Re: [Full-disclosure] Support_388945a0 account in Win XP/2003



Hello, Aditya Deshmukh!

On 01.12.2005 8:14 you wrote:

That is a "help and support account" that you should disable.
Also set very long random password and forget it.
I prefer simply delete it. Good choice?

But I heard a rumours that this account can be activated remotely without user's aware decision and used for Remote Assistance (e.g. capturing a screen and even controlling input).

--
Regards,
Raoul Nakhmanson-Kulish,
Elfor Soft Ltd.,
IT Department


_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/



Relevant Pages

  • RE: [Full-disclosure] Support_388945a0 account in Win XP/2003
    ... >> Also set very long random password and forget it. ... > But I heard a rumours that this account can be activated remotely ... Deleting it might cause problems "help and support" ... just deny the account all kinds of privs and it would no longer matter. ...
    (Full-Disclosure)
  • Re: Alastair Cambell Diaries
    ... detail to compare Campbell's account with already published sources and ... rumours - all of which they already know, ...
    (uk.media.tv.misc)
  • Re: SSH ignores locked accounts
    ... >> locking the account. ... or can't for some reason, you could set a random password, not tell ... Good judgement comes with experience. ...
    (comp.security.ssh)
  • Re: Reset password on krbtgt account?
    ... It is the service account for you Kerberos ... KDC. ... It is already a strong random password by ...
    (microsoft.public.windows.server.security)
  • Renaming the local Administrator account on Windows XP Pro
    ... the local Administrator account with a randomly generated name. ... create a random password with the following command: ... net user Administrator /random ... This will generate a random strong password for the local Administrator ...
    (microsoft.public.windowsxp.security_admin)