MSMVPS.COM

The Ultimate Destination for Blogs by Current and Former Microsoft Most Valuable Professionals.
Welcome to MSMVPS.COM Sign in | Help
in Search

Harry Waldron - Microsoft MVP Blog

Security News and Best Practices for corporate and home users

Major Malicious PDF attack underway using Adobe exploit

 Email Please be very cautious with any PDF files received in EMAIL messages  

protect.gif If you use Adobe, it's very important to move to the latest version 8.1.1 plus keep AV protection updated.

Malicious PDF files being spammed out in volume
http://www.f-secure.com/weblog/archives/00001303.html
http://www.f-secure.com/v-descs/exploit_w32_adobereader_k.shtml
http://www.avertlabs.com/research/blog/index.php/2007/10/24/pdf-mailto-exploit-seen-in-wild-today/
http://blogs.zdnet.com/security/?p=614
http://www.microsoft.com/technet/security/advisory/943521.mspx

QUOTE: Malicious PDF files (report.pdf or debt.2007.pdf or overdraft.2007.10.26.pdf, etc) have been massively spammed through email during last hour and the spam run is still continuing. The PDF is spiced with CVE-2007-5020 exploit that downloads ms32.exe that downloads more componets. At this point it's not clear yet what is the final payload of the malware, because of missing files in the download chain. We are investigating further.

The subjects for the spam messages include:

Your credit report
Your credit points
Your balance report
Personal Financial Statement
Personal Credit Points
Personal Balance Report
Your Credit File
Balance Report

 
Trend's Exploit Detection
http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=EXPL%5FPIDIEF%2EC

Trend - Behavioral Diagram
http://www.trendmicro.com/vinfo/images/EXPL_PIDIEF_C_BD.gif

Adobe Bulletin
http://www.adobe.com/support/security/bulletins/apsb07-18.html

Only published comments... Oct 26 2007, 09:02 PM by Harry Waldron

Comments

 

Ghillie Suits » Major Malicious PDF attack underway using Adobe exploit said:

Pingback from  Ghillie Suits » Major Malicious PDF attack underway using Adobe exploit

October 26, 2007 3:53 PM
 

credit report com » Major Malicious PDF attack underway using Adobe exploit said:

Pingback from  credit report com » Major Malicious PDF attack underway using Adobe exploit

October 26, 2007 7:21 PM
 

www.topcreditcardsadvice.info » Major Malicious PDF attack underway using Adobe exploit said:

Pingback from  www.topcreditcardsadvice.info » Major Malicious PDF attack underway using Adobe exploit

October 27, 2007 5:10 AM
 

www.bestdebtarticles.info » Major Malicious PDF attack underway using Adobe exploit said:

Pingback from  www.bestdebtarticles.info » Major Malicious PDF attack underway using Adobe exploit

October 27, 2007 5:53 AM
 

www.bestfinancialadvisor.info » Major Malicious PDF attack underway using Adobe exploit said:

Pingback from  www.bestfinancialadvisor.info » Major Malicious PDF attack underway using Adobe exploit

October 27, 2007 5:53 AM
 

www.bestfinancialadvisor.info » Major Malicious PDF attack underway using Adobe exploit said:

Pingback from  www.bestfinancialadvisor.info » Major Malicious PDF attack underway using Adobe exploit

October 27, 2007 5:53 AM
 

html » Major Malicious PDF attack underway using Adobe exploit said:

Pingback from  html » Major Malicious PDF attack underway using Adobe exploit

October 27, 2007 10:12 AM
 

Howard said:

Internet security requires us to think and act beyond simple system scans and the elimination of threats and risks.  It seems to be a popular train of that to focus only on the removal of problems from ones computer.  I like to think of desktop security as being similar to ones personal health.

Preventative treatment like exercise and a proper diet can help you stay healthy and ward of disease.  The same goes for your computer.  You’ve got to practice or having something in pace to help you with <a href=forums.eeye.com/.../756.aspx>intrusion prevention</a>.  Sure there are medicines to help you get rid of a cold and the like as there are programs to help remove viruses from your computer.  My question is why would you not take preventative measures?  Those who get sick to often die or are never the same again after a big infection not unlike a hard drive.

October 28, 2007 12:01 AM
 

adobe » Major Malicious PDF attack underway using Adobe exploit said:

Pingback from  adobe &raquo; Major Malicious PDF attack underway using Adobe exploit

November 11, 2007 10:28 PM

Leave a Comment

(required) 
(optional)
(required) 
Submit
Powered by Community Server (Commercial Edition), by Telligent Systems