Recommended Posts

Worm protection, it's called Updated AntiVirus Software and Applying Security Patches not limits to the TCP/IP protocol. This doesn't stop you from getting a Worm. Therefore it is irrelevant to most people. I don't feel sorry for people who get infected from a Worm because they are too lazy or incompetent to have updated AV and apply security patches. Even if this limit only remotely affected my internet connection in ANY way I would want it removed.

Like what? I am currently downloading 10 items through Bittorent (Azureus) and have not seen a single error.

Well 10 items isn't much, if you mean 10 files.

If you don't understand why the patch came about, that's ok. The patch works for what it was meant to do.

I agree if you are saying that too many people have applied it without understanding the first thing about it.

That's as far as my agreement goes.

well,people my humble opinion is that this patch breaks ALMOST all the idea of SP2,this will make your surface attack probability increase on your system.

i don't recomemnd to crack this.

585424341[/snapback]

IF that was "almost all of the idea of SP2", Microsoft could have released a hotfix of a few kilobytes instead of the actual SP2, get a grip.

This is why I dont let my boss know about this stuff (I inform him not to install patches from 3rd parties unless we discuss it, as hes still naive to everything he sees). This reminds me of when he visited a miscellaneous box.sk site and what does he do when it says 'You must click yes to download this [iTEM]'. *suspense here...* He clicked YES! I later told him he was a 'bad dog!' and that he shouldn't believe everything he sees and rectified is mistake. Now what does this have to do with this topic you may ask? It illustrates that people that don't understand what they are doing, will keep making dumb mistakes and so on. If you do not understand why Microsoft did what they did, and what implications it has on your 'eXPerience', then you SHOULD research how TCP/IP works, and reply to posts regarding the subject in a constructive and contributing manner. Thank you for your time. Happy broswing ^_^

It will slow the initial spreading of worms so that quicker action can be taken.

585427130[/snapback]

How does that improve your security if you have updated AV, all security patches applied and a firewall?

If a worm is on your system what does this patch do to protect you?

How does that improve your security if you have updated AV, all security patches applied and a firewall?

If a worm is on your system what does this patch do to protect you?

585427140[/snapback]

This limitation wasn't designed to protect the user who has the virus but it is designed to slow down the spread of a worm until the AV companies release new definitions and the user updates their patterns.

When a virus hits AV companies don't automatically have a fix for it. Depending on the company it could take a day before they receive the virus, analyze the virus and make the dat file available to the public to download. Then you have to remember you won't receive the update right away depending on your update schedule.

This limitation wasn't designed to protect the user who has the virus but it is designed to slow down the spread of a worm until the AV companies release new definitions and the user updates their patterns.

When a virus hits AV companies don't automatically have a fix for it. Depending on the company it could take a day before they receive the virus, analyze the virus and make the dat file available to the public to download. Then you have to remember you won't receive the update right away depending on your update schedule.

Which means it does NOTHING for your own personal security. All the worms that hit were caused because people never applied security patches that had been out for six months or more. It is totally irrelevant if you apply this to your system or not. All this does it "potentially" slow the spread of a worm between careless users, not a big loss IMO. Maybe they will learn to use updated AV and apply security patches.

Which means it does NOTHING for your own personal security. All the worms that hit were caused because people never applied security patches that had been out for six months or more. It is totally irrelevant if you apply this to your system or not. All this does it "potentially" slow the spread of a worm between careless users, not a big loss IMO. Maybe they will learn to use updated AV and apply security patches.

585433228[/snapback]

Of course it does,this fix not only limits the initial spreading stages of any worm,it reduces the risk of being detectable to port scanners.remember that there are port scanners capable of detecting when the system is vulnerable at any instance (u could be port scannned for almost a day),depending on how many applications u are using,the more applications (more connections opened of course) being used,the more vulnerable u are.

the idea is to be resilent in the web.Opening more connections= (it's like buliding more doors to your house for the thieves :laugh: ) in childish words

And P2P programs are the biggest conduct for worms and viruses nowdays :sleep:

remember that these applications of massive file sharing,increased the spreading of viruses and worms for the last decade.that's why we have ,bloody AV's and FW?s on our systems.these P2P applications open multiple connections on your system.

Well and the final words are.The operating system (abbreviated as OS) wasn't meant to live side by side with an antivirus or third party firewall,it was meant to have a basic,reliable and resilent operation,without dangers.

i felt explaining this to an ignorant kid,i should call you "mastertech of naiveness":DD

Edited by EduardValencia

Please explain exactly how this reduces you from being detected by port scanners if you are not infected by a worm?

And P2P programs are the biggest conduct for worms and viruses nowdays

remember that these applications of massive file sharing,increased the spreading of viruses and worms for the last decade.that's why we have ,bloody AV's and FW?s on our systems.these P2P applications open multiple connections on your system.

Nope, it is still email by far.

Well and the final words are.The operating system (abbreviated as OS) wasn't meant to live side by side with an antivirus or third party firewall,it was meant to have a basic,reliable and resilent operation,without dangers.

Then you run Windows without AV and a Firewall. Good security advice there!:no::

i felt explaining this to an ignorant kid,i should call you "mastertech of naiveness

Your naive in thinking this has ANY affect on security for a system not infected with a worm.

Here is the real point, once your infected you machine is compromised! Any virus writer with half a brain will include a workaround for this in the virus. The whole thing is idiotic, this does nothing to improve your security, you have to be infected with a worm first of all which means your security has already been compromised. All this does is make it take a little bit longer to infect other careless users who did not patch. Like I said once your system is compromised the worm could easily and probably will just unpatch this. This is a big joke.

Windows XP SP2 will bring TCP connection limits that may cause issues with busy software. A blurb on Warp2Search.net reveals that P2P software resulted in an Event Log message about too many connection attempts.

This new feature is one of the stack?s ?springboards,? security features designed to proactively reduce the future threat from attacks like blaster and Sasser that typically spread by opening connections to random addresses. In fact, if this feature had already been deployed, Sasser would have taken much longer to spread.

It?s not likely to help stop the spread of spam unless spammers are trying to reach open e-mail relays in the same way, by opening connections on SMTP ports of random IP addresses. This is new with XP SP2 and they're trying to get it right so that it does not interfere with normal system operation or performance of normal, legitimate applications, but does slow the spread of viral code. New connection attempts over the limit for half-open connections get queued and worked off at a certain (limited rate).

this explain your doubts?

I understand how it works. Sasser spread because people didn't apply a six month old patch and either had no AV or it was outdated, those who did were unaffected. You also did not answer the question how does having this enabled on your PC secure your PC from being infected by a worm? How does this do anything on your PC to protect you from anything?

Do you realize that once your infected, a worm can easily change this making it useless? Scaring people into believing this in some way secures your PC more is laughable.

All this does is make it take a little bit longer to infect other careless users who did not patch.

585437060[/snapback]

That's exactly the idea, and it doesn't hurt your connections/speed at all anyway, so why mess with it? :wacko:

Don't come here bashing microsoft of their security methods,when u got infected by a worm,i'll be there to remember you

Who's bashing Microsoft's security methods? I promote security! Such as not getting infected with a worm in the first place! Complaining about people changing a TCP/IP setting and then trying to scare them with it is something that affects their security is pure propaganda. You failed to inform them that changing this setting on their computer WILL NOT protect them from anything. I wouldn't worry the people this might affect don't patch and run updated AV so they are highly likely to have not changed this setting and if they do the only people affected are others who don't patch and use updated AV. Worrying about this setting as some sort of security risk is just not founded.

Who's bashing Microsoft's security methods? I promote security! Such as not getting infected with a worm in the first place! Complaining about people changing a TCP/IP setting and then trying to scare them with it is something that affects their security is pure propaganda. You failed to inform them that changing this setting on their computer WILL NOT protect them from anything. I wouldn't worry the people this might affect don't patch and run updated AV so they are highly likely to have not changed this setting and if they do the only people affected are others who don't patch and use updated AV. Worrying about this setting as some sort of security risk is just not founded.

585444145[/snapback]

Mastertech u are an advanced user,i'm not questoning your method,i've patched various systems to test them and had a problem with 2 worms and spent almost a month fixing the problem (it wasn't my network though), in my personal opinion it's not recommendable to users who lacks knowledge about the benefits/consequences that this might bring spesially in networked enviroments.I'd preferably say that this patch is for users who love updating their systems continiously,and want them tweaked it to the hilt.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • VS Code 1.123 introduces massive upgrades for persistent AI developer workflows by Paul Hill Microsoft has just released Visual Studio Code 1.123 alongside its annual developer conference, Build 2026. This release, as always, has a heavy focus on advanced AI agent integration and making the built-in browser more robust. Notably, this update brings big sync changes that keep your AI agents persistent across sessions. With this update, VS Code now supports cross-machine syncing for chat histories, touched files, repository contexts, and related PRs via GitHub accounts, tying users even more into Microsoft’s developer ecosystem. This update also introduces the new /chronicle command that allows you to query past sessions using natural language, generate instant standup reports, and get personal productivity insights. Microsoft has also made some improvements to network-dependent operations, it explains: “When a terminal command that is run by a local agent requires access to domains that are not configured as allowed domains, the command is automatically retried inside the sandbox with unrestricted network access. After that, if it still fails, it falls back to unsandboxed execution. This allows network-dependent operations such as git fetch to finish, while keeping filesystem protections in place.” Microsoft has not stopped there; in this update, it also allows developers to drag, drop, and pin multiple agent sessions side-by-side for easy code comparisons in real-time. It also introduces the Research Agent, accessible via /research. This is a read-only, depth-optimized tool that gets data from the web, local codebase, and GitHub to give you a Markdown report on complex APIs or unfamiliar code. Now, let’s talk about the integrated browser and some security enhancements. VS Code 1.123 features enhanced screenshot capture tools that allow for targeted Area Screenshots and Full Page Screenshots to send layout context instantly to AI chat. The address bar has also been revamped, supporting favorite pages and tab management. Finally, on the security front, this update introduces a safety-first two-hour delay on third-party extension auto-updates to safeguard against compromised or buggy releases. This release is now available for Windows, Mac, and Linux. If you have VS Code, keep an eye out for the update availability notification. If you still don’t have VS Code, you can get it here.
    • I'm hoping with the Surface Pro 12, I can use either USB-C for my Xreal One Pro glasses. With my Surface Pro 11 OLED X Elite, I have to plug them into the top port. The bottom port will power it, but nothing shows on the screen. Maybe it's my setting. When I plug in the glasses, I have it output only to the glasses. So maybe I need to turn on both displays with it in the top port, then switch the glasses to the bottom port and set it to output only to the glasses. And then hopefully Windows remembers the settings for either the top port and bottom port (one of the awesome features of Windows where it remembers the exact configuration when plugging in external monitors.
    • Forgive my ignorance, but the only difference I see here is that a USB-A is now a USB-C, so there are two of them. For the modern age (and I'd argue since 2020), most products would now come with USB-C as an option, if not the default. Display, charging, devices, etc on TWO connectors, sometimes all combined! So having 2 of those powerful ports is great for something this size! Meanwhile my Surface Pro (5) has a single USB-A port which I cannot even get display out to, instead relying on some Surface Connect dock which I don't have. That is a poor experience, not to mention expensive and not compatible with other devices. Thank God USB-C is mainstream!
    • wow. that color finally comes to Surface Pro. was always a little jelly when a friend had the sandstone Surface Laptop. I wonder how different this dune is from the sandstone. I'll be getting the dune version. always thought black and platinum were a little boring. I'll still have access to my blue Surface Pro 11 as it'll be a hand-me-down.
    • Looks a very subjective aren't they!? I like its simple design. I love the way Apple designs their products with function over form, minimalization, and simplicity over cluttered complex designs. Many, not all, of their products follow this trend, and the device becomes a tool rather than dominating the space. I do not however like their OS. I have never bought a Apple product, and while I'd consider the Neo for my wife, I am hoping there are better alternatives out there when her failing MacBook Pro 2017 finally stops. Fischer-Price is famously plastic, garish, and poorly made. Basically you're describing the Window Laptops the Neo competes against! This is how product design should be, and what Apple have often followed in recent years: https://tenprinciples.design/
  • Recent Achievements

    • One Month Later
      B2Proxy earned a badge
      One Month Later
    • One Year In
      MadMung0 earned a badge
      One Year In
    • Week One Done
      jefred earned a badge
      Week One Done
    • Apprentice
      JoeyNeo went up a rank
      Apprentice
    • Week One Done
      oliviaexpo earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      482
    2. 2
      PsYcHoKiLLa
      227
    3. 3
      Skyfrog
      70
    4. 4
      FloatingFatMan
      60
    5. 5
      Nick H.
      54
  • Tell a friend

    Love Neowin? Tell a friend!