Could anyone suggest a way to deal with this intruder? This intruder occurs when accessing an MSN groups page. My Norton Firewall keeps triggering every time I attempt to open several of the group pages, and once my firewall blocks this threat, the page(s) are disabled. Apparently this intruder attempts to read any existing cookies on your machine for advertising purposes, and can direct an unsuspecting user to possibly malicious web sites.
According to the security report, the Cookie Monster originates from Microsoft's MSN Groups. I have contacted MSN about this, and the best advice they could give me was to disable my firewall, as it is conflicting with some of the features on the MSN groups' pages. I advised them that disabling my firewall was not an option, and I have received no further correspondance from MSN.
This issue is apparently related to older versions of Netscape's browsers, however it appears to have made a crossover to IE. I am using IE6, Windows XP SP2. I have read conflicting opinions on how to treat this issue. The question is, would it be safe to configure my firewall to ignore this threat, and I would just empty out cache/temporary internet files after each session, so there is nothing for this little animal to access.
thanks
JB
Just doing a quick Google check on this gave me this from Symantec but you probably already know this. I've been in an MSN group since 2001 and have never heard of anybody with this problem before and I also have XPSP2 and I use IE6 with that particular website because Firefox does not work well with it.
http://securityresponse.symantec.com/avcenter/nis_ids/s20506.html
Unfortunately, yes, I already checked out those options, and the google search gave me opposite opinions of "yes, ignore", or "no, don't ignore"..I have been a member of MSN groups also since 2001, and its only in the last couple of months I've had this problem ( 2 go-arounds with it now)...I am sure MSN is responsible for it, for advertising purposes, since they don't seem all that eager to help, and the suggestions they gave me were ludicrous. The only solutions I can think of is either (a) close down the site, and move the content elsewhere, or (b) have my firewall ignore it, but before going to the site, empty out my cache and Temp Int. Files so the little bugger has nothing to access. However, before doing anything else, I'll see if anyone else here can offer any another solutions.
one of the ads there and IF that is the case, it might be temporary and disappear when they rotate the ads. Last year there was an ATT ad and the if it happened to come up on a page you were on, it had sound like a TV ad. It drove us all nuts for 2 months. It eventually stopped. Also about 3 or 4 months ago there was an ad (I forget which company) that was trying to install an active-X component but the SP2 Firewall blocked it. Do you use either SpywareBlaster or Spybot S&D? I use both including Spybot's Host's file which one or the other may be blocking it in my case.
other than disable javascript because the offending site uses javascript.
Or do what you mentioned - move the content elsewhere.
It's a positive detection. I wouldn't go in ignoring it unless you want the data available by "others" or to whom it ever send back the "details" it found.
| Forum legend: | |
| Locked thread | |
| Moderator | |
![]() |
CNET staff |
![]() |
Samsung staff |
| Norton Authorized Support team | |
| AVG staff | |
| Windows Outreach team | |
![]() |
Dell staff |
| Intel staff | |