Threat Database Trojans Exploit:Win32/Anogre.A

Exploit:Win32/Anogre.A

By GoldSparrow in Trojans

Threat Scorecard

Threat Level: 90 % (High)
Infected Computers: 13
First Seen: February 15, 2013
Last Seen: August 18, 2020
OS(es) Affected: Windows

Exploit:Win32/Anogre.A is a Trojan that propagates as a malevolent file exploiting a vulnerability in Windows (CVE-2011-3402), which enables cybercriminals to install applications, view, modify, or delete data or create new accounts with full administrative privileges.If a computer user visits a website, which carries the malevolent code while using a vulnerable version of Windows, Exploit:Win32/Anogre.A will srive to load itself on the computer system. While being installed, Exploit:Win32/Anogre.A makes system changes by downloading harmful files. Exploit:Win32/Anogre.A is a specially-crafted TrueType font file which exploits vulnerability in the Win32k.sys. The Win32k.sys file is the Windows kernel mode driver, which, among other functions, is responsible for TrueType Fonts rendering in ring 0.

File System Details

Exploit:Win32/Anogre.A may create the following file(s):
# File Name Detections
1. INTOXICATE_INCREASING.htm
2. PRINTING.htm
3. Trader.htm
4. BISCUIT.DISABILITY.htm
5. mix.htm
6. terrify.provider.htm
7. affection.htm
8. MILITANT.htm
9. Syllable.htm
10. winning-content.htm

Trending

Most Viewed

Loading...