Windows 7 Forums
Welcome to Windows 7 Forums. Our forum is dedicated to helping you find support and solutions for any problems regarding your Windows 7 PC be it Dell, HP, Acer, Asus or a custom build. We also provide an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.

Windows 7: LNK Exploit Protection Tool

27 Jul 2010   #1

Win7 Home Premium x64 SP1, Archlinux x86_64. Elementary Luna
LNK Exploit Protection Tool

Sophos has released a tool which can protect users against exploits that target a currently unpatched Windows vulnerability in the way shortcut icons are processed. The critical bug discovered earlier this month has already been adopted by a variety of malware families and that's only expected to increase.

The new vulnerability, identified as CVE-2010-2568 and confirmed by Microsoft in Security Advisory 2286198, was discovered being exploited in the wild by a highly sophisticated piece of malware earlier this month. The flaw stems from the way Windows processes control panel shortcut icons and allows an attacker to automatically execute malicious code by tricking users into opening a folder containing specially crafted LNK files.

Initially it was believed that the vulnerability could only be exploited from removable USB devices or network shares. However, Microsoft later revealed that attackers can also launch attacks leveraging it via websites or other document files.
More Here

My System SpecsSystem Spec
27 Jul 2010   #2
Microsoft MVP

Windows 7 Ultimate 32bit SP1

Thanks for the info Nem :)
My System SpecsSystem Spec
27 Jul 2010   #3

Windows 7 Ultimate x64 SP1

My System SpecsSystem Spec

27 Jul 2010   #4

Windows 10 Pro

I find it curious that a 3rd party company is releasing a "temporary" fix for a problem that clearly belongs to "Microsoft"
Considering that it might take two more weeks until an official patch for this bug is provided by Microsoft, as part of its regular monthly patch cycle, security engineers from Sophos have decided to create a small tool to protect users in the meantime.
Sophos Releases LNK Exploit Protection Tool - Detects malicious shortcuts in real-time - Softpedia

Interesting... I'll await Microsoft's offering.

My two cents.
My System SpecsSystem Spec
29 Jul 2010   #5
Phone Man

Windows 8.1 Pro w/Media Center 64bit, Windows 7 HP 64bit

Interesting article about both of these fixes. Still a few bugs in their fix.

Anti-virus vendors offer free LNK protection - Update - The H Security: News and Features

I am using the MS fix for now.


Microsoft update (fix) for it:

Microsoft to release fix for Windows Shortcut flaw on Monday
My System SpecsSystem Spec
Closed Thread

 LNK Exploit Protection Tool

Thread Tools

Similar help and support threads
Thread Forum
Yet another Java exploit thread.
I got infected by the Anti-piracy ransomware thing yesterday. Is the infection related to the Java exploit? I used tools recommended on this site and it looks to be fixed. I also uninstalled Java 6 and Java 7 (had both on my system?). While on the Java website they showed an option in the Java...
System Security
I E Exploit
Has anyone seen anything about I E 6, 7 ,8, 9. NOT IE 10. I just had a note from Community Feedback where it's posted now. Thanks for any info. I'm home for lunch now... will check back after work.
Browsers & Mail
Exploit Eleonore Exploit Kit (type 1194) help!
Twice whilst playing CS:S I have had the following message pop up. I have scanned with both Malwarebytes and AVG and nothing has been detected. What should I do? I was on the same server both times. I have looked through my...
System Security

Our Sites

Site Links

About Us

Find Us

Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

Designer Media Ltd

All times are GMT -5. The time now is 06:42.
Twitter Facebook Google+