An infected file could be activated before the antivirus engine starts
An infected file could be activated before the antivirus engine starts
R E L A T E D   C O N T E N T
ADVERTISEMENT

Users warned on Sophos antivirus flaw

Security firm advises customers to ensure they have the latest version

Iain Thomson, vnunet.com 11 May 2005
ADVERTISEMENT

Sophos is advising customers to upgrade their antivirus applications after a flaw was found in an old version of the security firm's software.

The vulnerability was highlighted on the Bugtraq mailing list, and concerns how a potentially infected file could be hidden on a hard drive without being scanned by Sophos' software.

One of the dangers is that, after a reboot, the infected file could be activated before the antivirus engine starts to function.

The flaw affects version 3.93 of Sophos' antivirus engine and users are advised to upgrade to version 5.0.1.

"We have had no users reporting this issue to us with the current latest shipping version of Sophos Anti-Virus," said Graham Cluley, senior technology consultant at Sophos.

"I think a mixture of unusual circumstances, not running the latest version of Sophos Anti-Virus, and a determination to run a program before Windows has finished starting up has resulted in this individual user's experience."

He pointed out that Sophos can scan files as they are written onto the PC, but that this option is turned off by default as it is not normally required.

See also:

Wurmark-K displays a picture of an albino gorillaMonkey business hides Wurmark-k payload  10 May 2005
ISPs have a 'duty of care' to protect cusomersCable firm promises built-in security software from the summer  10 May 2005
MyDoom.BQ installs a backdoor channel to IRCHackers able to take complete control of affected PCs  10 May 2005
SecurityThe latest wave of cyber-crimes and acts of vandalism have demonstrated once again that many systems are still vulnerable to attack.  15 Apr 2004

All Enterprise Security Technology

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Aston Carter
Senior C# Agile Web Developer, Online Gaming, London My Client provides adult customers with high quality gambling and gaming services in an environment that is convenient, entertaining, fair, regulated and secure. My Client is one ... more >
| Aston Carter
EMC, NetApps, West London, Media • NetApps FAS ... more >
| Abraxas
Data Analyst / MI Analyst – Leading Online Gaming Company A Data Analyst / Trafficker is sought by a leading online gaming company. The role encompasses all aspects of online advertising including data handling, communicating ... more >
| JAM Recruitment
Field Applications Engineer Power Electronics/Supplies Europe/Based Surrey Permanent Position £35-45k Basic+Bonus 10-15%+Car/Car allowance A global organisation involved with the design and development of power supplies actively requires a Field Applications Engineer to strengthen it existing ... more >
More job opportunities