Pretty Darn Fancy

TA!Fancy!PDF

  27 June 2007

Description

Using a PDF file in place of an image (and especially compressed PDFs) to avoid tokenizedation.

Submitted by Joe Chongq.

Example

An example where a PDF sent in a pump-and-dump spam is made to look official (click to enlarge):

Another example, that looks more like 'classical' image spam:

Note that the letters are actually made up of many different colours:

See also blog entries 'Pretty Darn Fancy: Stock spammers using PDF files' and 'Pretty Darn Fancy: Even More Fancy Spam'.

Quick Links

Poll
The Japanese government is reported to have commissioned a 'defensive virus'. Is 'defensive' malware ever a good idea?
Yes
No
I don't know
Leave a comment
View 11 comments

99 Subscription Promo

Virus Bulletin
In this month's magazine:
  • Living the meme
  • If Svar is the answer...
  • Static analysis of mobile malware
  • And the devil is six: the security consequences of the switch to IPv6
  • Behind enemy lines: reporting from the CCC 28C3 Congress
Virus Bulletin 02 2012
Subscribe now!

Virus Bulletin currently has 224,223 registered users.