HTML_IFRAME.JAD
Windows 2000, Windows XP, Windows Server 2003
Threat Type: Trojan
Destructiveness: No
Encrypted: No
In the wild: Yes
OVERVIEW
This Trojan may be unknowingly downloaded by a user while visiting malicious websites. It executes when a user accesses certain websites where it is hosted. It may be hosted on a website and run when a user accesses the said website.
This is the Trend Micro detection for files that contain malicious IFRAME tags. Once a user visits an affected Web page, this HTML script launches a hidden IFRAME that connects to a malicious URL. It inserts an IFRAME tag that redirects users to certain URLs.
TECHNICAL DETAILS
8,612 bytes
HTML, HTM
27 Apr 2011
Arrival Details
This Trojan may be unknowingly downloaded by a user while visiting malicious websites.
It executes when a user accesses certain websites where it is hosted.
It may be hosted on a website and run when a user accesses the said website.
Other Details
This is the Trend Micro detection for files that contain malicious IFRAME tags.
Once a user visits an affected Web page, this HTML script launches a hidden IFRAME that connects to a malicious URL.
It inserts an IFRAME tag that redirects users to the following URLs:
- http://{BLOCKED}html.co.cc/rsslist