TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
TROJ_PIDIEF.JT
Overview

Malware type: Trojan

Aliases: No Alias Found

In the wild: Yes

Destructive: No

Language: English

Platform: Windows 98, ME, NT, 2000, XP, Server 2003

Encrypted: No

Overall risk rating:


Reported infections:

Damage potential:

Medium

Distribution potential:

Low

Infection Channel 1 : Spammed via email


Description: 

To get a one-glance comprehensive view of the behavior of this malware, refer to the Behavior Diagram shown below.

TROJ_PIDIEF.JT Behavior Diagram

Malware Overview

This Trojan arrives as attachment to email messages spammed by another malware or a malicious user.

It is a specially crafted .PDF file that exploits a known vulnerability in Acrobat Reader 8.1.2 or earlier versions. This vulnerability allows a remote attacker to execute arbitrary code on the affected system. More information about the said vulnerability can be found at the following links:

After successfully exploiting the vulnerability, this .PDF file then attempts to access an FTP site to download and execute a file. However, due to incorrect password, it fails to perform this routine.

For additional information about this threat, see:
Solution
Technical Details

Description created: Jul. 14, 2008 1:40:59 PM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.