All the latest UK technology news, reviews and analysis

Trojan could attack Tuesday's Windows flaw

by Ken Young

11 Nov 2005

Be the first to comment

  • Tweet this
Trojan horse
Troj_emfsploit.A exhibits behaviour similar to the Enhanced Metafile vulnerability of MS05-053

Trend Micro claims to have discovered a Trojan horse that attacks Windows users through an image rendering flaw, just a day after Microsoft provided a fix for the bug.

The security firm said initially that the Trojan, referred to as 'emfsploit.a', crashes 'explorer.exe' on unpatched Windows machines.

But Trend Micro revised its statement later, saying only that it "exhibits behaviour similar to the Enhanced Metafile vulnerability of MS05-053" .

"Our Trend Labs team is currently working with Microsoft to resolve whether Troj_emfsploit.A does indeed fall under the category of code exploiting the MS05-053 vulnerability, or whether it is only a related piece of code but not totally exploiting MS05-053," the company said in a statement.

Trend Micro describes the new Trojan as a "proof of concept". It received one sample of the code from a customer in Japan, but it has not been detected anywhere else.

The company rates the overall risk as 'low', but the speed at which the exploit was developed has raised concerns in the industry.

Alan Bentley, UK managing director of patch management vendor PatchLink, said: "The emergence of this exploit within just 48 hours of Patch Tuesday just reinforces the movement towards zero-day attacks.

"As virus writers become more sophisticated, IT staff will really be tested when it comes to security protection.

"The time to patch has been diminishing for some time, and it is only a matter of time before we are faced with hours to patch rather than days."

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

99%

0%

1%

0%

0%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

Java Developer - Belfast - Banking

Java Developer - Belfast - Banking Skills: Core Java...

Shared Accounting Service Manager - London

I am recruiting for a Shared Accounting Service Manager...

QA Tester/Automation Tester - C# .NET Agile, Epsom

QA Tester/Automation Tester - C# .NET Agile, Epsom, Surrey...

3RD LINE EXCHANGE 2010 / 2003, QUEST, LONDON, BLUE CHIP FIRM, CITY

3RD LINE EXCHANGE 2010 / 2003, QUEST, LONDON, GLOBAL...

To send to more than one email address, simply separate each address with a comma.