Microsoft changes Windows 7 UAC after new exploit code surfaces

Airbot

----------------------
VIP
SF Team
Local time
10:52 PM
Messages
18,396
February 4, 2009 (Computerworld) A pair of Windows bloggers posted more proof-of-concept code today that subverts an important security feature of Windows 7, a problem Microsoft knew about as long ago as last October and which one of its software engineers said would be fixed in the beta.
Today, however, the company said it had addressed the issue in post-beta builds that have not yet been released to the public.
more: Microsoft changes Windows 7 UAC after new exploit code surfaces
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Airbot 2.0
OS
Windows 7 Ultimate x64 SP1
CPU
Core i7 920 (D0) @ 4Ghz, *26c idle *65c full load on air
Motherboard
Asus P6X58D Premium - Sata 6Gb/s - USB 3.0
Memory
12GB DDR3 Corsair Dominator -CMD12GX3M6A1600C8 at 1600MHz
Graphics Card(s)
Zotac Geforce GTX 770
Sound Card
ASUS Xonar D2X
Monitor(s) Displays
1 LG 24" Flatron W2453V-PF 1 Samsung 24" P2450H both 2ms RT
Screen Resolution
1920x1080@60hz
Hard Drives
1 Samsung 250GB 840 Evo SSD
1 OCZ Vertex2 180GB SSD
1 TB Samsung Spinpoint F1 7200RPM 32MB cache
2 500GB WD Caviar Blacks 7200RPM 32MB cache (WD5001AALS)

Pioneer DVD Burner DVR-S18M
PSU
Corsair HX1000W
Case
Cooler Master HAF 932
Cooling
Case Fans *3 230mm, *1 140mm/CPU - *Tuniq Tower 120 Extreme
Keyboard
Logitech Wireless MK700
Mouse
Logitech Wireless MK700
Internet Speed
DL 15 Mbps UL 0.98 Mbps
Antivirus
None
Browser
Firefox Nightly
Other Info
Processor-7.7 *RAM- 7.9 *Graphics-7.9 *Gaming Graphics- 7.9 *SSD- 7.8 W.E.I final score= 7.7
*Phone- LG Nexus 5

My Computer

Computer Manufacturer/Model Number
Something I threw together
OS
Windows 7 Ultimate x64
CPU
Intel Core i7-2600K
Motherboard
Asus P8P67
Memory
16 GB G Skill F3-10666 CL9D-4GBRL
Graphics Card(s)
ATI Radeon HD 6870
Sound Card
ATI Radeon HDMI / Realtek ALC892
Monitor(s) Displays
2 x 22" standard monitors / LG32LC56v TV to watch films
Screen Resolution
1920 x1080
Hard Drives
2 x OCZ Vertex2 111.79GB
3 x Samsung103SJ
1 x Samsung103UJ
1 x WD3200BEVT
1 x Hitachi5K320-160
PSU
Thermaltake Toughpower Cable Management 750W
Case
Antec 300
Cooling
Noctua NH-U12P SE2 and 5 120mm Case fans
Keyboard
Microsoft Comfort Curve Keyboard 2000
Mouse
Hama M3110 / Logitech M305
Internet Speed
16000
Other Info
I have also used Fedora, Suse, Ubuntu Linux
And all other Windows from 95 to date except ME
Guess we'll have to wait. :(
 

My Computer

Computer Manufacturer/Model Number
Dell XPS420
OS
Vista Ult 64 bit Seven Ult RTM x64
CPU
Intel Core2 Quad Q6600 2.40 gigahertz
Memory
Crucial Ballistix 4x2GB PC2 6400
Graphics Card(s)
NVIDIA GeForce 8600 GTS 256 MB
Sound Card
Creative SB X-Fi audio
Monitor(s) Displays
HP w2207 + HPvs15
Screen Resolution
1680x1050 + 1024x768
Hard Drives
2-WD5000AAKS-500 GB
WD5000AAV-500 GB external
Keyboard
Microsoft Comfort Curve
Mouse
MX Revolution
Other Info
Wacom Intuos 2 Graphics Tablet
Experience Index=5.5
Question: Does UAC "remember" which programs you have allowed to be run? I think it would be better to have it this way, don't you think? It could even be taken one step further by "remembering" what actions of a program are allowed for example opening was allowed before but ig you try saving, then UAC would prompt you and then never agin, sorta like that!
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom built
OS
Windows 7 Ultimate (64 bit) dual boot with Fedora KDE
CPU
Intel Corei5-3470 @ 3.20Ghz (Turbo 3.60Ghz) [6MB L3 cache]
Motherboard
GIGABYTE GA-B75M-D3H [intel B75 Express Chipset]
Memory
8 GB [4 GB x 2] DDR3 1600 Mhz G.Skill
Graphics Card(s)
Zotac nVidia GeForce GTX 650 1024 MB GDDR5 (128 bit)
Sound Card
Realtek ALC 887 HD Audio codec onboard
Monitor(s) Displays
Samsung SyncMaster 2033SW+
Screen Resolution
1600 x 900 @ 60Hz
Hard Drives
1 x S-ATA II Seagate 1 TB [Win7 Ultimate x86-64 RTM]
1 x S-ATA Samsung 1 TB [Fedora]
PSU
Cooler Master Thunder 650W
Case
Cooler Master Elite 344 - USB 3
Cooling
All Fan [1 on front and 1 at back]
Keyboard
Microsoft PS/2 Multimedia keyboard
Mouse
Microsoft Optical Mouse USB
Internet Speed
1 Mbps Cable
Antivirus
Kaspersky Internet Security
Browser
Firefox
Question: Does UAC "remember" which programs you have allowed to be run? I think it would be better to have it this way, don't you think? It could even be taken one step further by "remembering" what actions of a program are allowed for example opening was allowed before but ig you try saving, then UAC would prompt you and then never agin, sorta like that!

And then any malicious application would just "read" from the registry the allowed apps and rename itself to them... I think there's a reason they haven't included an "remember my decision" option.
 

My Computer

Computer Manufacturer/Model Number
ENIAC
OS
Windows 7 RC 7100 32bit/64bit
CPU
Intel Core2Duo E4500 2.20 GHz
Motherboard
ASUS P5LD2-X/1333
Memory
2x1GB Kinsgston DDR2 800MHz
Graphics Card(s)
Nvidia 8500GT
Sound Card
Onboard High Definition Audio Device
Monitor(s) Displays
Sony Bravia 42"
Case
LINKW 2222
Cooling
Standard Intel
Keyboard
Some cheap one
Mouse
Microsoft Intellimouse something
Internet Speed
24MBps ADSL
And then any malicious application would just "read" from the registry the allowed apps and rename itself to them... I think there's a reason they haven't included an "remember my decision" option.


If thats the case, then the option to remember that a certain program to allow access to the internet via firewall should also be flawed!

Afterall, worms and viruses can do that as well, can't they?

The reason I said that thing in my previous post is so that UAC should become less "intrusive" so that people are not frustrated by it but welcome it as an actual seurity feature as they have accepted prompts by firewalls as I mentioned!

Thanks!
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom built
OS
Windows 7 Ultimate (64 bit) dual boot with Fedora KDE
CPU
Intel Corei5-3470 @ 3.20Ghz (Turbo 3.60Ghz) [6MB L3 cache]
Motherboard
GIGABYTE GA-B75M-D3H [intel B75 Express Chipset]
Memory
8 GB [4 GB x 2] DDR3 1600 Mhz G.Skill
Graphics Card(s)
Zotac nVidia GeForce GTX 650 1024 MB GDDR5 (128 bit)
Sound Card
Realtek ALC 887 HD Audio codec onboard
Monitor(s) Displays
Samsung SyncMaster 2033SW+
Screen Resolution
1600 x 900 @ 60Hz
Hard Drives
1 x S-ATA II Seagate 1 TB [Win7 Ultimate x86-64 RTM]
1 x S-ATA Samsung 1 TB [Fedora]
PSU
Cooler Master Thunder 650W
Case
Cooler Master Elite 344 - USB 3
Cooling
All Fan [1 on front and 1 at back]
Keyboard
Microsoft PS/2 Multimedia keyboard
Mouse
Microsoft Optical Mouse USB
Internet Speed
1 Mbps Cable
Antivirus
Kaspersky Internet Security
Browser
Firefox
Question: Does UAC "remember" which programs you have allowed to be run? I think it would be better to have it this way, don't you think? It could even be taken one step further by "remembering" what actions of a program are allowed for example opening was allowed before but ig you try saving, then UAC would prompt you and then never agin, sorta like that!


Microsoft was threatened by OEMs during the PDC in 2005 after they demo`ed Vista beta2 saying they would use this "White list" for all their programs during setup because they didnt want UAC, they didnt like UAC so they would bypass UAC...

Since this was something Microsoft didn't want happening they removed it.

You can use the Task Scheduler to run applications without UAC and create a desktop shortcut to launch the task, while this isn't exactly a "White list" it does the exact same thing but was designed exactly the same ;)
 
Back
Top