Analysis by: Christopher Daniel So

ALIASES:

Exploit:Java/CVE-2009-3867.GC (Microsoft), Trojan Horse (Symantec), Exploit-CVE2009-3867.b (McAfee)

 PLATFORM:

Windows 2000, Windows XP, Windows Server 2003

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:

  • Threat Type: Trojan

  • Destructiveness: No

  • Encrypted: No

  • In the wild: Yes

  OVERVIEW

This Trojan executes when a user accesses certain websites where it is hosted.

This is the Trend Micro detection for files that exhibit certain behaviors.

  TECHNICAL DETAILS

File Size: 2,218 bytes
File Type: Java Class
Memory Resident: No
Initial Samples Received Date: 29 Dec 2010

Arrival Details

This Trojan executes when a user accesses certain websites where it is hosted.

Other Details

More information on this vulnerability can be found below:

This is the Trend Micro detection for:

  • Java applets that exploit the vulnerability in the HsbParser.getSoundBank function in Sun Java SE in JDK and JRE