lsass.exe error

  • Thread starter Thread starter Guest
  • Start date Start date
G

Guest

I've newly installed my windows xp and my system gets shut down in 60 seconds
due to the error in lsass.exe file.. Please tell me a permanent remedy t his
problem
 
sunny said:
I've newly installed my windows xp and my system gets shut down in 60
seconds due to the error in lsass.exe file.. Please tell me a
permanent remedy t his problem


You installed Windows and ran the computer with a live internet connection,
but without having a firewall turned on. It takes only a few seconds of
running without a firewall to get infected with worms like Sasser or
Blaster, and it would appear that that's what has happened to you.

Read here: http://www.microsoft.com/security/incident/sasser.mspx
 
From: "Frank Saunders, MS-MVP OE" <[email protected]>


|
| See if this applies:
| Lsass: What You Should Know About the Sasser Worm and Its Variants
| http://www.microsoft.com/security/incident/sasser.mspx
|

ASSUMING it is an exploit of the buffer overflow in the LSASS module, the Sasser is not tbhe
threat. That worm hasn't pretty much dioes out. Now the SDBot, AGOBot, or other Bots...

W32/Reatle.f@MM -- http://vil.nai.com/vil/content/v_135722.htm
W32/Gaobot.worm.gen -- http://vil.nai.com/vil/content/v_100785.htm
Qhosts.apd -- http://vil.nai.com/vil/content/v_124880.htm
W32/Plexus.b@MM -- http://vil.nai.com/vil/content/v_126167.htm
W32/Sdbot.worm!ftp -- http://vil.nai.com/vil/content/v_128082.htm
W32/Mytob.gen@MM -- http://vil.nai.com/vil/content/v_132158.htm
W32/Radebot.worm -- http://vil.nai.com/vil/content/v_132018.htm
{ W32/Radebot.worm, W32/Mytob.gen@MM & W32/Sdbot.worm!ftp will all exploit both LSASS and
the RPC/RPCSS DCOM vulnerabilities }

There are *many* worms now coding this exploit so one *must* refrain from assuming the
"Sasser" worm..
 
From: "David H. Lipman" <[email protected]>

Boy that waqs bad...

It should have been ....

ASSUMING it is an exploit of the buffer overflow in the LSASS module, the Sasser is not the
real threat. That worm has pretty much died out.
 
Back
Top