<?xml version="1.0" encoding="UTF-8"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>Topic &#x27;Practical steps to limit trojan infections (slenfbot)&#x27; in forum &#x27;Security&#x27; - dslreports.com</title>
<link>http://www.dslreports.com/forum/Practical-steps-to-limit-trojan-infections-slenfbot-28010113</link>
<description></description>
<language>en</language>
<pubDate>Thu, 23 May 2013 13:35:53 EDT</pubDate>
<lastBuildDate>Thu, 23 May 2013 13:35:53 EDT</lastBuildDate>

<item>
<title>Re: Practical steps to limit trojan infections (slenfbot)</title>
<link>http://www.dslreports.com/forum/Re-Practical-steps-to-limit-trojan-infections-slenfbot-28011156</link>
<description><![CDATA[jaykaykay posted : Darned good question considering what has to be done to get it.  Unless the person who got it had their hands tied behind their back, we all know that the system could be very secure but not from a stupid user!  :(:<br><br>Slenfbot primarily spreads by luring users to follow links to websites, which contain a malicious payload. Slenfbot propagates via instant messaging applications, removable drives and/or the local network via network shares.<br><small>--<br>JKK:-)<br><br>Age is a very high price to pay for my maturity. If I can't stay young, I can at least stay immature! <br><br>&raquo;<A HREF="http://www.pbase.com/jaykaykay" >www.pbase.com/jaykaykay</A><br><br></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/Re-Practical-steps-to-limit-trojan-infections-slenfbot-28011156</guid>
<pubDate>Thu, 14 Feb 2013 15:57:04 EDT</pubDate>
</item>

<item>
<title>Re: Practical steps to limit trojan infections (slenfbot)</title>
<link>http://www.dslreports.com/forum/Re-Practical-steps-to-limit-trojan-infections-slenfbot-28010374</link>
<description><![CDATA[morbo posted : <div class="bquote"><said>said by <a href="/profile/1107429" onClick="this.blur(); return popup(event,'/uidpop?ajh=1&uid=1107429');">therube</a>:</said><p>So just how did slenfbot go about getting into this "secure" network?<br> </p></div>I'm waiting to hear the post mortem, myself.    ]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/Re-Practical-steps-to-limit-trojan-infections-slenfbot-28010374</guid>
<pubDate>Thu, 14 Feb 2013 12:52:36 EDT</pubDate>
</item>

<item>
<title>Re: Practical steps to limit trojan infections (slenfbot)</title>
<link>http://www.dslreports.com/forum/Re-Practical-steps-to-limit-trojan-infections-slenfbot-28010330</link>
<description><![CDATA[therube posted : So just how did slenfbot go about getting into this "secure" network?]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/Re-Practical-steps-to-limit-trojan-infections-slenfbot-28010330</guid>
<pubDate>Thu, 14 Feb 2013 12:41:37 EDT</pubDate>
</item>

<item>
<title>Re: Practical steps to limit trojan infections (slenfbot)</title>
<link>http://www.dslreports.com/forum/Re-Practical-steps-to-limit-trojan-infections-slenfbot-28010284</link>
<description><![CDATA[morbo posted : Thanks for this great overview.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/Re-Practical-steps-to-limit-trojan-infections-slenfbot-28010284</guid>
<pubDate>Thu, 14 Feb 2013 12:27:54 EDT</pubDate>
</item>

<item>
<title>Re: Practical steps to limit trojan infections (slenfbot)</title>
<link>http://www.dslreports.com/forum/Re-Practical-steps-to-limit-trojan-infections-slenfbot-28010215</link>
<description><![CDATA[dandelion posted : Inserting this for some guidance also: &raquo;<A HREF="/faq/security">Security</A> &raquo;<A HREF="/faq/8463">How to Secure (and Keep Secure) My (New) Computer(s): A Layered Approach:</A>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/Re-Practical-steps-to-limit-trojan-infections-slenfbot-28010215</guid>
<pubDate>Thu, 14 Feb 2013 12:09:22 EDT</pubDate>
</item>

<item>
<title>Practical steps to limit trojan infections (slenfbot)</title>
<link>http://www.dslreports.com/forum/Practical-steps-to-limit-trojan-infections-slenfbot-28010113</link>
<description><![CDATA[morbo posted : I recently learned that a nearby network was infected with the slenfbot. I'm hoping to learn from their experience and help prevent something similar on my end in the future. I'll also share suggestions with my friend so they can implement changes to prevent this from happening in the future.  <br><br><pre class="brush: text">Their environment: 10 PCs + 2-3 servers&#012; &#012;Antivirus: Symantec Endpoint Protection and all clients have this installed and updated regularly.&#012; &#012;Email: Exchange box locally and have incoming mail filtered by a 3rd party for spam detection.&#012; &#012;I'm not sure if they use any DNS filtering like that offered by Open DNS and their umbrella product.&#012; &#012;I'm certain all use Internet Explorer.&#012; &#012;I'm not sure if user accounts are limited by default or if everyone is an administrator.&#012; &#012;I'm not sure how often updates (Java, etc.) that aren't Windows Updates are performed.&#012; &#012;</pre><!--end code block-->I've been reading up on infections and how to prevent them, but there isn't a "biggest bang for your buck" type list of things to try first, second, etc.  Ideally, I know that a complete security lock down does all the check lists.  <br><br>I'd appreciate any guidance on this.<br><br> <br>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/Practical-steps-to-limit-trojan-infections-slenfbot-28010113</guid>
<pubDate>Thu, 14 Feb 2013 11:43:12 EDT</pubDate>
</item>

</channel>
</rss>
