Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 2881332 times)

0 Members and 3 Guests are viewing this topic.

Hermite15

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #315 on: March 30, 2010, 10:28:49 PM »
yeah, sounds like it's the pdf (native structure) itself responsible for this possible threat >>> embedded virus contained in the document, not even using a security flaw. There's nothing Adobe can do against that. It's normally up to the user to be careful and avoid clicking, as long as a dialog box is displayed... but this can be controlled too according to the author of that article... I guess many other types of documents could be infected in a similar way. That's life, that's where you browse and how you browse. Legit sites don't spread such stuff, unless a site has been hacked...and I guess this sort of malware is absolutely undetectable by any AV...(may be if full file scan is selected, not sure...)
« Last Edit: March 30, 2010, 10:31:08 PM by Logos »

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #316 on: March 30, 2010, 11:29:58 PM »
Hi Logos,

It won't work in FoxitReader when you will patch it, by taking support for url, launch, movie en sound out of the Reader,

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #317 on: March 30, 2010, 11:48:06 PM »
Hi forum members,

Did you install the emergency patch for IE?; re: http://www.dshield.org/diary.html?storyid=8533
I did,

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48550
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #318 on: March 31, 2010, 12:00:50 AM »
Hi forum members,

Did you install the emergency patch for IE?; re: http://www.dshield.org/diary.html?storyid=8533
I did,

polonus
Isn't this covered in the various updates that have already been installed with auto update by MS ???
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v22H2 64bit, 16 Gig Ram, 1TB SSD, Avast Free 23.5.6066, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Hermite15

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #319 on: March 31, 2010, 10:02:43 AM »
Hi forum members,

Did you install the emergency patch for IE?; re: http://www.dshield.org/diary.html?storyid=8533
I did,

polonus
Isn't this covered in the various updates that have already been installed with auto update by MS ???

yep, it's just that ;)
http://www.microsoft.com/technet/security/bulletin/ms10-018.mspx

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48550
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #320 on: March 31, 2010, 01:29:10 PM »
Hi forum members,

Did you install the emergency patch for IE?; re: http://www.dshield.org/diary.html?storyid=8533
I did,

polonus
Isn't this covered in the various updates that have already been installed with auto update by MS ???

yep, it's just that ;)
http://www.microsoft.com/technet/security/bulletin/ms10-018.mspx
Mine updated this morning with a greeting to reboot now or in 15 min. :)
More info here
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v22H2 64bit, 16 Gig Ram, 1TB SSD, Avast Free 23.5.6066, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline mkis

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1618
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #321 on: March 31, 2010, 02:48:28 PM »
Here's mine - come through yesterday when I powered on the computer

http://www.microsoft.com/security/updates/bulletins/201003_oob.aspx


The other entry for 31 /3 /10 is an optional Compatibility View tweak with market by market functionality
I ran a check through the optional updates after the auto updates had downloaded and before I restarted.
I install a lot of the optional updates - this time I also loaded the .NET optionals, since I have .NET on my system  
« Last Edit: March 31, 2010, 04:45:28 PM by mkis »
Avast7 Free, MBAM (on demand), MVPS Hosts

Intel DG41TY, Windows 7 Ultimate, IE9, Google Chrome, 4 GB ram, Secunia PSI, ccleaner, Foxit Reader, Faststone Image viewer, MWSnap.

YoKenny

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #322 on: March 31, 2010, 02:50:56 PM »
Quote
Mine updated this morning with a greeting to reboot now or in 15 min.  :)

My XP Pro system installed Cumulative Security Update for Internet Explorer 8 for Windows XP (KB980182) when I powered it off about midnight and my Windows 7 system updated just now when I went to Windows Update and it indicated an Important update was available.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #323 on: March 31, 2010, 07:19:54 PM »
Hi YoKenny,

Because they had experienced the exploit being abused in the wild and they could not wait any longer with a patch. There was a Fix-It for it already, but that now has been turned into a general patch for the various IE versions,

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #324 on: March 31, 2010, 07:25:42 PM »
Hi malware fighters,

Foxit Reader will patch the unpatchable hole next week: http://forums.foxitsoftware.com/showthread.php?p=41323
Good news,

pol
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #325 on: March 31, 2010, 10:46:17 PM »
Hi malware fighters,

The Torpig aka Sinowal, malware will put obfuscated malicious JavaScript into a website's pages and/or JavaScript files. The malcode on the website's pages and JavaScript files is being changed from time to time and might be removed completely as well. The malware gets onto the website through FTP compromised credentials through malware located on a nachine that has accessed the site throughFTP. To prevent the website from being reinfected change the FTP password ^remove the malware  from the infected machines before it will be use over and over again to access the website through FTP

FTP. Re: http://www.sophos.com/security/analyses/viruses-and-spyware/trojtorpigbl.html

The most recent script format is attached as a screendump (source: WhiteFirDesign)
Click to make more visable - pol
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

llariel

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #326 on: April 02, 2010, 05:44:50 AM »
Firefox 3.6.3 fixes a critical security issue that could potentially allow remote code execution... More info here:

http://www.mozilla.org/security/announce/2010/mfsa2010-25.html

Offline Chris Thomas

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1936
  • Christian Geek - aka 'born again' Geek
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #327 on: April 06, 2010, 03:57:51 PM »
Exploits not needed to attack via PDF files


http://news.cnet.com/8301-27080_3-20001792-245.html

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37527
  • Not a avast user
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #328 on: April 06, 2010, 04:42:06 PM »
DHS studying global response to Conficker botnet

The Conficker Working Group report could provide a template for future cyber attack responses, security experts say
http://www.infoworld.com/d/security-central/dhs-studying-global-response-conficker-botnet-127

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #329 on: April 06, 2010, 08:42:12 PM »
Hi malware fighters,

PONDUS can you give this in English?
New JAVA malware misleads av scanners: http://www.idg.no/computerworld/tema/sikkerhet/article163040.ece

Also: http://www.woodmann.com/forum/archive/index.php/t-13454.html

pol
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!