<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: MS09-002 Exploit in the wild uses MSWord Lure</title>
	<atom:link href="http://blogs.mcafee.com/mcafee-labs/2009/02/17/ms09-002-exploit-in-the-wild-uses-msword-lure/feed" rel="self" type="application/rss+xml" />
	<link>http://blogs.mcafee.com/mcafee-labs/ms09-002-exploit-in-the-wild-uses-msword-lure</link>
	<description></description>
	<lastBuildDate>Tue, 29 Nov 2011 07:51:20 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Praveen Darshanam</title>
		<link>http://blogs.mcafee.com/mcafee-labs/ms09-002-exploit-in-the-wild-uses-msword-lure/comment-page-1#comment-22466</link>
		<dc:creator>Praveen Darshanam</dc:creator>
		<pubDate>Sat, 21 Feb 2009 07:36:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=805#comment-22466</guid>
		<description>So what exactly is the virus doing after opening the malicious document (.doc) file other tham connecting to some chinese site. Is it downloading malicious binaries from the web site......what is the intended purpose of those downloaded binaries. Expecting McAfee will update with the information.

Best Regards,
Praveen Darshanam,
Security Researcher</description>
		<content:encoded><![CDATA[<p>So what exactly is the virus doing after opening the malicious document (.doc) file other tham connecting to some chinese site. Is it downloading malicious binaries from the web site&#8230;&#8230;what is the intended purpose of those downloaded binaries. Expecting McAfee will update with the information.</p>
<p>Best Regards,<br />
Praveen Darshanam,<br />
Security Researcher</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Godert Jan van Manen</title>
		<link>http://blogs.mcafee.com/mcafee-labs/ms09-002-exploit-in-the-wild-uses-msword-lure/comment-page-1#comment-22464</link>
		<dc:creator>Godert Jan van Manen</dc:creator>
		<pubDate>Thu, 19 Feb 2009 21:42:20 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=805#comment-22464</guid>
		<description>Here we go ... again :)</description>
		<content:encoded><![CDATA[<p>Here we go &#8230; again <img src='http://blogs.mcafee.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Rachel</title>
		<link>http://blogs.mcafee.com/mcafee-labs/ms09-002-exploit-in-the-wild-uses-msword-lure/comment-page-1#comment-22459</link>
		<dc:creator>Rachel</dc:creator>
		<pubDate>Wed, 18 Feb 2009 15:36:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=805#comment-22459</guid>
		<description>This is mainly the reason why I prefer Mozilla browser than IE. Especially IE7? Oh, I encountered so many problems with this browser especially when downloading attachments using MSWord.</description>
		<content:encoded><![CDATA[<p>This is mainly the reason why I prefer Mozilla browser than IE. Especially IE7? Oh, I encountered so many problems with this browser especially when downloading attachments using MSWord.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Philipp GÃ¼hring</title>
		<link>http://blogs.mcafee.com/mcafee-labs/ms09-002-exploit-in-the-wild-uses-msword-lure/comment-page-1#comment-22458</link>
		<dc:creator>Philipp GÃ¼hring</dc:creator>
		<pubDate>Wed, 18 Feb 2009 11:49:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.labs.com/research/blog/?p=805#comment-22458</guid>
		<description>Does the Active-X component have a GUID that can be kill-bitted?</description>
		<content:encoded><![CDATA[<p>Does the Active-X component have a GUID that can be kill-bitted?</p>
]]></content:encoded>
	</item>
</channel>
</rss>

