Mailinglist Archive


Click here to become infected
From:Joe Klemmer
Date: Wed, 22 Sep 2004 15:01:37 -0400

Click here to become infected
By John Leyden
Published Wednesday 22nd September 2004 09:15 GMT

MessageLabs is blocking spam linking to the domains www. xcelent.biz
(space deliberately inserted) which, if users click on the remove link
and scroll down the page triggers a DragDrop JavaScript exploit. This
uses an IE bug to download and run an EXE file, currently been analyzed
by MessageLabs.

http://www.theregister.co.uk/2004/09/22/opt-out_exploit/

[Need more reasons to switch to Mozilla/Firefox? - jjk]