Feeds

Sophos updates snag unwary

Viral order

  • alert
  • submit to reddit

Internet Security Threat Report 2014

Sophos users on standalone PCs should remember that they need to download virus definitions after they install their monthly update CD.

During a local (single user) install of Sophos Anti Virus (SAV) the package automatically removes old virus signature definition (IDE) files.

The advice comes from a Reg reader who had had already downloaded a virus signature file for BadTrans-B before installing the CD; but this definition became deleted during the CD update process. He subsequently became infected by BadTrans-B and although he didn't find it hard to disinfect his machine, it's easy to understand how he made his mistake.

SAV automatically deletes IDE files during local installation as part of its housekeeping functions, but for central installations this function is performed manually - so computer networks are not automatically stripped of protection in the same way.

SAV user manuals and installation guides explain what a home user needs to do, but as our correspondent says "no-one really reads the small print in these things".

Graham Cluley, senior technology consultant at Sophos Anti-Virus, conceded that it needed to make its software and documentation clearer about the need to download update files after applying a monthly update CD.

"The reason why BadTrans-B detection wasn't included on the CD ROM was simply because of the length of time it takes for the CD ROM to be mastered and properly quality assured," he said.

Protection from the virus has been available on our Sophos' Web site since 24 November but that was too late to get onto its December CD. A description will be included on SAV's January 2002 CD, Sophos says. ®

External links

The interaction between local installations of SAV and the deletion of IDE files

Related stories

BadTrans virus bites Windows users hard
Murder on the Outlook Express
Email deletion bug baffles McAfee
Norton AV update rings false alarm bells

Internet Security Threat Report 2014

More from The Register

next story
George Clooney, WikiLeaks' lawyer wife hand out burner phones to wedding guests
Day 4: 'News'-papers STILL rammed with Clooney nuptials
Shellshock: 'Larger scale attack' on its way, warn securo-bods
Not just web servers under threat - though TENS of THOUSANDS have been hit
Apple's new iPhone 6 vulnerable to last year's TouchID fingerprint hack
But unsophisticated thieves need not attempt this trick
PEAK IPV4? Global IPv6 traffic is growing, DDoS dying, says Akamai
First time the cache network has seen drop in use of 32-bit-wide IP addresses
Oracle SHELLSHOCKER - data titan lists unpatchables
Database kingpin lists 32 products that can't be patched (yet) as GNU fixes second vuln
Who.is does the Harlem Shake
Blame it on LOLing XSS terroristas
Researchers tell black hats: 'YOU'RE SOOO PREDICTABLE'
Want to register that domain? We're way ahead of you.
prev story

Whitepapers

Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.
The next step in data security
With recent increased privacy concerns and computers becoming more powerful, the chance of hackers being able to crack smaller-sized RSA keys increases.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.
A strategic approach to identity relationship management
ForgeRock commissioned Forrester to evaluate companies’ IAM practices and requirements when it comes to customer-facing scenarios versus employee-facing ones.