RPC DCOM Vulnerability Issue
Hello Everyone!
I have a question regarding alerts I've been getting on my Sygate Proffessional Firewall.
I get alerts stating, "Inbound DCE BIND to potentially vulnerable RPC DCOM interface attempt detected."
I've run all of my virus detection programs and come up with nothing and I have the patches from Microsoft up to date and I'm just puzzled about this.
After I get the small pop up telling me about this, my Sygate icon down by the clock flashes to let me know there is an alert. Does anyone know what I can do about this vulnerability? I'm getting this alert sometimes three times an hour and when I get one, to get the icon to quit flashing, I double click on it and get the security log and it re-sets the icon. Is the firewall still protecting when it's flashing....before I get it re-set?
I've run a backtrace on alot of them and I see all the hops it has taken and then run a whois and they are coming from all over. Syracuse university, certain cable companies and etc.
Anyway, I would really appreciate any info you can give to help me know I'm protected from these attacks. I did run the free Sygate but bought the Professional version a couple of months ago. I've only had this frequent attack attempts in the past week or so.
I run XP home edition and connect via dial up. All my specs are listed below.
Thanks so much!!!!
Duane is SMACK dab on the money
Duane ( as usual ) is SMACK dab on this one...:D