Zero-Day on IE v6/7/8/9 used to Infect you with PoisonIvy & PlugX!
September 18th, 2012
No comments
A new Zero-Day Vulnerability is currently being exploited heavily!
An attack on this vulnerability will allow unauthorized remote code execution with a drive-by download or a phishing email. And a Proof-of-Concept is already available publicly.
Here are your options to prevent damages:
- For corporate users, few detections are available from different AV vendors, but Trend Micro’s Virtual Patching solution has full protection since 2012/09/17
- If you are a home user, and have Trend Micro Titanium, upgrade it to the 2013 Edition
- Do not open web sites, files or emails from untrusted sources
- If your computer is acting abnormal, get our tools (i.e. RescueCD, FakeAV Remover)
- Apply a Fix It Tool from Microsoft (do not forget to remove the “Fix It Tool” when a patch is released from Microsoft)
UPDATE (2012/09/24): Microsoft has released a patch to fix the issue. Make sure you apply it as soon as possible (MS12-063).
Categories: General