Skip to main content
Skip to main content
Published May 16, 2018 | Updated May 16, 2018

Exploit:Win32/CVE-2018-8120

Detected by Microsoft Defender Antivirus

Aliases: No associated aliases

Summary

This exploit takes advantage of CVE-2018-8120, which is an elevation of privilege vulnerability in Windows.

It has been found embedded in a malformed PDF. The exploit is triggered by a JavaScript also embedded in the PDF that first exploits a vulnerability in Acrobat Reader.

Both exploits were designed to work on older OS versions. Windows 10 is not affected by this threat.

Security updates are available for both vulnerabilities. Update your Adobe software and Windows 7 and Windows Server systems:

Scanning with Microsoft Defender Antivirus or other Microsoft antimalware automatically removes threats as they are detected. However, many infections can leave remnant files and system changes. Updating your antimalware definitions and running a full scan might help address these remnant artifacts.

You can also visit our advanced troubleshooting page or search the Microsoft virus and malware community for more help.

Secure configuration

To get the best and fastest protection from Microsoft Defender Antivirus, ensure it can connect to the cloud protection service.

Use the Windows search box to find and open the Windows Defender Security Center. Navigate to Virus & threat protection settings and enable the following:

  • Cloud-delivered protection
  • Automatic sample submission
Install security updates

To prevent threats from exploiting vulnerabilities, always keep software updated.

Prevent malware infection

Refer to our guide on how to prevent malware infection.

Follow us