 DustynPremium join:2003-02-26 Ontario, CAN kudos:7 Reviews:
·Rogers Hi-Speed
2 edits | reply to dadkins
Re: SPYBOT S&D 1.3 - DSO EXPLOIT GONE! Thanks for the info.  Changes were applied yesterday evening and all is working fine.
By the way... your not REMOVING anything, your correcting a registry key by entering in the new updated values. Spybot has NEVER tried to DELETE this DSO exploit. It tries to MODIFY the key. Although the Spybot S&D program makes you think that when the DSO exploit is found, your REMOVING the affected registry key. That is not the case...your simply modifying the key. But it simply fails when using Spybot.
A manual change is safe.  I've performed it on two PC's so far. I hope you may try again.. but try to correct it manually. If not, cool. I just wanted to share my successful results.  -- "A man can tell a thousand lies, Ive learned my lesson well, Hope I live to tell the secrets I have learned, till then, It will burn inside of me..." ~ Madonna |
|
 dadkinsCan you do Blu?Premium,MVM join:2003-09-26 Hercules, CA kudos:18 1 edit | Thanks, I'll try a manual change later. |
|
 DustynPremium join:2003-02-26 Ontario, CAN kudos:7 Reviews:
·Rogers Hi-Speed
| ..... yes keyword: "CHANGE" 
Cool, I'm sure it will work for you too. 
Also? I will bump the post up tomorrow if there are no replies as threads here at the "SECURITY" forum tend to slip off the first page within an hour or so. -- "A man can tell a thousand lies, Ive learned my lesson well, Hope I live to tell the secrets I have learned, till then, It will burn inside of me..." ~ Madonna |
|
 DustynPremium join:2003-02-26 Ontario, CAN kudos:7 | -bump-  |
|
 Name GamePremium join:2002-07-07 North Myrtle Beach, SC kudos:6 | said by Dustyn: -bump- 
»www.mcse.ms/message678292.html -- Gladiator Security Forum »www.gladiator-antivirus.com/ Missing Kidshttp://www.missingkids.com/ |
|
 dadkinsCan you do Blu?Premium,MVM join:2003-09-26 Hercules, CA kudos:18 | reply to Dustyn Thanks Steele Wolf! So far so good!  |
|
 DustynPremium join:2003-02-26 Ontario, CAN kudos:7 Reviews:
·Rogers Hi-Speed
1 edit | reply to Name Game Thanks. 
Microsoft (supposedly) has patched the issue "THEIR WAY". However, Grey Magic, along with Spybot S&D still acknowledge that the DSO exploit remains to be seen as an ongoing issue. Even AFTER the MS FIX. It's just some bad entries in the registry that need cleaned up. (altered) -- "A man can tell a thousand lies, Ive learned my lesson well, Hope I live to tell the secrets I have learned, till then, It will burn inside of me..." ~ Madonna |
|
 DustynPremium join:2003-02-26 Ontario, CAN kudos:7 Reviews:
·Rogers Hi-Speed
| reply to dadkins 
I told ya!  I'm so happy it worked.  |
|
 Name GamePremium join:2002-07-07 North Myrtle Beach, SC kudos:6 | reply to Dustyn said by Dustyn: Thanks. 
Microsoft (supposedly) has patched the issue "THEIR WAY". However, Grey Magic, along with Spybot S&D still acknowledge that the DSO exploit remains to be seen as an ongoing issue. Even AFTER the MS FIX. It's just some bad entries in the registry that need cleaned up. (altered)
It is not an on going issue..no matter what they (Grey Magic) acknowledge. 
When you find someone that is patched and has been exploited..let us know. -- Gladiator Security Forum »www.gladiator-antivirus.com/ Missing Kidshttp://www.missingkids.com/ |
|
 DustynPremium join:2003-02-26 Ontario, CAN kudos:7 4 edits | If you believe it's no longer an issue, cool.
That is interesting info about the hidden My Computer zone.  |
|
 Name GamePremium join:2002-07-07 North Myrtle Beach, SC kudos:6 | said by Dustyn: If you believe it's no longer an issue, cool.
That is interesting info about the hidden My Computer zone. 
Well that was good info you posted..but i am sure spybot will fix their thingie in the next update..but in anycase I am sure you are OK -- Gladiator Security Forum »www.gladiator-antivirus.com/ Missing Kidshttp://www.missingkids.com/ |
|
|
|
 DustynPremium join:2003-02-26 Ontario, CAN kudos:7 Reviews:
·Rogers Hi-Speed
2 edits |  One more thing I need to ask... is it a good idea to REVEAL the "My Computer" zone for Internet Explorer 6 in Windows XP Pro? I know I would have to make a registry change just as you mentioned to reveal the zone.
Why does Microsoft hide it in the first place? For security reasons? Have you revealed your "My Computer" zone?
Are there any other options that could/should be tweaked for that zone if I decided to reveal the zone? I'm just wondering about if I decided to REVEAL this hidden zone, if it would change anything or mess up something?
Thanks... a lot of questions I know so thanks for your (or anyones) patience! 
~Steele Wolf~  -- "A man can tell a thousand lies, Ive learned my lesson well, Hope I live to tell the secrets I have learned, till then, It will burn inside of me..." ~ Madonna |
|
 Name GamePremium join:2002-07-07 North Myrtle Beach, SC kudos:6 1 edit | The person you want to discuss these changes and options would be a member at our forum with the nickname of R2.
But you can read some here about options. How to Enable the My Computer Security Zone in Internet Options
»support.microsoft.com/?kbid=315933
Hacking IE Security Zones
»weblogs.asp.net/ptorr/archive/20···215.aspx
Lock Down My Computer
The next thing to do is lock down the My Computer zone, just as I recommend doing with .NET security policy. This is likely to break any applications you have that show HTML UI from the local machine, so you may want to experiment with this for a bit. Make sure you back up this key before hand (as instructed above)!
The main reason you would want to lock down My Computer is that most of the recent exploits for IE have relied on the fact that you can either "trick" the browser into thinking it is loading content off the local machine when really it is just reading cached content from the web, or you can overwrite a file in a well-known location and get the browser to load it. Basically this means that someone can send you to a webpage that downloads malicious code to your local machine and then re-directs IE to the downloaded version, and gets it to run with elevated privileges because it's considered to be on the (trusted) local machine rather than the (untrusted) internet.
»added new IE zone question
»Re: Analysis of Microsoft XP Service Pack 2
-- Gladiator Security Forum »www.gladiator-antivirus.com/ Missing Kids »www.missingkids.com/ |
|
 DustynPremium join:2003-02-26 Ontario, CAN kudos:7 | Thanks a lot man for your help! I may give R2 an IM when I get the chance. 
Those links are quite interesting. VERY informative!
~Steele~ |
|
 DustynPremium join:2003-02-26 Ontario, CAN kudos:7 Reviews:
·Rogers Hi-Speed
| reply to Name Game Thanks for the encouragement Name Game! 
Also, there has been a Spybot S&D update. ========================== TEA-TIMER: ENGLISH HELP FILE ==========================
You can download it through the Spybot S&D with the online tool update program. -- "A man can tell a thousand lies, Ive learned my lesson well, Hope I live to tell the secrets I have learned, till then, It will burn inside of me..." ~ Madonna |
|
 Name GamePremium join:2002-07-07 North Myrtle Beach, SC kudos:6 | Nothing gives me more pleasure in this forum than to see a member who started a thread with a difficult question..to then read trough all the posts..then come back to help even others like you have with an excellent summation...that is what DSLR Security is all about. Sharing then what you have learned.  -- Gladiator Security Forum »www.gladiator-antivirus.com/ Missing Kidshttp://www.missingkids.com/ |
|