DSO Exploit/Windows security center.antivirusDisableNotify and

DSO Exploit/Windows security center.antivirusDisableNotify and

Secure Home | Search | About
 Microsoft Antivirus Discussions    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
DSO Exploit/Windows security center.antivirusDisableNotify and polalor 08-30-2005
Posted by =?Utf-8?B?cG9sYWxvcg==?= on August 30, 2005, 11:27 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
and FirewallDisableNotify
-------------
The SpyBot suggests I "fix" the DSO and Windows security, et. al. and the
information says they belong to Company Microsoft/Product/Internet Explorer/
With the "Threat" as Security Hole.......

Should I remove them?

Thanks


Posted by David H. Lipman on August 30, 2005, 11:33 pm
If you were  Registered and logged in, you could reply and use other advanced thread options

| and FirewallDisableNotify
| -------------
| The SpyBot suggests I "fix" the DSO and Windows security, et. al. and the
| information says they belong to Company Microsoft/Product/Internet Explorer/
| With the "Threat" as Security Hole.......
|
| Should I remove them?
|
| Thanks

Flase Positive declaration !

Update SpyBot S&D to the latest definitions. It should have been eliminated.
If you are
using v1.3 of SpyBot, upgrade to v1.4 and update it.

If you still have a DSO Exploit problem, have SpyBot S&D ignore it.

--
Dave
http://www.claymania.com/removal-trojan-adware.html
http://www.ik-cs.com/got-a-virus.htm



Posted by Bruce Chambers on August 31, 2005, 9:14 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
polalor wrote:
> and FirewallDisableNotify
> -------------
> The SpyBot suggests I "fix" the DSO and Windows security, et. al. and the
> information says they belong to Company Microsoft/Product/Internet Explorer/
> With the "Threat" as Security Hole.......
>
> Should I remove them?
>
> Thanks
>


The DSO exploit was patched long ago by IE Cumulative Update
MS02-015, in March of 2002. If you've installed this specific patch,
or any subsequent IE Cumulative Updates, IE Service Pack 1, or WinXP
SP2, you're safe. It would appear that the latest version of SpyBot
S&D is only checking for Internet zone settings in the registry that
could be used as work-around protection, and not for the presence of
any corrective patches. Hopefully, the makers of SpyBot will soon fix
this bug.

MS02-015 March 28, 2002 Cumulative Patch for Internet Explorer
http://support.microsoft.com/default.aspx?scid=kb;EN-US;319182

If you like, you can test your system for this particular
vulnerability at this web site:
http://www.grey.com/security/advisories/gm001-ie/

The makers of SpyBot S&D have acknowledged the problem and will
fix it on their next update:
http://www.safer-networking.org/index.php?page=paragraphs&detail=currentfaqs

In the meantime, in SpyBot S&D, click Mode > Advanced > Settings >
Ignore Products > Security > DSO Exploit, to turn off the false alarm.

Some people have reported that the SpyBot Detection rules dated 30
Aug 04, or newer, when used with SpyBot S&D 1.3.1TX, will fix this
problem. However, I've had inconsistent results with that particular
detection update; sometimes it reads clean, then later it will once
again find the DSO problem, and then it will read clean again, all on
the same machine, with no other changes made.



--

Bruce Chambers

Help us help you:
http://dts-l.org/goodpost.htm
http://www.catb.org/~esr/faqs/smart-questions.html

You can have peace. Or you can have freedom. Don't ever count on having
both at once. - RAH

Similar ThreadsPosted
XP SP2 Security Center Question July 19, 2005, 3:47 pm
cant get online due to security center November 2, 2008, 7:28 pm
Vista Security Center Issue January 13, 2008, 4:54 am
Spybot results .... Windows Security Center August 11, 2005, 9:30 am
Clamwin, Windows Vista and Security Center November 3, 2007, 11:53 am
Media Center Edition and AV March 8, 2006, 1:35 am
How do I make windows sec. center detect my own developed antiviru September 30, 2007, 6:46 pm
backdoor:Win32/Hackdef.L C:\program files\Adobe Help center\Browser\es262-32.dll November 22, 2006, 2:08 pm
Flash Player security update is available; Security Bulletins released by Adobe July 10, 2007, 7:29 pm
run *.dll as an app. / security April 26, 2008, 5:20 pm

The site map in XML format XML site map

Contact Us | Privacy Policy