Home Malware Programs Malware Exploit:Java/CVE-2013-0422

Exploit:Java/CVE-2013-0422

Posted: January 14, 2013

Threat Metric

Threat Level: 7/10
Infected PCs: 1,904
First Seen: January 14, 2013
Last Seen: February 14, 2023
OS(es) Affected: Windows

Exploit:Java/CVE-2013-0422 is a malicious Java application that strives to exploit a vulnerability (CVE-2013-0422) in the Java Runtime Environment (JRE), in order to download and install potentially malicious files onto the affected computer system. If Exploit:Java/CVE-2013-0422 is reported then it is possible that your PC has been infected. Exploit:Java/CVE-2013-0422 spreads via compromised websites including the malicious code and affects computers using a vulnerable version of Java. Exploit:Java/CVE-2013-0422 then strives to download and execute files from a remote host/URL that could involve additional malware threats.

Aliases

Mal/VB-YA [Sophos]Gen:Trojan.Heur.VP2.em1@aGgwwlmi [BitDefender]Generic31.BLWR [AVG]Generic Trojan [Panda]Generic6_c.ZYK [AVG]W32/Generic [Fortinet]Heuristic.LooksLike.Win32.SuspiciousPE.C [McAfee-GW-Edition]TROJ_GEN.USBH31ACN [TrendMicro]TR/Spy.409608 [AntiVir]Mal/Behav-023 [Sophos]Gen:Trojan.Heur.GM.0800460800 [BitDefender]Trojan.ADH.2 [Symantec]W32/Heuristic-3 [F-Prot]Riskware [K7AntiVirus]Artemis!45C989419E00 [McAfee]
More aliases (226)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SystemDrive%\RECYCLER\S-1-5-21-823518204-1229272821-682003330-1003\$6b187eb5cd4b5c21ea633be55297add9\n. File name: n.
Size: 60.41 KB (60416 bytes)
MD5: 28c2de912becc2b1df7295609007a339
Detection count: 91
Path: %SystemDrive%\RECYCLER\S-1-5-21-823518204-1229272821-682003330-1003\$6b187eb5cd4b5c21ea633be55297add9
Group: Malware file
Last Updated: February 22, 2013
%TEMP%\Serviecs.vbs File name: Serviecs.vbs
Size: 4.89 KB (4893 bytes)
MD5: f3e7390115d4a4ad5cfa9cca22d84eef
Detection count: 84
Mime Type: unknown/vbs
Path: %TEMP%
Group: Malware file
Last Updated: February 14, 2023
%TEMP%\mswin32.exe File name: mswin32.exe
Size: 69.63 KB (69634 bytes)
MD5: 762218f4bb8319f90f1575a93acd673b
Detection count: 61
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: February 26, 2013
%USERPROFILE%\configuraci?n local\datos de programa\lollipop\lollipop.exe File name: lollipop.exe
Size: 1.58 MB (1587712 bytes)
MD5: e0220e1170c209be4bd0000f7120fddb
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\configuraci?n local\datos de programa\lollipop
Group: Malware file
Last Updated: February 14, 2013
%TEMP%\%TEMP%.exe File name: %TEMP%.exe
Size: 301.05 KB (301056 bytes)
MD5: 96c67723e619ad0866bcb53df70e1efe
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: February 14, 2013
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\WindowsSecurity.exe File name: WindowsSecurity.exe
Size: 1.51 MB (1517520 bytes)
MD5: cdf83a08a0c0c321775ad90fce52cc17
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: February 14, 2013
%SystemDrive%\Users\<username>\AppData\Local\Lollipop\Lollipop.exe File name: Lollipop.exe
Size: 1.42 MB (1425408 bytes)
MD5: b6783b959a48b8fc881d2998766c8a8e
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Local\Lollipop
Group: Malware file
Last Updated: February 14, 2013
%USERPROFILE%\impostazioni locali\dati applicazioni\lollipop\dnfue.exe File name: dnfue.exe
Size: 1.43 MB (1435136 bytes)
MD5: 11b7ba3d9c79cb4cd6446cd446fd59bb
Detection count: 15
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\impostazioni locali\dati applicazioni\lollipop
Group: Malware file
Last Updated: February 14, 2013
jmx.jar File name: jmx.jar
Size: 5.23 KB (5237 bytes)
MD5: fbccf2e1338e496199401f543aad1a3c
Detection count: 12
Mime Type: unknown/jar
Group: Malware file
Last Updated: February 12, 2013
java2.jar File name: java2.jar
Size: 15.59 KB (15592 bytes)
MD5: 5599f12b1c2ce9c68dc629d013241273
Detection count: 11
Mime Type: unknown/jar
Group: Malware file
Last Updated: February 12, 2013
%LOCALAPPDATA%\lavmojsy\tgnyyjcp.exe File name: tgnyyjcp.exe
Size: 96.08 KB (96084 bytes)
MD5: cbdd7c07ae47f92cc66ce9c76aec42ca
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\lavmojsy
Group: Malware file
Last Updated: February 14, 2013
%PROGRAMFILES%\Stardock\Object Desktop\WindowFX\WFX32.exe File name: WFX32.exe
Size: 409.6 KB (409608 bytes)
MD5: 45c989419e00b0c0d019f3a93151bdaa
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Stardock\Object Desktop\WindowFX
Group: Malware file
Last Updated: February 14, 2013
%WINDIR%\Wenmemor.exe File name: Wenmemor.exe
Size: 422.91 KB (422912 bytes)
MD5: ea0c6b4f7dba75c86fdfa462a9662594
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: February 14, 2013
%SystemDrive%\Users\<username>\96970517.exe File name: 96970517.exe
Size: 212.99 KB (212992 bytes)
MD5: c5a73af0221742deeb757dfb9aebddae
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\Harvey
Group: Malware file
Last Updated: February 14, 2013
%APPDATA%\477278\477278.exe File name: 477278.exe
Size: 31.74 KB (31744 bytes)
MD5: a8651203ab59f0d2a27915b83ca527b7
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\477278
Group: Malware file
Last Updated: February 14, 2013
Java710.jar File name: Java710.jar
Size: 7.1 KB (7106 bytes)
MD5: 5c73922dfe407c836ba2055c05e9a068
Detection count: 5
Mime Type: unknown/jar
Group: Malware file
Last Updated: February 12, 2013
DxJBorW.class File name: DxJBorW.class
Size: 2.75 KB (2750 bytes)
MD5: 3301c763a77132c33a58e32f0222ad5f
Detection count: 4
Mime Type: unknown/class
Group: Malware file
Last Updated: February 12, 2013
Loading...