Tuesday, 7 July 2009
Video ActiveX exploit - new rogue scams anyone?
A new exploit for a vulnerability in msvidctl.dll means that random surfing could lead to your PC being pwned from remote - erm ... as usual. Expect all rogue antivirus and antispyware peddlers to be using this exploit within a couple of days, followed soon after by multiple virus and trojan writers. In other words it might be a good idea to mitigate by setting the killbit on the offending active X control, which has no legitimate use in IE anyhow. See MS KB article http://www.microsoft.com/technet/security/advisory/972890.mspx or lazy people can use this ready made registry patch.