Home / malwarePDF  

Exploit.JS.BO.D


First posted on 21 November 2011.
Source: BitDefender

Aliases :

Exploit.JS.BO.D is also known as Trojan-Downloader.JS.Agent.fq,JS/XMLCore@expl,HTML.Xmlcore!e.

Explanation :

Exploit.JS.BO.D exploits the MS06-071 vulnerability in Microsoft XML Core Services. When the script gets executed, it will download the file http://huyamilka.com/a[removed]/win32.exe and save it under C:U.exe, then execute it.

Last update 21 November 2011

 

TOP