We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Exploit:Win32/ShellCode.gen!D
Detected by Microsoft Defender Antivirus
Aliases: HTML/Shellcode.Gen (Avira) Exploit-CVE2011-0027 (McAfee) Hack.Exploit.Script.JS.Bucode.i (Rising AV) Troj/JSExp-B (Sophos) Exploit.XML.httpd (Sunbelt Software)
Summary
Exploit:Win32/ShellCode.gen!D is a generic detection for files that contain a malicious shellcode.
It has been observed that files typically detected as Exploit:Win32/ShellCode.gen!D exploit the vulnerability addressed by Microsoft Security Bulletin MS11-002.
To detect and remove this threat and other malicious software that may be installed on your computer, run a full-system scan with an appropriate, up-to-date, security solution. The following Microsoft products will detect and remove this threat:
- Microsoft Security Essentials
- Windows Defender
- Microsoft Safety Scanner
- Microsoft Windows Malicious Software Removal Tool
For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.
Update vulnerable applications
This threat exploits a known vulnerability, with CVE Identifier CVE-2011-0027, in Microsoft Data Access Components. After removing this threat, make sure that you install the updates available from the vendor. You can read more about the vulnerability, as well as where to download the software update, from the following: