Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Vulnerability Development: Re: Re: Buffer overflow?

Re: Re: Buffer overflow?

From: Mike Sues <msues_at_rigelksecurity.com>
Date: Thu, 18 May 2006 19:58:58 -0400

That DLL named in the event viewer info is a WinZip component.
Are you running WinZip 8.0? Check out,

http://support.microsoft.com/?kbid=320321

--------------------------------------------
Mike Sues, GCIH
CEO & Ethical Hack Specialist
Rigel Kent Security & Advisory Services Inc
ph :613.233.HACK
fax :613.233.1788
toll
free:1.877.777.H8CK
--------------------------------------------

On May 18, ivancool2003_at_yahoo.com.ar wrote:
>
> Here is the event viewer information
>
> 0000: 41 70 70 6c 69 63 61 74 Applicat
> 0008: 69 6f 6e 20 46 61 69 6c ion Fail
> 0010: 75 72 65 20 20 65 78 70 ure exp
> 0018: 6c 6f 72 65 72 2e 65 78 lorer.ex
> 0020: 65 20 36 2e 30 2e 32 38 e 6.0.28
> 0028: 30 30 2e 31 31 30 36 20 00.1106
> 0030: 69 6e 20 77 7a 73 68 6c in wzshl
> 0038: 65 78 31 2e 64 6c 6c 20 ex1.dll
> 0040: 34 2e 30 2e 30 2e 30 20 4.0.0.0
> 0048: 61 74 20 6f 66 66 73 65 at offse
> 0050: 74 20 30 30 30 30 31 31 t 000011
> 0058: 30 30 0d 0a 00..
>
Received on May 18 2006

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos