Remote Procedure Call Prob

N

Nick

Whenever I am online and using Internet Explorer I get the
following msg pop up at different intervals:

"Initiated by NT AUTHORITY\SYSTEM, Remote Procedure Call
terminated unexpectedly"

It then goes on telling me that my system will restart. A
counter then counts down from 60secs and then restarts my
computer.

Sometimes I can be on the net for a while before this
happens. I am running Windows XP Home. I have played
around with the dial-up settings but this does no good.

Please could you E-mail me at (e-mail address removed) if you
have a solution

Thanks

Nick
 
F

Frank Saunders, MS-MVP IE/OE

Nick said:
Whenever I am online and using Internet Explorer I get the
following msg pop up at different intervals:

"Initiated by NT AUTHORITY\SYSTEM, Remote Procedure Call
terminated unexpectedly"

It then goes on telling me that my system will restart. A
counter then counts down from 60secs and then restarts my
computer.

Sometimes I can be on the net for a while before this
happens. I am running Windows XP Home. I have played
around with the dial-up settings but this does no good.

Please could you E-mail me at (e-mail address removed) if you
have a solution

Thanks

Nick

You have the MSBlaster worm.
The first and last links are to copies of scripts that will disinfect your
machine, the last one being zipped.

To stay on-line long enough to get the necessary updates, patches,
and removal tools, click Start > Run, and enter "shutdown -a" when the
next RPC countdown begins. This will abort the shut down. Also, make
sure you've enabled a firewall before starting, to preclude any more
intrusions while getting the updates/patches/tools.

Information:
http://www.kellys-korner-xp.com/regs_edits/msblast.vbs
http://www.kellys-korner-xp.com/xp_qr.htm#rpc
http://forum.mvps.org/viewtopic.php?t=2703
Microsoft Security Bulletin MS03-026:
http://www.microsoft.com/technet/security/bulletin/MS03-026.asp?frame=true
MS03-026: Buffer Overrun in RPC Interface May Allow Code Execution
http://support.microsoft.com/?kbid=823980
Microsoft Windows DCOM RPC Interface Buffer Overrun Vulnerability
http://securityresponse.symantec.com/avcenter/security/Content/8205.htm
To clean it up:
http://www.bigblackglasses.com/Article.aspx?Article=342
or a zipped script:
http://www.bigblackglasses.com/staff/downloads/msblast2.zip

--
Frank Saunders, MS-MVP IE/OE
http://www.fjsmjs.com
Reply to Newsgroup. I won't answer email
Protect Your PC
http://www.microsoft.com/security/protect/
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top