Microsoft to XP Users: 'Don't Press F1'

A recently discovered vulnerability is disrupting how Windows XP handles VBScripts that are used to load Help files. Hackers could disguise malicious code as a Windows Help file (with the extension ".hlp"), and then launch a pop-up window prompting users to press F1 for help. Pressing F1 would in fact load the malicious file, and execute the code, thus infecting a PC. Fortunately, the vulnerability does require user interaction, so those who refrain from using Help (or who turn it off entirely) will remain safe. Details for how to turn off Help can be found here.
The vulnerability applies to IE6, IE7, and IE8 on Windows XP. Vista and Windows 7 users, meanwhile, are unaffected.
Microsoft is currently working to patch the flaw, but has not announced a time by which to expect a fix. This is just one more reason to join the 21st century, and leave XP behind as the quaint memory of a bygone era that it is. [From: Microsoft, via: Computer World]





The List #0147: Escape a Car Underwater
Visit the Maldive Islands Before It's Too Late
H&M's Plus-Size Model Jennie Runk Says She Chose To Gain Weight
Okla. Sheriff's Deputy Finds Dog Guarding Body Buried Under Destroyed Home
Reptiles Make Home in UK Man's Cable Box
Springtime Budget-Busters -- Savings Experiment
Is This Woman Too Pretty To Work?
Xbox One hardware and specs: 8-core CPU, 8GB RAM, 500GB hard drive and more
Editorial: Engadget on the Xbox One
Parents Face Tough Choice When Tornadoes Bear Down














Comments
88
Subscribe to commentsCarneyMar 2nd 2010 1:04PM
And leave IE behind for good measure.
Or even all Microsoft software.
Johnny KMar 2nd 2010 1:09PM
Ahh nothing like a good sensationalist story from Switched. Why bother turning on our computers at all at this point?
shanedieselblackMar 2nd 2010 2:27PM
Umm...you must be a corporatist teabagger, because there are other operating systems?
ReinhartMar 2nd 2010 4:19PM
"Umm...you must be a corporatist teabagger"
Great way to use ad-hominem to avoid dealing with the contention that "Switched" is being sensationalist.
You don't need to get another OS just because of the help file vulnerability. All you have to do is keep in mind this vulnerability until Microsoft issues a fix through Windows Update.
But, if you don't use Internet Explorer and use an alternate web browser, such as Firefox, then it's virtually a non-issue.
People may have reasons for continuing to use XP instead of 7, Linux or OS X, so it's very much out of line for "Switched" to basically turn the suggestion into a plug for Microsoft.
If you have XP and it works perfectly for you and you aren't concerned about upgrading quite yet, then keep using XP. XP is still supported by Microsoft until 2014, including security updates and any future service packs. The only obstacle would be if you want to play the latest games but, usually, people who play the newest games will most likely already have the latest version of Windows and sufficient hardware to run it in order to have the latest version of DirectX that many new games may require.
And, to add to the ignorance of "Switched," Windows XP was released in the 21st century (and the NT codebase, which is the basis not only for XP, but also for Vista and 7, is a product of the early 1990s, but this isn't new as the basic platform for OS X and Linux, UNIX, is from the late 1960s).
As for me, I still use XP for some projects and for my own amusement with games that don't quite work right with Vista and 7; I use OS X for work.
suzyQMar 2nd 2010 2:22PM
I don't ever even use the F keys. I suppose this would be one instance when ignorance truly is bliss, if the story is valid.
ArloMar 2nd 2010 2:40PM
Wait....my computer has an F1 key?
ohiopoohgirlMar 2nd 2010 2:29PM
Thats why I have a MAC
eyeforeye42Mar 2nd 2010 6:18PM
Amen
dexndizMar 3rd 2010 12:47AM
"leave XP behind as the quaint memory of a bygone era that it is" ? i never heard XP referred to in any way like this. always thought XP was excellent and Vista sucked. why does this almost sound like Microsoft nudging us to buy into "7" ?
wouldnt be the first time a big corp used scare tactics to pad their sales and bottom line...
Jerry DennisMar 2nd 2010 9:50PM
My first OS was Windows 3.1, and it worked great. Then Microsoft came out with Windows 95. I stayed with 3.1 because everyone I knew who "upgraded" to 95 dumped it and went back to 3.1. Eventually, after deciding 95 was trash, they came out with 98. Many people, including me, upgraded. 98 was great. Then, in an attempt to "improve," here comes 2000. Another version of 95, in other words, crap. Then XP shows up. And it works great. All of a sudden, we need to get into the 21st century, so Vista arrives. GARBAGE! Now they have 7. It seems every other OS Microsoft comes out with is the true upgrade. What ever comes after 7 will be crap until its replacement is released.
snowstormsefMar 3rd 2010 1:23AM
can everyone get of this corporations suck high horse without corps. most people would not have jobs no jobs no eat see how this works +
brownm118Mar 3rd 2010 4:41AM
Thats exactly right ! Id take XP over Vistaany day!
MarshaMar 3rd 2010 5:39AM
@Jerry - HAHA - You completely omitted ME.... which came directly after 2000 and was complete and utter garbage as well...
winstonusaMar 10th 2010 6:41PM
i agree xp was great. i now unfortunatly have vista and it sucks.
syxeMar 2nd 2010 2:34PM
Is this JOURNALISM or PUBLIC RELATIONS GONE MAD?
Shame, COMPUTER WORLD, for working as a M$ PARROT!
If you're STILL using XP (including a bunch of Netbook owners), there are 2 options: WAIT until M$ develops a patch (and don't use F1 meanwhile) or DON'T USE IE (use it only when and if it's mandatory...) and install the latest FIREFOX browser while you take the decision on which NON-M$ OS you could be comfortable with....
Paul JonesMar 2nd 2010 2:52PM
And Please don't push B1,It makes me cry.
romeonovMar 2nd 2010 6:11PM
Please baby, Please... don't play B-17. It was our song. It was his song. But, It's Oh Oh Overrrr... LOL
Thanks for the memory Paul
philMar 2nd 2010 7:41PM
caught it...right away! LOL! Good One!
bill a.Mar 2nd 2010 2:53PM
......F1 where ???
brownfoxiiMar 2nd 2010 2:55PM
Oh no! What about OS X, oh wait that's a Mac and I'm safe. (Heehee)