Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Browser Security Pack v4.53 [Proxomitron]
Search Topic:
Uniqs:
325
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
Politician+Pledge = it's only a cookie... »
« Should I be worried?  
AuthorAll Replies

KyeU

join:2003-12-31
Canada


1 edit
Browser Security Pack v4.53 [Proxomitron]

Version 4.53 is Released!

Last Updated: January 2, 2006 - 5:08 AM EST

What's New?

quote:
[-Version 4.53-]

-Added (Content-Type: !!!Filter All File Types {P} [Kye-U] {JJoe} (In))
--Changes content-type for GIF files to JPEG (so it is filterable)
--Now filters all file types

-Added (Freeze GIF Animations {P} [Kye-U])
--Since the Content-Type filter disables Proxomitron's built-in "Freeze GIF" feature, this filter will freeze GIF files
--Disabled by default

-Modified (Windows: Kill Suspected WMF-Exploit Files {P} [Kye-U])
--New efficient matching technique (thanks to JJoe)
--Bytes limit is 4, so CPU usage should be minimal
--Modified Alert message slightly
--Renamed to (Windows: Nullify Suspected WMF-Exploit Files {P} [Kye-U] {JJoe})
---P stands for Pending
---as Microsoft has not released an official fix, but hopefully will soon.

-Removed (Host: All File Extensions Force Filter {P} {JJoe} (out))
»kyeu.info/proxo/forums/viewtopic···115#1115

Download here!

MD5: BFF3CF9E78A15E06048694A175B4B720

---------------------

For those who have problems with Proxomitron after merging this set, try my standalone version.

»kyeu.info/proxo/forums/docs/Kye-···lone.zip

Download, Extract to Your Proxomitron Folder, Open Proxomitron.exe, click on Load Config, select "Kye-U.Browser.Security.Pack.v4.53.Standalone.cfg".

(The difference in this one is that it has window settings and everything a normal config has)

---------------------

For those who just want my WMF-Exploit filters:

Web Page:

[Patterns]
Name = "Windows: Nullify Suspected WMF-Exploit Files [Kye-U] {JJoe}"
Active = TRUE
Limit = 4
Match = "[%00-%02][%00][%09][%00]$SET(SS=1)PrxNeverMatch"
"|[%26][%00-%FF][%09][%00]$TST(SS=1)"
Replace = "\k$ALERT(Suspected WMF-Exploit File Nullified on:\n\n\u\n\nProbable exploit and payload has been removed from the file.\n\nThe file is now harmless.)"

Header:

[HTTP headers]
In = TRUE
Out = FALSE
Key = "Content-Type: !!!Filter All File Types [Kye-U] {JJoe} (In)"
URL = "$FILTER(true)"
Match = "(*|)image/gif(*|)$SET(1=image/jpeg)|\1"
Replace = "\1"

Test the filters using harmless WMF-Exploit files here:

»kyeu.info/WMF/


antiserious
The Future ain't what it used to be
Premium
join:2001-12-12
Scranton, PA

... geez, just when I was ready to try and screw up another merge, he's one step ahead of me ! ... thanks, KyeU - you've been a busy little canuckelhead the last few days ! ... ...

... and some of us REALLY appreciate all the work you've done ...

--
... "Do You Know Where Your Towel Is ?" ...


captnhook

join:2001-02-20
NY
 reply to KyeU
Thanks KyeU
Forums » Up and Running » Security » SecurityPolitician+Pledge = it's only a cookie... »
« Should I be worried?  


Saturday, 28-Nov 14:06:58 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [122] Time Warner Cable Fires Broadside At Broadcasters
· [112] New AT&T Ad Campaign Hits Back At Verizon
· [96] Apple Joins AT&T Verizon Snark Fest
· [87] New Bill Takes Aim At Higher Verizon ETFs
· [75] TiVo Sees Record Customer Losses
· [70] Verizon CEO: Hulu Will Be Dead Soon
· [69] In-Flight Internet Headed For Bumpy Landing?
· [62] Thanksgiving Open Thread
· [60] Weekend Open Thread
· [40] EFF Wages War On Fine Print
Most people now reading
· Windows 7 boot manager editing questions [Microsoft Help]
· Using AirMax to provide triple play services? [Wireless Service Providers]
· Whats the big deal about being "Old School"....? [World of Warcraft]
· Why does it take so long? Mail question [General Questions]
· [Newsgroups] Newzleech down? [Filesharing Software]
· Why would I want an e reader? [General Questions]
· Play .avi file on TV's DVD player? [Audio/Video Chat]
· TPIA review by Electronic Box [Canadian Broadband]
· Gizmo5 has added a Google Voice section in its members area. [VOIP Tech Chat]
· Using DIR-615 C1/3.01 with Trendnet TEW-652BRP in N Mode [D-Link]