decompression bomb

Malice Black

Site Legend

Join Date: Oct 2005

meh wtf is this?

just finished doing a virus scan and it come up as " file unable to be scanned decompression bomb"

sounds bad...im a techinal noob

Opeth11

Opeth11

Desert Nomad

Join Date: Oct 2005

Richmond, British Columbia, Kanada

Demon of the Fall [Opet]

Mo/Me

http://www.aerasec.de/security/advis...erability.html

Found this on Google, not too sure it would help. Sounds very troublesome though.

Malice Black

Site Legend

Join Date: Oct 2005

Friday, February 13, 2004
Decompression bombs
A Decompression Bomb is a compressed-format file that expands to fill your disk. The bomber sends you an email with a compressed attachment designed to choke a virus scanner or the like. This article describes in more detail how different compression schemes can be exploited. For example, using GZIP to repeatedly compress a specific byte stream in three stages can result in a file of only 5928 bytes that when expanded is 100 gigabytes!. Other file formats that use compression are vulnerable as well, for example a GIF file that represents a 6000 x 6000 black rectangle compresses down to 25527 bytes but will expand to over 100 megabytes when represented as a 24-bit image.

found this on google..posted just incase anyone else has trouble with this

any ideas how i can remove it safely? in plain english if u know how

Opeth11

Opeth11

Desert Nomad

Join Date: Oct 2005

Richmond, British Columbia, Kanada

Demon of the Fall [Opet]

Mo/Me

Ooh! I've had that before!

Think I called it Memory Dump for fun >_>

Guess we'll have to Google away for the solution.