Re: APC Powerchute software - expired Java Runtime certificate has detrimental effect on Win2k / Win2k3 and SBS Servers

From: William (Bill) Hobson (b-hobson_at_TAMU.EDU)
Date: 08/22/05

  • Next message: Cooper, Russ: "Administrivia: Zotob/PnP Exploit Survey"
    Date:         Mon, 22 Aug 2005 11:46:30 -0500
    To: NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM
    
    

    This problem can be worse than the problems that Michael had. We patched
    an Exchange 2003 server and rebooted it and it refused to boot. We wound
    up booting in safe mode and disabling the APC service to get it to boot.
    This happened only after three hours of frustrating testing to try and
    figure out why until one of us remembered that he had seen something
    about the APC problem.

    This one problem caused more down time than we have had on our email
    servers in the last three years combined! Shame on APC!

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    William J. (Bill) Hobson
    Senior Networked Systems Administrator I
    Information Security Officer
    Network and Computing Support Services
    Texas Engineering Experiment Station
    321 Wisenbaker Engineering Research Center
    3126 TAMU
    College Station, TX 77843-3124
    Office: (979) 845-5808
    FAX: (979) 862-1185
    email: b-hobson@tamu.edu
     
    -----Original Message-----
    From: Windows NTBugtraq Mailing List
    [mailto:NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM] On Behalf Of Michael Banjac
    Sent: Friday, August 12, 2005 2:02 AM
    To: NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM
    Subject: APC Powerchute software - expired Java Runtime certificate has
    detrimental effect on Win2k / Win2k3 and SBS Servers

    This week, we were baffled by a significant number of our managed client
    servers falling like dominos, each one exhibiting the same symptoms.
    Essentially, the consoles were dead or dead slow....couldn't open
    control panel or network properties, explorer was crashing (no desktop),
    IE was non responsive. Restart the server and the exact same symptoms
    reappear. Accessing the admin console across the network via RDP made
    no difference. At first sight, we were reasonably confident that the
    Server had been hijacked or hit by a virus.
     <snip>

    --
    NTBugtraq Editor's Note:
    Most viruses these days use spoofed email addresses. As such, using an Anti-Virus product which automatically notifies the perceived sender of a message it believes is infected may well cause more harm than good. Someone who did not actually send you a virus may receive the notification and scramble their support staff to find an infection which never existed in the first place. Suggest such notifications be disabled by whomever is responsible for your AV, or at least that the idea is considered.
    --
    

  • Next message: Cooper, Russ: "Administrivia: Zotob/PnP Exploit Survey"

    Relevant Pages

    • Re: Fully parallel Scheme-based language w/ evaluator
      ... Windows Server 2003 and networks in simple - and irreverent - terms. ... If networking really is a big deal, ... Concepts and Terminology in Part I, and The Design and Deployment of Network ...
      (comp.lang.misc)
    • Re: W2K Adv Server will not boot - hangs on splash screen
      ... Post more of the logs here and try posting to the active directory group. ... Insert the OS CD and boot from that, ... > Our Windows 2K Advanced Server hangs on the windows splash screen. ... > The machine will boot to safe mode and safe mode with network. ...
      (microsoft.public.win2000.general)
    • RE: Help: Limited or no connectivity
      ... My brother called and said his XP Home machine wouldn't ... > drive with AdAware on another machine and that got the boot back. ... There is a small network icon down ... > hooked to my office net with a WinNT4 SP3 server. ...
      (microsoft.public.windowsxp.network_web)
    • Re: network booting
      ... requires a DHCP server somewhere on your LAN ... and does a proper 'diskless boot'. ... I did actually research PXE a bit while getting the DHCP/TFTP code ... downloaded code to talk to the network card. ...
      (comp.sys.apple2)
    • Re: Outgoing POP3 email missing/lost/not received
      ... Funny thing is that I have had this ISP for 8 years and it has always been ... It looks like when you last ran CEICW, you set the ISP's mail server to: ... Internet Connection Wizard. ... After the wizard completes, the following network connection ...
      (microsoft.public.windows.server.sbs)