We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Exploit:Java/CVE-2010-0842.P
Aliases: Troj/JavaDl-EN (Sophos) Trojan.Maljava (Symantec) JAVA_AGENT.DUNA (Trend Micro)
Summary
Exploit:Java/CVE-2010-0842.P is a detection for a malicious and encrypted Java class that exploits the vulnerability described in CVE-2010-0842, also known as the "Sun Java Runtime Environment (JRE) MIDI File metaEvent Remote Code Execution Vulnerability". When a user visits a website that contains the malware using a system that has a vulnerable version of Sun Java, security checks may be bypassed which could allow arbitrary code execution.
To detect and remove this threat and other malicious software that may be installed on your computer, run a full-system scan with an appropriate, up-to-date, security solution. The following Microsoft products detect and remove this threat:
For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.
This threat exploits a known vulnerability in Java. After removing this threat, make sure that you install the updates available from the vendor. You can read more about this vulnerability in Java, as well as where to download the software update from the following links:
It may be necessary to remove older versions of Java that are still present. Keeping old and unsupported versions of Java on your system presents a serious security risk. To read more about why you should remove older versions of Java, see the following information.