Mhtredir.gen is not an specific Trojan, but a generic detection for a group of Trojans that allow to remotely run code on the affected computer, without user consent and with the same rights as the current user has. If the user has administrator rights, the risk posed is even higher, as this type of user is granted more actions. Mhtredir.gen attemtps to exploit the vulnerability described by Microsoft in the security bulletin MS04-013. It can affect the computer when the user accesses a malicious website, or when an e-mail in HTML format is received; the user is then enticed to click an specially crafted link, which downloads and executes files on the affected computer, granting to an attacking user unlimited access to the affected computer. Therefore, it is highly recommendable to download the corresponding security patch available from Microsoft's website. |