Articles Archive for 21 July 2009

Worm:VBS/HeadTail.A
Posted in F-Secure on 21 July 2009

F-Secure Antivirus products had a brief false alarm with this detection. A clean file called avh_fsav_800_bin was detected as being infected on 21st of July 2009. This has now been fixed. If the avh_fsav_800_bin file was removed, it will be recreated automatically and there is no need for further action by the user. We apologize for any inconvenience.

More Zero-Day Exploits for Firefox and IE Flaws
Posted in Information and Removal on 21 July 2009

Earlier today, Senior Threat Researcher Joseph Reyes spotted several malicious script files that exploited Mozilla Firefox and Microsoft Internet Explorer vulnerabilities:

JS_DIREKTSHO.B exploits a vulnerability in Microsoft Video Streaming ActiveX control to download other possibly malicious files.
JS_FOXFIR.A accesses a website to download JS_SHELLCODE.BV. In turn JS_SHELLCODE.BV exploits a vulnerability in Firefox 3.5 to download WORM_KILLAV.AKN.
JS_SHELLCODE.BU exploits [...]

Post from: TrendLabs | Malware Blog - by Trend Micro

More Zero-Day Exploits for Firefox and IE Flaws

Outpost 6.7 now provides extended protection and stability for Windows 7 RC users
Posted in Information and Removal on 21 July 2009

After a recent notification of Outpost 6.7 RC, we are pleased to announce the final release of the new iteration. The latest versions of Outpost 2009 provide beta support of Windows 7.

In line with the company’s history of keeping track with Microsoft’s operation systems (including Vista SP2 and Windows Server 2008 SP2 in Outpost 6.5.5), Agnitum has today delivered security solutions for users of Windows 7 RC even before the OS is released to the general public.

Among the improvements in Outpost 6.7 are:

  • support for Windows 7 (release candidate) together with stable operation on latest service packs for Vista and Windows Server 2008 (both 32-bit and 64-bit)
  • enhanced anti-malware engine and heuristic analyzer for better detection
  • improved self-protection and Host Protection anti-leak (addition of new filters for driver loads)
  • advanced content filtering now fully compatible with P2P clients and rich-media websites
  • dramatic reduction in false positives from Attack Detector while ports scanning
  • faster performance under Vista SP1/SP2 and 64-bit Windows
  • more stable network operations for users with Internet Connection Sharing, shared printers and workstations using VMWare
  • more suitable settings for Auto-Learn and Game modes

Outpost 6.7 also offers improved compatibility with the following third-party applications:

  • security tools – Windows Firewall, Vista UAC, Kaspersky Antivirus/Internet Security
  • browsers – revamped Outpost QuickTune plug-in for Internet Explorer 8 on 64-bit Windows
  • email clients – The BAT!, Incredimail
  • P2P clients – EMule, mTorrent
  • translation tools – ABBYY Lingvo X3, TranslateIt!
  • music and screen reading software – AIMP, Imeem.com, Jaws
  • all video players and PC games working in full-screen mode

Unlike other vendors who have moved to a 15-day time limit on trial versions, Agnitum continues to offer a full 30 days of evaluation time for users to put Outpost products through their paces.

Trial versions of the current Outpost 6.7 products can be downloaded at www.agnitum.com/products/

Pavel Goryakin
Agnitum