Microsoft denies that patches caused black screens

Powered by SC Magazine
 

Issue may be caused by a trojan.

Microsoft has completed an investigation into reports that its November security updates caused some customers to experience so-called "black screens of death" and determined that the software giant's patches are not to blame.

The investigation comes after British security firm Prevx reported the issue on its blog, saying Microsoft's recent security fixes triggered the problem.

"The symptoms are very distinctive and troublesome," said David Kennerley, a Prevx support technician. "After starting your Windows 7, Vista, XP, NT, W2K, W2K3 or W2K8 PC or server, the system appears normal. However, after logging on there is no desktop, task bar, system tray or side bar. Instead you are left with a totally black screen and a single My Computer Explorer window."

He said the issue appears related to recent Windows updates that changed the way registry keys are handled due to new access control list (ACL) rules.

It is unclear how many Windows users were impacted, but Kennerley said the company determined there are at least 10 different scenarios "which will trigger the same black screen conditions."

But Christopher Budd, security response communications lead at Microsoft, said in a blog post today that the company has concluded the November security fixes -- six were distributed for 15 vulnerabilities -- are not the culprit.

"That investigation has shown that none of these updates make any changes to the permissions in the registry," he said. "Thus, we don't believe the updates are related to the 'black screen' behavior described in these reports."

Microsoft said that its November security updates made no change to registry permissions.

The issue may be related to a trojan, such as Daonol, which can result in black screens as part of its payload, Budd said. Even so, the problem does not seem to be affecting a broad base of customers.

"Because these reports were not brought to us directly, it's impossible to know conclusively what might be causing a 'black screen' in those limited instances where customers have seen it," he said.

See original article on scmagazineus.com

Copyright © SC Magazine, US edition


Microsoft denies that patches caused black screens
 
 
 
Top Stories
Westpac interim CIO resigns
Group CIO yet to be appointed.
 
Earning the right to innovate
Breaking down the barriers to innovation is a long, but rewarding process, says Bank of Queensland Group CIO, Julie Bale.
 
A call for timely reporting
[Blog post] Businesses need incentives to keep customer data secure.
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest articles on BIT Latest Articles from BIT
Have customers that won't pay debts?
Jul 10, 2014
The ACCC and ASIC have updated their advice when it comes to collecting debts.
Carpet cleaner faces court over online testimonials
Jul 4, 2014
The ACCC has initiated proceedings against A Whistle (1979) Pty Ltd, the franchisor of Electrodry...
You can now get 15GB of free online storage using Microsoft OneDrive
Jun 25, 2014
Cloud storage has reached both the capacity and price where it's a viable alternative to local ...
Another clever trick you can perform with Xero
Jun 25, 2014
Here is another way to reach out to particular subsets of your customers using Xero.
Have a phone, tablet and laptop?
Jun 20, 2014
This new Telstra pre-paid 4G mobile hotspot might be useful if you regularly need to use fast ...
Latest Comments
Polls
What is delaying adoption of public cloud in your organisation?







   |   View results
Lock-in concerns
  26%
 
Application integration concerns
  3%
 
Security and compliance concerns
  28%
 
Unreliable network infrastructure
  9%
 
Data sovereignty concerns
  22%
 
Lack of stakeholder support
  3%
 
Protecting on-premise IT jobs
  5%
 
Difficulty transitioning CapEx budget into OpEx
  3%
TOTAL VOTES: 884

Vote