HTML_MALIFRAM.UY
Windows 2000, Windows XP, Windows Server 2003
Threat Type: Trojan
Destructiveness: No
Encrypted:
In the wild: Yes
OVERVIEW
This Trojan may be hosted on a website and run when a user accesses the said website.
This is the Trend Micro detection for Web pages that were compromised through the insertion of a certain IFRAME tag.
TECHNICAL DETAILS
Arrival Details
This Trojan may be hosted on a website and run when a user accesses the said website.
Other Details
This is the Trend Micro detection for Web pages that were compromised through the insertion of a certain IFRAME tag.
NOTES:
Once an unsuspecting user visits an affected Web page, this malicious iframe connects to http://domain.{BLOCKED}t.tk/p/?d=UWYSWWW&i={BLOCKED}.{BLOCKED}.179.25&c=2001&ro=0&uq=1&ref=unknown&_=1348478185739 download possible malicious scripts. However, as of this writing, the said site is inaccessible.