Java/Obfus [Threat Name] go to Threat

Java/Obfus.AU [Threat Variant Name]

Category trojan
Size 89941 B
Aliases Exploit:Java/CVE-2013-2460 (Microsoft)
Short description

Java/Obfus.AU is a trojan which tries to download other malware from the Internet.


The program code of the malware is usually embedded in HTML pages.

The trojan does not create any copies of itself.

Other information

Java/Obfus.AU is the detection name for the exploit code against a vulnerability in the Java Runtime Environment (JRE), Java Development Kit (JDK) .

It exploits the CVE-2013-2460 vulnerability.

The following applications are vulnerable:

  • Oracle Java SE 7 (Update 21 and earlier)

The trojan contains a URL address.

It tries to download several files from the address. The HTTP/HTTPS protocol is used.

The files are saved into the following folder:

  • %temp%

The files are then executed.

