I noticed a strange behavior in Windows 7 today, that was not replicated in Windows Vista or XP. It isn’t a vulnerability, just a strange behavior.
If you have Windows 7 try the following:
- Open a folder that contains at least one file.
- Rename the file so the extension ends in a . (test.txt becomes test.txt.)
- Hit Yes to accept changing the file extension
- The file is now gone.
- Either hit F5, right click and select Refresh, or go to a different folder and come back.
- Your file will be there again, with the ORIGINAL file extension.
So this begs the question… where did the file go? Why was the screen not refreshed to show it appearing again, and is this possibly exploitable to hide files with?
UPDATE 1 (4/12/2011 1:50pm):
Trying to find where/how to submit Windows 7 bugs is a pain. I have submitted this finding to Steve Gibson (Security Now) since I was getting frustrated, as well as the Windows 7 Blog (http://blogs.msdn.com/b/e7/archive/2009/08/10/what-we-do-with-a-bug-report.aspx). firstname.lastname@example.org is a bounce, and I refuse to call tech support and be charged for trying to help.
UPDATE 2 (4/12/2011 2:03pm):
Steven Sinofsky (@microsoft) replied back to my email to the forum post “Thank you.” Hopefully this means someone will look into this, and keep me in the loop of the progress/resolution!