Analysis by: Christopher Daniel So

 PLATFORM:

Windows

 OVERALL RISK RATING:
 REPORTED INFECTION:

  • Threat Type: Trojan

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes

  OVERVIEW

This Trojan arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.

  TECHNICAL DETAILS

Tamaño del archivo 84,028 bytes
Tipo de archivo PDF
Fecha de recepción de las muestras iniciales 31 Oct 2017

Arrival Details

This Trojan arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.

NOTES:

This is the Trend Micro detection for PDF files that open a website in a browser when a link in the PDF document is clicked. When the link is clicked, it opens the following website in a browser:

  • https://{BLOCKED}ana.it/!%40%23%24%25%5E%26*()!%40%23%24%25%5E%26*()!%40%23%24%25%5E%26*()!%40%23%24%25%5E%26*()/

As of this writing, the said site is inaccessible.