Top Tech News

CIO Today Network Sites:   Top Tech News  |   CIO Today   |   Mobile Tech Today   |   Data Storage Today
News & Product Reviews for Tech Leaders
Thursday, July 29th 
Home
Network Security
Microsoft/Windows
Linux/Open Source
Apple/Macintosh
Wireless Tech
World Wide Web
Tech Trends
Data Storage
Software
Hardware
Communications
Spam & Hackers
Chips & Processors
Cloud & Virtualization
Personal Tech
 
Free Newsletters
Top CIO News
 
Mobile Tech Today
 

Advertisement
Network Security

Microsoft Fights Bugs, Corruption and Overload Issues

Microsoft Fights Bugs, Corruption and Overload Issues
January 9, 2009 12:18PM

Bookmark and Share
Microsoft has been busy fielding reports about an aggressive worm dubbed Downadup before Patch Tuesday, fixing an MP3 corruption issue in Windows 7, and managing overloaded servers as a flood of visitors try to download the latest Windows 7 beta, which CEO Steve Ballmer made public, calling it "Vista a lot better."


Microsoft is having quite a week. The company is seeing reports of vulnerabilities before Patch Tuesday, fixing data Relevant Products/Services-corruption issues, and getting flooded with visitors trying to download the beta version of Windows 7.

First up, security Relevant Products/Services. If you didn't patch for the Microsoft Windows Server RPC Handling Remote Code Execution Vulnerability last year, you could be targeted this year through a vulnerability that can be spread through USB ports.

Security researchers are warning of a worm dubbed Downadup. It appeared on Dec. 30 and can not only propagate by exploiting the vulnerability, but also by infected USB sticks and by exploiting weak passwords, according to Symantec.

The W32.Spybot, W32.Randex, and W32.Mytob variants all used almost identical methods to spread, the company said, but the new variant requires more effort to protect corporate networks.

Automatic Execution

"W32.Downadup.B creates an autorun.inf file on all mapped drives so that the threat automatically executes when the drive is accessed. The threat then monitors for drives that are connected to the compromised computer in order to create an autorun.inf file as soon as the drive becomes accessible," Symantec Security Response wrote on the company's blog on Friday.

The worm also monitors DNS requests to domains containing certain strings, and blocks access to those domains so it will appear that the network request timed out. According to Symantec, this means infected users may not be able to update their security software from those Web sites. That's a problem, the company warned, because worm authors generally dish out new variants constantly.

Symantec said it's seeing considerable detections of both variants of W32.Downadup and W32.Downadup.B. The infections are geographically widespread, with the highest infection rates typically in countries with high rates of computer and Internet usage.

"DownAdUp is reportedly getting worse in parts of Europe and Asia. We expect this worm family to slowly crawl through networks as it spreads through multiple vectors," said Ken Dunham, director of global response at iSight Partners. "The use of updated antivirus and patches against MS08-067 and other vulnerabilities will help to mitigate such attacks. Policies in managing thumb drives may also help in lowering risk Relevant Products/Services for risks such as this worm and autoruns."

Getting Your Hands on Windows 7

Microsoft has released a fix for the Windows 7 MP3 corruption issue. The problem was first announced earlier this week. The issue is with Windows 7 build 7000, which was leaked a couple of weeks ago. When consumers play back MP3s using Windows Media Player 12, the data corrupts.

Users may have a hard time downloading the fix, though, because so many others are rushing to Microsoft's Web site to download the beta of Windows 7. Microsoft's servers are reportedly overloaded with visitors trying to download the new code. Microsoft CEO Steve Ballmer unveiled the public beta on Thursday, calling it "Vista a lot better."

However, browsers are turning up errors such as "connection interrupted" or "Internet Explorer cannot display this webpage." Other would-be visitors are getting a blank screen. Still others report very slow response times when they do gain access to the site. The traffic rose even before the beta was posted. Plans were to go online at 3 p.m. Eastern time.

Tell Us What You Think
Comment:

Name:

Advertisement



 Network Security
1. Keeping Your Computer and Data Safe
2. Sunbelt Software Acquired by GFI
3. Virtual Personal Networks for Security
4. Cyber Command Logo Has a Secret
5. NSA Will Monitor Systems for Attacks


advertisement


 Most Popular Articles
1. Sunbelt Software Acquired by GFI
2. Verizon Says Heavy Demand Caused Droid X Shortages
3. Jobs Offers Free Cases, Scolds Media for 'Antennagate'
4. Microsoft Windows 2000, XP SP2 Reach End of Life
5. Rackspace and NASA Launch Open-Source Cloud Platform

Have an informed opinion on this story?
Send a Letter to the Editor.
We want to know what you think.
Send us your Feedback.

 Related Topics  Latest News & Special Reports

  HP Plans Windows, webOS Tablets
  Android, Apple Mobile Apps Leak Data
  iOS 4 Could Be Apple's 'Vistagate'
  Motorola Smartphone Shipments Up
  Amazon Offers Smaller, Lighter Kindle

 Technology Marketplace
Cloud & Virtualization
Rackspace ®: The World's Leader in Hosting & Cloud Computing
 
Communications
Optimize 802.11n performance with Cisco CleanAir technology.
 
Compliance
Stand out from other IS Professionals and increase your earning potential.®.
Manage limitless content today—read EMC’s 15-minute guide to ECM.
 
Customer Service
Rackspace ® Managed Hosting - Experience Fanatical Support ®
 
Data Storage
Isilon scale-out storage is simple. Simple is smart.
 
Enterprise I.T.
Rackspace ®: The World's Leader in Hosting & Cloud Computing
Stand out from other IS Professionals and increase your earning potential.®.
 
Enterprise Software
Manage limitless content today—read EMC’s 15-minute guide to ECM.
 
Mobile Gadgets
White Paper Better your mobile work life with an enterprise digital assistant.
 
Mobile Industry News
Better your mobile work life with an enterprise digital assistant
 
Mobile Phones
Better your mobile work life with an enterprise digital assistant
 
Wireless Connectivity
Optimize 802.11n performance with Cisco CleanAir technology.
 
Navigation
Top Tech News
Home/Top News | Network Security | Microsoft/Windows | Linux/Open Source | Apple/Macintosh | Wireless Tech | World Wide Web
Tech Trends | Data Storage | Software | Hardware | Communications | Spam & Hackers | Chips & Processors
Cloud & Virtualization | Personal Tech
Also visit these Enterprise Technology Sites
Top Tech News | CIO Today | Mobile Tech Today | Data Storage Today

Services:
FreeNewsFeed | Free Newsletters | Free Whitepapers | XML/RSS Feed

About CIO Today Network | How To Contact Us | Article Reprints | Services for PR Pros (In partnership with NewsFactor) | Top Tech Wire | How To Advertise

Privacy Policy | Terms of Service
© Copyright 2000-2010 Top Tech News. All rights reserved. Article rating technology by Blogowogo. Member of Accuserve Ad Network.