A fresh batch of malicious PDFs is making the rounds via email, with the attackers trying to trick users into opening the files by making them look like instructions for an update to their email accounts. The attack uses a technique recently published by a researcher that takes advantage of the /launch command in Adobe software. The technique, which was identified by researcher Didier Stevens recently, enables an attacker to launch commands and open file attachments on users machines. The ultimate payload of the malware is a file called game.exe, which turns out to be a variant of the Auraax or Emold worm.
Source: https://threatpost.com/pdf-malware-using-new-attack-technique-042810/73893/

