Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Another IE Exploit » Scary!
Search Topic:
Uniqs:
161
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Post a:
Post a:
IE all the way »
« Great slashdot quotes  
AuthorAll Replies


bokamba
Chengdu Rocks
Premium
join:2002-04-05
Falls Church, VA
Scary!

I often use the "Open" option. Thank goodness I use Mozilla Firebird more often these days!


Nam Vet
Premium
join:2001-12-03
Allentown, PA
me too, Well only from trusted sites and usually only pdf's,
but no longer!


Pole883
Premium
join:2004-01-27
Schenectady, NY
 reply to bokamba
Yes, it is scary.....I utilize K-Meleon , these days; ya never know.....I use I.E. 6 for updates ....

So it goes....
--
Pole883


devil24
Premium
join:2002-06-28
Houston, TX
reply to bokamba
Hail to the new king... Mozilla Firebird!

Deathsadvoca

join:2003-08-20
South Lyon, MI
clubs:
reply to bokamba
Mozilla Anyone?

tc17

join:2003-08-14
reply to bokamba
I must be missing something, because when I use IE to open this file, it opens it as an html file. When I use Mozilla Firebird, it wants to open it as an html file also.


Kylemaul
Lovin' My Firefox 1.5.x
Premium
join:2001-03-30
North Port, FL
clubs:
 reply to Nam Vet
My Posting Tag says it all!:D


Nam Vet
Premium
join:2001-12-03
Allentown, PA


2 edits
reply to tc17
Click for full size
I E 6
Click for full size
FIREBIRD
I'll say your missing something!
yes it is a html file but you are led to believe its a pdf!

it's the download dialog box that is not letting you know the correct file type!
if you chose to open this file thinking its a pdf does acrobat reader open? NO!!!

Although if you download the file (at least in the case of this exploit demo) and then try to open it windows now thinks its a pdf because of its extension.

so after downloading it when you try to open it acrobat reader opens but you get an error message either because its zero bytes or because its an html file.

If the demo actually was not zero bytes and you did download an html file either windows explorer would append the correct extension to the file(maybe) or if it still said it was a pdf then acrobat would try to open it but you would get an error message (from acrobat reader) that the file was an invalid format.

using a zero byte file for this demo was not the right thing to do, however the demo is correct in pointing out that the IE download dialog box shows an incorrect extension or does not reveal (NOTE THE EMPTY "FILE TYPE" LINE) The correct file type

btw using firebird is not the same thing!
it's download dialog box lets you know its an html file!
--
H O W T R U E : If you want something done, ask a busy person to do it


53059959
Temp banned from BBR more then anyone

join:2002-10-02
PwnZone

reply to Pole883
nothing new

wow this is nothing new, sites have been doing this for a while. if you visit warez/crack sites on a regular basis you get that all the time, sites trying to make you think your downloading a legit file. all you gotta do (in ie) is when you go to save it, you will notice it's not a pdf or what it claims to be when you save it.
Forums » Another IE ExploitIE all the way »
« Great slashdot quotes  


Wednesday, 02-Dec 12:44:39 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.republican-creole
page compression OFF
Most commented news this week
· [159] Comcast Releasing Promised Usage Meter
· [73] Latest Consumer Reports Survey Not Kind To AT&T
· [69] Baltimore To Ban Lazy Cable Installs
· [60] Broadband Killed The Game Console
· [54] Rogers Unveils The ISP Dream Model
· [48] Graduate Student Unveils Sprint's GPS Sharing With Feds
· [46] ACTA: Global Three Strikes
· [41] Rural Carriers Quickly Embracing Fiber
· [36] Charter Exits Chapter 11
· [33] AT&T Top Lobbyist Cicconi Has His Feelings Hurt
Most people now reading
· Data Usage Meter Launched [Comcast HSI]
· MS admits Windows Updates principally created to annoy [Security]
· Windows 7 boot manager editing questions [Microsoft Help]
· LFM Overkill [World of Warcraft]
· IMG 1.7 (IMG Updates and Discussion) [Verizon FIOS TV]
· So I found a gold mine... [World of Warcraft]
· Ooma changing features [VOIP Tech Chat]
· [Newsgroups] Newzleech down? [Filesharing Software]
· UBB round 2 at the CRTC [Canadian Broadband]
· cleaning LCD [General Questions]