\System and Why does he restart my PC? | Chilling_Silently (228) | Press F1 |
| Post ID | Timestamp | Content | User | ||
| 166944 | 2003-08-12 07:47:00 | > windows xp 32bit or 64bit 32bit. Mike. |
Mike (15) | ||
| 166945 | 2003-08-12 07:48:00 | 32 Bit :-) | Chilling_Silently (228) | ||
| 166946 | 2003-08-12 10:03:00 | Another way to disable this thing long enough to get the patch. Boot up your computer Await the message informing you of the shutdown in 60 seconds open up start > run and type in "shutdown.exe -a" (minus the quotes) Now that the shutdown procedure has stopped, you have time to grab the patch Once you're all patched, use a virus scanner to check if you have one of the variations that leaves files on your hdd |
John Grieve (367) | ||
| 166947 | 2003-08-12 10:21:00 | Surely this thing can't boot when you're in safe mode?? Whats to stop you from just removing the registry startup keys, rebooting again, and then next time you'll have all the time in the world to deal with it. Norton's have issued their live update for this much earlier today, I think it was even under 60kb. > Ahhh - what bliss it is to never have these issues because running behind a correctly configured firewall *gloat* LOL, yes. The time n effort pays off ay :D You guys should take a lesson from my aussie friend on 56k (5 Firewalls and 2 antivirus). Enough said. |
PoWa (203) | ||
| 166948 | 2003-08-12 11:01:00 | > LOL, yes. The time n effort pays off ay :D You guys > should take a lesson from my aussie friend on 56k (5 > Firewalls and 2 antivirus). Enough said. I we are running two firewalls on Win XP pro on our gateway & we have not had this problem! |
stu140103 (137) | ||
| 166949 | 2003-08-12 11:11:00 | Well,i booted into safe mode and removed the reg string more then once,Only to find within a few minutes of getting on the net that the puter was once again shutting itself down. I also ran trojan killers in safe mode,which identified the reg entry and other assoiated files,and deleted what it found,only to find once again after a re-boot that everything had replicated and my puter was again shutting down. Now either its a particuly cunning nasty,or i was getting re-infected with it the moment i dailed up the net. Either way,The only thing that put a stop to it long enough to get rid of it was installing the patch from ms. In the future i will continue to ignore all security updates,Run no firewall,and keep system restore disabled. ..................................HA |
metla (154) | ||
| 166950 | 2003-08-12 11:46:00 | There's a new varient out there as below . So update your virus definitions . If its a dropper worm (which most like this seem to be) you'll get self replicating, randomley named files poping up all over the show that re-spawn the trojan/exploit, until you clean your system . Stop it then patch, maybe turning off the service will help . Dear Trend Micro customer, TrendLabs has received several infection reports of this new worm named WORM_MSBLAST . A which exploits the RPC DCOM BUFFER OVERFLOW, a vulnerability in a Windows Distributed Component Object Model (DCOM) Remote Procedure Call (RPC) interface which allows an attacker to gain full access and execute any code on a target machine, leaving it compromised . This worm has been observed to continuously scan and send data to vulnerable systems in the network using port 135 . When the system date is August 15, it performs a Distributed Denial Of Service attack against windowsupdate . com . HTH Murray P |
Murray P (44) | ||
| 166951 | 2003-08-12 12:34:00 | Or try this one at MS (support.microsoft.com) Thomas. Cheers Murray P |
Murray P (44) | ||
| 166952 | 2003-08-12 12:45:00 | i had the same error msg...nt/system is shutting down..kept rebooting the damn pc anyway..thomas correctly gave the right link,i downloaded the patch and now im SWEET AS GET THAT DAMN PATCH NOW NOW NOW buuuut..the thing is..dont waste time..soon as ur online go to the link thomas gave and then download it straightaway.. i managed to sneak the download in before the pc rebooted and installed it after the reboot so now im crusin the net highway like before.. ahhhh.. lol peace yalls Term_X |
Term_X (560) | ||
| 166953 | 2003-08-12 12:48:00 | i just saw this....... W32.Blaster.Worm Removal Tool For all the peoples who were victims of the W32.Blaster.Worm ( we reported), Symantec has released a tool to remove the worm. What the tool does: Terminates the W32.Blaster.Worm viral processes. Deletes the W32.Blaster.Worm files. Deletes the dropped files. Deletes the registry values that the worm added Download the tool over here (securityresponse.symantec.com) and make shure to secure you system by download the Microsoft Hotfix (www.warp2search.net) |
tweak'e (174) | ||
| 1 2 3 4 5 6 | |||||