Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

New Exploit Rocks IE, Downloads Scores Of Spyware, Adware
TechWeb ^ | September 19, 2006 | Gregg Keizer

Posted on 09/19/2006 5:36:00 PM PDT by Eagle9

An unpatched vulnerability in all editions of Microsoft's Internet Explorer browser is being exploited, security researchers said Tuesday, with the attack dumping a broad range of adware, spyware, and Trojans onto PCs whose users simply surf to an infected or malicious site.

First reported by Sunbelt Software -- although rival Internet Security Systems claimed it was the first to discover the bug -- the vulnerability is in how IE renders VML (Vector Mark-up Language), an extension of XML that defines on-the-Web images in vector graphics format. The previously unknown -- and thus unpatched -- bug inside IE is already being used by attackers.

So far, said Eric Sites, vice president of research and development at Sunbelt, the exploit has shown up on hardcore porn sites, which are serving a buffet of badware to users who visit those sites.

"First they were pushing Virtumondo adware," said Sites, "but by late afternoon yesterday, these sites were distributing more than 40 different types of malware, including keyloggers, adware, and backdoors."

The new exploit seems to have a connection to WebAttacker, an multi-exploit attack "kit" created by a Russian group that sells for as little as $15 to $20. "We think that this new exploit is inside a new [version of the] kit," said Sites. "If that's true, then it will end up all over the place."

Sites said he expects that the exploit will migrate to one of the so-called "iframe cash" sites -- the term comes from the iframecash.biz site -- which use affiliates to push unpatched exploits to a large number of other Web sites, some of which are legitimate addresses whose servers have been previously compromised.

"This could end up being in lots

(Excerpt) Read more at techweb.com ...


TOPICS: Technical
KEYWORDS: browser; embracethepenguin; exploit; getamac; godiamtiredofthis; ie; lowqualitycrap; malware; microsoft; microsoftsecurity; ocrap; pr0nware; spyware; windows
Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-8081-95 last
To: DollyCali
Have you tried the User Agent Switcher extension? It works for me on the few sites that I run across that say they require IE. It tells the site that you are using IE.

https://addons.mozilla.org/firefox/59/

81 posted on 09/19/2006 10:41:32 PM PDT by Eagle9
[ Post Reply | Private Reply | To 77 | View Replies]

To: bitt

Well, I must be the only dinosaur here.
I use IE and am running WIN98.

I have no problems at all.

However, I use my daughter's computer at times.
She has XP, and three children.

Their computer is a mess.

I will use this computer, and WIN98, until they die.

I'm happy, but I must be the most boring person on
the internet...lol.


82 posted on 09/19/2006 11:02:49 PM PDT by dixiechick2000 (There ought to be one day-- just one-- when there is open season on senators. ~~ Will Rogers)
[ Post Reply | Private Reply | To 40 | View Replies]

To: Eagle9
New Exploit Rocks IE

Clinton Tells Another Lie
Muslims Blame Another Problem on US, Israel
Sun Rises In East Again

83 posted on 09/20/2006 6:58:25 AM PDT by steve-b (The urge to save humanity is almost always a false front for the urge to rule.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Eagle9; bigdcaldavis; Wuli; Clara Lou; rocksblues; Principled; GeorgiaDawg32; driftdiver; EGPWS
Do any of you people know how to get Firefox to display MS Exchange/Outlook Web email correctly? It does things like put any subfolders of Inbox over to the right along with the email headers, and it doesn't seem to want to include the preview window.
84 posted on 09/20/2006 8:31:51 AM PDT by KayEyeDoubleDee (const Tag &referenceToConstTag)
[ Post Reply | Private Reply | To 1 | View Replies]

To: driftdiver

Exactly what I do too! :)


85 posted on 09/20/2006 8:59:17 AM PDT by Kaylee Frye
[ Post Reply | Private Reply | To 18 | View Replies]

To: KayEyeDoubleDee

Sorry. I do not have that problem with Firefox with any web-email, from any of the ISPs with which I am using their web-email (my primary Email is automatically downloaded to my Thunderbird app on my PC, whenever I connect to the web.

So, I think your problem might be related to the particular ISP that you have your web-email with, their web-email pages and something they have done in an MS-IE-specific manner.


86 posted on 09/20/2006 9:15:17 AM PDT by Wuli
[ Post Reply | Private Reply | To 84 | View Replies]

To: Stentor

Did you check the date on the uninstall.exe file. Is that date the same as the install date for the 1.5.07 version, or is it earlier?

Have you tried the basic Win add/remove programs app?


87 posted on 09/20/2006 9:21:11 AM PDT by Wuli
[ Post Reply | Private Reply | To 56 | View Replies]

To: dixiechick2000

I'm with you on Win 98, but I did switch to Firefox a couple years ago and found that IE had been making my DSL seem alot slower than it actually was. Now my Win 98 with Firefox does faster downloads than my neighbor's cable-modem. Part of the reason may be that Firefox is a smaller leaner app than IE, 'cause it was not "re-engineered" to "bundle" with the MS-Win-OS.


88 posted on 09/20/2006 9:28:07 AM PDT by Wuli
[ Post Reply | Private Reply | To 82 | View Replies]

To: OrangeDaisy
My Bank's internet banking requires IE or Netscape.

Ummm, you do realize that Netscape is built on Mozilla? I have not found any site that supports Netscape, limiting access to my Firefox.

Have you actually tried using Firefox on your bank site, or did you just take their supported browsers at face value? I access both BankOne/Chase and Nat.'l City websites just fine with Firefox.

89 posted on 09/20/2006 9:33:32 AM PDT by AFreeBird (If American "cowboy diplomacy" did not exist, it would be necessary to invent it.)
[ Post Reply | Private Reply | To 37 | View Replies]

To: AFreeBird

I have tried using Firefox on my bank site. It gives me a message that the browser is not supported.


90 posted on 09/20/2006 10:34:37 AM PDT by OrangeDaisy
[ Post Reply | Private Reply | To 89 | View Replies]

To: OrangeDaisy
I have tried using Firefox on my bank site. It gives me a message that the browser is not supported.

Is javascript turned on? You might get that message if it isn't, and most on-line banks require it.

Now surfing with JS turned off is smart, and it is a pain to have to go back and enable it when needed and then turn it off again when you're done. That's why the Firefox extension "NoScript" is so great. You can globally deny JS, and then selectively allow it for certain sites (every time you visit), such as on-line banking w/out having to go through all the hassle.

91 posted on 09/20/2006 10:45:10 AM PDT by AFreeBird (If American "cowboy diplomacy" did not exist, it would be necessary to invent it.)
[ Post Reply | Private Reply | To 90 | View Replies]

How To Defend Against IE's VML Bug
http://www.freerepublic.com/focus/f-news/1705072/posts (9/20/2006)
92 posted on 09/20/2006 1:09:44 PM PDT by Eagle9
[ Post Reply | Private Reply | To 1 | View Replies]

To: Wuli

I downloaded again and reinstalled and the entry is back in add/remove programs. Thanks for your help.


93 posted on 09/20/2006 1:47:11 PM PDT by Stentor
[ Post Reply | Private Reply | To 87 | View Replies]

To: Eagle9

Does anyone still use Internet Explorer?


94 posted on 09/20/2006 2:11:24 PM PDT by BJClinton (What happens on Free Republic, stays on Google.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Wuli

I've tried Firefox, too.
It doesn't seem to make a
difference, speedwise, with
my cable.

Like a good conservative,
I'm not partial to change. ;o)


95 posted on 09/20/2006 6:04:17 PM PDT by dixiechick2000 (There ought to be one day-- just one-- when there is open season on senators. ~~ Will Rogers)
[ Post Reply | Private Reply | To 88 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-8081-95 last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson