Malicious PDF — malware analysis report

Static analysis result for SHA-256 01a9e305ceee4186…

MALICIOUS

PDF

18.4 KB Created: 2019-04-30 05:51:46 +01:00 Authoring application: mPDF 5.7 First seen: 2021-06-13
MD5: d0ff7fe795d64d427a7244957afb8e90 SHA-1: 524ad2f7b949662474b4ff825f899f3f9f27b91f SHA-256: 01a9e305ceee418632224ac51a820e838c608f5c0c239b87386470ca6428afb1
100 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links, identified as a link farm, which is a common tactic for SEO manipulation or distributing malicious content. While the URLs themselves are marked as benign, the sheer volume and the heuristic firing for PDF_SEO_LINK_FARM indicate a malicious intent to redirect users. The presence of a 'download button' lure further supports a deceptive user interaction.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 3

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Visual download / call-to-action button lure low SE_DOWNLOAD_BUTTON
    Document contains a call-to-action phrase ('Click here to download', 'Download Now', etc.) — low-signal unless other findings point to a malicious workflow
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/9a01a05a04a05/Brothers-in-Hope-The-Story-of-the-Lost-Boys-of-Sudan-by-Mary-Williams.pdf In PDF document text
    • http://muicuiu.dumb1.com/4a06a08a07a05a02/The-Lost-Daughter-A-Memoir-by-Mary-Williams.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a04a00a04a09a05/The-Black-Hope-Horror-The-True-Story-of-a-Haunting-by-Ben-Williams.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a07a06a09a03/American-Boys-The-True-Story-of-the-Lost-74-of-the-Vietnam-War-by-Louise-Esola.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a01a05a08a04a08a04/Hope-Pain-and-Patience-The-Lives-of-Women-in-South-Sudan-by-Friederike-Bubenzer.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a01a05a08a04a09a04/Hope-Pain-and-Patience---The-Lives-of-Women-in-South-Sudan-by-Friederike-Bubenzer.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a08a05a02a08a05/Loving-a-Lost-Lord-Lost-Lords-1-by-Mary-Jo-Putney.pdfIn PDF document text
    • http://muicuiu.dumb1.com/8a01a02a09a01/Never-Goodbye-Albany-Boys-1-by-Kerri-Williams.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a04a04a09a06a05/Bad-Boys-Do-Donovan-Brothers-Brewery-2-by-Victoria-Dahl.pdfIn PDF document text
    • http://muicuiu.dumb1.com/3a00a09a06a01a07/Only-an-Idiot-Gets-Lost-in-Chicago-A-Story-of-Lost-Dreams-by-Mike-Reuther.pdfIn PDF document text
    • http://muicuiu.dumb1.com/7a02a06a07a02/Brian-Wilson-amp-the-Beach-Boys-How-Deep-Is-the-Ocean-by-Paul-Williams.pdfIn PDF document text
    • http://muicuiu.dumb1.com/9a06a07a06a04a08/The-Castell-Brothers-Trilogy-Boxed-Set-by-Izzy-Williams.pdfIn PDF document text
    • http://muicuiu.dumb1.com/9a00a08a03a09a09/Redemption-A-Novel-about-Hope-and-Human-Trafficking-Boys-For-Sale-2-by-Marc-Finks.pdfIn PDF document text
    • http://muicuiu.dumb1.com/9a02a04a02a06a02/Sleigh-of-Hope-Grayson-Brothers-5-by-Wendy-Lindstrom.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a09a00a02a01a05/Devil-You-Know-Lost-Boys-1-by-L-A-Fiore.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a09a01a05a00a03/An-Alcoholic-Husband---a-Story-of-Love-and-Hope-The-extraordinary-true-story-of-one-woman-s-journey-married-to-a-loveable-rogue-by-Carol-Mills.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a02a02a03a00a04/Lost-Boys-by-Orson-Scott-Card.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a04a02a01a03a09/Lost-Boys-by-Orson-Scott-Card.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a04a05a03a00a04/Near-and-Far-Lost-amp-Found-2-by-Nicole-Williams.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a02a02a03a00a08/Green-Vanilla-Tea-One-Family-s-Extraordinary-Journey-of-Love-Hope-and-Remembering-by-Marie-Williams.pdfIn PDF document text