Inform your users...this is an evil one. ------------------------------------------------
A spam message containing a link that leads to a "click here to remove" page has been distributed largely. In addition to the fact that it sends the user's email address to the spammers, it also points to a web page that asks to scroll it. This page uses the Drag and Drop vulnerability in Internet Explorer, so when the page is scrolled, the exploit runs a proxy backdoor. Currently it downloads and runs Backdoor.Win32.Agent.ce but since it is controlled by the spammers it could be changed at any time. More information on this vulnerability can be found here: http://secunia.com/advisories/12321/ ===================================== The full thread can be found here: http://myitforum.techtarget.com/forums/fb.asp?m=78600 _________________________________________________________________ List posting FAQ: http://www.swinc.com/resource/exch_faq.htm Web Interface: http://intm-dl.sparklist.com/cgi-bin/lyris.pl?enter=exchange&text_mode=&lang=english To unsubscribe send a blank email to [EMAIL PROTECTED] Exchange List admin: [EMAIL PROTECTED] To unsubscribe via postal mail, please contact us at: Jupitermedia Corp. Attn: Discussion List Management 475 Park Avenue South New York, NY 10016 Please include the email address which you have been contacted with.
