Home / malwarePDF  

Generic.XPL.ADODB


First posted on 21 November 2011.
Source: BitDefender

Aliases :

Generic.XPL.ADODB is also known as VBS.Psyme, variants.

Explanation :

Variants of this trojan are written in VBscript or Javascript. It attempts to download from internet an executable, save it locally to hardisk (usually replacing a valid executable) and execute it.
It does this by exploiting a vulnerability in Internet Explorer (the ADODB.Stream object)

Previously, these threats were detected as Exploit.ADODB.Stream.Gen

Last update 21 November 2011

 

TOP