Advertisement
If you have a new account but are having problems posting or verifying your account, please email us on hello@boards.ie for help. Thanks :)
Hello all! Please ensure that you are posting a new thread or question in the appropriate forum. The Feedback forum is overwhelmed with questions that are having to be moved elsewhere. If you need help to verify your account contact hello@boards.ie

DCOM Exploit on UTVIP XL

Options
  • 14-11-2004 3:26pm
    #1
    Registered Users Posts: 1,873 ✭✭✭


    I'm on UTVIP Xl and my virus scanner picks up a "DCOM Exploit from various 195.218.x.x:135 addresses. The most common being 195.218.107.212. The virus scanner i'm using is avast antivirus and it doesn't pick anything when I run a full scan. Spybot picks up 5 entries...
    DSO Exploit: Data source object exploit (Registry change, nothing done)
    HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

    DSO Exploit: Data source object exploit (Registry change, nothing done)
    HKEY_USERS\S-1-5-21-1801674531-1715567821-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

    DSO Exploit: Data source object exploit (Registry change, nothing done)
    HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

    DSO Exploit: Data source object exploit (Registry change, nothing done)
    HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

    DSO Exploit: Data source object exploit (Registry change, nothing done)
    HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

    But when I fix the problem it keeps reocurring. It doesn't seem to be doing any damage but it bugging the hell out of me. I've downloaded the supposed hotfix that stops the problem but it hasn't helped. This started about 2 days ago. Does anyone have any ideas on how to stop this? BTW 195.218.x.x. is the utv server.


Advertisement