Mailinglist Archive
| Click here to become infected
|
| From: | Joe Klemmer |
| Date: | Wed, 22 Sep 2004 15:01:37 -0400
|
Click here to become infected
By John Leyden
Published Wednesday 22nd September 2004 09:15 GMT
MessageLabs is blocking spam linking to the domains www. xcelent.biz
(space deliberately inserted) which, if users click on the remove link
and scroll down the page triggers a DragDrop JavaScript exploit. This
uses an IE bug to download and run an EXE file, currently been analyzed
by MessageLabs.
http://www.theregister.co.uk/2004/09/22/opt-out_exploit/
[Need more reasons to switch to Mozilla/Firefox? - jjk]