Zero Day For IE7 Being used in the wild.
Comments OffIt looks like IE7 patches are being used right now in the wild. According to TrendMicro:
HTML_DLOADER.AS exploits the CVE-2009-0075 vulnerability, which is already addressed by the MS09-002 security patch released last week. On an unpatched system though, successful exploitation by HTML_DLOADER.AS downloads a backdoor detected as BKDR_AGENT.XZMS.

This is the next step to prevent yourself from getting caught with your pants down so to speak, you need to patch all systems that have internet access. I still like the Autopatcher because it will do the job with very little input from the user. It also makes it easier for people to patch big systems. You should also consider installing some Free Anti-virus software to help protect the systems you do have.
Barack Obama isn’t leaving the White House!
Comments OffIn a story from Sophos, some e-mails are going around saying that Barack Obama is not going to be president or that he will not be inauguration. Sopho’s also makes a great comparison for the two sites and it does try to look like the official site.

Which if you click on the “Continue Reading” link it will try to send a file “Speech.exe” which is W32/Waled-Gen or Mal/WaledPak-A. It is a fake site to look like the real site, it is never a good idea on clicking on links that looks real. For those of you who want to watch the Inauguration online I would suggest Hulu:
You can watch it happen when it happens. So sit back relax and enjoy the show!!
Upcoming Patch Tuesday
Update for Windows Server 2008, Windows Vista, Windows Server 2003, and Windows XP
Install this update to resolve an issue that is caused by revised daylight saving time laws in many countries. This update enables your computer to automatically adjust the computer clock on the correct date in 2008. After you install this item, you may have to restart your computer. This update is provided to you and licensed under the Windows Server 2008 License Terms.
Update for Windows Server 2008 and Windows Vista
Install this update to resolve a set of known application compatibility issues with Windows Server 2008. After you install this item, you may have to restart your computer.









