The payload may be stripped, but the exploit is still contained in the HTML
code of the e-mail.  The media player loads, but there is nothing to run.
You need to apply the Microsoft patch for IE that removes the vulnerability.

--jim


-----Original Message-----
From: Etts, Russell [mailto:[EMAIL PROTECTED]]
Sent: Monday, April 22, 2002 9:41 AM
To: Exchange Discussions
Subject: W32 Klez - how does it open windows media player


Hi all

My boss was asking a question I'm not too sure about.  If the virus is being
stripped, how is it able to open Windows Media Player??

I can't seem to find an answer with either McAfee or Symantec.

Thanks

Russell

_________________________________________________________________
List posting FAQ:       http://www.swinc.com/resource/exch_faq.htm
Archives:               http://www.swynk.com/sitesearch/search.asp
To unsubscribe:         mailto:[EMAIL PROTECTED]
Exchange List admin:    [EMAIL PROTECTED]

_________________________________________________________________
List posting FAQ:       http://www.swinc.com/resource/exch_faq.htm
Archives:               http://www.swynk.com/sitesearch/search.asp
To unsubscribe:         mailto:[EMAIL PROTECTED]
Exchange List admin:    [EMAIL PROTECTED]

Reply via email to