If you are using Internet Explorer switch to firefox

Any great announcement will be made here.
Post Reply
User avatar
lhurgoyf
Site Admin
Posts: 244
Joined: Tue Oct 08, 2002 12:38 am
Contact:

If you are using Internet Explorer switch to firefox

Post by lhurgoyf »

http://www.mozilla.com/firefox/

why? :

There's a brand new exploit found in Windows/IE's image renderer. A malformed WMF image can run any code it likes on your computer if manipulated.

Symantec response

To put it simply, if you use Windows, you're at risk.
If you're using IE, even loading an infected image can infect you.
If you're using another browser, you're safe from immeadiate infection, but be warned that the image may still exist in your browsers cache.

Any manipulation of an infected image will result in infection. This includes viewing it, allowing Windows to thumbnail it, or even opening the folder it resides in! Exercise extreme caution.

HOW TO FIX IT
Update your virus protection. If you don't have one installed, NOD32 Trial Edition with the latest definitions will stop it before it can cause damage.

Stop using IE if at all possible.

Note that Google Desktop Search WILL TRIGGER the exploit if it tries to scan an infected image. Disable Google Desktop Search.

The following methods are untested and MAY cause damage to your system. No responsibility is taken for any damage caused.
Disable the built-in Windows component responsible for viewing WMF files. Go to Start - Run, and type

Code: Select all

regsvr32 /u shimgvw.dll
and press Enter.
You can re-enable this by using

Code: Select all

regsvr32 shimgvw.dll
but that would be quite silly to do until a patch is released.

R1CH of the Something Awful forums has come up with an UNOFFICIAL PATCH.
Here's a patched GDI32 (well, not quite a patch, just a workaround so it isn't possible to jump to arbitrary code). Since GDI32.DLL is constantly in use by Windows, you'll need to find your own tricks to install it. Try closing all apps, running task manager, killing explorer, run cmd prompt (from task manager), close task manager and then replace GDI32.DLL from the cmd prompt. Type 'explorer' to restart the desktop.

Possible alternative install method: rename gdi32.dll to gdi32.old, extract patched version, reboot.

Use ONLY on a fully patched XP SP2 install. If your gdi32.dll 'file version' (right click, properties) isn't '5.1.2600.2770 (xpsp_sp2_gdr.051005-1513)' or SHA-1 hash fa02573ce6239d1c375db93058810fb968390485 then DON'T use this!
<a href="http://r-1.ch/gdi32.zip" target="_blank">http://r-1.ch/gdi32.zip</a>


Ok. Attempt 2. Again, this is ONLY for Windows XP SP2 fully patched systems, with gdi32.dll file version "5.1.2600.2770 (xpsp_sp2_gdr.051005-1513)" and SHA-1 hash fa02573ce6239d1c375db93058810fb968390485.

1. Download http://r-1.ch/gdi32.zip
2. Extract to windows/system32/dllcache. Yes to overwrite.
3. Rename windows/system32/gdi32.dll to gdi32.old
4. Copy windows/system32/dllcache/gdi32.dll to windows/system32/
5. Reboot.

Press "Cancel" to any Windows File Protection prompts.

Auxie2
Member
Posts: 305
Joined: Wed Jun 11, 2003 1:38 am
Location: Manchester UK

Post by Auxie2 »

hmm shit could this be why my comps been running shit slow the past week?
Life is a quest for knowledge and understanding brought forth by the magical synchronicities we create

User avatar
Death Scythe
Moderator
Posts: 978
Joined: Sat Jun 07, 2003 5:17 pm
Location: Cookstown, Northern Ireland
Contact:

Post by Death Scythe »

Cuntface bots, get some taste!

User avatar
Defiance
Member
Posts: 192
Joined: Tue Jul 02, 2002 11:30 pm
Location: Klub KoD
Contact:

Post by Defiance »

I thought Kale mentioned all new members needing approving or something?

>.<
*BZZT*
System entering standby mode...

User avatar
lhurgoyf
Site Admin
Posts: 244
Joined: Tue Oct 08, 2002 12:38 am
Contact:

Post by lhurgoyf »

i've already told kale that guest accounts were still active.

may end up just switching this over to vB board or something so I can actually control stuff... and people wont continuously try and hack my site through the forum.

User avatar
Defiance
Member
Posts: 192
Joined: Tue Jul 02, 2002 11:30 pm
Location: Klub KoD
Contact:

Post by Defiance »

Possibly a plan; its not like we are paying you to host this (as far as I know :wink: )
*BZZT*
System entering standby mode...

User avatar
Kalestone
Site Admin
Posts: 869
Joined: Mon Jul 01, 2002 4:36 pm
Location: France
Contact:

Post by Kalestone »

Defiance wrote: Possibly a plan; its not like we are paying you to host this (as far as I know :wink: )

*cough*
"With the first link, a chain is forged. The first speech censured, the first thought forbidden, the first freedom denied, chains us all irrevocably. The first time any man's freedom is trodden on, we are all damaged."

User avatar
Defiance
Member
Posts: 192
Joined: Tue Jul 02, 2002 11:30 pm
Location: Klub KoD
Contact:

Post by Defiance »

Kalestone wrote:
Defiance wrote:Possibly a plan; its not like we are paying you to host this (as far as I know :wink: )

*cough*


What? 0:)
*BZZT*
System entering standby mode...

Delta445
Member
Posts: 1
Joined: Sat Mar 11, 2006 7:17 pm
Location: USA
Contact:

Stars' Empire - join the free online strategy

Post by Delta445 »

Yeap... I took a look at your game and it seemed to be quite interesting. I even started to play myself.
Wanna join us?

Post Reply