Full Disclosure mailing list archives

found suspicious desktop.ini in startup folders


From: "BillyBobKnob" <billybobknob () hotmail com>
Date: Tue, 24 Aug 2004 10:55:45 -0300

Does anyone know if this file is used in an exploit since it was found in
startup folders ?

The contents of the file are:

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21787



BillyBob

Attachment: desktop.ini
Description:


Current thread: