Virus Profile: Exploit-ObscuredHtml

Threat Search
Print
   
Virus Profile information details
Risk Assessment: Home Low | Corporate Low
Date Discovered: 3/3/2005
Date Added: 2/2/2005
Origin: Unknown
Length: Varies
Type: Trojan
Subtype: Exploit
DAT Required: 4425
Removal Instructions
   
 
 
   

Description

This is a trojan detection. Unlike viruses, trojans do not self-replicate. They are spread manually, often under the premise that they are beneficial or wanted. The most common installation methods involve system or security exploitation, and unsuspecting users manually executing unknown programs. Distribution channels include email, malicious or hacked web pages, Internet Relay Chat (IRC), peer-to-peer networks, etc.

Indication of Infection

N/A  This is a generic detection covering any number of differet attacks.

Methods of Infection

This exploit exists as code in an HTML document, web page, or email message.
   

Virus Characteristics

Microsoft Internet Explorer ignores certain non-ascii characters, allowing an attacker to obfuscate malicious code and still have it rendered by IE.

This detection covers HTML documents that have been crafted with the intention of evading antivirus detection.  Other documents that mix HTML with non-ascii characters could also trigger this detection.