ellarien: laptop (Computers)
[personal profile] ellarien
It seems worthwhile passing on this from our computing guru at work, not usually given to over-reaction:




You have may have heard about the latest problem: called the WMF vulnerability after the type of image file (.wmf) that is the main vector for infection. Infected computers are likely to become components in "Zombie Nets" used by Organized Crime for blackmail and Spam/virus propagation. Some commentators are predicting that the WMF vulnerability will become a major disaster over the next few days...

Please see http://isc.sans.org/diary.php?storyid=994 and http://www.infoworld.com/article/05/12/28/HNmalicioushackers_1.html?9809798
for details.

So what do we do about it? First: Microsoft has NOT released a patch for the vunerability (presumably they will, eventually). So our usual mechanisms for protecting Windows systems are ineffective against this
threat. (Hey. Microsoft: I'm working on a holiday, why aren't you?!?!).

Second: If you are comfortable with tinkering with your computer, please do the following two exercises:

Unregister the WMF DLL:
* Click Start, click Run, type "regsvr32 -u %windir%\system32\shimgvw.dll" (without the quotation marks), and then click OK.
* A dialog box appears to confirm that the un-registration process has succeeded. Click OK to close the dialog box.

Install an unofficial (but vouched for by SANS) patch:

http://handlers.sans.org/tliston/wmffix_hexblog13.exe

(Be sure to use "Add or Remove Programs" in the Control Panel to remove this patch once the Official Microsoft Patch arrives).

Third: If you are not comfortable with tinkering,

DO NOT surf the web beyond the [redacted] Intranet until this issue settles out.

DO NOT use any Instant Messenger (IM) program until this issue settles out.


I'm not happy about the fact that one of these steps disables Windows' image-previewing feature, but that should be temporary; the real patch is expected next week.
(will be screened)
(will be screened if not validated)
If you don't have an account you can create one now.
HTML doesn't work in the subject.
More info about formatting

If you are unable to use this captcha for any reason, please contact us by email at support@dreamwidth.org

Mission Statement

Reading, writing, plant photography, and the small details of my life, with digressions into science and computing.

Profile

Ellarien

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags