Symptoms
Automatic worm or spyware installation, without confirmation.
Removal instructions:
Please let BitDefender delete detected files.
Analyzed By
BitDefender AntiVirus Lab
Technical Description:
This is a WMF (Windows Meta-File) rendering exploit. The rendering bug that is exploited lies in the Windows Picture and Fax Viewer.
The WMF file could be placed on a web site that the victim visits and gets infected.
The exploit may create a shell on the victim computer, or may download and install a worm or a spyware trojan.
The exploits 'works' on Internet Explorer and some versions of Mozilla. However some browsers may display a confirmation dialog about it.
BitDefender detects this exploit as
Exploit.Win32.WMF-PFV.
SHARE
THIS ON