Malicious PDF — malware analysis report

Static analysis result for SHA-256 93124cc4cd60e426…

MALICIOUS

PDF

226.7 KB
MD5: b31b1a1cd6bbedaa1cdab9c919cd258c SHA-1: 4c081dfccfb1c54e525746aa51f16dcd7e0a444b SHA-256: 93124cc4cd60e426f5d82108d5437d6b7759d073360f05099f6a10996062f7a4
90 Risk Score

Malware Insights

MITRE ATT&CK
T1204 Malicious Link T1204.002 Malicious File

The file was identified as malicious by both a machine learning classifier and ClamAV, which specifically flagged it as 'Pdf.Dropper.Agent-7283447-0'. The document body contains minimal text, suggesting its primary purpose is to act as a container for malicious content rather than to convey information. The heuristics indicate this PDF is designed to drop or execute other malware.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9956

Heuristics 1

  • ClamAV: Pdf.Dropper.Agent-7283447-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Pdf.Dropper.Agent-7283447-0