Home / malwarePDF  

Exploit:HTML/IframeRef.DM


First posted on 15 February 2019.
Source: Microsoft

Aliases :

Exploit:HTML/IframeRef.DM is also known as IFrame.gen, Iframe.UW, Virus found HTML/Framer, JS/iFrame.bzw.5, Trojan.Iframe.BZW, JS/Iframe.HH trojan, Trojan.IFrame, JS/IFrame.gen.j, Troj/Iframe-JG.

Explanation :

Exploit:HTML/IFrameRef.DM is a malicious iFrame is appended at the end of HTML files. The iFrame may be only one pixel in length to avoid being noticed.

Exploit:HTML/IFrameRef.DM runs if you visit a website or open an HTML page containing this iFrame.

Some of the malicious URLs in the iFrame tag are:

ef-srilanka.org/ws.html?i=1296475 ibizalife.net/gu.html?i=831830 alexisarnold.com/es.html yuliacherepanova.com/af.html?j=1536878 pixelstudio.netii.net/ms.html?j=1296475

Analysis by Patrick Estavillo

Last update 15 February 2019

 

TOP