Posted Monday 19th January 2009 10:55 GMT
Fully Patched is NOT fully protected
MS patches up to date.
AV definitions up to date.
Behind corporate firewall - no idea if THAT means anything.
Scenario: AV software detected 2 files, one quarantined, the other untouchable - oops.
Requires a supershell to allow permissions changes to registry to even see where the services were hacked so that the bastard worm could be disabled and destroyed.
Took several hours to clean all the machines in the office - most fully patched XP & 2000 boxes of the 2 different Downadup varieties we encountered.
Opinion
David McLeman
My 25 years of comical IT buzzwords
Tim Worstall
Time to take a sniff at the coffee, perhaps
Chris Mellor
Will they have to drag him back like last time?
Popular Stories
Features
Playing the SLA long game
More than just middlemen...
Applications must work for the cloud to float
How a Unix killer crawled from the dot-com bust