Home Malware Programs Trojans Troj/PDFJs-WT

Troj/PDFJs-WT

Posted: April 6, 2012

Threat Metric

Ranking: 4,203
Threat Level: 2/10
Infected PCs: 10,057
First Seen: April 6, 2012
Last Seen: March 4, 2025
OS(es) Affected: Windows

Troj/PDFJs-WT is a PDF-embedded Trojan that uses a combination of CCITTFax filter abuse and buffer overflow vulnerabilities to execute malicious code in an attack against your PC. Because attacks like those that are used by Troj/PDFJs-WT can be put to any number of purposes, SpywareRemove.com malware researchers recommend that you use preventative safeguards to detect and delete Troj/PDFJs-WT instead of trying to detect Troj/PDFJs-WT by its symptoms, which may be minor or nonexistent. Keeping your Adobe-brand software updated and having good anti-malware software on-hand are both suggested for stopping Troj/PDFJs-WT attacks, which are distributed through a range of malicious websites. If your PC has been victimized by a successful Troj/PDFJs-WT attack, you should scan your PC immediately with appropriate software to detect and remove any related PC threats or system changes that Troj/PDFJs-WT may have installed or created.

How Troj/PDFJs-WT Gets to Your PC Sight Unseen

Troj/PDFJs-WT and similar PDF-based attacks can be propagated by spam e-mail links, malicious sites with mislabeled download links or even by drive-by-download scripts that force your computer to launch the corrupted file undetectably. Because Troj/PDFJs-WT requires the presence of Adobe Reader or Acrobat for exploitation, lacking these applications will make your PC effectively immune to Troj/PDFJs-WT attacks. An updated web browser can also reduce exploits that can be used to launch Troj/PDFJs-WT files automatically, and, of course, SpywareRemove.com malware researchers recommend that you have security software that can detect and block Troj/PDFJs-WT before Troj/PDFJs-WT can attack your computer at all.

If you do require Adobe software to read PDF files, updating your software to versions 9.4 (for Reader) or 8.2.5 (for Acrobat) will close the CVE-2010-2883 vulnerability that Troj/PDFJs-WT uses to attack your PC; however, your computer will still be open to other PDF vulnerabilities that haven't been patched as of the time of this writing. Notably, Troj/PDFJs-WT attacks can affect both Windows and Mac operating systems, unlike many Trojans that are designed to function for just one or the other.

Troj/PDFJs-WT was detected late in March 2012, and it's suggested that you have anti-malware software that's at least updated past that point if you want to insure that your software can detect Troj/PDFJs-WT attacks successfully.

The Results of an Opened Troj/PDFJs-WT File That You May Not See Coming

Attacks by Troj/PDFJs-WT can be put to multiple purposes, but are particularly likely to lead to the installation of PC threats that can include:

  • Spyware programs that steal private information.
  • Rootkits that infected baseline system components and can often persist even after a System Restore while also being difficult to detect or remove.
  • Backdoor Trojans that create security issues to allow remote criminals to control your computer.
  • Trojan droppers and Trojan downloaders that can install other PC threats, often in a variable and configurable fashion.
  • Worms that can use networks and removable drives to spread to new computers.

SpywareRemove.com malware research team notes that many types of PC threats that are installed by Troj/PDFJs-WT and similar exploits may not show many or any symptoms of their payloads. Having anti-malware programs on your PC is always advised to detect either Troj/PDFJs-WT or any other infection that may have been installed by Troj/PDFJs-WT.

Technical Details

Additional Information

The following URL's were detected:
music-online.me
Loading...