WinRar Expired Notification – OLE Remote Command Execution

Posted by rio.sherri on Oct 01

#!/usr/bin/python -w
# Title : WinRar Expired Notification – OLE Remote Command Execution
# Date : 30/09/2015
# Author : R-73eN
# Tested on : Windows Xp SP3 with WinRAR 5.21
# This exploits a vulnerability in the implementation of showing ads.
# When a user opens any WINRAR file sometimes
# A window with Expired Notification title loads http://www.win-rar.com/notifier/
# reminding user to buy winrar to remove ads.
# Since this uses a http…

Leave a Reply