Windows Analysis Report
RP4ICG2DE42ZABHS_Nota n.19273 del 22-4-2024.pdf

Overview

General Information

Sample name: RP4ICG2DE42ZABHS_Nota n.19273 del 22-4-2024.pdf
Analysis ID: 1430903
MD5: 7e47c958b1692373b43736de1dc29337
SHA1: 12e2bfd68f6f43b07e0693e67ffcdce95eed246a
SHA256: ffc5639144a95a49708f5fa3dcff74f4cbf8e0c3d0433a741bb12528ff820fa5
Infos:

Detection

Score: 0
Range: 0 - 100
Whitelisted: false
Confidence: 80%

Signatures

No high impact signatures.

Classification

There are no high impact signatures.

Source: classification engine Classification label: clean0.winPDF@2/14@0/0
Source: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe File created: C:\Users\user\AppData\Local\Adobe\Acrobat\DC\Cache\AdobeFnt22.lst.8580 Jump to behavior
Source: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe File created: C:\Users\user\AppData\Local\Temp\acrord32_sbx\A91rqdk3h_hj9ru8_6mc.tmp Jump to behavior
Source: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe Key opened: HKEY_CURRENT_USER\Software\Policies\Microsoft\SystemCertificates\CA Jump to behavior
Source: unknown Process created: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe "C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe" "C:\Users\user\Desktop\RP4ICG2DE42ZABHS_Nota n.19273 del 22-4-2024.pdf"
Source: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe Process created: unknown unknown Jump to behavior
Source: RP4ICG2DE42ZABHS_Nota n.19273 del 22-4-2024.pdf Initial sample: PDF keyword /JS count = 0
Source: RP4ICG2DE42ZABHS_Nota n.19273 del 22-4-2024.pdf Initial sample: PDF keyword /JavaScript count = 0
Source: RP4ICG2DE42ZABHS_Nota n.19273 del 22-4-2024.pdf Initial sample: PDF keyword /EmbeddedFile count = 0
Source: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe Process information queried: ProcessInformation Jump to behavior
No contacted IP infos