Re: [Full-disclosure] test this



Hi there

Using a previous unknown hole in windows, an exploit was discovered
which infects a PC with spyware and trojans. The PC is infected using a
manipulated picture in the WMF format.

Only Symantec found a trojan downloader. Another AV scanners found the
downloaded code, but did not recognize the actual downloader.

(http://www.heise.de/security/news/meldung/67794 for the german
speeking)

More info:
http://www.f-secure.com/weblog/archives/archive-122005.html#00000752
http://isc.sans.org/diary.php?storyid=972

My scanners (McAfee, Kaspersky, Clam) did not find anything.




On Wed, 2005-12-28 at 08:39 -0800, D B wrote:
> could the uber geeks who do spyware check the
> attachment for me ??
>
> do not click this URL if in windows ... possible
> malware
>
> it is obtained from
> http://www.cabbage-soup-diet.com/negative-calorie.html
>
>
> GF has countless popups after visiting this site and
> scanning with several different scanners isnt finding
> the source

--
Peter Bruderer
Bruderer Research GmbH

phone +41 52 620 26 53
www.brg.ch

peter.bruderer@xxxxxx
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/



Relevant Pages

  • Re: Linux Fails the Scotland Police Dept.
    ... >>Conveniently open to viruses, trojans, spyware etc etc. ... > user who takes some elementary precautions. ... Niether in Linix OR Windows. ...
    (comp.os.linux.misc)
  • Re: Linux Fails the Scotland Police Dept.
    ... >>Conveniently open to viruses, trojans, spyware etc etc. ... > user who takes some elementary precautions. ... Niether in Linix OR Windows. ...
    (alt.os.linux.suse)
  • Re: Richter - Video Chopin Etude Op. 25 #11 (1989)
    ... I haven't reinstalled my OS (windows 98) in the six years I use it ... probably infected with spyware, adware, trojans and viruses. ...
    (rec.music.classical.recordings)
  • Slow Load Time
    ... Recently Windows take 2-4 minutes to load up, ... I thought possibly Spyware, Trojans, etc... ... I have absolutely no idea why it suddenly loads windows incredibly slowly, ...
    (microsoft.public.windowsxp.perform_maintain)
  • Re: Help on SEARCH with MSN
    ... It is not spyware or any of those as I have them all ... You should periodically defragment your hard drives as well as check them ... using Windows XP "prettifications". ... You should at least turn on the built in firewall. ...
    (microsoft.public.windowsxp.configuration_manage)