DCOMbobulator and M$ patches
I applied the two recent M$ DCOM/RPC patches to 7 w2k machines at work.
Then I decided to use Steve Gibson's DCOMbobulator v.2 to just shut down DCOM on the machines and be done with this particular M$ vulnerability.
The odd thing is, DCOMbobulator shows that all machines already had DCOM shut down. (it's enabled by default)
I know the first patch didn't do it as DCOMbobulator found DCOM not shut down on my home XP Pro machine that only had the first patch applied. (the second patch made it hang at shutdown) I also know that a second patch wouldn't have been necessary if the first patch had shut down DCOM.
My question is: Is it possible M$ finally figured out that nearly nobody needs DCOM and they used the most recent patch to shut it down? That seems out of character for M$ to shut it down rather than provide endless patches.