Re: [Full-disclosure] what is this?

2008-01-14 Thread Mario Contestabile
Looks like the local name is actually more random: var name = c:\\win+GetRandString(4)+.exe; Kinda dumb though, as any non-admin class user won't have access to the local folder on the root [c:\]. [EMAIL PROTECTED] http://securitymario.spaces.live.com/ -Original Message- From: Jose

RE: [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup

2006-04-19 Thread Mario Contestabile
Fyi, Any NT app can bypass the local hosts file using DnsQuery(...,..., DNS_QUERY_NO_HOSTS_FILE, ...); [EMAIL PROTECTED] http://bubbler.net/outlaw/blog -Original Message- From: Joachim Schipper [mailto:[EMAIL PROTECTED] Sent: April 13, 2006 8:13 PM To: