Two days ago my non-firewalled XP system began doing the RPC shutdown thing that seems to indicate the msblast.exe worm. But it’s not there! And Avast cleaner didn’t find anything. Now I have a firewall (and the ms patch), and I no longer have shutdowns. But I don’t know if I’m infected with something, or if the shutdowns were due to outside attacks. My firewall’s been showing a lot of attempts to access port 135 from the outside world. Anyone with similar problems?
Yes, it’s possible.
Lots of this stuff is now circulating on the Internet, and unless your OS is patched and/or you have a firewall, you’re alwaying risking remote attacks.
But note that this is not a virus. avast can’t pick it up before the infected files appear on your machine, which is probably not the case here…
Vlk