malware

  1. Windows 7 Targeted Malware Increased 125%

    If you weren't already aware, Windows 7 reached end of life this year on January 14th 2020. End of life or EOL means the operating system vendor, in this case Microsoft, will no longer develop updates to address security issues within the software. Partly due to the fact that Windows 7 has...
  2. F

    Windows 7 Windows update

    Arrived today - malicious software tool - kb890830. How come? You are supposed to trust this being MS and it just goes ahead and downloads/installs. Are they still supporting Seven??? Thanks.
  3. Windows 10 Program Manager

    I thought Program Manager was in Windows 3 Why is it in Win 10? On shutdown, occasionally the pc hangs with a message saying Program Manager is still running At times it will freeze indefinitely After running several malware and virus scanners the system reports no abnormalities Can I safely...
  4. R

    Windows 10 I upgraded (downgrade in actuality) from Windows 7 to 10 when it was free. Then got back to Windows 7. Can I now upgrade back to 10 for free?

    I am sooo pi*sed that I'm being forced to "downgrade" to Windows 10. I tried it when it was free and really gave it a chance, but I couldn't stand it, so I rolled back to 7. It was like I could breathe again. Now that they have ended support for 7 and fearing malwares and viruses, I'm forced to...
  5. AA20-014A: Critical Vulnerabilities in Microsoft Windows Operating Systems

    Original release date: January 14, 2020 Summary New vulnerabilities are continually emerging, but the best defense against attackers exploiting patched vulnerabilities is simple: keep software up to date. Timely patching is one of the most efficient and cost-effective steps an organization can...
  6. AA20-010A: Continued Exploitation of Pulse Secure VPN Vulnerability

    Original release date: January 10, 2020 Summary Unpatched Pulse Secure VPN servers continue to be an attractive target for malicious actors. Affected organizations that have not applied the software patch to fix a remote code execution (RCE) vulnerability, known as CVE-2019-11510, can become...
  7. AA20-006A: Potential for Iranian Cyber Response to U.S. Military Strike in Baghdad

    Original release date: January 6, 2020 Summary The Cybersecurity and Infrastructure Security Agency (CISA) is sharing the following information with the cybersecurity community as a primer for assisting in the protection of our Nation’s critical infrastructure in light of the current tensions...
  8. M

    Windows 10 Laptop Platform Role is Mobile in System Information?

    I just saw in System Information that my Desktop Laptop Platform Role is Mobile. Turned on the other two laptops in the home network and they also are mobile. This is a newly reset computer with no connection with a mobile phone whatsoever. To confirm my suspicions, in autoruns I get multiple...
  9. Z

    Windows 7 Exposing a virgin 2009 win 7 HDD to the internet in 2020 for updates Questions

    I just returned my 2009 win7 Toshiba Laptop HDD back to its factory defaults from the OEM hidden restore partition. With the final security patches for win7 due out next month in January 2020, I want to have a clean fresh out-of-box 2020 win7 install with all the service packs and security...
  10. A Breakdown of the Emotet Malware (Stage 1)

    While working the on-call rotation at work last week I received a reported phishing email. Like all the other emails I do an analysis to determine if it's a false positive or truly a phishing email. As it turns out this email was indeed a phishing email that tried to convince a user to click...
  11. AA19-339A: Dridex Malware

    Original release date: December 5, 2019 Summary This Alert is the result of recent collaboration between the Department of the Treasury Financial Sector Cyber Information Group (CIG) and the Department of the Treasury’s Financial Crimes Enforcement Network (FinCEN) to identify and share...
  12. Customer Guidance for the Dopplepaymer Ransomware

    Microsoft has been investigating recent attacks by malicious actors using the Dopplepaymer ransomware. There is misleading information circulating about Microsoft Teams, along with references to RDP (BlueKeep), as ways in which this malware spreads. Our security research teams have investigated...
  13. Avast Code Injection Vulnerability

    If you're using Avast and are on a version below 19.8 you probably should update. Avast Vulnerability Potentially Allows DLL Hijacking
  14. Discord Altering Malware

    Interesting info stealing malware that alters Discord. Discord Turned Into an Info-Stealing Backdoor by New Malware
  15. A

    Windows Defender not working properly

    As of the last few days windows defender will not open or start up and has turned off spyware and virus protection. In the bottom corner of the screen is a flag saying i have 2 PC issues to be solved, which is turning on virus and spyware protection. When i click on it to turn them on an error...
  16. B

    Windows 10 Clear protection history in Windows defender security center

    With version 1903 it is not possible to clear the log of protection history collected when false positive or real malwares are detected by this toy. One possibility is to use Powershell and see which items are listed and could be modified. To do this type Get-MpPreference.. In order to modity...
  17. A

    Windows 10 (3/4/5 digits).tmp 450 files totalling 650MB found in SysWOW64 folder - What are they?

    Hi, I found 650MB .tmp files in my SysWOW64 folder, why are they there? I can't find anything online about them. Some of the file names are 445.tmp, 3903.tmp and 11920.tmp My attention was drawn to them after ESET detected one of them as a virus, the detection name was something like...
  18. R

    Windows 10 cmd window flashes prior to Windows "install now" launch page

    Hi all. I'm new to the forum. I've been installing Windows for many years and I've seen this issue before with malware infected Windows installation files on Windows 7. If the installation is tainted, a cmd window will flash briefly before the install launch page. I have the same issue...
  19. Patch new wormable vulnerabilities in Remote Desktop Services (CVE-2019-1181/1182)

    Today Microsoft released a set of fixes for Remote Desktop Services that include two critical Remote Code Execution (RCE) vulnerabilities, CVE-2019-1181 and CVE-2019-1182. Like the previously-fixed ‘BlueKeep’ vulnerability (CVE-2019-0708), these two vulnerabilities are also ‘wormable’, meaning...
  20. Windows 10 Malware, Ransomware and Bit-locker Security.

    Hi. I recently lost 100,000 personal pictures and a lot of music I wrote for many years. I lost it to a ransomware, with a DOCM extension. I looked online and it said it was new and the encryption was done repeatedly up to 10 times deep. I happened to have ALL my backup usb hard drives attached...