Re: Home PC got hit hard

From: Sickputer (Sickputer_at_discussions.microsoft.com)
Date: 01/16/05


Date: Sat, 15 Jan 2005 20:11:02 -0800


"Tom Pepper Willett" wrote:

> You can also download and install the patch they offer to correct this.

The Spybot Tx 1.31 DSO "patch" didn't work for me. It has been removed from
Kolla's website as it had bugs and they admitted in email it was beta.
Apparently this flaw has a low priority....it still shows the 5 DSO exploits
in Spybot 1.4 beta 2 on my machine unless I exclude the DSO detection. A
properly MS security patched Windows machine doesn't have any DSO exploit
holes and the flaw in Spybot can be safely fixed by excluding the detection:

The DSO EXPLOITS are incorrectly "fixed" by Spybot S&D so they show up
again on the next scan. If you are up to date on your Microsoft updates
and patches then you don't have to worry about the DSO EXPLOITS, as that
particular "weakness" has been corrected.

To get rid of the DSO EXPLOITS false flags you can set Spybot S&D to
ignore them:
-Open Spybot S&D, click on MODE/ Advanced Mode (answer yes)
-Click on SETTINGS.
-Click on IGNORE PRODUCTS
-Click on SECURITY and/or SECURITY tab
-Scroll down and Check the DSO EXPLOIT box

BTW...Spybot 1.4 beta 2 is available for the hardy at:

http://www.softpedia.com/progDownload/SpyBot--Search--Destroy--beta-Download-1865.html

HTH,

Russell



Relevant Pages

  • Re: IEXPLORE.exe has generated errors and will be closed by Windows
    ... If you have been installing updates for Windows and IE, you can have Spybot ... Do a google search for +spybot +dso +exploit. ... > My operating software is Windows 2000 Professional ...
    (microsoft.public.windows.inetexplorer.ie6.browser)
  • Re: DSO Exploit
    ... DSO Exploit means a lot of different ... It looks to me like Spybot is just ... Installing IE6 and Office XP / 2002 or the Outlook Security Update ... Because of these attack vectors, you're probably not going to be too likely ...
    (microsoft.public.security)
  • Re: DOS Exploit Executing programs
    ... > be forwarded to Spybot or Microsoft. ... > Microsoft Internet Explorer and reported it to the public. ... > dynamically inserted HTML fragments at any point in the ... > sources (DSO) for Data Binding can be almost anything, ...
    (microsoft.public.windowsxp.hardware)
  • Re: CD-TRAY
    ... | The DSO exploit was patched long ago by IE Cumulative Update ... the makers of Spybot will soon fix this bug. ... | Ignore Products> Security> DSO Exploit, to turn off the false alarm. ...
    (microsoft.public.security.virus)
  • Re: DSO Exploit glitch in Spybot?
    ... Basically what's happening is that Spybot is finding that the security setting ... it's the DSO EXPLOIT reg-entry part at the bottom ... Data source object exploit (Registry change, ...
    (microsoft.public.windowsxp.help_and_support)