PC Review


Reply
Thread Tools Rate Thread

How To Block Backdoor To Internet

 
 
=?Utf-8?B?Q2hhcmxpZSBIaWxs?=
Guest
Posts: n/a
 
      21st Mar 2005
Want to close a backdoor to the internet on a Windows 2000 terminal server.
Users can right mouse click on the desktop, then select New and then select
shortcut. The shortcut wizard starts.

If they type a URL in the shortcut line, it will create a shortcut to the
web site.
All they have to do is double click on the shortcut to get to the web site.

In the GPO IExplore.exe is blocked from use. Double click on the Internet
explorer icon, and the user is told they do not have permissions to run
IExplore.exe. But if they create a short cut to the web site, it opens just
fine.

How do I block this back door?

 
Reply With Quote
 
 
 
 
=?Utf-8?B?UGF0cmljayBSb3VzZQ==?=
Guest
Posts: n/a
 
      22nd Mar 2005
1. Restrict access to iexplore.exe via NTFS permissions.
2. Fire those who intentionally subvert your security settings.

Patrick Rouse
Microsoft MVP - Terminal Server
http://www.workthin.com

"Charlie Hill" wrote:

> Want to close a backdoor to the internet on a Windows 2000 terminal server.
> Users can right mouse click on the desktop, then select New and then select
> shortcut. The shortcut wizard starts.
>
> If they type a URL in the shortcut line, it will create a shortcut to the
> web site.
> All they have to do is double click on the shortcut to get to the web site.
>
> In the GPO IExplore.exe is blocked from use. Double click on the Internet
> explorer icon, and the user is told they do not have permissions to run
> IExplore.exe. But if they create a short cut to the web site, it opens just
> fine.
>
> How do I block this back door?
>

 
Reply With Quote
 
arno
Guest
Posts: n/a
 
      22nd Mar 2005
Hello Charlie,

> In the GPO IExplore.exe is blocked from use.


IMHO a better solution would be to create a user group "NoSurf" and
give them an internal non existing proxy server address via GPO
(UserConfig/Windows/Internet Explorer/Connection/Proxy). IE would be
still working for internal purposes and your problem with shortcuts
would be solved, too.

regards

arno

 
Reply With Quote
 
Rebecca Chen [MSFT]
Guest
Posts: n/a
 
      23rd Mar 2005
Hello,

I suggest you refer to the following article to restrict IE from running
via Group Policy. My test steps are as follows, client is XP and the server
is win2k3:

1. Put the computer account called TEST to the OU you want to disallow the
user to use IE.
2. Open the GPO of this OU
3. Locate to the following policy:
4. Computer Configuration\windows settings\security settings\software
restriction policies
5. Create a new policy
6. In Additional Rule->New a path rule
7. Put "%programfiles%\internet explorer\iexplore.exe" in the path, set
the security level to disallow.

NOTE: this policy will take effect when the client restarts.

More information, please refer to the following article:
Q310791 Description of the software restirction
Http://support.microsoft.com/kb/310791

HTH!

Any udpate, let us get in touch!

Best regards,

Rebecca Chen

MCSE2000 MCDBA CCNA


Microsoft Online Partner Support
Get Secure! - www.microsoft.com/security

=====================================================

When responding to posts, please "Reply to Group" via your newsreader so
that others may learn and benefit from your issue.

=====================================================
This posting is provided "AS IS" with no warranties, and confers no rights.

 
Reply With Quote
 
 
 
Reply

Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Block all other internet websites except for 3 specific internet w =?Utf-8?B?dmluY2U=?= Windows XP Internet Explorer 1 20th Sep 2006 09:10 AM
Trojan.Backdoor.Small.FB(backdoor) =?Utf-8?B?d2ZtMzE2?= Security and Anti-Spyware Community 5 25th Apr 2006 12:11 PM
Trojan.backdoor.small FB. backdoor =?Utf-8?B?UGV0ZXI=?= Spyware Discussion 2 15th Mar 2006 01:01 AM
backdoor.trojan virus and internet connection PROBLEMS mac0071@yahoo.co.uk Windows XP General 3 14th Feb 2006 12:15 AM
internet block john schmitz Windows XP General 4 12th Aug 2004 08:07 AM


Features
 

Advertising
 

Newsgroups
 


All times are GMT +1. The time now is 07:08 AM.