WRQ's AtGuard 3.22, a now discontinued (for 2+ years) personal firewall and ad/pop-up filter, blocks the exploit. I imagine that Norton Internet Security and Norton Personal Firewall should do the same, as these products are built on WRQ's code.
Of course, they're really only blocking the pop-up window, not the actual execution of cmd.exe. > -----Original Message----- leon [mailto:[EMAIL PROTECTED]] said: > http://www.liquidwd.freeserve.co.uk/ > > > Try it with a windows machine and IE with all patches. > > Be afraid be very afraid. > > FYI this is for all those people who are think that just having a > firewall is enough. > > Guess what? > > This works through packet filter, stateful inspection and proxy > servers.