Blocking Trojan Downloader
Remote Code Execution Exploit
Using a WinAntiVirus Page


As soon as the WinAntiVir Page loads, immediately the first downloader attempts to cache
exploiting a Java vulnerability in IE and is blocked:

image __________________________________________________________

End of exploit -- it never had a chance to get started.

Scan of cnte-oiduuyes.gif


image ___________________________________________________________