We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Exploit:Win32/RdrJmp.A
Detected by Microsoft Defender Antivirus
Aliases: Exploit.Win32.AdobeReader.b (Kaspersky) Exploit-PDF (McAfee) Troj/PDFex-A (Sophos) Trojan.Pidief.A (Symantec)
Summary
Exploit:Win32/RdrJmp.A exploits unpatched Adobe Reader & Adobe Acrobat applications installed on Windows XP computers. Opening a malicious .PDF data file containing the exploit could result in the installation of additional malware, including TrojanSpy:Win32/Agent.BI, Trojan:Win32/Agent.OS and PWS:Win32/Ldpinch.W.
Microsoft has published Microsoft Security Advisory 943521 related to this threat:
Adobe has published updates for vulnerable applications:
http://www.adobe.com/support/security/bulletins/apsb07-18.html
http://www.adobe.com/support/security/bulletins/apsb07-18.html
Exploit:Win32/RdrJmp.A may download and install additional malicious software, thus manual removal is not recommended. To detect and remove this Trojan and other malicious software that may have been installed, run a full-system scan with an up-to-date antivirus product such as the Microsoft Safety Scanner (http://go.microsoft.com/fwlink/?LinkId=212742). For more information, visit http://www.microsoft.com/athome/security/downloads/default.mspx.
Microsoft has published Microsoft Security Advisory 943521 related to this threat:
Adobe has published updates for vulnerable applications:
http://www.adobe.com/support/security/bulletins/apsb07-18.html
http://www.adobe.com/support/security/bulletins/apsb07-18.html