N
Noel
Hi everyone,
I work in an Internet Cafe and I have a few years of IT
experience under my belt so the boss asked me to do a
cleanup and a rollout of XP Pro SP2 which I did. We use
software called CyberCafe Pro to manage the site. It would
seem that the client is set up to run as a service using a
USER account and as such replaces the shell in the
WinLogon setting in the registry. Today we discovered that
for some reason Windows was sending it a ShutDown command
which it resisted and so "Terminated Unexpectedly" -
however it's makers factored that scenario in (in case a
user tried to shut it down) and so it restarts - however
we discovered that it restarts as the SYSTEM account and
gives the users rights over everything. One user was able
to disable McAfee and install warez.exe and infect the PC
with 6 viruses. Considering how many companies use an
alternative shell is this not a major security flaw?
I work in an Internet Cafe and I have a few years of IT
experience under my belt so the boss asked me to do a
cleanup and a rollout of XP Pro SP2 which I did. We use
software called CyberCafe Pro to manage the site. It would
seem that the client is set up to run as a service using a
USER account and as such replaces the shell in the
WinLogon setting in the registry. Today we discovered that
for some reason Windows was sending it a ShutDown command
which it resisted and so "Terminated Unexpectedly" -
however it's makers factored that scenario in (in case a
user tried to shut it down) and so it restarts - however
we discovered that it restarts as the SYSTEM account and
gives the users rights over everything. One user was able
to disable McAfee and install warez.exe and infect the PC
with 6 viruses. Considering how many companies use an
alternative shell is this not a major security flaw?