Search
Virus Protection

PC Tools Spyware Doctor w/ Antivirus v6.0 FREE DOWNLOAD and VIRUS SCAN      Stopzilla Download - Get Rid of Spyware, Viruses, and Adware Today!

System Tool Virus Removal Issued by Microsoft – Techy Kid


Microsoft has recently issued a security advisory to help ensure customers are aware that an update to the Microsoft Malware Protection Engine also addresses a security vulnerability reported to them.

According to user reports, when performing a virus scan, Microsoft’s Malware Protection Engine fails to process a specially crafted registry value correctly, enabling local attackers with restricted privileges to execute arbitrary code at system privilege level (privilege escalation). This attacker, in turn, could gain the same user rights as the LocalSystem account.

The Microsoft Malware Protection Engine is a part of several Microsoft anti-malware products that includes Microsoft Security Essentials (MSE), Windows Live OneCare, Windows Defender, Forefront Client Security and Forefront Endpoint Protection 2010 products as well as the Malicious Software Removal Tool.

Microsoft advises that if your version of the Microsoft Malware Protection Engine is equal to or greater than version 1.1.6603.0, then you are not affected by this vulnerability and do not need to take any further action. If you want to know how to verify the engine version number that your software is currently using, you can see the section, “Verifying Update Installation”, in Microsoft Knowledge Base Article 2510781.

Currently, a patch that is being deployed automatically via the virus and signature update mechanism will fix the issue. Typically, no action is required of enterprise administrators or end users to install this update, because the built-in mechanism for the automatic detection and deployment of this update will apply the update within the next 48 hours. However, the exact time frame will of course depend on the software used, Internet connection, and infrastructure configuration.

An updated version of the Malicious Software Removal Tool will become available on 8 March. The tool is only vulnerable when it is first executed by the system after having been downloaded via Windows Update. Attackers can’t exploit the hole by manually starting the tool.

Like my post? Please share:

Related articles

This entry passed through the Full-Text RSS service — if this is your content and you're reading it on someone else's site, please read our FAQ page at fivefilters.org/content-only/faq.php
Five Filters featured article: Collateral Damage - WikiLeaks In The Crosshairs.

Comments are closed.

  • Zlob Downloader Trojan
    Do You need help with the zlob trojan virus? Here we have compiled a little info for you about the dangers and effects of the computer trojan, and also have resources for removal tools. […]
  • Smitfraud C Will Hijack Your Background on Your Computer! Read This to Stop It!
    Has the image on your desktop changed to something that you are completely unfamiliar with? The virus known as Smitfraud C could be the cause of something like this. We have the solution to your problems! […]
  • Need to Remove Zlob? Read This First
    Zlob is no joke, and it can be a huge hassle to remove. If you have downloaded on your computer you will want to remove it quickly and have some sort of protection to keep it off. Read on for some tips and resources that I recommend... […]
  • SmitFraud Removal Tool - Know What is Real and Fake!
    Do you have smitfraud and a program called SmitFraudFixTool has been bugging you to download and buy a program to remove the Smitfraud Downloader? You Need to read this article to find out why this program is fake! […]
  • Virtumonde Virus - How Do I Remove Virtumonde Once and For All?
    Virtumonde is a horrible and very aggressive computer virus that is prevalent online today. If you have this virus you need to remove it as soon as you can to stop serious PC problems. […]

Powered by Yahoo! Answers