Pdf.Dropper.Agent-7237269-0 — PDF malware analysis

Static analysis result for SHA-256 1f4b03d3b1c08ec3…

MALICIOUS

PDF

150.9 KB
MD5: e041d3df4ba96a4c9b4823e85fca7221 SHA-1: bdef524409e90538be029343163700b9dafba44d SHA-256: 1f4b03d3b1c08ec39d9dd5ec0688a6286bf9085933c46c855f6c16213399292e
90 Risk Score

Malware Insights

Pdf.Dropper.Agent-7237269-0 · confidence 95%

MITRE ATT&CK
T1204 Malicious Link T1059 Command and Scripting Interpreter

The file is identified as a malicious PDF dropper by ClamAV and a machine learning classifier. The document body contains a generic 'Important Information' lure, suggesting it is designed to trick users into opening it. The primary function appears to be delivering a malicious payload, as indicated by the 'Dropper' classification.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9977

Heuristics 1

  • ClamAV: Pdf.Dropper.Agent-7237269-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Pdf.Dropper.Agent-7237269-0