If you haven't had a good reason to update your version of WindowsXP to SP1, now you've got it: DCOM RPC attacks through a host of sneaky worms. This weekend I got hit by W32/Lovsan.worm and although it was easy to remove, it was easier to avoid: Stay current with your free MS Windows updates.
The DCOM RPC security exploit has reached critical in under a week. Viruses like Code Blue, a Code Red varient, W32/Lovsan.worm and Win32.Poza (among others) exploit your systems unpatched service, then replicate like crazy, setting up a remote shell on TCP port 4444, and downloading a host of other .exe's to spread the love. Believe me, it's not a fun worm, because the leading symptom is an error in the RPC causes your system to restart about every few minutes, making backing up, downloading updates and other necessary measures damn near impossible.
Get SP1 and get yourself fully updated now!
Aqua-Soft Forums