You can use Microsoft Windows group policy
to protect your server from known viruses that require an executable to
run.
Sobig.F and Blaster are two examples.
Click on Start, Run.
Type MMC to open the Microsoft Management
Console.
Select File, Add/Remove Snap-in, Add, Group
Policy Object Editor, Add, Close, Ok.
Navigate to Local Computer Policy, User
Configuration, Administrative Templates, System.
Click on Systems on the left hand pane. You
should get some choices in the right hand pane.
Double Click on "Don't Run Specified
Windows Applications".
Select Enable and then click on Show, then
Add
Add any applications you want to restrict.
Blaster and Sobig.F are
-
WINPPR32.EXE
-
MSBLASTER.EXE
Click OK and close out of the MMC. You are
now protected from these two Trojan / worms. |