Exploit Virus - www.badc0ded.com

Exploit Virus - www.badc0ded.com

ekrn.exe What if to close the ekrn.exe it?
When you open the system slows down the process manager will occasionally find ekrn.exe process which resides in the process manager to see its memory and CPU occupancy and found that the peak CPU utilization even make 100%. Try to end the ekrn.exe process, the discovery process manager which deny access to, this time may be all the elements of this ekrn.exe without making a hand. What is the process in the end ekrn.exe, how to turn off ekrn.exe it? Xiao Bian for everyone to talk about the ekrn.exe process, some small knowledge to everyone.

ekrn.exe What is this?

ekrn.exe is the ESET Smart Security or ESET NOD32 Antivirus software, anti-virus procedures.

Since we already know ekrn.exe procedures anti-virus software, then we should, if to solve this problem?

According to Microsoft officials provided the information, hit the computer you install XPSP2 patch nod32 After, nod32 ekrn.exe a process cpu occupancy will appear excessively high, after Microsoft's SP3 have avoided this phenomenon. So to avoid ekrn.exe occupation CPU100% or occupy too much CPU solution is to use a version of Window XP SP3 system. However, Xiao Bian here to remind you that your system is in identifying genuine case of the system before it was SP3 patch, if the system is not genuine, do not recommend you play SP3 patch to avoid a more terrible problem.

If your computer is already SP3, and it can press the following methods to solve this problem. After this step is a plan to try and solve their own way, please rest assured that use.

1, nod32 suspended all monitoring. Method 2: the first one, right in the nod32 tray icon little green eyes, choose 'Disable virus and spyware protection'; second, start the program in nod32, select 'Settings' tab 'temporarily disable virus and spyware protection, 'nod32 if you use the advanced mode, click the' Settings 'post, select' virus and spyware protection, 'Jiang' file system ',' E-mail ',' Web Visit 'three projects are' Disabled '.

2, a few seconds later, ekrn.exe occupation automatically reduced to 0%, if not patient, in the Task Manager will ekrn.exe 'end of the process.'

3, a few seconds later, open Control Panel - Administrative Tools - Services (if you do not want trouble, you can enter directly in the run services.msc), find 'Automatic Updates' item, right of property is set to 'Disabled' , and right to 'stop' the service.

4, open the C: WINDOWSSoftwareDistribution folder, delete all the files in the device.

5, according to Step 3, find 'Automatic Updates', right attribute set to 'Automatic' and click 'start' the service.

6, according to the method in step 1, restore nod32 full control.

Analysis: In this situation, ekrn.exe process is not high CPU-nod32 antivirus software, but SP2 patch the bug in SVCHOST.exe result, Windows update service to download and install the repeated failure may have caused the problem Windows update service, that is, we set the 'Automatic Updates' service is dependent on the SVCHOST.exe a background process, and repeated failures caused nod32 download and install process ekrn.exe a high index of suspicion, resulting in CPU-ekrn.exe high problem.

If that does not wish to try the following:

ekrn.exe occupation CPU100% ESET also may be caused by the height of heuristic scanning, in the Advanced Settings - virus and spyware protection - Settings - Options - removed before the height of heuristic scanning

The hook in the Advanced Settings - Real-time file system protection - Settings - Options - removed highly heuristic scanning can hook before.
IE 6/7/8 remote code execution vulnerability exists
In light of the recent survey conducted IE flaw, Microsoft released a security bulletin today, KB979352, that the impact of multiple versions of IE vulnerability for remote code execution vulnerability exists in IE, an invalid pointer reference. In particular attack, IE will be released in the visit to allow remote code execution when the object.

Microsoft is an official spokesman said: 'Microsoft has been confirmed, IE yes Google Yiji other Zuzhiwangluo one tool being attacked, Gong Si will continue and Google, Other industry Huoban and the co-Lai further investigate this issue. Currently, Microsoft has not see a broader range of users being affected, and only found in IE6 in a limited active attacks using this vulnerability, other versions are not under attack. '

Microsoft said the flaw does not affect Windows 2000 SP4 on IE 5.01 SP4, but the existence of the following versions are found in remote code execution vulnerability: Windows 2000 SP4 on IE6 SP1; Windows XP, Vista, Windows 7, Windows Server 2003, Windows Server 2008, Windows Server 2008 R2 on IE6, IE7, IE8.

Microsoft currently has not issued a patch, but provided some emergency measures to alleviate the problem. Microsoft said that after further investigation will be released on Tuesday related to patch patch, or to provide users with non-cyclical safety upgrades.
Microsoft released an emergency patch to fix IE high-risk vulnerabilities
Microsoft today released an emergency security as some patches to repair the high-risk vulnerability exists in IE. The security update is rated as high risk level, in addition to IE6 on Windows Server 2003, the exposure of this previously remote code execution vulnerability affects Microsoft Windows systems all all IE versions, including IE 5.01, IE6, IE7, IE8 .

Microsoft has begun to push a patch through Windows Update and the Windows Update, Microsoft Update, Windows Server Update Services and the Download Center released the latest upgrade of the Windows Malicious Software Removal Tool. Use IE 5/6/7/8 for Windows users can turn the automatic update for Microsoft to provide a cumulative security update.

Microsoft is under attack in the Google and found this vulnerability, and shortly after the use of IE6 vulnerability exploit code was made public, then Microsoft recommends old IE users (especially IE6 users) to upgrade to IE8. In view of the seriousness of this vulnerability, Microsoft decided to release security patches unconventional, but not until next month's Tuesday patch day.

Prior to this, many countries and regions worldwide have begun to take measures to deal with. From last week, the German Federal Office of Information Security (BSI), the French Government and the Australian Government have suggested that the patch release, the best computer users to stop using IE, switch to other browsers.

Official download:

http://www.microsoft.com/technet/security/bulletin/ms10-002.mspx






Related Articles


Exploits

Fake Virus

Find Password

Find Passwords

Find Spyware

Firewall

Firewall Appliance

Firewall Configuration

Firewall Program

Firewall Security

Firewalls



Other News


Oil rig fire in Gulf of Mexico
Fri, 03 Sep 2010 07:28:21 GMT

IMF provides $450 mln for Pakistan
Thu, 02 Sep 2010 21:02:21 GMT

Mideast peace plans
Thu, 02 Sep 2010 19:12:19 GMT

Mideast peace talks begin
Thu, 02 Sep 2010 17:02:21 GMT

Hurricane Earl forces evacuations
Thu, 02 Sep 2010 07:52:18 GMT

Dinner before peace talks
Thu, 02 Sep 2010 01:28:20 GMT

Police kill "Discovery" gunman
Thu, 02 Sep 2010 00:22:26 GMT

A call to seize the moment
Wed, 01 Sep 2010 23:28:19 GMT

Apple's big reveal
Wed, 01 Sep 2010 23:18:28 GMT

Hostages at Discovery Channel
Wed, 01 Sep 2010 21:18:12 GMT

Obama condemns West Bank attack
Wed, 01 Sep 2010 18:58:20 GMT



Powered by There is no spoon