FW: IIS infection prevention from W32.Nimda.A@mm/TROJ_NIMDA.A

From: Perkins, Sharon MSER:EX (Sharon.Perkins@GEMS3.GOV.BC.CA)
Date: 10/09/01


Message-ID:  <A5FCBE235450E64D87450B78D6BE2D07010005F1@swan.bcsc.gov.bc.ca>
Date:         Tue, 9 Oct 2001 14:19:54 -0700
From: "Perkins, Sharon MSER:EX" <Sharon.Perkins@GEMS3.GOV.BC.CA>
Subject:      FW: IIS infection prevention from W32.Nimda.A@mm/TROJ_NIMDA.A
To: NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM

At MEC last week it was clearly indicated from a Microsoft spokesman NOT to
use the IIS lockdown tool on a OWA server. He announced that a new version
of the IIS Lockdown tool would be released October 15th that would be
scenario based. In other words you would be able to select the IIS servers
role as an OWA, Index Server, or other and apply lockdown rules appropriate
to the function of the box.

============================================================================
Delivery co-sponsored by Trend Micro, Inc.
============================================================================
BEST-OF-BREED ANTIVIRUS SOLUTION FOR MICROSOFT EXCHANGE 2000
Earn 5% rebate on licenses purchased for Trend Micro ScanMail for
Microsoft Exchange 2000 between October 1 and November 16. ScanMail
ensures 100% scanning of inbound and outbound traffic and provides
remote software management. For program details or to download your
30-day FREE evaluation copy:
http://www.antivirus.com/banners/tracking.asp?si=53&BI;=245&UL;=http://www.ant
ivirus.com/smex2000_rebate



Relevant Pages

  • Re: VS.NET - IIS Lockdown
    ... I feel the main concern here is what whether IIS Lockdown tool can bring ... setup wrongly in IIS server. ... So I feel you can install IIS Lockdown tool and test it. ... Microsoft Mobile Information Server: ...
    (microsoft.public.vsnet.general)
  • SecurityFocus Microsoft Newsletter #49
    ... Subject: SecurityFocus Microsoft Newsletter #49 ... Microsoft Windows NNTP Denial of Service Vulnerability ... Microsoft IIS SSI Buffer Overrun Privelege Elevation Vulnerability ... Microsoft ISA Server H.323 Memory Leak Denial of Service... ...
    (Focus-Microsoft)
  • Re: AD management snap in cannot find DC (netdiag /v workstation)
    ... The name.local entries are used by my apache server to implement ... Attr: subschemaSubentry ... Owner of the binding path: ... Component Name: Client for Microsoft Networks ...
    (microsoft.public.windows.server.active_directory)
  • Re: IIS Start up errors
    ... provide the detailed steps to reinstall the IIS server in SBS 2003 server. ... For example, programs such as Microsoft ... In the Currently installed programs list, click Windows Small Business ...
    (microsoft.public.windows.server.sbs)
  • Re: Cant see performance report, etc. SBS2003
    ... Windows Performance monitor component changes the ... However, for "OpenSSH Server", you need to ensure it started, or set ... click to check the "Hide All Microsoft ... Reinstall Monitoring component: ...
    (microsoft.public.windows.server.sbs)