Home / malwarePDF  

Trojan:Win32/Giframe.A


First posted on 06 August 2010.
Source: SecurityHome

Aliases :

Trojan:Win32/Giframe.A is also known as IFrame.gen (Authentium (Command)), GIF/Iframe!generic (CA), Trojan.DL.Giframe.a (Rising AV), Mal/Iframe-F (Sophos), Trojan-Clicker.HTML.IFrame (Sunbelt Software), TROJ_IFRAME.CP (Trend Micro).

Explanation :

Trojan:Win32/Giframe.A is a detection for GIF files that contain malicious IFrame tags.
Top

Trojan:Win32/Giframe.A may arrive in a computer when a user opens webpages that contains specially-crafted GIF files. Files detected as Trojan:Win32/Giframe.A contain malicious IFrame tags that point to certain URLs. Some of the URLS that these malicious IFrame tags point to are:

  • dhtianyu.net
  • xaioyx365.com.cn
  • aaa.369678.cn
  • k.thec.cn
  • m586m.free.rdear.com
  • 66ki.cn


  • Analysis by Daniel Radu

    Last update 06 August 2010

     

    TOP