Thread: Virus Problem
View Single Post
Old 24-05-2006, 08:01 PM   #5 (permalink)
anandk
Distinguished Member
 
anandk's Avatar
 
Join Date: Mar 2005
Location: Pune
Posts: 3,783
Smile

Desktop.ini is used to tell Windows how to display a folder. For example, enabling Thumbnail view creates a desktop.ini file in that folder which amongst other things, tells Windows to add an extra item to the View menu for that folder. Desktop.ini files are also used when you customize folders, change their icons etc.

The problem is that "desktop.ini" files may contain CLSID references to arbitrary executables in the "[.ShellClassInfo]" section. This can be exploited to execute arbitrary files with another user's privileges when the user browses a folder containing a malicious "desktop.ini" file.

post ur hijackthis file at www.hijackthis.de for analysis to be sure.
__________________
> www.TheWindowsClub.com <
= www.WinVistaClub.com =
Microsoft® MVP
anandk is offline