republican-creole
site Search:


 
    All Forums Hot Topics Gallery






how-to block ads


 
Search Topic:
Share Topic
Posting?
Post a:
Post a:
Links: ·Hijack This logs? ·Panda Free Tools ·Vundo Removal
AuthorAll Replies


zteardrop

join:2005-12-20
Brooklyn, NY

reply to Smokey Bear

Re: [VULNERABILITY] IE6 and IE7 0-Day Exploit Reported

said by Smokey Bear:

Interesting remarks Symantec: "Symantec currently detects the exploit with the Bloodhound.Exploit.129 antivirus signature and is working on new signatures now. Symantec IPS protection also currently detects this exploit with signatures HTTP Microsoft IE Generic Heap Spray BO and HTTP Malicious Javascript Heap Spray BO. A new IPS signature, HTTP IE Style Heap Spray BO, has also been created for this specific exploit."

So when I understand well, for this specific exploit are new signatures demanded, and I assume this will be valid for all AV vendors..
Smokey,

I think what this is saying is that they already had the Generic Heapy Spray sig to cover this, however, more specific sigs were written to detect this particular exploit and not just heap sprays in general.
--
The official Norton Forum from Symantec: »community.norton.com/norton/

Saturday, 02-Jun 09:56:13 Terms of Use & Privacy | feedback | contact | Hosting by nac.net - DSL,Hosting & Co-lo
over 12.5 years online © 1999-2012 dslreports.com.
Most commented news this week
Hot Topics