Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

JS_PSYME.CIN

BugsAlert Home > JS_PSYME.CIN
 
 

This JavaScript (JScript) may be hosted on a Web site and run when a user accesses the said Web site.

Upon access of this site, it takes advantage of a vulnerability in Microsoft Data Access Components (MDAC) Function. More information on the said vulnerability is available in the following Web site:

This JavaScript accesses a Web site to download a file. It saves the downloaded file. However, the mentioned URL is inaccessible as of this writing.

This malicious JavaScript uses the CLSID {BD96C556-65A3-11D0-983A-00C04FC29E36}, which is already present on a normal system, for its code in exploiting the aforementioned vulnerability.




Original Source: http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=JS_PSYME.CIN

Learn more about JS_PSYME.CIN
 
Tags: psyme.cin

Related Items

      Gentoo update for asterisk

      Trojan-Downloader.Win32.Small.fyn

      Vuln: HP Info Center HPInfoDLL.DLL ActiveX Control Multiple Arbitrary Code Execution Vulnerabilities

      MS08-045 - Critical: Cumulative Security Update for Internet Explorer (953838)

      CVE-2008-1195 (JRE, JDK)

      CVE-2008-4521 (world_of_warcraft_tracker_infusion_module)

      MS08-047 ? Important: Vulnerability in IPsec Policy Processing Could Allow Information Disclosure (953733) - Version:1.1

 

Pixel