View Full Version : Spyware Exploit For MOZILLA - Beware


khat17
10-13-2007, 07:28 AM
http://www.symantec.com/security_response/writeup.jsp?docid=2007-061509-3222-99&tabid=1

http://www.spywareguide.com/product_show.php?id=3529&rss

Based on what I was told by a friend in another forum:

I was browsing a website earlier today in Lolifox and suddenly my page (or rather the browser I was using, since the tab I was in was a photo) vanished and a warning message popped up in its place. After closing some windows, I found that the browser was not gone but was instead shrunken into the corner of my screen. Here's a screenshot of what this stupid thing looked like.

http://i162.photobucket.com/albums/t263/khat17/Spyware%20and%20Virus/wtfinfecteddu0.jpg

After some googling, I found that shockingly this was an exploit directed solely at Mozilla browser derivatives. Apparently, IE, Opera and Safari are completely unaffected. It is started from an ad placed on a page which bypasses the ad filters and exploits a hole in the script blocker... to run a script. Classic.

Also, no matter what you do to that window (OK, Cancel, or click the X), it will all do the same thing; change the address of the tab that was affected to that of the rogue site, which if allowed to load will attempt to install software which I can only assume will screw up your computer pretty badly. I closed the tab before it could get that far.

So just a heads up to all the Firefox/Lolifox/Mozilla users out there... be careful.

So be careful ok pplz?

PeAcE.

Malloc-X
10-13-2007, 08:19 AM
thanks for the heads up