Malicious PDF — malware analysis report

Static analysis result for SHA-256 04a2c307d350ec61…

MALICIOUS

PDF

24.0 KB Created: 2019-04-30 04:17:12 +01:00 Authoring application: mPDF 5.7
MD5: f01ec44e46397c6d662788adfc698b84 SHA-1: 9dd7a5ffffdfd7f474255fbe0888d885234a5df5 SHA-256: 04a2c307d350ec61e79dd4bb89d87e0f317be289dbd7630054eb6bd5f53d8154
100 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of external links, identified as a link farm, suggesting an attempt to manipulate search engine results or host malicious content. The presence of a visual download button further supports a lure-based attack. While no scripts were directly extracted, the PDF structure and link farm heuristic indicate a malicious intent to redirect users to potentially harmful content.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9901

Heuristics 3

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Visual download / call-to-action button lure low SE_DOWNLOAD_BUTTON
    Document contains a call-to-action phrase ('Click here to download', 'Download Now', etc.) — low-signal unless other findings point to a malicious workflow
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/3a05a05a07a08a06/Deus-ex-Machina-by-K-Alexander.pdf
    • http://muicuiu.dumb1.com/8a01a01a00a05a04/Deus-Ex-Machina-For-Mythic-Fantasy-Role-Playing-Game-by-Varg-Vikernes.pdf
    • http://muicuiu.dumb1.com/2a04a01a04a01a05/Ex-Machina-Vol-3-Fact-v-Fiction-Ex-Machina-3-by-Brian-K-Vaughan.pdf
    • http://muicuiu.dumb1.com/8a02a02a07a06a01/Harpa-Crist-Oficial---Assembl-ia-de-Deus-Hin-rio-oficial-das-Assembleias-de-Deus-no-Brasil-foi-lan-ada-em-1922-Com-640-hinos-by-Vagner-Martins.pdf
    • http://muicuiu.dumb1.com/7a06a06a01a09a01/The-Price-of-Royalty-A-Machina-Novel-1-by-Aleks-Canard.pdf
    • http://muicuiu.dumb1.com/3a00a04a03a09a05/Ex-Machina-The-Deluxe-Edition-Vol-1-by-Brian-K-Vaughan.pdf
    • http://muicuiu.dumb1.com/7a06a04a09a05a00/Critical-Role-Vox-Machina-Origins-1-by-Matthew-Colville.pdf
    • http://muicuiu.dumb1.com/1a03a08a05a06a03/Deus-X-and-Other-Stories-by-Norman-Spinrad.pdf
    • http://muicuiu.dumb1.com/3a08a05a08a06a09/Deus-Irae-by-Philip-K-Dick.pdf
    • http://muicuiu.dumb1.com/7a06a02a08a05/God-Is-Love-Deus-Caritas-Est-by-Pope-Benedict-XVI.pdf
    • http://muicuiu.dumb1.com/1a02a01a04a05a05/Deus-Ex-Black-Light-by-James-Swallow.pdf
    • http://muicuiu.dumb1.com/2a08a00a05a06a04/Ineffabilis-Deus-Defining-The-Dogma-Of-The-Immaculate-Conception-Issued-December-8-1854-by-John-R-Sheets.pdf
    • http://muicuiu.dumb1.com/9a09a05a01a06a03/The-Papers-of-Alexander-Hamilton-Additional-Letters-1777-1802-and-Cumulative-Index-Volumes-I-XXVII-by-Alexander-Hamilton.pdf
    • http://muicuiu.dumb1.com/1a01a02a09a06a09a02/Recollections-Of-Alexander-H-Stephens-His-Diary-Kept-When-A-Prisoner-At-Fort-Warren-Boston-Harbou-by-Alexander-H-Stephens.pdf
    • http://muicuiu.dumb1.com/8a07a09a07a08a02/My-Past-and-Thoughts-The-Memoirs-of-Alexander-Herzen-Volume-1-by-Alexander-Herzen.pdf
    • http://muicuiu.dumb1.com/1a00a02a08a04a00a04/The-Journals-of-Father-Alexander-Schmemann-1973-1983-by-Alexander-Schmemann.pdf
    • http://muicuiu.dumb1.com/9a03a05a01a07a02/Fairy-Tail-Fanon---Persona-Superior-Deus-Abyss-Break-Air-God-Slayer-Magic-Amaterasu-Magic-Seals-Arbiter-Poena-Arc-of-Embodiment-Arc-of-Possession-Arc-of-Time-Atma-Atom-Breaker-Awakening-Black-Feather-Magic-Bloody-Fang-Magic-Bullet-Magic-by-Source-Wikia.pdf
    • http://muicuiu.dumb1.com/2a06a08a00a05a09/The-Poems-Prose-and-Plays-of-Alexander-Pushkin-by-Alexander-Pushkin.pdf
    • http://muicuiu.dumb1.com/7a01a09a00a04/Stephanie-Alexander-s-Kitchen-Garden-Companion-by-Stephanie-Alexander.pdf
    • http://muicuiu.dumb1.com/2a05a04a04a02a01/Fighting-for-the-Confederacy-The-Personal-Recollections-of-General-Edward-Porter-Alexander-by-Edward-Porter-Alexander.pdf