TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
JS_REALPLR.CD
Overview

Malware type: JavaScript

Aliases: Exploit.JS.Agent.oc (Kaspersky),

In the wild: Yes

Destructive: No

Language: English

Platform: Windows 98, ME, NT, 2000, XP, Server 2003

Encrypted: No

Overall risk rating:


Reported infections:

Damage potential:

Medium

Distribution potential:

Low

Description: 

This malicious JavaScript may be hosted on a Web site and run when a user accesses the said Web site.

It takes advantage of a known vulnerability in RealPlayer ActiveX control which allows remote attackers to execute arbitrary code or cause a denial of service.

More information on this vulnerability can be found here.

Once it successfully exploits the said vulnerability, this malicious JavaScript connects to a certain URL to download a malicious file detected by Trend Micro as TROJ_AGENT.WPA. As a result, malicious routines of the downloaded file may be exhibited on the affected system.

For additional information about this threat, see:
Solution
Technical Details

Description created: May. 19, 2008 4:04:24 PM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.