Pdf.Dropper.Agent-9448951-0 — PDF malware analysis

Static analysis result for SHA-256 e5135cc2605d6612…

MALICIOUS

PDF

226.7 KB
MD5: bc31f4fb1874e251963da94d18449f91 SHA-1: 0517ae9cf1ca15e7da7f9faba87f6d1799ceaa23 SHA-256: e5135cc2605d6612cd1967cfe5a80664b802ee9d717be5308c16355244ed4cdb
90 Risk Score

Malware Insights

Pdf.Dropper.Agent-9448951-0 · confidence 95%

MITRE ATT&CK
T1059.001 PowerShell

The file was detected by ClamAV as Pdf.Dropper.Agent-9448951-0 and flagged by an ML classifier, indicating malicious intent. The document body's generic title suggests a social engineering lure. The dropper likely serves to download and execute a second-stage payload, though specific script details are not available in the provided evidence.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9956

Heuristics 1

  • ClamAV: Pdf.Dropper.Agent-9448951-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Pdf.Dropper.Agent-9448951-0