Sign in or 

|
Posted Anonymously |
|
|
CryingDove |
1. RE: malware--flash security fix
Jan 23 2010, 12:07 PM EST
| Post edited: Jan 23 2010, 12:11 PM EST
As one of the first to experience the "Clickjacking" with some flash ads, I did a lot of research on the matter. Here are some sites you may want to view to get a better understanding of the matter.Here is a bulletin the Adobe put out once before with regards to "Clickjacking". This is from October of 2008 http://www.adobe.com/support/security/advisories/apsa08-08.html Hackers exploit Adobe Reader flaw via comic strip syndicate 12/18/2009 http://blog.washingtonpost.com/securityfix/ List of Adobe Security Bulletins and Advisories latest 1/19/2010 http://www.adobe.com/support/security/ Here is a link to download the latest version of Adobe Flash Player http://get.adobe.com/flashplayer/ or http://get.adobe.com/shockwave/. 1 out of 1 found this valuable. Do you? |
|
chigginbotham |
2. RE: malware--flash security fix
Jan 23 2010, 12:34 PM EST
Thanks! This is a great help. I've got a whole classroom of students using WetPaint and some have managed to get the malware.
Do you find this valuable?
|
|
Posted Anonymously |
3. RE: malware--flash security fix
Jan 30 2010, 7:59 AM EST
i have the same problems with my sitehttp://paynterlandscaping.wetpaint.com Do you find this valuable? |
|
anastasia |
4. RE: malware--flash security fix
Feb 2 2010, 10:45 PM EST
On Jan 12, Adobe released an update to address a critical vulnerability affecting Adobe Reader and Acrobat 9.2 and earlier versions that could cause a crash and potentially allow an attacker to take control of the affected system as described in Security Advisory APSA09-07.As of January 12, 2010, Adobe released Adobe Reader and Acrobat 8.2 and 9.3, which resolved the Reader and Acrobat issues; which is how I think I was attacked. I was running Adobe Reader 9.2 My PC was affected by malware while signing in to edit my wetpaint site yesterday. I don't think my problem came through the Flash player I was running the latest release, Flash 10,0,42,34. Adobe said the issue affected Flash Player version 10.0.32.18 and earlier. Do you find this valuable? |
|
CryingDove |
5. RE: malware--flash security fix
Feb 2 2010, 11:10 PM EST
Can you describe the malware you saw? Or what the ad at the top of the page looked like. I think this would benefit WP in trying to track down the cause. But you bring to the table a key point, in that you experienced an attack after having the security patch installed for the flash-player. I am not certain if WP utilizes Adobe reader for management of the wikis. On your wiki do you have any widgets from other sources to embed pdf files on your wiki page? Nonetheless, the information that you have supplied is valuable. And if the ad or malware description can be supplied, it would benefit us all. Do you find this valuable? |
|
anastasia |
6. RE: malware--flash security fix
Feb 4 2010, 7:33 PM EST
"Can you describe the malware you saw? Or what the ad at the top of the page looked like. I think this would benefit WP in trying to track down the cause. But you bring to the table a key point, in that you experienced an attack after having the security patch installed for the flash-player. I am not certain if WP utilizes Adobe reader for management of the wikis. On your wiki do you have any widgets from other sources to embed pdf files on your wiki page?The malware I picked up was "AntiVirus Soft" a fake antivirus program that pretends to be an antivirus scanner. It's a trojan that simulates a system scan and lists false infections to make you think that your computer is seriously compromised. The scan results are absolutely false. The only real infection is Anti-virus Soft itself. It will constantly ask you to purchase the program in order to remove the infections and to protect yourself. I removed it using the techniques described here: http://deletemalware.blogspot.com/2010/01/how-to-remove-antivirus-soft-fake.html It was pretty persistent and took a number of repeated scans to remove. Do you find this valuable? |