KB951748 - ZA fix didn't work

  • Thread starter Thread starter Jim Cladingboel
  • Start date Start date
J

Jim Cladingboel

As suggested, I downloaded and installed the revised version of Zone
Alarm and allowed MS to reinstall this KB. Result: Internet access
blocked again!
I have now stopped all automatic updates and will screen for this
diabolical program and delete it if it shows up again.

MS created this problem. MS should fix it.

Jim.
 
As suggested, I downloaded and installed the revised version of Zone
Alarm and allowed MS to reinstall this KB. Result: Internet access
blocked again!
I have now stopped all automatic updates and will screen for this
diabolical program and delete it if it shows up again.

MS created this problem. MS should fix it.

Wrong! You didn't do your homework! ZA created this problem [PERIOD]. They
must have known about this and chose to do nothing about it a timely
manner!

http://securosis.com/2008/07/08/dan...ue-in-dns-massive-multivendor-patch-released/

....Mr. Kaminsky immediately reported the issue to major authorities,
including the United States Computer Emergency Response Team (part of the
Department of Homeland Security), and began working on a coordinated fix.
Engineers from *major technology vendors* around the world converged on the
Microsoft campus in *March* to coordinate their response. All of the
vendors began repairing their products and agreed that a synchronized
release, on a single day, would minimize the risk that malicious
individuals could figure out the vulnerability before all vendors were able
to offer secure versions of their products...

Uninstall this awful application, it's of no use. All it does is give a
warm and fuzzy feeling thinking you're secure - LOL.

For the average homeuser, the Windows Firewall in XP does a fantastic job
at its core mission and is really all you need if you have an 'real-time'
anti-virus program, [another firewall on your router or] other edge
protection like SeconfigXP and practise safe-hex.
The windows firewall deals with inbound protection and therefore does not
give you a false sense of security. Best of all, it doesn't implement lots
of nonsense like pretending that outbound traffic needs to be monitored.

Activate and utilize the Win XP built-in Firewall; Uncheck *all* Programs
and Services under the Exception tab.
Read through:

Understanding Windows Firewall.
http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfintro.mspx

Using Windows Firewall.
http://www.microsoft.com/windowsxp/using/networking/security/winfirewall.mspx

PFW Criticism.
http://en.wikipedia.org/wiki/Personal_firewall#Criticisms

"Personal Firewalls" are mostly snake-oil.
http://www.samspade.org/d/firewalls.html

Why your firewall sucks.
http://tooleaky.zensoft.com/
"But I quickly realized the truth: The added protection provided by
outbound filtering is entirely illusory."

At Least This Snake Oil Is Free.
http://msinfluentials.com/blogs/jesper/archive/2007/07/19/at-least-this-snake-oil-is-free.aspx

Deconstructing Common Security Myths.
http://www.microsoft.com/technet/technetmag/issues/2006/05/SecurityMyths/default.aspx
Scroll down to:
"Myth: Host-Based Firewalls Must Filter Outbound Traffic to be Safe."

Exploring the windows Firewall.
http://www.microsoft.com/technet/technetmag/issues/2007/06/VistaFirewall/default.aspx
"Outbound protection is security theater¡Xit¡¦s a gimmick that only gives the
impression of improving your security without doing anything that actually
does improve your security."

In conjunction with WinXP SP2 Firewall use:
Seconfig XP 1.0
http://seconfig.sytes.net/
(http://www.softpedia.com/progDownload/Seconfig-XP-Download-39707.html)
Seconfig XP is able configure Windows not to use TCP/IP as transport
protocol for NetBIOS, SMB and RPC, thus leaving TCP/UDP ports 135, 137-139
and 445 (the most exploited Windows networking weak point) closed.
 
I installed the ZoneAlarm update (new version) with a clean install, then
re-installed the Microsoft security update KB951748. All e-mail & internet
functions now correctly operating.
Laura
 
As suggested, I downloaded and installed the revised version of Zone
Alarm and allowed MS to reinstall this KB. Result: Internet access
blocked again!
I have now stopped all automatic updates and will screen for this
diabolical program and delete it if it shows up again.

MS created this problem. MS should fix it.

Jim.

MS's update is more important than the ZA malfunction; thus, as is
reasonable, ZA quickly and successfully created a fixed version. It
worked first time for me. I didn't even uninstall the KB first, just
installed the new ZA. Did you read the caveats at their site? Or did
you just ignore them and figure you knew it all? Are you even sure it's
the KB/ZA issue that's your problem?
 
The new version of ZA worked for me, and from what I read in news groups for
many others, maybe all others except you.

Thus, I would suggest going back to basics for daignosing a problem.

Start with the PC having normal internet access with older ZA installed
(version 7...., not 6 or 5) and the MS patch not installed.

Upgrade to latest ZA and confirm that internet still works with ZA active.

Clear all caches and delete anything related to the MS patch. This includes
any $NtUninstal... files with KB951748 in their name in C:\Windows.

Reboot, just to be sure the PC is "fresh". Turn off all programs, but not
firewall nor antivirus.

Use Windows Update to get the MS patch. Reboot if requested.

If after the reboot access to the internet is still a problem, then you have
something different than the rest of us. In such a case try posting on the
ZA forums, including detailed info about the exact steps you took, hardware
configuration, software running in the background (e.g., exactly which
antivirus, which anti-spy, etc.) Remember to mention little things like any
hardware routers, networked PCs, etc.

Good luck.
 
Thanks Bob and all. There seems to be some deepseated problem which
may take a while to resolve. At the moment, with KB951748 installed
again, I can only access the Internet with ZA set at Medium.
Will continue following the advices/suggestions given, which might take
some time. It might even be connected to my existing problem with OE6
which caused me to switch to Thunderbird.

Jim.
 
Back
Top