BugTraq
Re: new internet explorer exploit (was new worm) Mar 31 2004 03:50PM
roozbeh afrasiabi (roozbeh_afrasiabi yahoo com) (1 replies)


I have made little changes to the exploit jelmer coded,and now it

can run any program with parameters on victim's system (executable's path or MUICACHE name must be known)it can download other files to victim's system ,it is also possible to run files using their bond programs( if 1001001.xls is placed on victim's system it will be opened using excel automaticlly god this ****).

The exploit places a chm file (x.chm) on victim's c:\\ directory,everything else is done using this chm file, it has access to most programs on victim's system so it can do much more than a virus could do.

cmd+dir:

http://www.freewebs.com/roozbeh_afrasiabi/exc.htm

[ reply ]
Re: new internet explorer exploit (was new worm) Mar 31 2004 07:10PM
mgotts 2roads com


 

Privacy Statement
Copyright 2010, SecurityFocus