Security Market Segment LS
Wednesday, 03 March 2010 08:38

Microsoft reissues security update

By
A new version of a Windows security patch avoids the chaos caused when the original was installed on a system previously infected by a rootkit.

Microsoft has re-released the February patch for a elevation of privilege vulnerability affecting WIndows 2000, XP, Vista, Windows 7, and Windows Server 2008 and 2008.

While the patch itself remains unchanged, the installation logic has been altered to check for "certain abnormal conditions". A number of users found out the hard way that if the MS10-015 update was applied to a system that had been infected with the Alureon rootkit the result was a blue-screen crash and an inability to start the system normally or in safe mode.

The vulnerability was classified by Microsoft as 'important'.

The number of complaints about this issue indicates how widely Alureon had spread, despite various security packages being able to detect it. Part of the problem is that if Alureon manages to get past security software that hasn't been kept up to date, it effectively disables that software. (Alureon is also known as TDSS, Olmarik and Tidserv.)

Now that the installation package has been changed to prevent installation if Alureon is present, Microsoft has resumed offering the update via Automatic Updates to affected systems.

What happens if the system is infected? Find out on page 2.



If the rootkit is present, the update is not installed and the user is referred to a web page describing the situation. That page does not tell users what they need to do in such situations, but merely advises customers in the US or Canada to call a support number.

Various sets of instructions for removing Alureon can be found on the web, but it may be considered prudent to follow only those from trustworthy sources unless you can follow and understand each step.

Software from security vendors may automate the removal process. Sophos's free Anti-Rootkit tool claims to be able to remove Alureon.

Microsoft has also released a 'Fix it' tool to carry out the same checks without actually attempting the installation of the update, along with a downloadable version that can be used by system administrators as a component in an automated check of a fleet of PCs.

Read 4022 times

Please join our community here and become a VIP.

Subscribe to ITWIRE UPDATE Newsletter here
JOIN our iTWireTV our YouTube Community here
BACK TO LATEST NEWS here




EXL AI IN ACTION VIRTUAL EVENT 20 MARCH 2025

Industry leaders are looking to transform their businesses and achieve measurable outcomes with AI.

As organisations across APAC navigate the complexities of AI adoption, this must-attend event brings together industry leaders, real-world demonstrations, and visionary panel discussions to bridge the gap between proof-of-concepts and enterprise-wide AI implementation.

Learn how to overcome common challenges in deploying AI at scale.​

Unlock cost savings, efficiency, and better customer experiences with AI.

Discover how industry expertise and data intelligence enable practical AI deployment.

Register for the event now!

REGISTER!

PROMOTE YOUR WEBINAR ON ITWIRE

It's all about Webinars.

Marketing budgets are now focused on Webinars combined with Lead Generation.

If you wish to promote a Webinar we recommend at least a 3 to 4 week campaign prior to your event.

The iTWire campaign will include extensive adverts on our News Site itwire.com and prominent Newsletter promotion https://itwire.com/itwire-update.html and Promotional News & Editorial. Plus a video interview of the key speaker on iTWire TV https://www.youtube.com/c/iTWireTV/videos which will be used in Promotional Posts on the iTWire Home Page.

Now we are coming out of Lockdown iTWire will be focussed to assisting with your webinars and campaigns and assistance via part payments and extended terms, a Webinar Business Booster Pack and other supportive programs. We can also create your adverts and written content plus coordinate your video interview.

We look forward to discussing your campaign goals with you. Please click the button below.

MORE INFO HERE!

BACK TO HOME PAGE
Stephen Withers

Stephen Withers is one of Australia¹s most experienced IT journalists, having begun his career in the days of 8-bit 'microcomputers'. He covers the gamut from gadgets to enterprise systems. In previous lives he has been an academic, a systems programmer, an IT support manager, and an online services manager. Stephen holds an honours degree in Management Sciences and a PhD in Industrial and Business Studies.

Share News tips for the iTWire Journalists? Your tip will be anonymous

Subscribe to Newsletter

*  Enter the security code shown: img0

WEBINARS & EVENTS

CYBERSECURITY

PEOPLE MOVES

GUEST ARTICLES

Guest Opinion

ITWIRETV & INTERVIEWS

RESEARCH & CASE STUDIES

Channel News

Comments