Big Yellow Worm

Talk about "WhatEVER !"..
Post Reply
Message
Author
GomJabbar
Moderator
Moderator
Posts: 9765
Joined: Tue Jun 07, 2005 6:57 am

Big Yellow Worm

#1 Post by GomJabbar » Fri Dec 15, 2006 11:25 pm

Worm hits computers via antivirus program
Associated Press wrote:A computer worm is attacking some business PCs through a flaw in antivirus software by Symantec Corp., a security company warned Friday.

EEye Digital Security, based in Aliso Viejo, said the worm, dubbed "Big Yellow," began attacking some computer systems on Thursday - seven months after eEye first discovered the flaw.
DKB

JHEM
Admin Emeritus
Admin Emeritus
Posts: 5571
Joined: Thu Apr 15, 2004 8:03 am
Location: Medford, NJ USA
Contact:

#2 Post by JHEM » Sat Dec 16, 2006 12:27 am

My eldest daughter's employer's mainframes have been infected and down all day Dave.

She's here visiting with our grandson and had hoped to have a "home office" day. But all attempts to login to her company's servers via her VPN proved fruitless.

Quite a problem for them.

James
James at thinkpads dot com
5.5K+ posts and all I've got to show for it are some feathers.... AND a Bird wearing a Crown

GomJabbar
Moderator
Moderator
Posts: 9765
Joined: Tue Jun 07, 2005 6:57 am

#3 Post by GomJabbar » Sat Dec 16, 2006 12:45 am

Kind of amazing isn't it. Seven months after the flaw is discovered, and a patch released, corporate clients are being infected. I would imagine some IT's heads are going to roll over this.

It's not so different where I work. The local desktop for the Captain's use is not kept up to date with all the security patches. I've gone there to help them with a problem and on reboot find out the AV signatures are over 30 days old. Company policy is to update AV signatures once a week via the internet, but that doesn't always happen. FTR, our company also uses Symantec Corporate.

Sorry to hear about the problem affecting your daughter's visit.
DKB

NS
ThinkPadder
ThinkPadder
Posts: 1053
Joined: Sun May 21, 2006 11:35 pm
Location: Singapore.. a tropical country..

#4 Post by NS » Sat Dec 16, 2006 2:32 am

GomJabbar wrote:Kind of amazing isn't it. Seven months after the flaw is discovered, and a patch released, corporate clients are being infected. I would imagine some IT's heads are going to roll over this.

It's not so different where I work. The local desktop for the Captain's use is not kept up to date with all the security patches. I've gone there to help them with a problem and on reboot find out the AV signatures are over 30 days old. Company policy is to update AV signatures once a week via the internet, but that doesn't always happen. FTR, our company also uses Symantec Corporate.

Sorry to hear about the problem affecting your daughter's visit.
Can turn on the automatic update right? :?

GomJabbar
Moderator
Moderator
Posts: 9765
Joined: Tue Jun 07, 2005 6:57 am

#5 Post by GomJabbar » Sat Dec 16, 2006 2:46 am

NS wrote:Can turn on the automatic update right? :?
I suppose, but the internet connection being used is the company Nextel cell phone with an iDen connection. Very slow. Hence automatic updates are not used.

Yeah, it's time they get out of the dark ages and get an EV-DO or HSDPA data connection on a dedicated line.
DKB

dsigma6
Senior ThinkPadder
Senior ThinkPadder
Posts: 2299
Joined: Wed Apr 26, 2006 2:13 pm
Location: Philadelphia, PA
Contact:

#6 Post by dsigma6 » Sat Dec 16, 2006 10:40 pm

JHEM wrote:She's here visiting with our grandson
And here I thought you were a 30-something.

:)

...Glad to be using Comodo and AVG!
[Current] [Dell Latitude D630] : [Past] [T43] [T40] [T23] [T20] [R40] [X22] [600E] [570] [765D]

JHEM
Admin Emeritus
Admin Emeritus
Posts: 5571
Joined: Thu Apr 15, 2004 8:03 am
Location: Medford, NJ USA
Contact:

#7 Post by JHEM » Sun Dec 17, 2006 8:34 am

dsigma6 wrote:And here I thought you were a 30-something.
Only mentally Dan, and only when my meds kick in! :wink:

James
James at thinkpads dot com
5.5K+ posts and all I've got to show for it are some feathers.... AND a Bird wearing a Crown

GomJabbar
Moderator
Moderator
Posts: 9765
Joined: Tue Jun 07, 2005 6:57 am

#8 Post by GomJabbar » Tue Dec 19, 2006 6:41 pm

A little more info on this threat that I received in an email advertisement from PC Magazine...
Note that these products are related to, but are not the same as, Norton Internet Security and Norton AntiVirus. There are no reports that the Norton products are affected.
eEye states that "...processes for keeping current on software patches are not in place for non-Microsoft applications such as Symantec AntiVirus/Client Security; therefore, many Symantec users may be at risk for this vulnerability. "

Don't fall into this trap yourself. Note that consumer products like Norton Antivirus may be set up to update virus signatures automatically, but they are not necessarily set up to update the antivirus software automatically. Therefore, vulnerabilities in the security software itself could go unnoticed for long periods of time. The answer is to run the LiveUpdate program on Norton products periodically.
Security Watch: Big Yellow Worm Bites Symantec
DKB

NS
ThinkPadder
ThinkPadder
Posts: 1053
Joined: Sun May 21, 2006 11:35 pm
Location: Singapore.. a tropical country..

#9 Post by NS » Wed Dec 20, 2006 1:58 am

Avast anti-virus have this automatic update function. Everytime, i connected my thinkpad to the internet, 5 minutes later, 1 blue box appear and a guy will say: virus database has been updated.

:-)

dsigma6
Senior ThinkPadder
Senior ThinkPadder
Posts: 2299
Joined: Wed Apr 26, 2006 2:13 pm
Location: Philadelphia, PA
Contact:

#10 Post by dsigma6 » Wed Dec 20, 2006 8:23 am

NS wrote:Avast anti-virus have this automatic update function. Everytime, i connected my thinkpad to the internet, 5 minutes later, 1 blue box appear and a guy will say: virus database has been updated.
Oh yea? Well AVG does it the second your computer boots into XP, pushing aside the startup time and frustrating you with popups! :P
[Current] [Dell Latitude D630] : [Past] [T43] [T40] [T23] [T20] [R40] [X22] [600E] [570] [765D]

christopher_wolf
Special Member
Posts: 5741
Joined: Sat Oct 08, 2005 1:24 pm
Location: UC Berkeley, California
Contact:

#11 Post by christopher_wolf » Wed Dec 20, 2006 5:24 pm

dsigma6 wrote:
NS wrote:Avast anti-virus have this automatic update function. Everytime, i connected my thinkpad to the internet, 5 minutes later, 1 blue box appear and a guy will say: virus database has been updated.
Oh yea? Well AVG does it the second your computer boots into XP, pushing aside the startup time and frustrating you with popups! :P
That is a setting, but by default I haven't seen AVG Pro do that. It only appears to note that when it detects it's definitions are out of date very periodic checks with Grisoft...usually. :)
IBM ThinkPad T43 Model 2668-72U 14.1" SXGA+ 1GB |IBM 701c

~o/
I met someone who looks a lot like you.
She does the things you do.
But she is an IBM.
/~o ---ELO from "Yours Truly 2059"

NS
ThinkPadder
ThinkPadder
Posts: 1053
Joined: Sun May 21, 2006 11:35 pm
Location: Singapore.. a tropical country..

#12 Post by NS » Thu Dec 21, 2006 12:19 am

@Christopher_wolf,

Thanks for helping to explain more about AVG automatic update.

@dsigma6,

Avast antivirus update the database automatically by default and do NOT need me to click on any of the update links. :D

BTW: The reason why i chose Avast is because it is FREE! :lol:

Sorry for being a cheapskate. :oops:

Post Reply
  • Similar Topics
    Replies
    Views
    Last post

Return to “Off-Topic Stuff”

Who is online

Users browsing this forum: No registered users and 1 guest