Security Incidents mailing list archives
Re: A new technique to disguise a target URL in spam
From: "http-equiv () excite com" <1 () malware com>
Date: Tue, 6 Apr 2004 22:57:32 -0000
<!-- In This link http://www=2emcafee=2ecom/ the Hex translated wrongly so instead of %2E , =2E came out Hex value %2E is the dot '.' --> this is nothing more than Content-Transfer-Encoding: quoted-printable the default encoding scheme of Outlook Express mail client [possibly others]. The whole html form gimmick POC posted to bugtraq only a few days ago: http://www.securityfocus.com/archive/1/359139 -- http://www.malware.com --------------------------------------------------------------------------- Free 30-day trial: firewall with virus/spam protection, URL filtering, VPN, wireless security Protect your network against hackers, viruses, spam and other risks with Astaro Security Linux, the comprehensive security solution that combines six applications in one software solution for ease of use and lower total cost of ownership. Download your free trial at http://www.securityfocus.com/sponsor/Astaro_incidents_040301 ----------------------------------------------------------------------------
Current thread:
- A new technique to disguise a target URL in spam DCISS (Apr 05)
- Re: A new technique to disguise a target URL in spam Jeremiah Cornelius (Apr 05)
- Re: A new technique to disguise a target URL in spam Stef (Apr 05)
- Re: A new technique to disguise a target URL in spam Valdis . Kletnieks (Apr 05)
- Re: A new technique to disguise a target URL in spam Jeremiah Cornelius (Apr 06)
- Re: A new technique to disguise a target URL in spam Stef (Apr 05)
- <Possible follow-ups>
- RE: A new technique to disguise a target URL in spam Mason, Seth IFC (Apr 05)
- Re: A new technique to disguise a target URL in spam E.Kellinis (Apr 05)
- RE: A new technique to disguise a target URL in spam Yao, Tongtong (HP NewZealand) (Apr 05)
- Re: A new technique to disguise a target URL in spam http-equiv () excite com (Apr 08)
- Re: A new technique to disguise a target URL in spam Jeremiah Cornelius (Apr 05)