Malicious PDF — malware analysis report

Static analysis result for SHA-256 04033ef33ea745de…

MALICIOUS

PDF

26.7 KB Created: 2019-05-06 19:59:21 +01:00 Authoring application: mPDF 5.7
MD5: 79c41eccfa6b9f24d5d3157927940bef SHA-1: fe6c670a4f295f14c2b8c7b3eac7e92ab1ca798c SHA-256: 04033ef33ea745de2b25341102fae22367e42bdf193200fca029a8255b94492b
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded URLs pointing to a single domain, identified by the PDF_SEO_LINK_FARM heuristic. This suggests a link farm or SEO poisoning tactic, where the document's primary purpose is to drive traffic to external, potentially malicious, content. The ML_NYX_PDF_MALICIOUS heuristic further supports the malicious classification.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9908

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://kiteeearpdf.myhome.cx/7f219f218f213f217f214/French-Grammar-Drills-by-Eliane-Kurbegov.pdf
    • http://kiteeearpdf.myhome.cx/7f219f218f214f219f217/Barron-s-AP-French-Language-and-Culture-with-Audio-CDs-by-Eliane-Kurbegov.pdf
    • http://kiteeearpdf.myhome.cx/7f219f218f215f214f211/Eliane-A-Memoir-the-Art-of-Embracing-Life-and-Nature-by-Nikki-Lindberg.pdf
    • http://kiteeearpdf.myhome.cx/7f219f218f215f210f219/Practice-Makes-Perfect-Basic-French-by-Eliane-Kurbegov.pdf
    • http://kiteeearpdf.myhome.cx/7f214f213f212f214f212/Vip-re-au-poing-d-Herv-Bazin-Questionnaire-de-lecture-by-Eliane-Choffray.pdf
    • http://kiteeearpdf.myhome.cx/7f219f218f215f211f211/Anti-Politics-On-the-Demonization-of-Ideology-Authority-and-the-State-by-Eliane-Glaser.pdf
    • http://kiteeearpdf.myhome.cx/6f213f210f211f210f210/Le-Vieux-qui-lisait-des-romans-d-amour-de-Luis-Sepulveda-Questionnaire-de-lecture-by-Eliane-Choffray.pdf
    • http://kiteeearpdf.myhome.cx/7f219f218f215f210f217/Cutting-the-Body-Representing-Woman-in-Baudelaire-s-Poetry-Truffaut-s-Cinema-and-Freud-s-Psychoanalysis-by-Eliane-DalMolin.pdf
    • http://kiteeearpdf.myhome.cx/7f216f217f217f215f219/Jean-Fran-ois-Millet-le-peintre-des-paysans-La-nature-pour-unique-bagage-Artistes-t-30-by-Eliane-Reynold-de-Seresin.pdf
    • http://kiteeearpdf.myhome.cx/7f217f211f218f218f211/Ivorian-People-Introduction-Francis-Wodi-Charles-Konan-Banny-Seydou-Diarra-Bernard-Binlin-Dadi-Eliane-Droubry-Alfred-Dan-Moussa-by-Books-LLC.pdf
    • http://kiteeearpdf.myhome.cx/9f218f216f210f217f213/Through-the-Shadowlands-A-Science-Writer-s-Odyssey-into-an-Illness-Science-Doesn-t-Understand-by-Julie-Rehmeyer.pdf
    • http://kiteeearpdf.myhome.cx/4f212f219f213f214f214/Alchemy-Science-of-the-Cosmos-Science-of-the-Soul-by-Titus-Burckhardt.pdf
    • http://kiteeearpdf.myhome.cx/9f213f216f218f213f216/Three-Social-Science-Disciplines-in-Central-and-Eastern-Europe-Handbook-on-Economics-Political-Science-and-Sociology-1989-2001-by-Max-Kaase.pdf
    • http://kiteeearpdf.myhome.cx/9f216f214f217f214f218/Science-Fiction-Science-Fact-and-You-by-Lia-Lowenherz.pdf
    • http://kiteeearpdf.myhome.cx/6f217f215f210f217f211/The-Secret-Science-of-Black-Male-and-Female-Sex-The-Secret-Science-of-Sex-Where-the-Physical-Body-Transcends-Into-the-Spiritual-Dimension-by-T-C-Carrier.pdf
    • http://kiteeearpdf.myhome.cx/9f216f211f219f213f217/The-Science-Of-Torah-The-Reflection-Of-Torah-In-The-Laws-Of-Science-The-Creation-Of-The-Universe-And-The-Development-Of-Life-by-Natan-Slifkin.pdf
    • http://kiteeearpdf.myhome.cx/3f213f219f217f214f217/Star-Wars-on-Trial-Science-Fiction-And-Fantasy-Writers-Debate-the-Most-Popular-Science-Fiction-Films-of-All-Time-by-David-Brin.pdf
    • http://kiteeearpdf.myhome.cx/8f218f213f219f219f215/NOVA-Science-Fiction-Magazin-23-Themenausgabe-Musik-und-Science-Fiction-by-Thomas-Ziegler.pdf
    • http://kiteeearpdf.myhome.cx/4f215f217f210f213f211/Science-Fiction-The-Science-Fiction-Research-Association-Anthology-by-Patricia-S-Warrick.pdf
    • http://kiteeearpdf.myhome.cx/1f216f213f219f214f217/The-Science-Fiction-Bestiary-Nine-Stories-of-Science-Fiction-by-Robert-Silverberg.pdf