ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Office applications Toolkit

Windows admin 'feature' poses latest hazard

Munir Kotadia ZDNet.co.uk

Published: 20 Aug 2003 15:05 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Security experts are warning users to switch off a Windows messaging feature that has been taken over by spammers and could now pose the latest security threat for Windows users.

The feature, known as the messenger service, was originally designed to let a network administrator send warnings to users when, for example, a server is scheduled to go down for maintenance. Last year, bulk advertisers began using the tool to send pop-up advertising messages directly to a user's computer, and researchers say it would be simple for a virus writer to exploit the feature as well. The feature is not related to Microsoft's instant messaging software.

The warnings take on added urgency with the outbreak of several worms over the past few days that are affecting PCs and corporate networks. The MSBlast worm, the "good" Welchia/Nachi worm, a new version of the Sobig virus and the threat of a Direct X attack are all currently causing concern for Windows users.

Jack Clark, spokesman at security software company McAfee, explained that although the messenger service is not a threat on its own, it could easily be exploited to bring further misery for administrators and users. "Someone could write a virus that infects your machine and instructs it to send out those messages to everyone else," said Clark.

The messaging service, using a component called "Net Send", can be used to send a pop-up alert with 128 characters to either a single user, all users on a domain, or all users that have sessions with a particular server. This could allow spammers to send thousands or even hundreds of thousands of messages from a single command in a DOS shell, although Microsoft's Web site advises people to "use discretion when sending messages to multiple users".

Alex Shipp, a senior antivirus technologist at email security company MessageLabs, agreed the message service is a threat and recommended that administrators make sure it is turned off. "I haven't come across anyone in the past year that has used the messenger service. In general, things you are not using should be turned off -- it is probably best not to leave it up to the poor end user to make those decisions," he said.

In order to switch off the messenger service in Windows XP, Go to the Start button, click on Control Panel, Admin tools and choose Services. Then double click on Messenger and change the Start-Up type to Disabled. Finally, reboot the PC.

Microsoft was not available for comment.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
37 out of 93 people found this useful



Company/Topic Alerts

Create a new alert from the list below:








Related Jobs

Messaging support analyst- Investment banking city based

Messaging support: MY client is a global investment bank based in the city. They are seeking a top messaging support analyst to work in thier global ...

Technical Support Engineer Windows XP 2003, Microsoft Outlook, LANs, WANs, DNS,

Technical Support Engineer Windows XP 2003, Microsoft Outlook, LANs, WANs, DNS, - Lambeth - 2198 RM helps to push the boundaries of technology to ...

Firewalls Engineer Lead

Switch configuration (VLAN , Spanning Tree) - Detailed in-depth knowledge of TCPIP communication (including SMTP, HTTP) - Extensive working knowledge ...

Featured Talkback

Why do so many (virtually all) software packages think that they are so important that they have to be started automatically every time the computer boots? What is the largest number of "speed access", "update check", "camera download" and whatever other background programs you have ever seen running? Of those, how many did you really need?

By: J.A. Watson

Read full story:
Annoying software: a rogues' gallery

Discussions

harpless harpless

SAP goes big business

Friday 25 July 2008, 6:17 PM

1 comment
pjc158 pjc158

Will Drizzle rain on Sun's MySql

Friday 25 July 2008, 5:30 PM

1 comment

Vista Upgrade Blog

Microsoft's pre-modern message puts a...

Over at ZDNet.com, Ed Bott reports a first sighting of Microsoft's eagerly awaited $300 million ad campaign. Already the cause of much speculation, the consensus is that this will be... More

8 comments

A $40 CONSUMER-class router has create...

Believe it or not I don't work in IT, haven't for 7 years. Yes I work with Microsoft's Windows XP Embedded and as a result I have to know a lot about the OS, the kernal, Win API calls... More

Post a comment

Sick Puppy Redo

I generally follow a dispassionate investigative process when trying to discern what happened when a project goes bad. Although its a low priority item, it gets done simply because... More

Post a comment