Windows MetaFile Image Exploit Threatens Windows Users

Click for image source

As I’m sure most of you have heard by now, this is a serious problem.  Simply visiting a website with a specially coded .wmf image can infect your PC with a Trojan.  Actual damage to the PC seems minimal at this point, but the code has been publicly posted (confirmed, I’ve SEEN the code) and could be mutated into something more malicious quite easily. 

According to VirusList, this issue exists if the malicious image has been downloaded or (and more importantly) when viewed in Internet Explorer and possibly Firefox (my cross-reference shows Firefox should be safe so long as you don’t choose to open the file).  Of course, you probably already know about this issue and I’m not writing to inform you for the first time.  Microsoft doesn’t have a fix out yet so my advice would be of course prudence in clicking links, but also to download either Opera Internet Browser or Firefox.  Opera won’t make you invulnerable, but it will, like Firefox, prompt you before automatically opening the file, so if you see a .wmf, be careful.  Previously not freeware (it is now), this is a great browser, my personal favorite, featuring tabbed browsing, a built-in RSS feeder, good security, and an overall good layout.  Give it a shot to help keep your machine safe for now and maybe you’ll even like it enough to hang on to.  Also, reports say that setting your IE security level to high can mitigate risks, if you are inclined to stay with IE.  Many antivirus companies are releasing updates concerning this vulnerability, so make sure you’re updated.

As always, download Windows Updates as you see them, keep your Antivirus software up to date, run a software or hardware firewall if at all possible, and be careful what you click.  Hopefully all of our readers will keep this off their machines.  Happy and safe surfing!

 

Virus info source: CNET News

If you like this post, please share it with someone...
  • Digg
  • Sphinn
  • del.icio.us
  • Facebook
  • Mixx
  • Google
  • blogmarks
  • BlogMemes
  • Furl
  • Live
  • NewsVine
  • SphereIt
  • Spurl
  • StumbleUpon
  • Technorati

Get Mobility Site via Email

You can also participate in other conversation in our active forums with 200,000 other Members. It only takes 2 minutes to sign up one time for free in the forums. Thanks for reading.

2 Responses to “Windows MetaFile Image Exploit Threatens Windows Users”


  1. Luckily I have Trend Corp that covers the problem :)

  2. Darn! I have Trend Micro 2005 and they are the only major AV who has NOT released any scanning or removal tools yet.

    The TM security alert site didn’t even mention this threat as of about an hour ago.

Leave a Reply

You can use these XHTML tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <code> <em> <i> <strike> <strong>

You Should Also Check Out These Posts:

More Active Posts:

About Mobilitysite

Mobilitysite.com is a site covering Mobility News, Reviews, and Discussion. Our coverage focuses on Windows Mobile Phones and PDAs, but extends on past that as well. Tablet PC, UMPC, and Personal Media Players like the Zune and iPod are loosely covered as well. To learn more about Mobilitysite and/or Aximsite, read here. Also take time to register in our forums too. There is a wealth of information to be found inside and registering yourself in the forums also registers you with the blog portion of the site.

Mobilitysite - Aximsite - Hard Reset Guide - AT&T Tilt Site

Contact Us - About Us - Privacy Policy - Advertise - News Archives - Forum Archives - Donate - Top