Re: Self-Executing FOLDERS: Windows XP Explorer Part V

From: Liu Die Yu (liudieyuinchina_at_yahoo.com.cn)
Date: 01/27/04

  • Next message: Jesse Keating: "[FLSA-2004:1187] Updated screen resolves security vulnerability"
    Date: 27 Jan 2004 08:25:55 -0000
    To: bugtraq@securityfocus.com
    
    
    ('binary' encoding is not supported, stored as-is)

    here is what's happening here on my default and up2date winxp.home:
    i downloaded the ZIP file at:
    http://www.malware.com/my.pics.zip
    double clicked it and another windows explorer popped up - there was folder inside the zip file.
    then i double clicked the folder - and my screen was burning... :-P

    i can play more interesting games when at my school:
    just shout out : man, i've shared matrix3 in "mat3" folder on my machine \\UMBRELLA...
    many guys will doubleclick that "folder" and get compromised. :-))))))

    ----------------------

    conclusion:
    cheating the victim into openning a folder icon is much easier than cheating them into openning an HTM file.
    so this is excellent stuff!

    another thing:
    it works under "mcafee virus scan" at present.

    added to my little collection of ie vulnz:
    http://www.safecenter.net/UMBRELLAWEBV4/ie_unpatched/index.html
    (a part of TRIE - http://continue.to/trie )


  • Next message: Jesse Keating: "[FLSA-2004:1187] Updated screen resolves security vulnerability"

    Relevant Pages

    • Re: Verify who made/modified a doc
      ... We have, on occcations disconected network ... for three days etc) and we have found a couple of students ... the students to save all work in a folder and between ... >have enforced it (expelled the ones found cheating, ...
      (microsoft.public.office.misc)
    • Re: Temporary folder ?
      ... when openning and an email with some jpg pics and i double click on a pic ... then picassa open it in a temporary folder. ... how can i tell Outlook Express to work with one TEMP folder? ...
      (microsoft.public.windows.inetexplorer.ie6_outlookexpress)
    • Re: How to delete Excel 2007 file from list under Recent Documents
      ... Recent Documents when opening Excel. ... You can remove the links by openning up the recent files folder and deleting the links. ...
      (microsoft.public.excel.misc)
    • Re: php-mbstring-4.3.8-2.1
      ... I have had up2date hang when checking dependencies. ... far as clearing the /var/spool/up2date folder. ... > yum and up2date handle that situation automatically. ...
      (Fedora)
    • Error ID = 0x80070005, Remedy ID = 0x00000000
      ... This message always appears while i try running a movie was protected first by fake folder which make the folder and it contenents hidden by openning this folder as control panel. ... After deinstalled and reinstalled this programe while this folder protected, I found all files " mpeg files " encrypted and can not be deincrypted by normal ways. ...
      (microsoft.public.windowsmedia.player)

  • Quantcast