Software Alternatives & Reviews

How to analyze malicious PDF?

URLscan.io Cuckoo Sandbox
  1. urlscan.io is a free service to scan and analyse websites. When a URL is submitted to urlscan.io, an automated process will browse to the URL like a regular user and record the activity that this page navigation creates.
    Other Redditors have recommended online sandboxes like any.run, VirusTotal, and urlscan, so you can use those as well to analyse its behaviour. Try calculating an MD5 or SHA1/SHA256 checksum of the .pdf and searching for that on those virus scanning sites or a search engine.

    #Monitoring Tools #Email Marketing #Cloud Storage 87 social mentions

  2. Cuckoo Sandbox provides detailed analysis of any suspected malware to help protect you from online threats.
    You can detonate it into a VM running an instance of Cuckoo Sandbox. If you want to go the extra mile, you can dump the memory of said VM and analyse it with Volatility Framework. Also, if you want to quickly identify behavioural patterns in executable code, you can use Mandiant's CAPA tool (though idk if it works on .pdfs).

    #Monitoring Tools #Email Marketing #Cloud Storage 18 social mentions

Discuss: How to analyze malicious PDF?

Log in or Post with