Page 1 of 1

Big Brother and Ndisuio.sys

Posted: Fri Jun 25, 2004 9:46 pm
by Red Squirrel
Ndisuio.sys, a very mysterious system file is present in Windows XP and is a driver for wireless things such as wi-fi and bluetooth. However, there have been many issues with this file downloading immense amounts of data and perhaps causing activity that is "big brother"ish.

http://www.iceteks.com/articles/db.php/act...cle/ndisuio/p/1

Archived topic from Iceteks, old topic ID:2445, old post ID:20641

Big Brother and Ndisuio.sys

Posted: Mon Jun 28, 2004 1:04 pm
by Red Squirrel
Hmm well it is a network-enabled driver, so it could be there are security flaws that allow this.

Also, you may want to look at this article: http://iamnotageek.com/articles.php?aid=10...&topic=Firewall

It's about the XP firewall being... well... microsoftish, it does not always work.

Archived topic from Iceteks, old topic ID:2445, old post ID:20688

Big Brother and Ndisuio.sys

Posted: Wed Jun 30, 2004 5:55 pm
by Red Squirrel
lol true, well as long as you don't do windows update you're safe... no wait, that's contradicting... bah just get a router. :lol:

For a company that makes patches for patches I trust a router before the patches anyway. to be honest I never did windows update once on my win2k, and never had problems. There's other ways to keep things secure but you just have to know what you're doing. But the worse you can do is get a cracked copy or otherwise modified since some crackers wont only crack it, but they will insert things in it.

Might as well just buy it and that way you're safe, and you can do windows update.

Archived topic from Iceteks, old topic ID:2445, old post ID:20712

Big Brother and Ndisuio.sys

Posted: Wed Jun 30, 2004 9:35 pm
by Wren
I have my registered copy of XP updated and use all the security measures I can. No problem so far. ;)

Archived topic from Iceteks, old topic ID:2445, old post ID:20722

Big Brother and Ndisuio.sys

Posted: Sat Aug 28, 2004 12:11 pm
by Red Squirrel
Woah, you're on the same subnet as my local network... that's weird.

Archived topic from Iceteks, old topic ID:2445, old post ID:21373

Big Brother and Ndisuio.sys

Posted: Tue Sep 14, 2004 11:16 pm
by Red Squirrel
weird that a network related file would be needed for a screen saver though... but it is an RPC thing so you just never know when it comes to that. :lol:

Archived topic from Iceteks, old topic ID:2445, old post ID:21746

Big Brother and Ndisuio.sys

Posted: Mon Sep 20, 2004 2:02 pm
by Red Squirrel
Well it's safe, but if you don't need it, then you can block it, and even disable this file altogether.

Archived topic from Iceteks, old topic ID:2445, old post ID:21833

Big Brother and Ndisuio.sys

Posted: Thu Sep 23, 2004 6:58 am
by Anonymous
Right I Have now reg'd hopefully this will get a reply cos i know it is an old thread!

Cheers

Darren :unsure:

Archived topic from Iceteks, old topic ID:2445, old post ID:21890

Big Brother and Ndisuio.sys

Posted: Fri Sep 24, 2004 5:34 pm
by Red Squirrel
I think it's just becase that file duplicates network activity, so if you've been to that site then it makes it look like it's trying to connect there.

Archived topic from Iceteks, old topic ID:2445, old post ID:21954

Big Brother and Ndisuio.sys

Posted: Thu Jan 20, 2005 7:04 pm
by Wren
I don't think there's a paranoid one of us in the bunch. :P As far as Linux goes...I'm to old to care. :lol:

Archived topic from Iceteks, old topic ID:2445, old post ID:24962

Big Brother and Ndisuio.sys

Posted: Mon May 16, 2005 8:31 pm
by Anonymous
Hi,
recently i logged my laptop to a local intranet and the admin had used
ndisuio.exe and ntokrnl.exe to control my comp. - atleast according to Sygate firewal
ndisuio.exe- Sygate says was used to find out all the running applications
and ntokrnl was used to enable th UDP -this i'm not sure what UDP is used for,
i have blocked it using sygate now,
bye

Archived topic from Iceteks, old topic ID:2445, old post ID:26932

Big Brother and Ndisuio.sys

Posted: Thu Jul 07, 2005 9:30 pm
by Anonymous
Red Squirrel wrote: Hmm well it is a network-enabled driver, so it could be there are security flaws that allow this.

Also, you may want to look at this article: http://iamnotageek.com/articles.php?aid=10...&topic=Firewall

It's about the XP firewall being... well... microsoftish, it does not always work.
Wait. The MICROSOFT firewall doesn't always work? Are you serious? :blink:

Archived topic from Iceteks, old topic ID:2445, old post ID:27994

Big Brother and Ndisuio.sys

Posted: Thu Jul 07, 2005 11:38 pm
by Red Squirrel
Yeah its' crap, dont trust it. Disable it and get something else. mind you, I've seen it where installing a firewall gives you the dreaded STOP error at startup when you reboot, so image your drive before installing the firewall in case you need to rollback, since BSODs are unescapable in most cases,on NT based OSes.

Oh and the firewall conflict is an XP thing, in 2000 all is smooth.

Archived topic from Iceteks, old topic ID:2445, old post ID:27998