We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Exploit:Win32/Pdfjsc.YF
Aliases: PDF/Exploit.ACN (Norman) Exploit.PDF-JS.BL (BitDefender) Exploit.Win32.Pdfjsc (Ikarus) Exploit.JS.Pdfka.ffs (Kaspersky) Troj/PDFEx-ET (Sophos)
Summary
Exploit:Win32/Pdfjsc.YF is a specially-crafted Portable Document File (PDF), which exploits a vulnerability in Adobe Acrobat and Adobe Reader discussed in the following articles:
It connects to certain servers to download and execute other files.
To detect and remove this threat and other malicious software that may be installed on your computer, run a full-system scan with an appropriate, up-to-date, security solution. The following Microsoft products detect and remove this threat:
For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.
Update vulnerable PDF applications
This threat exploits known vulnerabilities in Adobe Acrobat and Reader. After removing this threat, make sure that you install the updates available from the vendor. You can read more about these vulnerabilities in PDF documents, as well as where to download the software update from the following links: