k221405241470 0 Report post Posted April 24, 2005 From SecurityFocus http://forums.xisto.com/no_longer_exists/There is a _New_ exploit which affects the MSHTA (Microsoft HTML Application Host), using a simple program it's possible to create file from a *.hta with a _strange_ extenstion(*.foo *.ghgh *.asd) and this file will be executed by the MSHTA so if u put some malicious Vbs or JS in the *.hta the risk is very high....http://imp.ovh.net/fr/ this is the source of the program to create the malicious filesI've tested it on Xp Sp1 and Xp SP2 and both system were affected maybe also in the previous version of MSHTA there is this problem'njoy Share this post Link to post Share on other sites