Announcement

Collapse
No announcement yet.

Picture/Image Viruses! Microsoft Windows User

Collapse
This topic is closed.
X
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Picture/Image Viruses! Microsoft Windows User

    Well, just giving everyone here a heads up on new exploit on Windows based systems.

    http://money.cnn.com/2006/01/03/technology/windows_virusthreat/index.htm?cnn=yes
    Huge virus threat rocks Microsoft
    Report says a newly discovered flaw could expose hundreds of millions of Windows PCs to virus.
    January 3, 2006: 3:42 PM EST


    NEW YORK (CNNMoney.com) - The new year is off to a rocky start at Microsoft, where security experts are scrambling to confront a potentially massive virus threat to Windows PCs.

    According to a report Tuesday in the Financial Times, the latest vulnerability involves a flaw which allows hackers to infect computers using programs inserted into image files. The threat was discovered last week. But it mushroomed over the weekend, when a group of hackers published the source code they used to exploit the flaw.

    What makes this threat particularly vicious, according to the Times, is that unwitting victims can infect their computers simply by viewing a web page, e-mail, or instant message that includes a contaminated image. That differs from most virus attacks, which require a user to actually download an infected file.

    "The potential [security threat] is huge," Mikko Hypponen, chief research officer at F-Secure, an antivirus company, told the Times. "It's probably bigger than for any other vulnerability we've seen.

    "Any version of Windows is vulnerable right now," said Mr. Hypponen, including every Windows system shipped since 1990.

    Microsoft said a security patch would be available for the problem on Tuesday, January 10 after it has passed rigorous testing procedures.

    Because of the severity of the threat, the SANS Institute, a computer security group, has released a patch for the vulnerability until Microsoft's fix is available next week. It is available here.

    Shares in Microsoft (up $0.78 to $26.93, Research) rose nearly 3 percent in mid-day trade on Nasdaq.

  • #2
    Re: Picture/Image Viruses! Microsoft Windows User

    Quick Background:

    The active exploitation of a very serious vulnerability in all versions of Windows was discovered in late December.

    Word of this spread rapidly through the hacker community — many of whom where presumably on holiday vacation from school, bored, and looking for something to do.

    So several days later nearly one hundred different instances of exploitation of this newly discovered vulnerability had been found.

    Note that this is not a "new vulnerability" — it (and perhaps other similar bugs) have been lying unknown in Windows since 1991. What's "new" is the discovery of this long-present vulnerability in Windows' metafile processing.

    Almost immediately there were reports of an MSN Messenger worm, and now F-Secure is reporting that "Happy New Year" SPAM eMail is carrying an exploit.

    Anti-Virus vendors quickly updated and began pushing out their A-V signature files. These have been effective, but a new very flexible exploit generation tool has appeared that's able to create so many different variations of the exploit that A-V signatures are having trouble keeping up.

    Microsoft responded with an acknowledgement of the problem which included a very weak workaround (the shimgvw.dll unregistration) that provides very little protection. Theirs is not a cure, and it is not known how long the Windows user community will now be waiting for a true patch from Microsoft.

    Ilfak Guilfanov produced a highly-effective true patch which successfully suppresses all known exploitable vulnerabilities for anyone using Windows 2000, XP, server 2003, or 64-bit XP. No patch is available for Windows 95, 98, ME or NT, and none is expected to be forthcoming. But anyone using Windows 2000, XP, server 2003, or 64-bit XP should IMMEDIATELY install Ilfak's exploit suppressor into all of their systems.

    You can get the patch from this link
    also on the page is an in depth description of the problem and some solutions to help protect yourself until microsoft come up with a patch. Download the file from teh link in the green box and restart your computer. It wouldn't hurt to follow the instruction sin the red box either to help you be protected. Also my friend told me to go to the folder options in windows explorer and change the "open with" command on wmf's from your default picture viewer to note pad, that way you know that the virus is possibly in that image file opened in note pad.

    Hope this helps

    At the moment PS2 users are not affected, its just for all windows users. It doesn't hurt to keep your virus definitions up to date as well as your spyware software i.e. adaware, spybot s&d etc.

    Comment


    • #3
      Re: Picture/Image Viruses! Microsoft Windows User

      Nothing new here. *grins*

      But seriosly, keep your 'doze updated, Firewall & av-guard up-to date an ON. and you
      re fine.

      One thing that could hurt is if wormies/viruses cause major ddos and take root DNS-servers offline as happened few years ago.

      Bah, true geek uses pure ip-addresses anyway.

      Which FF Character Are You?

      Comment


      • #4
        Re: Picture/Image Viruses! Microsoft Windows User

        Would this be the file aprox 1,343KB in size or something that shows up every image search I do on p2p programs? Its always named after porny things and shows up even when Im not searching for images that would even be relatable to porn lol.

        Oh and that Windows Hotfix on their site wont work for me o.O Can't open the package or something.
        75 Mnk Sam | 70 Drk | 40 Blm | 37 Nin Rng Thf War
        Woodworking 91.9+2
        ZM:Complete CoP:Complete ToAU:27

        Comment


        • #5
          Re: Picture/Image Viruses! Microsoft Windows User

          Originally posted by Aeolus
          Would this be the file aprox 1,343KB in size or something that shows up every image search I do on p2p programs? Its always named after porny things and shows up even when Im not searching for images that would even be relatable to porn lol.

          Oh and that Windows Hotfix on their site wont work for me o.O Can't open the package or something.
          I'm suprised as it worked ok for me, windows now has an update to counter this and all av software and spyware kilelrs have rules to help identify and quarantine this now.

          Comment


          • #6
            Re: Picture/Image Viruses! Microsoft Windows User

            Off topic, but anyway..

            You know, for such an expensive piece of software that windows is, you'd think they would get a grip already, microsoft are such bs'ers...

            Tho no system is perfect, no system costs ur face and ur spine and fails anyway, and if it does, it is usually replaced or removed as a whole, and dont make the replacement 10x as costy, just so it fails like the previous installment like it has been happening ever since they made windows.

            Yea... piracy for life, who can blame us?
            signatures are for pussies mew mew mew, here's mine

            Comment


            • #7
              Re: Picture/Image Viruses! Microsoft Windows User

              dunno, but i pirated every windows i've ever used. so...
              There are painters who transform the sun into a yellow spot,
              but there are others who with the help of their art and their intelligence
              transform a yellow spot into the sun.

              - Pablo Picasso

              Comment


              • #8
                Re: Picture/Image Viruses! Microsoft Windows User

                Originally posted by Jei
                dunno, but i pirated every windows i've ever used. so...
                That is part of the reason windows still exists, people do warez, and when they get old enough to work only thing they can use is windows.

                and the squirrel-wheel continues.

                Which FF Character Are You?

                Comment


                • #9
                  Re: Picture/Image Viruses! Microsoft Windows User

                  The funny thing is that this problem has exiting as far back as windows 3.1!!, the only reason its raised its head now is because someone has just discovered it and exploited it.

                  with computers the best thing to realise is its not secure, do your best to secure yourself by having an up to date Virus software and spyware/malwre detectos and scrubbers and a fire wall. Therre will be more thigns like this discovered soon as once they find one "old flaw" they'll actively start searching for new ones to exploit. just remember Microsoft has already taken over the world, no one can say they havn't interacted or saw anything in a day that wasn't to do with microsoft (unless of course you lock yourself in an empty room with no windows in a building designed before 1975 (i.e. before CAD systems were invented) etc. etc.

                  Bill gates has a monopoly in everthing, which is why hackers hate him, so anything microsoft produce will have hackers doing all they can to exploit it. (one note to know is that 60% of all virus's and hacks for the windows systems are done by ex employees!)

                  additional.... I have been using windows since 1989 when windows 2.11 (also known as windows 286) was first introduced when my father was given a pc to work from home with (it cost £2000 for a 286 in 1989!!)
                  Last edited by Jarre; 02-16-2006, 04:36 AM.

                  Comment


                  • #10
                    Re: Picture/Image Viruses! Microsoft Windows User

                    Originally posted by Jei
                    dunno, but i pirated every windows i've ever used. so...
                    Same.

                    NIN75/RNG75/RDM75
                    SMN66/COR66/WAR55/BRD55/DRK51

                    Stephen King's Wizard and Glass: Fools are the only folk on earth absolutely guaranteed to get what they deserve.

                    Comment


                    • #11
                      Re: Picture/Image Viruses! Microsoft Windows User

                      i wonder if they will ever make a port of ffxi or any other mmo to linux. i know for games like quake, they had linux versions.
                      Omni@Remora: NIN75 RNG75 MNK75 COR75 BST64 BRD53
                      ♪♫ San d'Oria Complete ♪♫ ZM Complete ♪♫ CoP Complete ♪♫ AM Complete ♪♫

                      Comment


                      • #12
                        Re: Picture/Image Viruses! Microsoft Windows User

                        Originally posted by Omni-Ragnarok
                        i wonder if they will ever make a port of ffxi or any other mmo to linux. i know for games like quake, they had linux versions.
                        Usually there isn't not wide enough userbase wanting these games to make it worth it to port to linux.

                        Cedega seems to support FFXI

                        Which FF Character Are You?

                        Comment

                        Working...
                        X