About RSS
Search for: in 

Windows Watch - an XP & Vista blog

An infected file could be activated before the antivirus engine starts
An infected file could be activated before the antivirus engine starts
R E L A T E D   C O N T E N T

Free email newsletters




Jargon Buster

ADVERTISEMENT

Users warned on Sophos antivirus flaw

Security firm advises customers to ensure they have the latest version

Iain Thomson, vnunet.com 11 May 2005
ADVERTISEMENT

Sophos is advising customers to upgrade their antivirus applications after a flaw was found in an old version of the security firm's software.

The vulnerability was highlighted on the Bugtraq mailing list, and concerns how a potentially infected file could be hidden on a hard drive without being scanned by Sophos' software.

One of the dangers is that, after a reboot, the infected file could be activated before the antivirus engine starts to function.

The flaw affects version 3.93 of Sophos' antivirus engine and users are advised to upgrade to version 5.0.1.

"We have had no users reporting this issue to us with the current latest shipping version of Sophos Anti-Virus," said Graham Cluley, senior technology consultant at Sophos.

"I think a mixture of unusual circumstances, not running the latest version of Sophos Anti-Virus, and a determination to run a program before Windows has finished starting up has resulted in this individual user's experience."

He pointed out that Sophos can scan files as they are written onto the PC, but that this option is turned off by default as it is not normally required.

See also:

Wurmark-K displays a picture of an albino gorillaMonkey business hides Wurmark-k payload  10 May 2005
ISPs have a 'duty of care' to protect cusomersCable firm promises built-in security software from the summer  10 May 2005
MyDoom.BQ installs a backdoor channel to IRCHackers able to take complete control of affected PCs  10 May 2005
SecurityThe latest wave of cyber-crimes and acts of vandalism have demonstrated once again that many systems are still vulnerable to attack.  15 Apr 2004

All Enterprise Security Technology

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Foster Wheeler
Analyst Programmer - Applix TM1 -Competitive Salary - ReadingFoster Wheeler is a leading international project management, engineering and construction organisation with global construction capabilities working on major projects within upstream oil amp; LNG, refining, petrochemicals ... more >
| Foster Wheeler
Analyst Programmer - JDEdwards- ReadingFoster Wheeler is a leading international project management, engineering and construction organisation with global construction capabilities working on major projects within upstream oil amp; LNG, refining, petrochemicals lt;/p> Our UK-headquartered operations ... more >
| Google
The area: DoubleClick DoubleClick, a Google company, enables top marketers, publishers and agencies to utilize DoubleClick's expertise in ad serving, rich media, video and affiliate marketing to help them make the most of the digital ... more >
| Google
The area: Engineering Management Google's engineering teams exhibit high energy, deep technical skills and a drive to get things done. Our Engineering Managers need to be technical leaders and motivators who are comfortable leading these ... more >
More job opportunities
ADVERTISEMENT