Somehow in the 5 minutes after installing Windows 2000 on the print server here at work and before I was able to run the Blaster patch, the friggin' Welchia crawled onto this machine. sonofa...
um, like, because the patch requires at least service pack one for Windows 2000 to be installed and, like, in order to get that installed I needed to, like, download the service packs after doing a fresh install.
yes, that would be nice, but it already worked its way inside the firewall on my job's overall network, all I was trying to set up was a printserver, and according to the network guys, my subnet was clean and protected behind another firewall. that's why I was so friggin' pissed when in a very small window of time this machine got infected. that's why I decided to post a bitch on this community, b/c I thought others who are dealing with similar problems would join me in a nice bitch fest, and THAT is why I resent your attitude.
Yeah, a firewall is great protection until some moron remote user comes in and hooks up his laptop... behind the firewall, without talking to tech support first like we told them. I've had 3 workstations I was building get infected that way in the last week. I finally got fed up and burned all the patches on CD, so I wouldn't need the network until after they were patched.
My apologies if I offended you. I'm pretty much bitched out already from the past two weeks. I'm ready to LART the next luser who comes in and connects an infected laptop. And I don't know who I'm more pissed at: the virus writers, the system admins who don't patch in spite of all the warnings we've given them, or at Micro$oft for selling such crappy, bug-ridden software that makes it all of this possible.
But seriously, we have a corporate firewall, but I also have a PIX 501 in my office for further protection of test systems. Security in depth. Hell, even a $50 Linksys NAT router would be good enough for that purpose. Or just burn all the patches on a CD and use the good old sneakernet.
Ok, not to start a flamewar (even though it looks like it's too late anyway), but what ever happened to sneakernet?
Hell, don't get me wrong, you definitely have my sympathies. Especially after finding out, as you mentioned in another comment, that the machine was already firewall, and that the network guys told you it was clear, etc, etc.
To be perfectly frank, your original post made it sound like you were a typical Windows idiot who hadn't thought through the consequences of putting an unprotected machine straight onto the 'net.
Now, it just sounds like you weren't paranoid enough. ;)
apologies to all. it was a bad day yesterday for reasons besides the worm (which was just plain frustrating) and i was looking for a place to rant where blinking lusers wouldn't say, "but why isn't the internet working?" in response to my rant, or "sorry to hear that, but could you come take a look at this", and being misread as a luser particularly pissed me off at the end of a long day.
sneakerware, hell yeah. I have all the patches I burned yesterday already burned to disk now...
no subject
Date: 2003-08-27 01:05 pm (UTC)no subject
Date: 2003-08-27 01:14 pm (UTC)no subject
Date: 2003-08-27 02:22 pm (UTC)no subject
Date: 2003-08-27 03:45 pm (UTC)k. alright? buh-bye...
no subject
Date: 2003-08-27 03:53 pm (UTC)no subject
Date: 2003-08-27 04:09 pm (UTC)no subject
Date: 2003-08-27 05:54 pm (UTC)You have my sympathies.
no subject
Date: 2003-08-27 10:16 pm (UTC)But seriously, we have a corporate firewall, but I also have a PIX 501 in my office for further protection of test systems. Security in depth. Hell, even a $50 Linksys NAT router would be good enough for that purpose. Or just burn all the patches on a CD and use the good old sneakernet.
no subject
Date: 2003-08-27 06:49 pm (UTC)Hell, don't get me wrong, you definitely have my sympathies. Especially after finding out, as you mentioned in another comment, that the machine was already firewall, and that the network guys told you it was clear, etc, etc.
To be perfectly frank, your original post made it sound like you were a typical Windows idiot who hadn't thought through the consequences of putting an unprotected machine straight onto the 'net.
Now, it just sounds like you weren't paranoid enough. ;)
sorry for being overly snippy...
Date: 2003-08-28 05:12 am (UTC)sneakerware, hell yeah. I have all the patches I burned yesterday already burned to disk now...
Re: sorry for being overly snippy...
Date: 2003-08-28 01:42 pm (UTC)and i mean broke...