SWF_EXPLT.AH

 Analysis by: rolandde

 ALIASES:

Troj/SWFExp-AJ (Sophos); ExploitWF/Blacole.O (Microsoft)

 PLATFORM:

Windows 2000, Windows XP, Windows Server 2003

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:

  • Threat Type: Trojan

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes

  OVERVIEW


This Trojan exploits a vulnerability in Adobe Flash in order to download and execute a possibly malicious file. As a result, malicious routines of the downloaded file are also exhibited on the affected system.

This Trojan may be hosted on a website and run when a user accesses the said website.

  TECHNICAL DETAILS

File Size:

6,804 bytes

File Type:

SWF

Initial Samples Received Date:

27 Dec 2011

Arrival Details

This Trojan may be hosted on a website and run when a user accesses the said website.

NOTES:
It exploits a vulnerability in Adobe Flash in order to download and execute a possibly malicious file. As a result, malicious routines of the downloaded file are also exhibited on the affected system.