people, posting yesterday is not a hoax! YOU MUST DISABLE ICONS in Windows. | |
Anonymous Coward (OP) User ID: 1042521 Germany 07/20/2010 04:45 PM Report Abusive Post Report Copyright Violation | How could my icons be infected this is bullshit they are just a fucking link to the directory with the exe file nothing more with a stupid gif or jpg Quoting: Anonymous Coward 1038058false. The *.LNK processor within Explorer is misfunctioning. NTFS knows hardlinks and softlinks. You can embedd Code inside the *.LNK, has nothing to do with where it leads to or from. The code is inside the icon. Since Vista and 7 also virtual links to virtual folders and virtual registry hives ( virtualized User Profiles / User Account Control ) . If this *LNKs are manipulated,it can redirect to real folders and the real registry. If you dont understand how the mechanism is working, read again Microsofts Advisory. YOu are know the third one I told so. |
Anonymous Coward User ID: 631426 United States 07/20/2010 04:49 PM Report Abusive Post Report Copyright Violation | ............ Quoting: Anonymous Coward 1042521I have no idea what you are talking about. Can you please explain this in words of one syllable for the computer-challenged among us. I don't use "Icons", I just log onto the internet via Windows. Should I be worried? Should I use Firefox instead? HERE IN PLAIN WORDS : ICONS ON DESKTOP = DISABLE! ICONS IN "MY COMPUTER" AND "MY DOCUMENTS" = DISABLE ! VISUAL APPEALING PREVIEWS = NO MORE ! IF YOU USE WINDOWS _ DISABLE ALL ICONS. MS HAS A STEP BY STEP SOLUTION, SEE THIS TOPIC AND YOU'LL FIND IT. Firefox PER SE is safe On OSX and on Linux. If Windows is infested you cannot even trust Firefox nor any other App. thanks for the insight OP. The fix is quick and painless. I appreciate it. |
Anonymous Coward User ID: 721569 Canada 07/20/2010 04:51 PM Report Abusive Post Report Copyright Violation | I was on my little netbook yesterday for awhile...I used it again this morning and it was running very slow, thought I'd degragment, when degraging started a warning popped up saying I had malware, I quarentined it, then I had to re-start the computer, after that it ran fine again...not sure if this was related??? I'm not an expert. |
Anonymous Coward User ID: 455858 United States 07/20/2010 04:52 PM Report Abusive Post Report Copyright Violation | This vulnerability is most likely to be exploited through removable drives. For systems that have dont_use_this disabled, customers would need to manually browse to the affected folder of the removable disk in order for the vulnerability to be exploited. I don't use removable drives, so no problem. Quit exaggerating what it really is! |
Anonymous Coward User ID: 1042612 United States 07/20/2010 04:59 PM Report Abusive Post Report Copyright Violation | This vulnerability is most likely to be exploited through removable drives. For systems that have dont_use_this disabled, customers would need to manually browse to the affected folder of the removable disk in order for the vulnerability to be exploited. Quoting: Anonymous Coward 455858I don't use removable drives, so no problem. Quit exaggerating what it really is! Feeling comfy in your chair knowing that it doesn't affect you... YET? Keep on top of things because there are no victims, only the pwned. |
Anonymous Coward (OP) User ID: 1042521 Germany 07/20/2010 05:11 PM Report Abusive Post Report Copyright Violation | This vulnerability is most likely to be exploited through removable drives. For systems that have dont_use_this disabled, customers would need to manually browse to the affected folder of the removable disk in order for the vulnerability to be exploited. Quoting: Anonymous Coward 455858I don't use removable drives, so no problem. Quit exaggerating what it really is! how foolish you are to read only "removable drives" ? A networked folder somewhere, a usb drive, a extrenal disk, a ftp folder in icon view, hell even "online storage" uses all what exactly ? Answer : ICONS. |
Anonymous Coward User ID: 1000007 United States 07/20/2010 06:31 PM Report Abusive Post Report Copyright Violation | |
Anonymous Coward User ID: 1042782 United States 07/20/2010 06:34 PM Report Abusive Post Report Copyright Violation | |
Anonymous Coward User ID: 1042460 Portugal 07/20/2010 07:39 PM Report Abusive Post Report Copyright Violation | How could my icons be infected this is bullshit they are just a fucking link to the directory with the exe file nothing more with a stupid gif or jpg Quoting: Anonymous Coward 1038058Everything has (or is) code attached to it. Viruses are code. There you are.. |
Anonymous Coward User ID: 861225 United States 07/20/2010 07:43 PM Report Abusive Post Report Copyright Violation | |
Anonymous Coward User ID: 1010415 United States 07/20/2010 08:48 PM Report Abusive Post Report Copyright Violation | |
lewbo User ID: 1042940 Canada 07/20/2010 09:32 PM Report Abusive Post Report Copyright Violation | If anyone bothered to read the OP's reference one would discover the OS's affected: Windows XP Service Pack 3 Windows XP Professional x64 Edition Service Pack 2 Windows Server 2003 Service Pack 2 Windows Server 2003 x64 Edition Service Pack 2 Windows Server 2003 with SP2 for Itanium-based Systems Windows Vista Service Pack 1 and Windows Vista Service Pack 2 Windows Vista x64 Edition Service Pack 1 and Windows Vista x64 Edition Service Pack 2 Windows Server 2008 for 32-bit Systems and Windows Server 2008 for 32-bit Systems Service Pack 2 Windows Server 2008 for x64-based Systems and Windows Server 2008 for x64-based Systems Service Pack 2 Windows Server 2008 for Itanium-based Systems and Windows Server 2008 for Itanium-based Systems Service Pack 2 Windows 7 for 32-bit Systems Windows 7 for x64-based Systems Windows Server 2008 R2 for x64-based Systems Windows Server 2008 R2 for Itanium-based Systems See? It's not all MS systems. I never updated to XP SP3 because of unresolved questions as to what it fixed. Long ago I disabled a number of services that had no use for a personal computer situation. I tried versions of Linux many years ago but the applications available didn't accomplish what I needed; and there are still no apps for what I do under Windows, or it is that the apps involve commandline switches that boggle the mind. In over 20 years I've had only one infection that was fixed by reinstalling the OS, updates and a few programs: one day lost. I now run xp sp2 with a third party firewall, an html filter and a physical firewall/router. Get with it people. Sheesh. |
Anonymous Coward User ID: 1042098 Australia 07/21/2010 03:12 AM Report Abusive Post Report Copyright Violation | Well, you'll find XP SP2 and SP1, SP0 (no SP) all have the same problem. Sticking with SP2 won't help you. This is because Micro$oft only list supported OS's in their reports. For those that still need some "English" clarification on what's going on: Windows uses an internal routine (program if you like) to display the icons associated with .lnk files. The bug that's been found allows hackers to create an icon .lnk file in such a way, that when the internal routine goes to display that icon, it runs the hackers program instead, thus infecting your computer. This routine has always had this bug, only now, the hackers know about it and are making use of it. Not just removable drives but anywhere a .lnk is being accessed/displayed. This can USB drive, Network share, internet explorer shortcut, any other program the uses the routine to display an .lnk file. Something someone needs to check, I don't use windows here so can't. Can someone (after switching off the .lnk files) check to see if internet explorers webpage icons (the alien on GLP for example) are still displayed in the title bar and tabs or wherever they are meant to be. If these icons are normal, that's ok, if they are also blank icons (like the ones now in your start menu) then there is a possible infection route simply by going to a website (via IE) with an infected icon. Can someone check these type of icon and post for all here please. |
popcorn User ID: 1043147 United States 07/21/2010 03:16 AM Report Abusive Post Report Copyright Violation | |
Anonymous Coward User ID: 1042098 Australia 07/21/2010 03:21 AM Report Abusive Post Report Copyright Violation | |
Anonymous Coward User ID: 1043152 United States 07/21/2010 03:23 AM Report Abusive Post Report Copyright Violation | |
Anonymous Coward User ID: 1029691 United States 07/21/2010 03:25 AM Report Abusive Post Report Copyright Violation | HKEY_CLASSES_ROOT\lnkfile\shellex\IconHandler Quoting: Anonymous Coward 1042521Sorry, there's nothing called "IconHandler" present in my registry. Either Microsoft doesn't know how to instruct people properly on their own operating systems, or this is just plain ol' bullshit. |
Anonymous Coward User ID: 1042020 United States 07/21/2010 03:27 AM Report Abusive Post Report Copyright Violation | |
34 User ID: 1042337 United States 07/21/2010 03:29 AM Report Abusive Post Report Copyright Violation | HKEY_CLASSES_ROOT\lnkfile\shellex\IconHandler Quoting: Anonymous Coward 1029691Sorry, there's nothing called "IconHandler" present in my registry. Either Microsoft doesn't know how to instruct people properly on their own operating systems, or this is just plain ol' bullshit. I agree....I don't understand SHIT here, i am not a nerds... This doesn't make sense, it does sound like a hoax from MS, something not right here If this is serious, how come MSM haven't report this, they alwasy report serious virus I smell bullshit, a icon? give me a break We get 1 million new virus everyday, you can't beat them all the time. |
Anonymous Coward User ID: 328186 United States 07/21/2010 03:30 AM Report Abusive Post Report Copyright Violation | |
Anonymous Coward User ID: 1042098 Australia 07/21/2010 03:32 AM Report Abusive Post Report Copyright Violation | HKEY_CLASSES_ROOT\lnkfile\shellex\IconHandler Quoting: Anonymous Coward 1029691Sorry, there's nothing called "IconHandler" present in my registry. Either Microsoft doesn't know how to instruct people properly on their own operating systems, or this is just plain ol' bullshit. Perhaps the key is in a different spot on some windows versions, micky$oft are sill at (ALL) times. |
Anonymous Coward User ID: 1029691 United States 07/21/2010 03:32 AM Report Abusive Post Report Copyright Violation | |
Anonymous Coward User ID: 1041807 United States 07/21/2010 03:32 AM Report Abusive Post Report Copyright Violation | |
Anonymous Coward User ID: 1042098 Australia 07/21/2010 03:33 AM Report Abusive Post Report Copyright Violation | |
Anonymous Coward User ID: 1042098 Australia 07/21/2010 03:40 AM Report Abusive Post Report Copyright Violation | It looks like Sophos have a fix. In the demo they use the example of a USB stick, remember it could just as well be a network drive with a bad icon. [link to www.youtube.com] |
Anonymous Coward User ID: 1043288 Australia 07/21/2010 03:42 AM Report Abusive Post Report Copyright Violation | Fuck off yes the wonderful y2k of computing.. im calling BS, you sound like a bunch of scared schoolgirls having just walked out of sex education 101 and learned about all teh nasty STDs in the world.. everyone's a professional huh.. I say again fuck off I use the computer as a tool, it doesn't control my life nothings actually on the bloody thing that I couldnt afford to lose I dont give a shit, more people shouldnt too but noooooo scramble around like ants on a hotplate, install teh linuxorz omgz and all that, here comes the rush of linux fanboys I can hear them thundering down the hallway now let the bullshit commence I predict mass suicides |
VenusFreakin User ID: 1042018 Australia 07/21/2010 03:42 AM Report Abusive Post Report Copyright Violation | |
Anonymous Coward User ID: 1042098 Australia 07/21/2010 03:43 AM Report Abusive Post Report Copyright Violation | |
Mr Pants User ID: 1015613 United States 07/21/2010 03:45 AM Report Abusive Post Report Copyright Violation | |
Anonymous Coward User ID: 1043288 Australia 07/21/2010 03:48 AM Report Abusive Post Report Copyright Violation | Lookup a 1994 game Operation Innerspace its great :) You collect icons and destroy infected icons.. its a 2d space shooter. but the things you collect and destroy are actually Icons from your computers directory Reminds me of this, in a good way |