Posted by Nick Prowse on Mar 16
Multiple Buffer Overflows in Diagnostic Troubleshooting Wizard
Researcher: Nicholas Prowse
Filename: msdt.exe
MD5: (coming soon)
File size: 1024000 bytes Operating System: Windows 8.0
OS Version: Pro
Architecture: x64
Description field in Procmon: Buffer Overflow
Operations (FileSystem Activity):
– QuerySecurityFile
– QueryAllInformationFile
Paths:
– C:WindowsSystem32msdt.exe
-…