W32.SASSER WORM
Reply
![]() |
|
|
From:
abhishek
|
What is this alert?
- Microsoft has been made aware of a worm identified as "W32.Sasser.worm" and it is currently circulating on the Internet. The worm exploits the Local Security Authority Subsystem Service (LSASS) vulnerability fixed in Microsoft Security Update MS04-011 on April 13, 2004.
- Microsoft encourages customers to protect themselves against this worm by installing Microsoft Security Bulletin MS04-011 <www.microsoft.com/technet/security/bulletin/ms04-011.mspx> immediately.
- Customers who have enabled the Windows XP Firewall are protected from the vector this worm attacks, which is TCP Port 139. Most third party firewalls also block this attack vector by default.
- Microsoft has developed a cleanup tool for W32.Sasser.worm. You will find this removal tool at http://www.microsoft.com/downloads/details.aspx?FamilyId=76C6DE7E-1B6B-4 FC3-90D4-9FA42D14CC17&displaylang=en and the corresponding Knowledge Base article KB841720 at http://support.microsoft.com/default.aspx?scid=kb;EN-US;841720. This tool exists for customers infected with Sasser. Microsoft strongly encourages you to apply MS04-011 as soon as possible.
Thank you, Abhishek Kant
|
|
View other groups in this category.
![]() |
To stop getting this e-mail, or change how often it arrives, go to your E-mail Settings.
Need help? If you've forgotten your password, please go to Passport Member Services.
For other questions or feedback, go to our Contact Us page.
If you do not want to receive future e-mail from this MSN group, or if you received this message by mistake, please click the "Remove" link below. On the pre-addressed e-mail message that opens, simply click "Send". Your e-mail address will be deleted from this group's mailing list.
Remove my e-mail address from dotNET User Group Hyd.
|
|