Malicious PDF — malware analysis report

Static analysis result for SHA-256 bc96c385d77be91b…

MALICIOUS

PDF

180.7 KB
MD5: 4d1e4ecf13ed2022d43ff177de621295 SHA-1: 33c4aefe937b07ee4a09375236f612492ec66fa3 SHA-256: bc96c385d77be91bd7afd0a237ab0159eee81a2c8f39704db41b6dadfeae10f7
62 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file was detected by ClamAV as Pdf.Dropper.Agent-9006614-0. A heuristic identified an external URI pointing to a URL that appears to be a lure, likely intended to redirect the user to a malicious site. The document body was unreadable, preventing further analysis of its specific content.

Heuristics 2

  • ClamAV: Pdf.Dropper.Agent-9006614-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Pdf.Dropper.Agent-9006614-0
  • External URI info PDF_URI
    PDF contains an external URL action