This is a read-only archive. No new posts or registrations. Privacy Page
Discussion

MS05-053 exploit released

1 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

FYI…

- http://isc.sans.org/diary.php?storyid=836
Last Updated: 2005-11-10 14:09:13 UTC
"Trend Micro is reporting a trojan in the wild (TROJ_EMFSPLOIT.A) that is exploiting the recent MS05-053 vulnerability announced on Tuesday. The trojan causes EXPLORER.EXE to crash, which isn't so much fun for Windows users.
The Trend Micro notice is available at:
http://www.trendmicro.com/vinfo/virusencyc…ROJ_EMFSPLOIT.A …"
"…Users are advised to download the latest Microsoft patches to avoid infection…"

:ph34r:
FYI…

- http://www.techworld.com/security/news/ind…RSS&NewsID;=4781
14 November 2005
"…Trend has now admitted that the Troj_emfsploit.A Trojan was mis-analysed by its security team, and the appearance of exploiting the flaws was probably an unfortunate coincidence. The company had claimed the Trojan could cause explorer.exe - which supports the Windows GUI shell - to crash. Customers that had not yet applied Microsoft’s patch MS05-053 would have been vulnerable. In fact, it turns out that it can only cause a GUI crash in Windows XP systems prior to the Service Pack 1 (SP1) update of 2002. Windows 2000 systems are vulnerable up to Service Pack 4…"

:oops: :oops: