Home / malwarePDF  

Exploit:HTML/IframeRef.Q


First posted on 02 June 2019.
Source: Microsoft

Aliases :

There are no other names known for Exploit:HTML/IframeRef.Q.

Explanation :

Exploit:HTML/IframeRef.Q is a detection for specially formed IFrame tags that point to remote web sites containing malicious content, for example malicious JavaScript containing an exploit for a specific vulnerability. An IFrame is a valid HTML element, which allows content from a separate page or Web site to be embedded in other Web site pages. The rendered IFrame may be only one pixel in length to avoid being spotted by the user.  This exploit requires that a user view or visit the affected websites or open a malicious HTML page for the redirection to occur.  It may also be found embedded in crafted email messages sent from an attacker. Exploit:HTML/IframeRef.Q attempts to direct the user to the a remote website named "w.mh8888.cn" which appears to be an advertisement site containing various banners and links to third-party products or services. Additional InformationIn some of the detected samples, Exploit:HTML/IframeRef.Q was either appended or inserted into an otherwise normal or non-malicious HTML file.  Analysis by Gilou Tenebro

Last update 02 June 2019

 

TOP