Zero Day For IE7 Being used in the wild.
Comments OffIt looks like IE7 patches are being used right now in the wild. According to TrendMicro:
HTML_DLOADER.AS exploits the CVE-2009-0075 vulnerability, which is already addressed by the MS09-002 security patch released last week. On an unpatched system though, successful exploitation by HTML_DLOADER.AS downloads a backdoor detected as BKDR_AGENT.XZMS.

This is the next step to prevent yourself from getting caught with your pants down so to speak, you need to patch all systems that have internet access. I still like the Autopatcher because it will do the job with very little input from the user. It also makes it easier for people to patch big systems. You should also consider installing some Free Anti-virus software to help protect the systems you do have.
Internet Security Companies Warn about Patch Tuesday and Valentines Day.
Comments OffWith Tomorrow being released some very highly rated Remote Code Execution to become Zero day in very short time. Some researchers are speculating about more viruses will be released in conjunction to Valentines day. According to this one post it will be likely to be E-cards being sent to try to lure you into downloading Malware.
Various security vendors, including CA Inc, MX Logic Inc., Trend Micro Inc., and Panda Security, have issued alerts about new Valentine’s Day-themed spam campaigns that try to dupe users into installing the Waledec bot.Researchers note that many websites which are affiliated to Waledac e-card scam have been recently updated with content based on the Valentine’s Day theme.
Web sites distribute Trojan files which are commonly named love.exe; onlyyou.exe; you.exe; youandme.exe; and meandyou.exe and the list is not exhaustive.
[Via Express Buzz]
Offline Update 5.0, Clone of Autopatcher to Some!!
Comments OffOffline updater 5.0 has been released a couple months ago and I just realized it now. This is an excellent tool for IT professionals who want to keep all your Systems up-to-date with the last patches from Microsoft. The systems it supports are Windows 2000, Windows XP, Windows Server 2003, Windows Server 2003 x64, And Windows Vista / Server 2008.(32 bit and 64 Bit updates).

Brace for Impact, Brace for Botnet! (Conflicker Worm)
Comments OffThe Worm that has infected 6% of Personal Computers is starting to build into something totally different. According to some Researchers, they are saying this has to happen soon. And I’ll quote:
In any case, today seems better than the day before and we think that growth of Downadup has been curbed. Disinfection of the worm remains a challenge.
[Via F-secure]
“Why is it taking so long?” asked Huger. “That’s what we’re all asking.” He couldn’t recall an attack of this size with such a long lag time between the initial attacks and follow-on downloads of more malware to the hijacked systems.
[Via PcWorld]
Now We know this exploit is being patched as quickly as possible in some areas of the industry but that leaves the question? What isn’t being patched, I am guess the next stage of this worm is mutant into a new worm much like the way it tries to communicate to download new software or instruction. I believe it will be using a newer exploit so that it can infect even more computers. I also think it will be a botnet and so does others.
Microsoft released KB960714 to fix THE IE Problem
Comments Off
Inside understanding of win32.netsky.q
Comments OffNetsky.Q is a worm that spreads through e-mail. It is distributed as a 28,008 byte Win32 executable, compressed with PEtite, which drops a 23,040 byte DLL file. It also distributes itself inside ZIP archives.
I saw this on on the net and through we should talk about and let people know how you could get that the worm off your computer. It seems to be a self-replicating worm, it will continue to send out fake messages to people with the subject lines Like:
- Delivery Error
- Delivery Failure
- Delivery
- Mail Delivery failure
- Mail Delivery System
- Mail System
- Delivery
- Delivered Message
- Error
- Status
- Failure
- Failed
- Unknown Exception
- Delivery Failed
- Deliver Mail
- Server Error
- Delivery Bot
And with each message there is the reciepts email address at the end. This worm seems to be spreading like wildfire today. It is because people have not install
Are you patched, Secunia Says NO
Comments Off
Think you’ve got nothing to worry about, according to Secunia 98% of computers are not fully patched and are vulnerable to some kinda of attack.
If you have a system that is off of the Net you could use the Clone of Autopatcher Program to do it for you. You also need to update all your secondary programs such as Audacity, Open Office, and other programs that you use weekly.
Stop botnets in its tracks With a Firewall!
According to PC World and I’ll quote:
According to FireEye chief scientist Stuart Staniford, detection rates are so poor that, on average, only around 40 percent of security software can detect binaries during the period of greatest infectivity and danger, namely the first few days after a particular variant starts being used by botnet builders.
[via PC World]
In a recent virus storm, We have people finding my site because of a Good Firewall. No if he didn’t have anything but Windows firewall then it would of gotten through and you would not of known about it. So let’s talk about how to prevent botnet attacks. This is relatively easy and if you follow some common rules. You to could be less likely to be infected. I will say this most people don’t do these common tips and they should do them.
Windows update is getting a revision!
Comments Off“Over the next couple of months, we’ll be rolling out another infrastructure update to the Windows Update agent (client code),” said an unidentified Microsoft employee on the Windows Update team’s official blog. “This update makes it possible for users to install more than 80 updates at the same time.”
[via Computer World]
Now if your like me and have several computers who need to be updated at a given schedule, you sometimes worry about these updates that come along that might just break your system. I have been using a program call Offline Updater, which does what Autopatcher does really nicely. So why is Microsoft sending out this patch? Two reasons, one they want you to be able to update your operating System without hurting your system integrity.
Now lets talk about the integrity of having to reboot your system. You see, every time you reboot the system, it causes the system hardware some strain. It is something like having starting up a car, sooner or later you will have the starter go out, because of to much start up.
A Clone of Autopatcher!
Comments Off
Since Microsoft shut down Autopatcher, there hasnt been an easy way for technicians to install Microsoft Windows patches on a clients computer. Sure, they can go to the Windows Update site but sometimes an internet connection isnt always available, or it may just be painfully slow.
Enter “Offline Update”, a freeware tool that downloads all of the existing patches for the operating system you specify (choice of Windows 2000, XP and Server 2003) and creates an ISO file, for which you can later burn to a CD or DVD. Best of all, one you load the created disk into a computer, It will autorun the application. All you have to do is press Start and it will begin the patching process.How to use:
- Download Offline Update from the download link below and extract is somewhere
- Run the file in the root folder called “DownloadStarterGUI.exe”
- Choose what operating system and language you want patches for. You also have two options what type of disks you want. One disk per operating system or one disk for all operating systems. I recommend the cross platform version. Once you have chosen one, press Start









