Infesting you with Virus News
 

News

Contributed by: EglÄ—
Date: May 26, 2009
EglÄ—
6
Vote
0

Defeat the Multiple F-Secure Products RAR/ZIP Files Scan Evasion Vulnerability!

 

f-secure antivirusIn addition to the big number of vulnerabilities recently discovered in the online world of computer security, a new vulnerability has come up again! It is called the 'Multiple F-Secure Products RAR ZIP Files Scan Evasion' vulnerability. In this case the vulnerability was found in various multiple F-Secure anti-virus products. Multiple F-Secure products are prone to a vulnerability that enables certain compressed archives to avoid the scan engine. Exciting news for users faced with this type of vulnerability is that this security issue was fixed by the vendor!

The main problem with this specific vulnerability is that attackers and malware are able to exploit it to avoid the virus detection feature. This type of vulnerability allows for the leakage of private information and the ability of the attacker to make changes without any authorization. In addition, a certain services can also be broken up.

To be more concrete, with the help of the 'Multiple F-Secure Products RAR ZIP Files Scan Evasion' vulnerability, remote attackers are able to avoid malware detection through the use of a crafted ZIP and RAR archive. Remote users can create a specially crafted ZIP or RAR archive that, while being processed by the targeted user or application, would not bf-secure logoe detected by the scanning engine.

This vulnerability was rated as high. Some of the file components of F-Secure antivirus include but are not limited to the following: fsaw.exe, fsrw.exe, fsdfw.sys, ieshield.dll, fswsclds.exe, fsgk32st.exe, fsguiexe.exe, fsqh.exe, fsdfwd.exe, fsdc.dll, fpshx.dll.

It should be mentioned that the vulnerability described in this article is related to the following anti-virus versions as well as their earlier versions; Microsoft Exchange 7.10; Internet Gatekeeper for Windows 6.61, Windows 6.61, Linux 2.16; Internet Security 2009, Anti-Virus 2009 and lastly Client Security 8.0. The vendor has released an advisory and updates to rectify this security issue. Currently, the patch matrix is available in the F-Secure advisory. As in most cases, users are urged to upgrade to the latest version of the software program to keep their systems safe.

User Comments

Name:
Email:
Website:
Comment:
Please type 5-digit security code below:
Captcha image for spam protection

Software Downloads

Free Spyhunter Scanner (Spyware/Trojan Detection). DETECT Spyware, Trojans, Worms, Viruses and malware on your PC absolutely FREE.
Award Winning software, Fixes registry and improves computer performance. Created by a division of Symantec, this tool will scan your registry and find errors that can be later cleaned either individually or all together.
The tool is used to prevent the installation of spyware and other potentially unwanted software. As soon as you download it, you will be able to protect your system.

Latest Comments

March 12, 2010
Anyone would panic with bizarre behaviour of your computer with warnings, music flashing, etc. Don't... more..
March 12, 2010
nicejerk - Microsoft no longer supports (ie cares about anything bad happening) with XP. They don't... more..
March 12, 2010
To re-enable shortcuts and exe's delete registry keys HKCUSoftwa .. oftwareclasses.exe &/or... more..
more comments..
rss
Home > Computer Security > Defeat the Multiple F-Secure Products RAR/ZIP Files Scan Evasion Vulnerability!