Upcoming Patch Tuesday for February 10, 2009
Comments OffMicrosoft Today has released the list of patches for February. Here’s the List of things they will patch:
- Internet Explorer — Remote Code Execution (Require restart) [ CVE-2009-0075 CVE-2009-0076 ]
- Exchange — Remote Code Execution (No Restart Required) [CVE-2009-0098 CVE-2009-0099]
- SQL — Remote Code Execution (May Require Restart) [CVE-2008-5416]
- Visio — Remote Code Execution (May Require Restart) [ CVE-2009-0095, CVE-2009-0096 and CVE-2009-0097]
The list of affected operating configurations includes Windows 2000, Windows XP (x86 and x64), Windows Server 2003 (x86 and x64), Windows Vista (x86 and x64), and Windows Server 2008 (x86 and x64). Microsoft Exchange Server 2000, 2003, and 2007, Microsoft SQL Server 2000 and 2005, as well as Visio 2002, 2003, and 2007 are also affected.
[Via Arstechnica]
We got several Non-critical updates. Here’s the List of them, some of these are monthly updates and some are just interesting to look at:
‘Life Owner’ won’t delete your data!
I received this email from a friend and wanted to talk about this:
VERY IMPORTANT , PLEASE READ THIS
Anyone-using Internet mail such as Yahoo, Hotmail,
AOL and so on.This information arrived this morning,
Direct from both Microsoft and NortonPlease send it to everybody you know who has
access to the Internet.You may receive an apparently harmless e-mail titled ‘Mail Server Report’
If you open either file, a message will appear on your screen saying:
‘It is too late now, your life is no longer beautiful.’Subsequently you will LOSE EVERYTHING IN YOUR PC,
And the person who sent it to you will gain access to your
name, e-mail and password.This is a new virus which started to circulate on Saturday afternoon.
AOLhas already confirmed the severity, and the anti virus software’s are not capable of destroying it.The virus has been created by a hacker who calls himself
‘life owner’.PLEASE SEND A COPY OF THIS E-MAIL
TO ALL YOUR FRIENDS, And ask them to
PASS IT ON IMMEDIATELY!THIS HAS BEEN CONFIRMED BY SNOPES.
http://www.snopes.com/computer/virus/mailserver.asp
Removing Win32/Bagle.HE worm
Here is another virus that seems to be spreading lately. From the looks of it, it sees to be another email worm. Here is what eset says:
Aliases
Email-Worm.Win32.Bagle.gt (Kaspersky), W32/Bagle.gen (McAfee), Trojan.Tooso!gen (Symantec)
When executed the worm copies itself in the following locations:
- Documents and Settings\All Users\Application Data\hidn\
hldrrr.exe - Documents and Settings\All Users\Application Data\hidn\
hidn2.exe
In order to be executed on every system start, the worm sets the following Registry entry:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\drv_st_key
Win32/Bagle.HE worm is a “threat” that appears in security scans by fake antispyware WinDefender 2008.
The danger of Win32/Bagle.HE worm is supposed to scare you into wasting $49.95 on WinDefender 2008.
Unless you like getting ripped off, don’t download the software the Win32/Bagle.HE worm popup links to. You’re not really infected with Win32/Bagle.HE worm — you’re infected with scamware that you need to remove.
I’ll show you how to get rid of Win32/Bagle.HE worm and WinDefender 2008, for free.
Inside understanding of win32.netsky.q
Comments OffNetsky.Q is a worm that spreads through e-mail. It is distributed as a 28,008 byte Win32 executable, compressed with PEtite, which drops a 23,040 byte DLL file. It also distributes itself inside ZIP archives.
I saw this on on the net and through we should talk about and let people know how you could get that the worm off your computer. It seems to be a self-replicating worm, it will continue to send out fake messages to people with the subject lines Like:
- Delivery Error
- Delivery Failure
- Delivery
- Mail Delivery failure
- Mail Delivery System
- Mail System
- Delivery
- Delivered Message
- Error
- Status
- Failure
- Failed
- Unknown Exception
- Delivery Failed
- Deliver Mail
- Server Error
- Delivery Bot
And with each message there is the reciepts email address at the end. This worm seems to be spreading like wildfire today. It is because people have not install
Internet Explorer still has a Vulnerability after Tuesday Patch!!
Comments OffI just read this on several blogs and thought I’d share the details with you, it seems that Microsoft didn’t know there was a problem with this Bug/Vulnerability. Computer world has a great article and says this:
“The updates Microsoft released yesterday do not address this possible vulnerability,” a Microsoft spokesman said today in an e-mail reply to questions, “but I can tell you that Microsoft is investigating these new public claims of a possible vulnerability in Internet Explorer.”
[Via ComputerWorld]
I can only hope that Microsoft fixes this Vulnerability soon, I would take a guess that they will try to get this out on the patch cycle if not they will push it out after. Some things to remember with IE(Internet Explorer) is only use it with Microsoft Updates. I also Suggest downloading FireFox and checking out my Anti-virus and Anti-Spyrware Page for ways to prevent from getting a virus.










