Tue, 03 Jan 2006

Screenshots: Sites harbor Windows Trojan

This could get ugly fast: note that M$ isn't even releasing a patch until next Tuesday, and when it does it will only cover XP. If you're still using Windows 98 or ME (and I know some readers of this blog are, because I see their signatures in my log files) I would strongly suggest upgrading now. Otherwise, you will not be protected, and your machine will be hijacked for some nefarious purpose - wouldn't you love to wake up to a visit from your local constabulary wondering why your machine has been emailing Russian kiddie porn to Saudi Arabia? And just wait until you have to explain to everyone in your address book why their machines have been attacked by a virus sent from yours. Or why they got the Russian kiddie porn from your address...

Firefox, Thunderbird, etc., won't save you on this one - this is a deep flaw in Windows itself. It must be fixed at the OS level - there's some stopgap measures you can take mentioned in the article below (and I've already taken them on my sole remaining Windows box), but essentially, until M$ releases it's proven patch, it's truly 'caveat surfer' out there.

Simply by visiting these sites using a vulnerable Windows PC could cause an infection, Websense says.

(link) [CNET News.com]

/Technology | 0 writebacks | permanent link


Notes: If you put a <mailto:> link in the URL field your address will not be mangled: this could be a bad idea as your email address could be easily harvested by bots designed for SPAM. The comments field should now format correctly for line feeds and carriage returns: when you hit the 'Enter' or 'Return' keys in your comment it should break to a new line. The text should wrap cleanly. Please let me know if it doesn't. No HTML tags will pass through - entering links seems to be the main cause of comment SPAM. Also, please be sure that Javascript is enabled in your browser before attempting to post a writeback. Sorry for any inconvenience, but this really helps cut down on the amount of comment SPAM I have to deal with.
 Title: (optional)
Save my Name and URL/Email for next time