Bizarre Remote Desktop activity.

Basil

New member
Member
Local time
6:43 AM
Messages
97
I am running a Win 7 64 bit PC. It runs a little known, but very powerful email client called The Bat!

I have run a (now) legacy version of The Bat1 for probably 15 years, accessing and using it remotely from another PC on the same home, hard wired, network. This other PC is also running Win 7 64 bit.

Now, previously I left TB! running 24 hours a day, seven days a week. I could open and close the Remote Desktop sessions with impunity, TB! was always still running in exactly the same state as I had left it in, when I restarted a Remote Desktop connection, as were any other apps on the remote PC that I had left open.

I updated TB! recently to the current version. The update seemed to go fine, and it SEEMED to perform very well. BUT, I soon discovered that whenever the Remote Desktop session was closed, either at the remote end, or at the PC running TB!, this now updated mail application took it upon itself to perform a mail folder check, and in doing so freeze up and lock solid, demanding that I use Task Manager to kill the folder check process, and the main mail application.itself

Now, this may well be, and I assume IS some anomaly with this later version of TB!, but how and why could closing a Remote Desktop session from either the remote or local PC cause an application to "do things" of its own accord? I have never seen any other application act like this...

Any insight greatly appreciated, my legacy version of TB! does not do this, and it never has, it was always there on the remote PC as left, and nor has any other app I have ever run on the remote PC.

Bizarre, or can anyone suggest a reason? Thanks and all the best.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom
OS
Win 7 Pro 64 Bit
CPU
Intel i5-4670K @ 3.4 GHz
Motherboard
Gigabyte GA-Z97X-Gaming 3
Memory
16 gig
Graphics Card(s)
On board
Hard Drives
SSD C: Drive
2 off 1 gig SATA in software RAID1 as D: Drive
Antivirus
Avast
Browser
Firefox
Hi Basil,

check the change log details for TB,, my guess it has todo with SMB1, which has become a depracted feature
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
medionl/Aspire 6930G/acer x55a
OS
W7 home premium 32bit/W7HP 64bit/w10 tp insider ring
CPU
E5300 dual core
Motherboard
medion MS7366
Memory
3gb
Graphics Card(s)
Nvidia Geforce 7100 Nforce 630i
Monitor(s) Displays
avixc
Internet Speed
n (isp resticted to 72)
Antivirus
mse/pands
Browser
palemoon
Other Info
Belkin Fd7050 n USB using Railink RT2870 drivers, more upto date
torchwood, thanks very much for the reply, but that's gone way over my head. I searched as far back as i could in The Bat! equivalent of changelogs for anything seemingly yo do with SMB, but couldn't find anything.

https://www.ritlabs.com/en/products/thebat/revision-history/


Would you mind telling me in idiot proof terminology what SMB is and how it might be the cause o my Remote Desktop to The Bat! issues please?
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom
OS
Win 7 Pro 64 Bit
CPU
Intel i5-4670K @ 3.4 GHz
Motherboard
Gigabyte GA-Z97X-Gaming 3
Memory
16 gig
Graphics Card(s)
On board
Hard Drives
SSD C: Drive
2 off 1 gig SATA in software RAID1 as D: Drive
Antivirus
Avast
Browser
Firefox
Hi Basil,

for a quick overview of SMB1, have a read of this tutorial....

Enable or Disable SMB1 File Sharing Protocol in Windows | Tutorials

and The Wannacry malware used smb1 deficiencies

Had a look at TB's securities features and the other problem could be TLS,.
(both SMB1 and TLS are file sharing protocol features)

ok, enough of the blabber
on BOTH/ALL computers you are going to have to check the following settings in
Control panel >>Programs/Feaures>>Features(top left)... then in the smaller window that opens
ensure that TLS and SMB have the lowest versions both Checked
note as you will see in the tutorial and likely in TB's security notes its not recommended

Both the above protocol settings are likely also options in TB
 

Attachments

  • thebat.png
    thebat.png
    50.7 KB · Views: 0

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
medionl/Aspire 6930G/acer x55a
OS
W7 home premium 32bit/W7HP 64bit/w10 tp insider ring
CPU
E5300 dual core
Motherboard
medion MS7366
Memory
3gb
Graphics Card(s)
Nvidia Geforce 7100 Nforce 630i
Monitor(s) Displays
avixc
Internet Speed
n (isp resticted to 72)
Antivirus
mse/pands
Browser
palemoon
Other Info
Belkin Fd7050 n USB using Railink RT2870 drivers, more upto date
Thanks for your patience and the update with links, but neither computer has any mention of either SMB or TLS in that box. Both run Win 7 64 bit SP2.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom
OS
Win 7 Pro 64 Bit
CPU
Intel i5-4670K @ 3.4 GHz
Motherboard
Gigabyte GA-Z97X-Gaming 3
Memory
16 gig
Graphics Card(s)
On board
Hard Drives
SSD C: Drive
2 off 1 gig SATA in software RAID1 as D: Drive
Antivirus
Avast
Browser
Firefox
I would just use TightVNC and Zerotier. I bet you're lit up like a Christmas try at Shodan, Censys et al...

NEVER forward VNC...

Samba and RDP are CVE plagued nonsense in my opinion.
 

My Computer

Computer type
PC/Desktop
OS
Windows 7 Ultimate x64
Back
Top