Home page logo

fulldisclosure logo Full Disclosure mailing list archives

Re: RE: How to Break Windows XP SP2 + Internet Explorer 6 SP2
From: Maarten <fulldisc () ultratux org>
Date: Wed, 20 Oct 2004 19:43:16 +0200

On Wednesday 20 October 2004 17:07, Thor Larholm wrote:
I successfully reproduced this exploit on a fully patched XPSP2
installation and can verify that malware.htm is planted locally after
which HTML Help is used to launch it and circumvent the XPSP2 browser
security improvements, compromising the system.

However, this exploit did not work on any systems with Qwik-Fix Pro
installed, from Windows 95 to Windows XP Service Pack 2. A free Home
edition and a trial Corporate edition is available for download at


No it is not, at least not before you fix your broken downloadform.  Hitting 
submit does nothing at all.  (You're not seriously telling us that you need 
MSIE to download qwikfix, or do you ?!)  

a disappointed potential customer

Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]