Re: A Very Dangerous Worm in Windows Metafile Images (WMF)



On 3 Jan 2006 17:39:30 -0800, Winfield Hill
<Winfield_member@xxxxxxxxxxx> wrote:

>Rich Grise wrote...
>>
>> The whole thing could probably be nipped in the bud, and most
>> viruses, worms, and such, if people could be taught to not do
>> their day-to-day stuff while logged in as administrator...
>
> I dunno, while XP home machines are used that way by default,
> most W2000 and XP-pro machines are not, yet they're vulnerable
> too. Perhaps that's because all execute the WMF code. BTW,
> over-writing of system files isn't required to get infected.

One of Bill's declared tenents of "trusted computing" was "safe by
default." Why does Windows default to executing .jpg files as wmf's?

Irfanview checks and warns me if the extension doesn't match the
header; Windows doesn't. Windows doesn't even allow me to turn on such
checking.

200 million lines of crap.

John



.



Relevant Pages

  • Re: scan for file corruption
    ... Windows XP has the ability to protect itself from system instability caused by ... Windows File Protection is always enabled and allows Windows ... see if there are any corrupt system files using scannow sfc. ... NB - The dllcache folder is extremely important so Windows XP hides it from ...
    (microsoft.public.windowsxp.newusers)
  • Windows permissions was Re: Its COBOL, Jim, but not as we know it...
    ... Windows is highly configurable; the fact that people ignore this and run ... One of the problems is also figuring out what security features ... Microsoft email can automatically execute an attachment. ... Here's a transcript from a Linux forum 4 years ago where at least one user ...
    (comp.lang.cobol)
  • Re: Using ASR to recover system files and OS booting
    ... How to Use System Files to Create a Boot Disk to Guard ... The Windows XP installation CD is also a "startup disk" or ERD ... How to Perform a Windows XP Repair Install ...
    (microsoft.public.windowsxp.perform_maintain)
  • Re: Its COBOL, Jim, but not as we know it...
    ... Windows is highly configurable; the fact that people ignore this and run ... It is _you_ that has improved the security, ... Microsoft email can automatically execute an attachment. ... Here's a transcript from a Linux forum 4 years ago where at least one user ...
    (comp.lang.cobol)
  • Re: [opensuse] Who said Linux doesnot get Virus infections
    ... you can execute a screen saver if you test it. ... They're under the general "viruses" tag. ... A Linux system being used to protect Windows ...
    (SuSE)