Location: Wetpaint Alerts

Discussion: malware--flash security fixReported This is a featured thread

Showing 7 posts

Posted Anonymously
malware--flash security fix
Jan 23 2010, 11:40 AM EST | Post edited: Jan 23 2010, 11:40 AM EST
Can I get more specific directions to find the security fix from Flash for the advertisement-related malware problem? A security bulletin # or something searchable would be a great help to me.
Do you find this valuable?    
CryingDove
CryingDove
1. RE: malware--flash security fix
Jan 23 2010, 12:07 PM EST | Post edited: Jan 23 2010, 12:11 PM EST
As one of the first to experience the "Clickjacking" with some flash ads, I did a lot of research on the matter. Here are some sites you may want to view to get a better understanding of the matter.

Here is a bulletin the Adobe put out once before with regards to "Clickjacking". This is from October of 2008
http://www.adobe.com/support/security/advisories/apsa08-08.html



Hackers exploit Adobe Reader flaw via comic strip syndicate 12/18/2009
http://blog.washingtonpost.com/securityfix/

List of Adobe Security Bulletins and Advisories latest 1/19/2010
http://www.adobe.com/support/security/

Here is a link to download the latest version of Adobe Flash Player
http://get.adobe.com/flashplayer/
or
http://get.adobe.com/shockwave/.
1  out of 1 found this valuable. Do you?    
chigginbotham
chigginbotham
2. RE: malware--flash security fix
Jan 23 2010, 12:34 PM EST | Post edited: Jan 23 2010, 12:34 PM EST
Thanks! This is a great help. I've got a whole classroom of students using WetPaint and some have managed to get the malware. Do you find this valuable?    

Posted Anonymously
3. RE: malware--flash security fix
Jan 30 2010, 7:59 AM EST | Post edited: Jan 30 2010, 7:59 AM EST
i have the same problems with my site
http://paynterlandscaping.wetpaint.com
Do you find this valuable?    

anastasia
4. RE: malware--flash security fix
Feb 2 2010, 10:45 PM EST | Post edited: Feb 2 2010, 10:45 PM EST
On Jan 12, Adobe released an update to address a critical vulnerability affecting Adobe Reader and Acrobat 9.2 and earlier versions that could cause a crash and potentially allow an attacker to take control of the affected system as described in Security Advisory APSA09-07.

As of January 12, 2010, Adobe released Adobe Reader and Acrobat 8.2 and 9.3, which resolved the Reader and Acrobat issues; which is how I think I was attacked. I was running Adobe Reader 9.2 My PC was affected by malware while signing in to edit my wetpaint site yesterday. I don't think my problem came through the Flash player I was running the latest release, Flash 10,0,42,34. Adobe said the issue affected Flash Player version 10.0.32.18 and earlier.
Do you find this valuable?    
CryingDove
CryingDove
5. RE: malware--flash security fix
Feb 2 2010, 11:10 PM EST | Post edited: Feb 2 2010, 11:10 PM EST
Can you describe the malware you saw? Or what the ad at the top of the page looked like. I think this would benefit WP in trying to track down the cause. But you bring to the table a key point, in that you experienced an attack after having the security patch installed for the flash-player. I am not certain if WP utilizes Adobe reader for management of the wikis. On your wiki do you have any widgets from other sources to embed pdf files on your wiki page?

Nonetheless, the information that you have supplied is valuable. And if the ad or malware description can be supplied, it would benefit us all.

Do you find this valuable?    

anastasia
6. RE: malware--flash security fix
Feb 4 2010, 7:33 PM EST | Post edited: Feb 4 2010, 7:33 PM EST
"Can you describe the malware you saw? Or what the ad at the top of the page looked like. I think this would benefit WP in trying to track down the cause. But you bring to the table a key point, in that you experienced an attack after having the security patch installed for the flash-player. I am not certain if WP utilizes Adobe reader for management of the wikis. On your wiki do you have any widgets from other sources to embed pdf files on your wiki page?

Nonetheless, the information that you have supplied is valuable. And if the ad or malware description can be supplied, it would benefit us all.

"
The malware I picked up was "AntiVirus Soft" a fake antivirus program that pretends to be an antivirus scanner. It's a trojan that simulates a system scan and lists false infections to make you think that your computer is seriously compromised. The scan results are absolutely false. The only real infection is Anti-virus Soft itself. It will constantly ask you to purchase the program in order to remove the infections and to protect yourself.

I removed it using the techniques described here:
http://deletemalware.blogspot.com/2010/01/how-to-remove-antivirus-soft-fake.html
It was pretty persistent and took a number of repeated scans to remove.
Do you find this valuable?    

Related Content

  (what's this?Related ContentThanks to keyword tags, links to related pages and threads are added to the bottom of your pages. Up to 15 links are shown, determined by matching tags and by how recently the content was updated; keeping the most current at the top. Share your feedback on Wetpaint Central.)