Home / malwarePDF  


First posted on 15 February 2019.
Source: Microsoft

Aliases :

There are no other names known for Exploit:SWF/CVE-2015-0311.

Explanation :

This threat tries to exploit a vulnerability in Adobe Flash Player. If you visit a compromised or hacked webpage and you have an old version of Flash, you might get malware on your PC.

We have seen attackers use this exploit to install the following malware:

Backdoor:Win64/Bedep.A Ransom:Win32/Reveton.AB

Additional information

This vulnerability might be used to distribute malware by exploit kits such as Angler (Exploit:JS/Axpergle), Fiesta (Exploit:JS/Fiexp), RIG (Exploit:JS/Rigploit) and Nuclear (Exploit:JS/Neclu).

VirTool:SWF/Obfuscator.F is a generic detection that may detect Exploit:SWF/CVE-2015-0311 variants. Earlier variants of this exploit might also be detected as Exploit:SWF/Angzia.

Analysis by Methusela Cebrian Ferrer

Last update 15 February 2019