Re: Spyware method of infection? And is it still present?



Yes, the hijackware forums are full of this stuff.

Go back to the Security Advisory page.

Fully expand Suggest Actions > Workarounds subsection to see steps you can
take to "help block known attack vectors".

Additional Resources:

Protect Your PC
http://www.microsoft.com/athome/security/protect/

Microsoft Security Home Page
http://www.microsoft.com/security/default.mspx
--
~PA Bear


Paul Baker wrote:
You know what! I just read this security advisory:
http://www.microsoft.com/technet/security/advisory/912840.mspx

I am pretty certain this is what let my spyware in! I recognize the
symptoms (this WMF thing).

And it sounds like it is still being researched and that there is no fix
for it? That is rare that an exploit is being actively exploited before
Microsoft both know about it and fix it. A scary day indeed.

Microsoft's suggestions would not have helped me. In summary:
Run various security software - done, didn't help much
Don't follow scary links in email - done, they were unscary links in
search results

Paul

"PA Bear" <PABearMVP@xxxxxxxxx> wrote in message
news:%23S8u5A0CGHA.1288@xxxxxxxxxxxxxxxxxxxxxxx
> YW & thanks for posting back.
>
> Paul Baker wrote:
> > Yes, I did, as according to your instructions. Thanks :)
> >
> > Paul
> >
> > "PA Bear" <PABearMVP@xxxxxxxxx> wrote in message
> > news:uz3nDL$BGHA.2920@xxxxxxxxxxxxxxxxxxxxxxx
> > > Make *certain* you uninstall any previous versions, Paul.
> > > --
> > > ~PA Bear
> > >
> > > Paul Baker wrote:
> > > > Yeah, I had version 1.4 and should have had 5.0 (I think). I bet
> > > > that's what
> > > > happened. Stupid automatic updating (not).
> > > >
> > > > Paul
> > > >
> > > > "Paul Baker" <paulb@xxxxxxxxxxxxxxxxxxxxxxx> wrote in message
> > > > news:uICDA$WBGHA.3896@xxxxxxxxxxxxxxxxxxxxxxx
> > > > > That could be a bit of a problem if Java cannot be relied upon
> > > > > for security as much as Internet Explorer can.
> > > > >
> > > > > After all, security is only as strong as the weakest link. Throw
> > > > > some Java
> > > > > on a web page, and Java becomes the last line of defense.
> > > > >
> > > > > Paul
> > > > >
> > > > > "PA Bear" <PABearMVP@xxxxxxxxx> wrote in message
> > > > > news:eV8oSyOBGHA.2912@xxxxxxxxxxxxxxxxxxxxxxx
> > > > > > > I have Java automatically update itself. I hope that is
> > > > > > > working!
> > > > > >
> > > > > > You may be very suprised!
> > > > > > --
> > > > > > ~PA Bear
> > > > > >
> > > > > >
> > > > > > Paul Baker wrote:
> > > > > > > I have Java automatically update itself. I hope that is
> > > > > > > working!

.


Quantcast