Home Malware Programs Malware Exploit:Java/CVE-2012-4681.HD

Exploit:Java/CVE-2012-4681.HD

Posted: December 3, 2012

Threat Metric

Threat Level: 2/10
Infected PCs: 68
First Seen: December 3, 2012
OS(es) Affected: Windows

Exploit:Java/CVE-2012-4681.HD is a malicious Java applet that exploits the vulnerability described in CVE-2012-4681 to spread the Dorkbot worm. Java applets that are not digitally signed are considered not reliable. As other Java applets, Exploit:Java/CVE-2012-4681.HD, is executed with limited permissions by the Java Runtime Environment. Before it can download and run arbitrary files, Exploit:Java/CVE-2012-4681.HD has to disable the security manager, which defines the security policy of the applet. The security manager can be disabled with a call to System.setSecurityManager(null), but applets are restricted from calling this method directly. The exploit depends on vulnerabilities in the implementation of the certain two methods. The code of Exploit:Java/CVE-2012-4681.HD is covered in an attempt to avoid detection and removal of anti-virus software.

Loading...