Tomato Garden Edition Windows XP Vulnerability Discovery and Analysis and Prevention

  
The version of this analysis is "Tomato Garden Windows XP Pro SP2 Free Activation V 2.8" and "Tomato Garden Windows XP Pro SP2 Free Activation V2.9" and "Tomato Garden Windows" XP Pro SP2 is free to activate V 2.7, other versions are not available.
Use the net use command to establish an empty connection with the username Administrator (there is no password, but you can connect successfully), then use the at command to schedule the task to close the Windows Firewall/Internet Connection Sharing (ICS) service (in order to turn off the Windows firewall), and then use Opentelnet opens the telnet of the other party. At this point, the shell with Administrator privileges is obtained. Then run net share C$=C under telnet: open the default share of the other c drive, and then use the copy command to put the oemlogo under the %systemroot%system32. Bmp and 0minfo. Ini copied to the local disk, open oemlogo.bmp and found the tomato garden v2.8 version.
The first thing that comes to mind is that the original system default settings have been modified. So open the registry to see the value of limitblankpassworduse, it is 0; the default value of this key is originally 1, and was artificially modified to 0. Friends using Tomato Garden v2.8 or v2.9, you can open the registry editor regedit, view the key value limitblankpassworduse under the item HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlLsa, see if the key value is 0; then install the original XP SP2, see this key value; Compare it to know. Finally downloaded the V2.7 test, 2.7 did not find similar security holes.



































Among them, there are many crusades, and there are also many admirers. Among them, the crusade, the argument is the New account of the empty password, and the opening of the remote desktop. Among them, advocating adversaries, the argument is that the security problem is caused by the user not setting a password.
Security issues include many aspects. First, whether the system's own policy settings are safe enough to prevent illegal access. Second, the virus Trojan problem, this problem, the problem of spears and shields, the most important thing is to have good Internet habits.
The strength of Microsoft is unquestionable. Microsoft's setting of its own system is certainly better than that of outsiders. It is more clear than the people and more clear about every detail of each setting. For XP SP2, after the security is completed, in fact, as long as all security patches are upgraded in the first time, security can be guaranteed.
Microsoft's understanding of its own system is definitely better than outsiders. System optimization is not universal, and optimization is aimed at personal habits, hobbies, needs, and so on.
Computer software and hardware application website long note: Reprint this article just let everyone know, do not blindly install non-original operating system, the last webmaster also encountered a similar problem, but also installed the tomato garden version, causing inconvenience ( The optimization parameters of the tomato garden version have problems on my computer, which causes great inconvenience. In the end, it only covers the original installation.) Above: "System optimization is not universal, and optimization is for personal use habits, hobbies, Demand and so on." Very agree!

Copyright © Windows knowledge All Rights Reserved