I have.
This is possible - code injection for example. But now firewalls have Host based IDS to detect this.
Not really :-)
Yes, Sasser is an Automatic network worm.
I don't know. I didn't make the movie. They were promoting personal firewall usage and this is not a bad thing. Yes, there are other methods of protection against the Sasser worm in question.
Don't know. But we know it was pre MS04-011.
I don't know. At a guess they were concentrating on getting the point accross about personal firewalls. They didn't mention a lot of relevant information.
By default the default user has administrative privilages. This is also the case in most homes.
Believe it or not there are a vast majority of the computer using population who still dont even have these.
Depends on the Antivirus solution.
You don't and this is the point you are missing.
In a SMB it can be done *EASILY*. At the enterprise level it can be centrally managed. Employees still need to be aware of the basics.
Regards, Ian Kenefick