TROJ_OTFSPLOIT.A
Exploit-CVE2015-2426 (McAfee), Exp.CVE-2015-2426.A (Symantec)
Windows
Threat Type: Trojan
Destructiveness: No
Encrypted:
In the wild: Yes
OVERVIEW
Downloaded from the Internet
This Trojan arrives as a component bundled with malware/grayware packages.
It requires its main component to successfully perform its intended routine.
TECHNICAL DETAILS
367,260 bytes
Other
Yes
23 Jul 2015
Arrival Details
This Trojan arrives as a component bundled with malware/grayware packages.
Other Details
This Trojan requires its main component to successfully perform its intended routine.
It is a zero-day exploit for the following vulnerability:
NOTES:
These are maliciously constructed OpenType fonts which are used to exploit the above-mentioned vulnerability. Thus, allowing remote code execution in the affected system.
The vulnerability affects Windows Vista, Server 2008, 7, 8, 8.1, Server 2012, RT, RT 8.1, Server 2008 R2, and Server 2012 R2.