<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Unpatched Drive-By Exploit Found on the Web (Follow-Up)</title>
	<atom:link href="http://blogs.mcafee.com/mcafee-labs/2007/03/29/unpatched-drive-by-exploit-found-on-the-web-follow-up/feed" rel="self" type="application/rss+xml" />
	<link>http://blogs.mcafee.com/mcafee-labs/unpatched-drive-by-exploit-found-on-the-web-follow-up</link>
	<description></description>
	<lastBuildDate>Tue, 29 Nov 2011 07:51:20 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Hippocrat</title>
		<link>http://blogs.mcafee.com/mcafee-labs/unpatched-drive-by-exploit-found-on-the-web-follow-up/comment-page-2#comment-8865</link>
		<dc:creator>Hippocrat</dc:creator>
		<pubDate>Tue, 23 Jun 2009 17:40:57 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=233#comment-8865</guid>
		<description>People should get it that although the easiest attack method would be html( email, web, memory card, etc ) the attack is not restricted to that distribution mechanism.</description>
		<content:encoded><![CDATA[<p>People should get it that although the easiest attack method would be html( email, web, memory card, etc ) the attack is not restricted to that distribution mechanism.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Registry Cleaner</title>
		<link>http://blogs.mcafee.com/mcafee-labs/unpatched-drive-by-exploit-found-on-the-web-follow-up/comment-page-2#comment-8864</link>
		<dc:creator>Registry Cleaner</dc:creator>
		<pubDate>Thu, 05 Feb 2009 06:25:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=233#comment-8864</guid>
		<description>People should get it that although the easiest attack method would be html( email, web, memory card, etc ) the attack is not restricted to that distribution mechanism.</description>
		<content:encoded><![CDATA[<p>People should get it that although the easiest attack method would be html( email, web, memory card, etc ) the attack is not restricted to that distribution mechanism.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Template</title>
		<link>http://blogs.mcafee.com/mcafee-labs/unpatched-drive-by-exploit-found-on-the-web-follow-up/comment-page-2#comment-8861</link>
		<dc:creator>Template</dc:creator>
		<pubDate>Sun, 24 Feb 2008 14:17:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=233#comment-8861</guid>
		<description>One of the many disadvantages of every new Windows edition is the fact that the operating system becomes more and more bloated. Microsoft adds new features to Windows which could then be used to exploit the system. Instead of concentrating on fast efficient systems they produce heavy systems that look shiny but have problems under the surface. Recently a vulnerability in Windows Animated Cursor Handling was discovered. In order for this attack to be carried out, a user must either visit a Web site that contains a Web page that is used to exploit the vulnerability or view a specially crafted e-mail message or email attachment sent to them by an attacker</description>
		<content:encoded><![CDATA[<p>One of the many disadvantages of every new Windows edition is the fact that the operating system becomes more and more bloated. Microsoft adds new features to Windows which could then be used to exploit the system. Instead of concentrating on fast efficient systems they produce heavy systems that look shiny but have problems under the surface. Recently a vulnerability in Windows Animated Cursor Handling was discovered. In order for this attack to be carried out, a user must either visit a Web site that contains a Web page that is used to exploit the vulnerability or view a specially crafted e-mail message or email attachment sent to them by an attacker</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Alan Litchfield</title>
		<link>http://blogs.mcafee.com/mcafee-labs/unpatched-drive-by-exploit-found-on-the-web-follow-up/comment-page-2#comment-8858</link>
		<dc:creator>Alan Litchfield</dc:creator>
		<pubDate>Fri, 16 Nov 2007 00:49:24 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=233#comment-8858</guid>
		<description>I am running XP - SP2 and am experiencing a similar problem.  I had a trojan try to come in on an attachment which my antivirus caught.  However, almost immediately, Windows Explorer began crashing and restarting, recycling about every 20 seconds.  I have run several antivirus programs, Adaware, Spybot, and other registry checkers.  All came up clear.  I also copied in an &quot;explorer.exe&quot; from an unaffected computer.  Nothing has fixed my problem.  Any suggestions?</description>
		<content:encoded><![CDATA[<p>I am running XP &#8211; SP2 and am experiencing a similar problem.  I had a trojan try to come in on an attachment which my antivirus caught.  However, almost immediately, Windows Explorer began crashing and restarting, recycling about every 20 seconds.  I have run several antivirus programs, Adaware, Spybot, and other registry checkers.  All came up clear.  I also copied in an &#8220;explorer.exe&#8221; from an unaffected computer.  Nothing has fixed my problem.  Any suggestions?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Carmel Lisciotto</title>
		<link>http://blogs.mcafee.com/mcafee-labs/unpatched-drive-by-exploit-found-on-the-web-follow-up/comment-page-2#comment-8857</link>
		<dc:creator>Carmel Lisciotto</dc:creator>
		<pubDate>Sun, 10 Jun 2007 12:28:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=233#comment-8857</guid>
		<description>An informative update.

I will pass this along.

Carmelo Lisciotto</description>
		<content:encoded><![CDATA[<p>An informative update.</p>
<p>I will pass this along.</p>
<p>Carmelo Lisciotto</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: macewan</title>
		<link>http://blogs.mcafee.com/mcafee-labs/unpatched-drive-by-exploit-found-on-the-web-follow-up/comment-page-2#comment-8856</link>
		<dc:creator>macewan</dc:creator>
		<pubDate>Tue, 24 Apr 2007 19:21:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=233#comment-8856</guid>
		<description>@zezitinho, check out milw0rm

cheers</description>
		<content:encoded><![CDATA[<p>@zezitinho, check out milw0rm</p>
<p>cheers</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mike_from_mm</title>
		<link>http://blogs.mcafee.com/mcafee-labs/unpatched-drive-by-exploit-found-on-the-web-follow-up/comment-page-1#comment-8855</link>
		<dc:creator>Mike_from_mm</dc:creator>
		<pubDate>Mon, 23 Apr 2007 16:52:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=233#comment-8855</guid>
		<description>Hi Smoke:d
I Just Tried it and It&#039;s also not working on Win Vista:d Strange...
But Wft do I care... will you ever make a folder called &#039;com&#039;? just call it comm:d:p
bye...</description>
		<content:encoded><![CDATA[<p>Hi Smoke:d<br />
I Just Tried it and It&#8217;s also not working on Win Vista:d Strange&#8230;<br />
But Wft do I care&#8230; will you ever make a folder called &#8216;com&#8217;? just call it comm:d:p<br />
bye&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: smoke</title>
		<link>http://blogs.mcafee.com/mcafee-labs/unpatched-drive-by-exploit-found-on-the-web-follow-up/comment-page-1#comment-8854</link>
		<dc:creator>smoke</dc:creator>
		<pubDate>Wed, 11 Apr 2007 09:04:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=233#comment-8854</guid>
		<description>Hi Guys:

Just wanted to add something for the readers about Windows strange behaivor, try on your desktop to create a new folder and  rename it to con or Con or CON , it will never make it, I have tried this on WinXP but not on vista, if the same thing happens on vista please let me know, Thanks</description>
		<content:encoded><![CDATA[<p>Hi Guys:</p>
<p>Just wanted to add something for the readers about Windows strange behaivor, try on your desktop to create a new folder and  rename it to con or Con or CON , it will never make it, I have tried this on WinXP but not on vista, if the same thing happens on vista please let me know, Thanks</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: zezitinho</title>
		<link>http://blogs.mcafee.com/mcafee-labs/unpatched-drive-by-exploit-found-on-the-web-follow-up/comment-page-1#comment-8850</link>
		<dc:creator>zezitinho</dc:creator>
		<pubDate>Wed, 04 Apr 2007 13:15:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=233#comment-8850</guid>
		<description>I want to test this malicious ANI file, where can I find this? Thanks</description>
		<content:encoded><![CDATA[<p>I want to test this malicious ANI file, where can I find this? Thanks</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dave</title>
		<link>http://blogs.mcafee.com/mcafee-labs/unpatched-drive-by-exploit-found-on-the-web-follow-up/comment-page-1#comment-8848</link>
		<dc:creator>dave</dc:creator>
		<pubDate>Tue, 03 Apr 2007 07:26:20 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=233#comment-8848</guid>
		<description>This is a short flash video of exploiting the ANI vulnerability on Windows Vista. The exploit works against both Internet Explorer 7 and Mozilla Firefox 2.0.

http://determina.blogspot.com/2007/04/exploiting-vista-with-ani.html</description>
		<content:encoded><![CDATA[<p>This is a short flash video of exploiting the ANI vulnerability on Windows Vista. The exploit works against both Internet Explorer 7 and Mozilla Firefox 2.0.</p>
<p>http://determina.blogspot.com/2007/04/exploiting-vista-with-ani.html</p>
]]></content:encoded>
	</item>
</channel>
</rss>

