Group: microsoft.public.windowsxp.security_admin
From: "Allan"
Date: Sunday, March 23, 2008 6:35 AM
Subject: Re: Tech Tip: This is how You Disable Dcom & close Down Port 135


"Allan" wrote in message
news:%238WNTNBjIHA.5452@TK2MSFTNGP06.phx.gbl...
> Dave, I don't know if you are aware of the tweak to disable NetBios
> without editing the Registry :
> http://security.symantec.com/sscv6/NetBIOS_FAQ.asp?langid=ie&venid=sym&plfid=23&pkj=VRZCCSCEFRQBCBZLSRZ
> I checked my services and I already had COM+ Sys App service disabled; I
> believe most users with standalone PC's can safely disable this service.
> (That is, even without disabling DCOM as per the OP's instructions).
> Even after you disable NetBios as per the instructions on the Symantec
> website, you cannot disable the NetBios service; it is still needed for
> connectivity for some reason. You would still need to block ports 135-138
> in your router after making this tweak.
>
To be more precise, you cannot disable the "TCP/IP NetBios Helper" service.

--
Allan