Malicious PDF — malware analysis report

Static analysis result for SHA-256 c3f8c97a3c085be6…

MALICIOUS

PDF

226.8 KB
MD5: fdff538014130b3826c37237c17385d4 SHA-1: b8d5e0ca3c8b3c921189820629331389124b658f SHA-256: c3f8c97a3c085be61ab109aafa10c5b302e938b9df2083c73a7ac10d3a63ce72
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The file is identified as a PDF document with a ClamAV detection of 'Pdf.Dropper.Agent-7300408-0', indicating it functions as a dropper. The document body contains minimal, generic text, suggesting the primary purpose is to deliver a malicious payload rather than convey information. No scripts were extracted, and no specific URLs or hashes were found in the provided evidence.

Heuristics 1

  • ClamAV: Pdf.Dropper.Agent-7300408-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Pdf.Dropper.Agent-7300408-0