Archive

Archive for September, 2012

Zero-Day on IE v6/7/8/9 used to Infect you with PoisonIvy & PlugX!

September 18th, 2012 No comments

 
A new Zero-Day Vulnerability is currently being exploited heavily!
An attack on this vulnerability will allow unauthorized remote code execution with a drive-by download or a phishing email. And a Proof-of-Concept is already available publicly.
 
Here are your options to prevent damages:

  • For corporate users, few detections are available from different AV vendors, but Trend Micro’s Virtual Patching solution has full protection since 2012/09/17
  • If you are a home user, and have Trend Micro Titanium, upgrade it to the 2013 Edition
  • Do not open web sites, files or emails from untrusted sources
  • If your computer is acting abnormal, get our tools (i.e. RescueCD, FakeAV Remover)
  • Apply a Fix It Tool from Microsoft (do not forget to remove the “Fix It Tool” when a patch is released from Microsoft)

 
UPDATE (2012/09/24): Microsoft has released a patch to fix the issue. Make sure you apply it as soon as possible (MS12-063).
 

Categories: General Tags: