Re: Admin.dll (strings ./Admin.dll)
From: Robert D. (xkill@dingoblue.net.au)Date: 09/18/01
- Previous message: Ryan Russell: "Re: New "concept" virus/worm?"
- In reply to: w1re p4ir: "Admin.dll (strings ./Admin.dll)"
- Next in thread: Gary Flynn: "Re: Admin.dll (strings ./Admin.dll)"
- Reply: Gary Flynn: "Re: Admin.dll (strings ./Admin.dll)"
- Reply: TJ Jablonowski: "Re: Admin.dll (strings ./Admin.dll)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Wed, 19 Sep 2001 05:51:22 +1000 (EST) From: "Robert D." <xkill@dingoblue.net.au> To: w1re p4ir <w1rep4ir@disinfo.net> Subject: Re: Admin.dll (strings ./Admin.dll) Message-ID: <Pine.BSO.4.33.0109190535270.28790-100000@mars.oc.ml.org>
> Here's where it inserts the javascript to open the evil readme.eml mime Buffer overflow.
I'm I correct assuming this is the same problem discussed in MS00-043?
In that case the following configurations are safe:
IE 5.01 SP1 or later
IE 5.5 or later ( except Windows 2000, sp1 safe?? )
- Previous message: Ryan Russell: "Re: New "concept" virus/worm?"
- In reply to: w1re p4ir: "Admin.dll (strings ./Admin.dll)"
- Next in thread: Gary Flynn: "Re: Admin.dll (strings ./Admin.dll)"
- Reply: Gary Flynn: "Re: Admin.dll (strings ./Admin.dll)"
- Reply: TJ Jablonowski: "Re: Admin.dll (strings ./Admin.dll)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|