With the Black Hat conference in full swing in Las Vegas, and detailed instructions for bypassing Microsoft’s killbit patches posted on the Web, it’s
[See the full post at: MS-DEFCON 3: Get patched now]
![]() |
Patch reliability is unclear. Unless you have an immediate, pressing need to install a specific patch, don't do it. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
MS-DEFCON 3: Get patched now
Home » Forums » Newsletter and Homepage topics » MS-DEFCON 3: Get patched now
- This topic has 20 replies, 3 voices, and was last updated 15 years, 9 months ago.
Tags: KB 936 KB 948645 KB 951847 KB 953195 KB 960715 KB 969706 KB 972260 killbit Killbit patch MS09-034 MS09-035 NET Framework patch Office 2007 Service Pack 2 Windows Vista Service Pack 2 Windows XP Service Pack 3
AuthorTopicViewing 19 reply threadsAuthorReplies-
J
Guest -
rc primak
Guest -
slacker
Guest -
sanda
GuestJuly 31, 2009 at 7:25 am #59400 -
EP
AskWoody_MVP -
rc primak
GuestAugust 1, 2009 at 12:30 am #59402Woody —
I did as you advised and went (manually) to MS Updates to download and install all outstanding MS Updates. I unhid several updates which you had previously advised us not to install. But not all the MS Updates downloaded.
I was only able to get KB 971633 (DirectShow) by first undoing a MS Fixit which you have recommended, then going to the downloads from MS TechNet for a direct stand-alone installation of this patch. The same thing happened (without undoing any Fixits) with KB 961371 (OpenType Font Engine). But then things got weirder.
I have not even been offered the Out-of-Band ATL Patch (MS09-035/ KB 969706). I have not found any place from which to download this patch as a stand-alone.
All other MS Updates did download and install perfectly fine, including the other Active X Killbits Patches.
Is there any alternate site or page from which I can manually download and install the ATL Patch (MS09-035/ KB 969706)? What else may have gone wrong here? Should I undo one or all of the previous MS Fixits for the Active X issues (and which Fixits are these)?
Secunia Software Inspector (PSI Desktop Application) now shows no insecure programs or components. (Score 100 percent) Is this a reliable indicator that I am in fact fully patched regarding MS Updates?
For now, I intend simply to keep my security programs up to date and use Firefox as my browser, and watch for anything which looks like it shouldn’t be happening on my laptop. I run Windows XP Professional, SP3.
BTW, when updating to the latest version of Flash Player, the installer left behind an Active X Control in the Windows/System32/Macromedia/Flash folder, which I had to remove using a specialized File Shredder, as the Control seems to have been hidden from the Windows Explorer GUI/API. I strongly recommend completely removing the old version (with RevoUninstaller or something equally thorough) before installing the new Flash Player version, to avoid this problem. Secunia PSI is sensitive to the old Control.
-
rc primak
GuestAugust 1, 2009 at 12:52 am #59403Woody —
In case my just-entered comment does get posted, I have additional information. I have a C++ ATL Patch also dated July 28, 2009 (just like KB 969706) but with a different KB Number (KB 973923). It looks like this is the KB Number for those who still have Visual Studio/ C++ 2005, not the 2008 version, as their C++ Runtime Environment. I bet a lot of us XP users still have that version. The KB Number on the Out-of-Band Pa tch seems to be different for us. I could not upgrade to C++ 2008 last time I tried. So maybe I am fully patched after all?
-
rc primak
GuestAugust 1, 2009 at 1:00 am #59404Comment, Part Three:
The MS09-035 Update, when I search for it at Microsoft’s web site, does indeed correspond to either of the two KB Numbers (KB 979706 or KB 973923). Which one yu are offered does indeed seem to depend upon which version of Visual Studio/ C++ Runtimes you have on your computer, at least for Windows XP users. So cancel the Search Party — I am up to date acording to Microsoft. Windows XP users with older C++ Runtimes should take note of my findings.
-
woody
Manager -
woody
Manager -
woody
Manager -
woody
Manager -
Tim
GuestAugust 1, 2009 at 7:38 am #59409Hey Woody-
I did as directed, and all is well. I did find one patch for my video card that was hidden, but the last time I downloaded a Radeon patch it totally jacked-up my system, so I didn’t install that one.
I wonder if I should though? I’m no good at these kinds of things.
Anyway, thanks for all the help.
-
maghullyback
GuestAugust 1, 2009 at 9:11 pm #59410Wood Dog,
Yesterday my £uc?+ng updates kept failing to install (error code 80246007) but when I tried today everything went okay. Best solution I’ve found is always turn commercial security suites OFF beforehand, and then download and install each individual update SEPARATELY. A major pain in the arse, but it seems to work this way every time. Yesterday I, erm, didn’t do it this way.
I’ve had an idea about how to improve the Micro$oft updates system considerably. Permanently attach one of those tazer dog training collars around Bill Gates’ neck, but modify it so that every time a Windows machine – anywhere in the world – displays an error message, ole Billy Boy gets zapped. He’d instantly buck his ideas up and get things sorted, I reckon. Gatesian Response?
Nice one Wood Dog.
-
rc primak
GuestAugust 4, 2009 at 3:52 am #59411Tim —
You should read the “MS DEFCON System” link at the top of this page and look look WAAAY down the page) at what Woody says about Microsoft Driver Updates (also known as “optional software” or “optional hardware” updates). Don’t do it — these usually will break your hardware Drivers. Instead, if you think you may need a driver update, go directly to the manufacturer’s web site and download their latest version. You will be glad you did it this way.
maghullyback —
Yes, security software, including firewalls, can wreak havoc with Microsoft Updates. Suspend or exit security programs once you are securely logged in to MS Updates (when you choose Custom or Express). It’s a bit risky to exit security software while on line, but this method minimizes the risk. When rebooting, remember to re-enable everything.
Woody —
My own updates went well, and I agree that the MS KB Number on MS09-035 was updated, but it is the same patch.
One of my favorite security programs — Super Antispyware — couldn’t handle the MS Updates, and the SAS Updater started crashing with a BSOD (Kernel Driver Memory Leak). Maybe it’s also a Comodo Firewall issue, but I have for the time being switched to Malwarebytes, which updates and scans faster anyway and has predictive heuristics in each scan. I may never switch back.
All else seems to be going well, except Secunia PSI still thinks Java Runtime (JRE) is insecure, with no existing patch or workaround. So it goes…
-
Al
GuestAugust 5, 2009 at 3:52 pm #59412Is there an ‘AskWoody for Dummies’ site? Generally I find your advice very useful and good, but when I see a link like yours of “…and detailed instructions for bypassing Microsoft’s killbit patches posted on the Web…” which takes me to an 87-page PDF of gobbledy-gook (I cannot see ANY reference to your point about their advice on how to “bypass Microsoft’s killbit patches”) I do dispare! How about just a couple paras from you on how to do this? Or a link to an understandable instruction? Cheers.
-
woody
ManagerAugust 6, 2009 at 6:14 am #59413Al –
Sorry. I should’ve been more clear. The detailed instructions posted on the Web are cookbook instructions for cracking Windows – intended for the bad guys.
Right now, all you need to be concerned about is running through Windows Update and installing all the offered patches. It may take a while, but unfortunately it’s something you need to do…
-
Barbara L
GuestAugust 11, 2009 at 10:07 pm #59414Lat few days Internet Options wont open, so I can’t delete temp files and cookies. It seems since the install of KB973346 and KB961371 on 2 July 09. I dont want to restore as KB973346 looks important as I am on XP SP3 but do you think this is causing the IO not to open and how do I fix it. Thanks
-
Peter Emsley
Guest -
woody
ManagerAugust 15, 2009 at 5:48 am #59416Peter –
I have a long hate relationship with all of the big anti-everything packages. I strongly suggest that you get rid of McAfee, Norton, and any other package that claims to “do it all” in the protection racket.
AVG Free works fine, and it’s free for personal use. Avira works well, too. I’m currently running MS Security Essentials on many machines – it’s free, but it’s still in beta – and it works great.
The one thing you can’t do is run two antivirus products (or firewalls) at the same time. It’s begging for trouble.
Viewing 19 reply threads -

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
Installer program can’t read my registry
by
Peobody
3 hours, 15 minutes ago -
How to keep Outlook (new) in off position for Windows 11
by
EspressoWillie
5 hours, 24 minutes ago -
Intel : CVE-2024-45332, CVE-2024-43420, CVE-2025-20623
by
Alex5723
3 hours, 8 minutes ago -
False error message from eMClient
by
WSSebastian42
3 hours, 2 minutes ago -
Awoke to a rebooted Mac (crashed?)
by
rebop2020
12 hours, 7 minutes ago -
Office 2021 Perpetual for Mac
by
rebop2020
13 hours, 19 minutes ago -
AutoSave is for Microsoft, not for you
by
Will Fastie
4 hours, 39 minutes ago -
Difface : Reconstruction of 3D Human Facial Images from DNA Sequence
by
Alex5723
16 hours, 51 minutes ago -
Seven things we learned from WhatsApp vs. NSO Group spyware lawsuit
by
Alex5723
2 hours, 52 minutes ago -
Outdated Laptop
by
jdamkeene
22 hours, 17 minutes ago -
Updating Keepass2Android
by
CBFPD-Chief115
1 day, 3 hours ago -
Another big Microsoft layoff
by
Charlie
1 day, 3 hours ago -
PowerShell to detect NPU – Testers Needed
by
RetiredGeek
6 hours, 47 minutes ago -
May 2025 updates are out
by
Susan Bradley
2 hours, 41 minutes ago -
Windows 11 Insider Preview build 26200.5600 released to DEV
by
joep517
1 day, 9 hours ago -
Windows 11 Insider Preview build 26120.3964 (24H2) released to BETA
by
joep517
1 day, 9 hours ago -
Drivers suggested via Windows Update
by
Tex265
1 day, 9 hours ago -
Thunderbird release notes for 128 esr have disappeared
by
EricB
1 day, 7 hours ago -
CISA mutes own website, shifts routine cyber alerts to X, RSS, email
by
Nibbled To Death By Ducks
1 day, 16 hours ago -
Apple releases 18.5
by
Susan Bradley
1 day, 10 hours ago -
Fedora Linux 40 will go end of life for updates and support on 2025-05-13.
by
Alex5723
1 day, 17 hours ago -
How a new type of AI is helping police skirt facial recognition bans
by
Alex5723
1 day, 18 hours ago -
Windows 7 ISO /Windows 10 ISO
by
ECWS
2 hours, 45 minutes ago -
No HP software folders
by
fpefpe
2 days, 2 hours ago -
Which antivirus apps and VPNs are the most secure in 2025?
by
B. Livingston
23 hours, 22 minutes ago -
Stay connected anywhere
by
Peter Deegan
2 days, 7 hours ago -
Copilot, under the table
by
Will Fastie
9 hours, 50 minutes ago -
The Windows experience
by
Will Fastie
2 days, 13 hours ago -
A tale of two operating systems
by
Susan Bradley
17 hours, 53 minutes ago -
Microsoft : Resolving Blue Screen errors in Windows
by
Alex5723
2 days, 18 hours ago
Recent blog posts
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.