Loading ...

Play interactive tourEdit tour

Windows Analysis Report SIGNEDCONTRACT_ 14TH_SEPTEMBER_2021 _.PDF

Overview

General Information

Sample Name:SIGNEDCONTRACT_ 14TH_SEPTEMBER_2021 _.PDF
Analysis ID:483807
MD5:46d813dd7b8e05aa4892f56e69f6eddf
SHA1:4098f6878c3b9cf6efd2a010d12a556f6ff9801a
SHA256:e5c190ea121f8be953fbee54113dcaf7983870d6fb1ab635d6d4119215e8d09c
Infos:

Most interesting Screenshot:

Detection

Score:3
Range:0 - 100
Whitelisted:false
Confidence:80%

Signatures

Potential document exploit detected (unknown TCP traffic)
No HTML title found
JA3 SSL client fingerprint seen in connection with other malware
PDF has an OpenAction (likely to launch a dropper script)
Potential document exploit detected (performs DNS queries)
Potential document exploit detected (performs HTTP gets)
IP address seen in connection with other malware

Classification