Re: Malicious programs that are installed via HTML.




"Lew" <iewhfiweuf@xxxxxxxxxxx> wrote in message
news:g9eBf.7398$Y6.2865@xxxxxxxxxxxxxxxxxxxxxxx
> AIUI, it was not all that long ago when the threat to personal users,
> was attachments that when executed compromised machines with keyloggers,
> trojans, etc.
>
> Now it seems that the big problem is reading a webpage or an HTML e-mail
> and getting affected through the scripting. My understanding is that
> the script downloads the malicious program from the web and sets it to
> run on start up through the start-up folder or in the registry.
>
> I don't know much about this; can someone suggest a good web site to
> start learning a bit more about these threats. I have googled, but I am
> not quire sure of the best search terms, and since there is so much
> information out there, a site that experienced people endorse would be a
> lot of help.
>
> Thanks.
####################################
I've been blocking all active scripting in IE for about 7 years now along w/
cookies. Most prople won't do that because they can't view certain sites.
That has prevented pop ups, worms and probably a host of other things. I
don't even have an anti virus running.
donnie.


.



Relevant Pages

  • Malicious programs that are installed via HTML.
    ... AIUI, it was not all that long ago when the threat to personal users, was attachments that when executed compromised machines with keyloggers, trojans, etc. ... My understanding is that the script downloads the malicious program from the web and sets it to ... I don't know much about this; can someone suggest a good web site to start learning a bit more about these threats. ...
    (alt.computer.security)
  • FW: Trojans Outpace Viruses As Threats - free article peer review.
    ... "According to leaders in the Anti-Virus industry, viruses are becoming ... less of a threat if you compare the numbers of virus infections to the ... thew number of Trojans being produced makes them a greater threat than ... the 1% fall in new virus code. ...
    (Security-Basics)
  • Re: Cross Domain Scripting Vulnerability, Javascript
    ... The local computer zone in XP SP2 doesn't have permissions to execute ... >>> Microsoft Internet Explorer file:javascript: Cross Domain Scripting ... The web site has to know the exact path and name of the ...
    (microsoft.public.windows.inetexplorer.ie6.browser)
  • [Corrected CVE number] Re: Fix available for Sgdynamo
    ... The referenced SecurityTracker report contains the correct number -- it ... > about a cross-site scripting bug in a script called Sgdynamo. ... A remote user can conduct cross-site scripting attacks against ... > from the web site running the Ecometry software and would run in the ...
    (Vuln-Dev)
  • Re: Adding code to create fldr to the "saving embedded graphics" macro??
    ... That original Web site code, wherever it is, it's not written very well... ... Open your Outlook VBA project or whatever project your current code lives ... see Windows Scripting Runtime. ... > Set colAttachments = Nothing ...
    (microsoft.public.outlook.program_vba)