.................................
To leave Commie, hyper to
http://commie.oy.com/commie_leaving.html
.................................

Jarmo Lundgren wrote on Thu, 31 Jan 2002 about following:

> ... which reminds me: anyone knowing how that Flash virus worked? The whole 
> existence of that kind of virus is a big mystery to me: You can't write on 
> client's hard disk with Flash. Is there a security hole or something?

from http://www.securityfocus.com/columnists/53

" SWF/LFM-926 is meant only to be a proof of concept virus. It is only 
able to infect .SWF files under certain circumstances, when run under 
products that most people do not have installed. According to a 
Macromedia, you must have installed "a Macromedia stand-alone Flash 
Player or associated Projector executable to represent a risk." Further, 
"This player is not installed by any browser installation, and is only 
installed with the Macromedia Flash authoring product." "


from http://www.f-secure.fi/v-descs/swflfm.shtml

"This is the first virus of its kind. However, it is not an urgent 
threat as the virus can not jump from a web page to an end user machine 
during normal surfing. The only way it can succesfully spread is that 
the SWF file is downloaded manually, placed to a directory which 
contains clean SWF files and then executing the file with Shockwave 
Player

SWF.LFM.926 uses the Shockwave ActionScript scripting system to spread. 
While infecting other files, it shows a display saying "Loading Flash 
Movie". "

sakke
-- 
there has been like 5000 acid house records after that and nobody made it like 
pierre, pierre did it in a musical way that followed the mood of the song, 
everybody else just turned knobs.  
     - marshall jefferson, about phuture's "acid trax" 

Reply via email to