Skip to main content
Skip to main content
901 entries found. Displaying page 8 of 46.
Updated on Feb 06, 2011
TrojanDownloader:Java/OpenStream.AP is a Java applet trojan (with a size of 6034 bytes) that can be distributed inside a Java .jar package, and is known to exploit the vulnerability discussed in CVE-2010-0840. The CVE-2010-0840 is also known as Java Trusted Chaining vulnerability and allows running arbitrary Java code with escalated privileges outside the sandbox restrictions. The privileges gained as a result of exploiting the vulnerability are normally less or equal the browser's process security privileges. The vulnerability affects Java Runtime Environment version up to Java 6 update 18 inclusive.
Alert level: severe
Updated on Feb 23, 2011
Exploit:Java/CVE-2008-5353.WX is the detection for an obfuscated malicious Java class component that exploits the vulnerability described in CVE-2008-5353.
 
The vulnerability affects Java Virtual Machine (JVM) up to and including version 5 update 22 and version 6 update 10. The vulnerability allows an unsigned Java applet to gain elevated privileges and potentially have unrestricted access to a host system, outside of its "sandbox" environment. When a user visits a website that contains the applet, using a computer that has a vulnerable version of Sun Java, security checks may be bypassed, allowing arbitrary codes to be run.
Alert level: severe
Updated on Mar 10, 2011
Exploit:JS/Pdfjsc.L is a detection for specially-crafted PDF files that target a software vulnerability in Adobe Acrobat and Adobe Reader. It usually arrives in the system when the user visits a webpage that contains a malicious PDF file or opens an email containing the PDF file as an attachment. The vulnerability it attempts to exploit is tracked as CVE-2010-0188.
Alert level: severe
Updated on Mar 15, 2011
Exploit:Java/CVE-2010-0840.AY is a detection for an obfuscated malicious Java class applet component that exploits the vulnerability described in CVE-2010-0840. Successful exploitation leads to arbitrary code execution.
Alert level: severe
Updated on Mar 15, 2011
Exploit:Java/CVE-2010-0840.BV is a detection for an obfuscated malicious Java class applet component that exploits the vulnerability described in CVE-2010-0840. Successful exploitation leads to arbitrary code execution.
Alert level: severe
Updated on Mar 25, 2011
Exploit:Java/CVE-2010-0840.BE is a detection for a malicious and obfuscated Java class that exploits the vulnerability described in CVE-2010-0840. Successful exploitation leads to remote code execution.
Alert level: severe
Updated on Mar 27, 2011
TrojanDownloader:Java/OpenConnection.J is the detection for a malicious Java applet trojan that exploits a vulnerability described in CVE-2010-0840. Successful exploitation may lead to the downloading and execution of arbitrary files under the user's security context.
Alert level: severe
Updated on Mar 28, 2011
TrojanDownloader:Java/OpenConnection.JJ is the detection for a malicious Java applet trojan that exploits a vulnerability described in CVE-2010-0840. Successful exploitation may lead to the downloading and execution of arbitrary files under the user's security context.
Alert level: severe
Updated on Mar 29, 2011
Exploit:JS/Pdfjsc.MZ is a detection for specially-crafted PDF files that attempt to exploit software vulnerabilities in Adobe Acrobat and Adobe Reader.
Alert level: severe
Updated on Mar 29, 2011

Exploit:Win32/Pdfjsc.NR is the detection for PDF files that exploit various vulnerabilities in Adobe Acrobat and Adobe Reader. On a vulnerable computer, successful exploitation could lead to the execution of arbitrary code.

Alert level: severe
Updated on Mar 29, 2011
TrojanDownloader:Java/OpenConnection.JR is a trojan Java applet that allows the downloading and execution of arbitrary and malicious files.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Java/OpenConnection.MW is the detection for a malicious Java applet trojan that exploits a vulnerability described in CVE-2010-0840. Successful exploitation may lead to the downloading and execution of arbitrary files under the user's security context.
Alert level: severe
Updated on Apr 18, 2011

Exploit:JS/Pdfjsc.OD is the detection for specially-crafted PDF files that attempt to exploit a software vulnerability in Adobe Acrobat and Adobe Reader.

The vulnerability it attempts to exploit is discussed in the following articles:

Alert level: severe
Updated on Apr 22, 2011

Exploit:SWF/CVE-2011-0611.I is the detection for specially crafted Shockwave Flash (SWF) files that attempts to exploit a vulnerability in Adobe Flash Player that could lead to the execution of arbitrary code. The vulnerability is described in CVE-2011-0611 and Adobe Security Advisory APSA11-02.

Alert level: severe
Updated on May 03, 2011

Exploit:Java/CVE-2010-0094.DB is a Java based malware that exploits a vulnerability discussed in CVE-2010-0094. The vulnerability affects Java Runtime Environment (JRE) up to version 6 release 18 inclusive, and makes it possible for untrusted code to gain the user's security context privileges.

Alert level: severe
Updated on May 18, 2011

Exploit:Win32/Pdfjsc.OV is a detection for specially-crafted PDF files that target a software vulnerability in Adobe Acrobat and Adobe Reader. Once the malformed PDF files are opened by vulnerable versions of Adobe Acrobat and Reader, the embedded JavaScript is executed and loads the exploit. The vulnerability is discussed in the following links:

Alert level: severe
Updated on May 22, 2011

Exploit:Java/CVE-2010-0840.CO is the detection for a obfuscated Java applet trojan that exploits the vulnerability described in CVE-2010-0840. Successful exploitation may lead to the downloading and execution of arbitrary files under the user's security context.

Alert level: severe
Updated on May 24, 2011
Exploit:Java/CVE-2010-0840.BA is the detection for a malicious Java applet trojan that exploits a vulnerability described in CVE-2010-0840. Successful exploitation may lead to the downloading and execution of arbitrary files under the user's security context.
Alert level: severe
Updated on May 25, 2011
Exploit:Java/CVE-2010-0840.BC is the detection for a malicious Java applet trojan that exploits a vulnerability described in CVE-2010-0840. Successful exploitation may lead to the downloading and execution of arbitrary files under the user's security context.
Alert level: severe
Updated on Jun 07, 2011

TrojanDownloader:Java/OpenConnection.NL is the detection for an obfuscated Java applet that exploits the vulnerability described in CVE-2010-4452. It attempts to download and execute arbitrary files from a remote server. It often works in conjunction with variants of Exploit:Java/CVE-2010-0094.

Alert level: severe