Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Working WMF test site
Search Topic:
Uniqs:
2195
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
Add DNS servers to trusted zone on Zone Alarm »
« Politician+Pledge = it's only a cookie...  
AuthorAll Replies


dvd536
as Mr. Pink as they come
Premium
join:2001-04-27
Phoenix, AZ
Working WMF test site

Are there any working[safe] WMF test sites that people can test the patches with? the GRC one that linked to has the patch but the blog/test isnt there.
--
You can never be too rich, too thin or have too much Bandwidth


ZOverLord
Premium
join:2003-10-20
Minneapolis, MN


3 edits
Yes, I have created the most current version of test files for this exploit 1.17 ("Which was changed Today") from 1.16 both on-line and in zip files, also I have created test files from the last 2 prior releases ("1.16 and 1.14") as well in zip files, more information here:

»Windows MetaFiles still vulnerable
--
Black, Grey and White Hats Unite here -> »testing.OnlyTheRightAnswers.com

mysec
Premium
join:2005-11-29

reply to dvd536
I downloaded a wmf file that was posted for testing a few days ago - it's the one that runs calc.exe.

I've put it on my site in a page using iframe

iframe src="test.wmf" style=""> iframe>
_______________________________________

wfmtest



SpannerITWks
Premium
join:2005-04-22

Hi my,

I've included this as it displays a different result to all the previous peoples tests i've done over the past few days.



When i close the page i get roundabout a 100mS flash of this -



I had to save the page to disk to actually be able to view it properly in able to take the screeny. The interesting thing about this test is the box in the upper left hand side. What was supposed to be in there that my system wouldn't allow me to see ?

AntiVir still kicked in as above, when opening the saved page.

Spanner
--
I Only Know What I Know, But I'm Learning all The Time - Stay Safe - Spanner intheWorks/SpannerITWks


jbob
Reach Out and Touch Someone
Premium
join:2004-04-26
Little Rock, AR
·Comcast
·AT&T Southwest

reply to dvd536
Click for full size
I tried it and first got the Open dialog in Fx which defaulted to Open wmffile. I chose to save to disk and then got the second error gui box "could not be saved....". After that then my AV popped up it's thing. I also get that box in the upper left hand screen.


norwegian
Premium
join:2005-02-15
Outback
·WestNet Broadband

reply to dvd536
Click for full size
All good here, KAV gets it before i get chance to open it.

mysec
Premium
join:2005-11-29


2 edits
reply to SpannerITWks
said by SpannerITWks See Profile :

The interesting thing about this test is the box in the upper left hand side. What was supposed to be in there that my system wouldn't allow me to see ?
That is the iframe.

On the hacked sites the iframe tag includes "display=none"

I let it display so you can see. Since there is nothing legitimate to display, the frame is blank, or displays "page not found" or something like that.

edit: clarify iframe



SpannerITWks
Premium
join:2005-04-22
Hi my,

Thanx 4 the clarification.

Good 2 go !

Spanner
Forums » Up and Running » Security » SecurityAdd DNS servers to trusted zone on Zone Alarm »
« Politician+Pledge = it's only a cookie...  


Friday, 03-Jul 22:26:47 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 9.5 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [144] Biden Unveils Broadband Stimulus
· [94] AT&T: 65,000 SMS Sent Per SECOND
· [90] Compuserve Classic Says Goodnight
· [80] Thomas To Appeal Huge RIAA Fines
· [71] iPhone 3GS Already Jailbroken
· [67] Verizon: Cut Your Landline To Save Money
· [60] The Pirate Bay Gets Sold
· [60] Cable Carriers Miss Tru2Way Deadline
· [59] Breakdown of 3G Network Speeds, Reliability
· [57] The Broadband Stimulus Gets, Uh, Less Patriotic?
Most people now reading
· Canada's slipping position on net access cost & speed [TekSavvy]
· Those Who Rented A Car From Enterprise [General Questions]
· McAfee false-positive glitch fells PCs worldwide [Security]
· So who's going to line up to pay $9.99/mo for turn-by-turn? [All Things Macintosh]
· TSI Usenet vs. Paid Usenet [TekSavvy]
· MCMVII: Liberty 20 Dollar Coin [General Questions]
· Digging a hole in limestone [Home Repair & Improvement]
· Firefox 3.5 Final Released [Security]
· Bell Landline to go up by $2, will this apply to TSI as well [TekSavvy]
· Status of 2008-108 Throttling Review and Vary [Canadian Broadband]