Home Malware Programs Trojans Exploit:Win32/Pdfjsc.ADH

Exploit:Win32/Pdfjsc.ADH

Posted: November 7, 2012

Threat Metric

Threat Level: 10/10
Infected PCs: 28
First Seen: November 7, 2012
Last Seen: May 12, 2023
OS(es) Affected: Windows

Exploit:Win32/Pdfjsc.ADH is a Javascript Trojan that circulates as a malicious .PDF file that exploits a vulnerability in Adobe Acrobat and Adobe Reader. The vulnerabilities, discussed in CVE-2010-0188, allow Exploit:Win32/Pdfjsc.ADH to drop and run arbitrary files. Adobe Acrobat and Adobe Reader earlier than 8.2.1 and Adobe Acrobat and Adobe Reader earlier than 9.3.1 are vulnerable to this exploit. Internet users may get infected with Exploit:Win32/Pdfjsc.ADH when visiting a hijacked website with a vulnerable PC. The malicious .PDF file includes a malicious JavaScript that exploits a vulnerability, discussed in CVE-2010-0188. If Exploit:Win32/Pdfjsc.ADH successfully exploits a vulnerable machine, it strives to download and install arbitrary files which may be found as malware threats. For this purpose, Exploit:Win32/Pdfjsc.ADH contacts the certain host.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%TEMP%\wpbt0.dll File name: %TEMP%\wpbt0.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Loading...