Home / malware Exploit:W32/MSWord6.Gen
First posted on 23 March 2011.
Source: SecurityHomeAliases :
There are no other names known for Exploit:W32/MSWord6.Gen.
Explanation :
The Generic Detection Exploit.msword.gen.6 identifies a Microsoft Word document that has been modified to perform an unauthorized, malicious action.
Additional DetailsExecution
Upon execution, the malware creates malicious executables in the following directories on the infected system:The malware also attempts to connect to the following remote sites:
- %temp%\[random].exe
- %windir%\system32\[name].exe
- yahoo.onedumb.com
- yahoo.servebbs.com
- 218.23.30.99
- 218.20.188.170
- googleupdate2011.dyndns.org
Last update 23 March 2011