Sophos

Troj/Onladv-A

Aliases
  • Exploit.JS.CVE-2005-1790.j
  • Exploit-Onload
Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Included in our products from April 2008 (4.28)
Protection available since 3 February 2006 22:43:55 (GMT)
Last updated 2 March 2008 15:04:43 (GMT)
Detected by All Sophos products

Action

More Information

Troj/Onladv-A is a downloader Trojan for the Windows platform.

Troj/Onladv-A exploits the ONLOAD vulnerability associated with certain versions of Microsoft Internet Explorer (MS05-054) to download a file from a remote website and execute it.

Troj/Onladv-A usually downloads to the file <System>\scmt16.exe, and this file is currently detected as Troj/Dowadv-B.

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer