Windows Secrets

Subscribers: Sign in

Enter your e-mail address to get a free subscription.
We guarantee your privacy
Skip to content
  • Home
  • Newsletter Archives
    • Current
    • LangaList Plus
    • Patch Watch
    • Wacky Web Week
    • Security Baseline
  • WinDeals
  • E-Books
  • Lounge
  • Polls
  • About us
    • Refunds
    • Privacy Policy
    • Advertise
  • Contact
  • Your Account
    • Upgrade
    • Preferences
    • Bonus Download
    • Unsubscribe
Home>Patch Watch>MS patch causes BSOD if PC has Alureon malware

MS patch causes BSOD if PC has Alureon malware

Posted on February 25, 2010 by Susan Bradley in Patch Watch
Tweet

Susan Bradley 1 MS patch causes BSOD if PC has Alureon malware By Susan Bradley

A collision between one of Microsoft’s recent Windows security patches and the rootkit Alureon is giving some PC users the infamous “Blue Screen of Death.”

I previously advised you not to install Microsoft’s security patch MS10-015 until I looked into it in more detail, but now I’m ready to give you the all-clear — with caveats.


MS10-015 (977165)
You may need tools to eliminate a gnarly rootkit

The day after the Feb. 11 Patch Tuesday, security MVP Robear Dyer reported that an extraordinary number of people had experienced a Blue Screen of Death (BSOD) after applying the patches. It was soon apparent that the troublesome patch was in security bulletin MS10-015 (977165). My previous Patch Watch column cautioned you to wait to install MS10-015, but now you can do so — if you know what symptoms to look for.

Unfortunately for those who installed the patch when it first came out, recovering from the BSOD wasn’t easy. Their PCs crashed on restart, so users needed to dig out their original Windows discs in order to run the repair procedure.

Microsoft states in a recent Security Response Center blog post that only those workstations infected with the so-called Alureon rootkit (also called TDSS, Tidserv, and TDL3), are affected.

In an odd way, this patch/BSOD debacle has a silver lining. The affected PC users discovered that their machines had previously undetected malware.

This article is part of our paid content. Subscribe.

Already a paid subscriber? Click here to login.

Related posts:

  1. Fake e-mails to patch Outlook lead to malware
  2. Patching Up Windows After Patch Breaks It
  3. Were you a victim of Patch Tuesday?
  4. Cumulative patch for Microsoft SQL server
  5. Cumulative patch for Internet Explorer
= Paid content

All Windows Secrets articles posted on 2010-02-25:

  • Introduction WS has a new technical editor and Lounge admin
  • Top Story Windows shortcuts can boost your efficiency
  • Lounge Life Loungers thinking about upgrades and apps
  • Wacky Web Week From Lucky Charms to … toy charms?
  • LangaList Plus Solving Windows 7 networking problems
  • Best Software Free software sheds light on PC activity
  • Patch Watch MS patch causes BSOD if PC has Alureon malware
  •  Show all articles on a single page
Susan Bradley

About Susan Bradley

Susan Bradley is a Small Business Server and Security MVP, a title awarded by Microsoft to independent experts who do not work for the company. She's also a partner in a California CPA firm.
View all posts by Susan Bradley →

WinDeals

WinDeals offers subscribers regular discounts — of up to 50 percent off — on software and technology products. Read moreยป

View current deals
Top-scoring articles in the past 12 months
  • Leaving long cookie trails throughout the Web 5.00
  • Windows-like security for Android devices 5.00
  • Win7′s no-reformat, nondestructive reinstall 4.56
  • LizaMoon infection: a blow-by-blow account 4.46
  • RPV: Win7′s least-known data-protection system 4.35
  • Recovery: the last step in total data security 4.31
  • The sorry tale of the (un)Secure Sockets Layer 4.30
  • Time for a .NET update we can’t ignore 4.30
  • Getting the most from Windows Search — Part 1 4.25
  • Revising printing habits saves money and trees 4.25
  • Upgrades end in erratic, partial hangs 4.25
  • Get wired performance from your Wi-Fi network 4.24
  • Caution: Bumps in the road to IPv6 4.23
  • Patch Watch adds problem-patch update chart 4.23
  • ZeuS Trojan reinvents itself as bots rock on 4.22
  • Pros and cons of a ‘keyfile’ password 4.21
  • April brings showers of browser patches 4.20
  • Readers comment on the LizaMoon infection story 4.20
  • Office 2007 gets its final service pack 4.19
  • Putting Registry-/system-cleanup apps to the test 4.19
  • The advanced system-recover toolkit 4.18
  • One year and 99 security bulletins later 4.18
  • Don’t pay for software you don’t need — Part 3 4.17
  • What to do when Windows refuses to boot 4.17
  • Make the most of Windows 7′s Libraries 4.16
  • Keeping you up to date: say no to .NET — again 4.16
  • Internet Explorer gets another round of patches 4.15
  • Vacation’s over; it’s a big round of patches 4.15
  • Big-time Wi-Fi security for the small office 4.14
  • Office File Validation patch leads to problems 4.14
Connect with us Follow us on Twitter Connect with us on Facebook View our RSS Feeds
  • Home|
  • Newsletter|
  • About Windows Secrets|
  • Advertise with us|
  • Unsubscribe|
  • Sitemap|
  • Affiliates|
Trademarks: Microsoft and Windows are registered trademarks of Microsoft Corporation. The Windows Secrets series of books is published by Wiley Publishing Inc. The Windows Secrets Newsletter, WindowsSecrets.com, WinFind, Windows Gizmos, Security Baseline, Patch Watch, Perimeter Scan, Wacky Web Week, the Logo Design (W, S or road, and Star), and the slogan Everything Microsoft Forgot to Mention all are trademarks and service marks of iNET Interactive. All other marks are the trademarks or service marks of their respective owners.
iNET Interactive Copyright © 2011 iNET Interactive.
All rights reserved.
Terms of Use  |  Privacy Policy
Internet Services
  • Web Hosting Talk
  • HostingCon
  • Hosting Catalog
  • Host Voice
Web Development
  • Hot Scripts
  • DB Forums
Digital Marketing
  • ABestWeb
  • Search Marketing Standard
  • PayPerClickUniverse
  • SEMCompare
Consumer Tech
  • Windows Secrets
  • Overclockers
  • Mac Forums

Learn more about
advertising opportunities across the iNET Interactive Network.

LiquidWeb