CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
spacer spacer
image Beware!: New Trojan exploits known vulnerability image
Microsoft

International data security software developer Kaspersky Labs reports that a new Trojan program, StartPage, is exploiting an Internet Explorer vulnerability for which there is no patch. Kaspersky Labs says StartPage is the first malware to infect computers via the "Exploit.SelfExecHtml" vulnerability in the Internet Explorer security system.

The company warns that if a patch is not released soon, other viruses could exploit the vulnerability, resulting in what the company calls “a long-lasting, large-scale epidemic that could surpass even the Klez epidemic”.






By Tracy Burrows
May 22, 2003

In a warning issued today, Kaspersky Labs says StartPage is sent to victim addresses directly from the author and does not have an automatic send function. The first mass mailing to several hundred thousand addresses was registered in Russia on 20 May.

The StartPage program is a Zip-archive that contains an HTML file. Upon opening the HTML file, an embedded Java-script is launched that exploits the "Exploit.SelfExecHtml" Internet Explorer security system vulnerability and clandestinely executes an embedded EXE file carrying the Trojan program.

Article continues...
IT Web


Posted on Thursday, 22 May 2003 @ 08:04:49 UTC by cj (1674 reads)
[ Trackback ]
image

"Beware!: New Trojan exploits known vulnerability" | Login/Create an Account | 0 comments
Threshold
The comments are owned by the poster. We aren't responsible for their content.

No Comments Allowed for Anonymous, please register
 
Login
spacer
Nickname

Password

Security Code: Type Security Code: Usage signifies AUP acceptance
· New User? · Click here to create a registered account.
block bottom
Related Links
spacer
· del.icio.us!
· digg it!
· reddit!
· TrackBack (0)
· HotScripts
· W3 Consortium
· HTML Standard
· Google Microsoft Search
· Microsoft
· Technet Online
· HotFix & Security Bulletins
· More about Microsoft
· News by cj


Most read story about Microsoft:
Microsoft Security Bulletin MS06-001: Official WMF Patch

block bottom
Article Rating
spacer
Average Score: 5
Votes: 2


Please take a second and vote for this article:

Bad
Regular
Good
Very Good
Excellent


block bottom
Options
spacer

Printer Friendly Page  Printer Friendly Page

block bottom
spacer spacer