To get a one-glance comprehensive view of the behavior of this malware, refer to the Behavior Diagram shown below.
Malware Overview
This Trojan may be downloaded from a certain remote site.
It is a specially crafted .PDF file that exploits a known vulnerability in
Acrobat Reader 8.1.2 or earlier versions. This vulnerability causes the application to crash and could potentially allow an attacker to take control of the affected system. More information about the said vulnerability can be found at the following links:
This Trojan accesses a URL to download a file which Trend Micro detects as
TROJ_DLOAD.BO. It then executes the downloaded file. As a result, malicious routines of the downloaded file are exhibited on the affected system.
More...