Malicious PDF — malware analysis report

Static analysis result for SHA-256 069a73a7257a37f6…

MALICIOUS

PDF

17.1 KB Created: 2019-04-30 02:50:07 +01:00 Authoring application: mPDF 5.7
MD5: 5b6c483fab9e38edb172e47d8e182085 SHA-1: 638b02ae5047716e0fc3073426df6232abfe851e SHA-256: 069a73a7257a37f66d94d9eab8136fd43538f33e9520a65c23fa876879452988
94 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

This PDF file was detected as malicious by ClamAV and an ML classifier, indicating it is a dropper. The document body contains multiple embedded URLs that masquerade as book titles, likely intended to trick the user into downloading a secondary payload. The presence of these URLs and the dropper functionality strongly suggests a spearphishing attachment attack vector.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9787

Heuristics 3

  • ClamAV: Pdf.Dropper.Agent-7174700-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Pdf.Dropper.Agent-7174700-0
  • External URI info PDF_URI
    PDF contains an external URL action
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://seasasac.lflinkup.com/4da1da9da1da5da2/All-You-Need-Is-Kill-Vol-1-All-You-Need-Is-Kill-1-by-Ryosuke-Takeuchi.pdf
    • http://seasasac.lflinkup.com/1da1da6da0da8da8da4/What-Is-Modernity-Writings-of-Takeuchi-Yoshimi-by-Yoshimi-Takeuchi.pdf
    • http://seasasac.lflinkup.com/2da3da7da5da5da2/The-Gifted-Vol-1-The-Haunting-Woman-by-Ryosuke-Akizuki.pdf
    • http://seasasac.lflinkup.com/2da7da9da8da1da3/To-Kill-and-Kill-Again-The-Terrifying-True-Story-of-Montana-s-Baby-Faced-Serial-Sex-Murderer-by-John-Coston.pdf
    • http://seasasac.lflinkup.com/8da9da1da4da5da3/Hastur-Pussycat-Kill-Kill-by-Michael-T-Huyck.pdf
    • http://seasasac.lflinkup.com/4da0da4da7da7da8/To-Kill-or-Escape-To-Kill-2-by-Ryn-Shell.pdf
    • http://seasasac.lflinkup.com/6da8da2da4/They-Can-t-Kill-Us-Until-They-Kill-Us-by-Hanif-Abdurraqib.pdf
    • http://seasasac.lflinkup.com/1da0da9da9da6da6da3/Her-Majesty-s-Dog-Volume-2-by-Mick-Takeuchi.pdf
    • http://seasasac.lflinkup.com/4da1da8da4da2da4/Sailor-Moon-Box-Set-1-Vol-1-6-by-Naoko-Takeuchi.pdf
    • http://seasasac.lflinkup.com/8da0da9da7da0da3/Can-You-Find-My-Robot-s-Arm-by-Chihiro-Takeuchi.pdf
    • http://seasasac.lflinkup.com/1da1da6da0da9da0da9/Her-Majesty-s-Dog-Volume-6-by-Mick-Takeuchi.pdf
    • http://seasasac.lflinkup.com/1da1da6da0da9da8da7/Bound-Beauty-Volume-5-by-Mick-Takeuchi.pdf
    • http://seasasac.lflinkup.com/1da1da6da0da9da8da5/Bound-Beauty-Volume-4-by-Mick-Takeuchi.pdf
    • http://seasasac.lflinkup.com/1da1da6da0da9da7da8/Bound-Beauty-Volume-3-by-Mick-Takeuchi.pdf
    • http://seasasac.lflinkup.com/4da7da8da5da1da3/Meet-Sailor-Mercury-Ice-by-Naoko-Takeuchi.pdf
    • http://seasasac.lflinkup.com/4da7da8da9da4da7/Sailor-Moon-Stars-2-by-Naoko-Takeuchi.pdf
    • http://seasasac.lflinkup.com/1da0da8da8da4da3da4/Meet-Sailor-Moon-by-Naoko-Takeuchi.pdf
    • http://seasasac.lflinkup.com/1da1da6da0da9da7da7/Remember-Me-A-Lively-Tour-of-the-New-American-Way-of-Death-by-Lisa-Takeuchi-Cullen.pdf
    • http://seasasac.lflinkup.com/4da0da0da3da8da9/Kill-Me-Kiss-Me-Volume-2-Kill-Me-Kiss-Me-2-by-Lee-Young-You.pdf
    • http://seasasac.lflinkup.com/5da0da8da5da8da0/Taiga-s-True-Views-The-Language-of-Landscape-Painting-in-Eighteenth-Century-Japan-by-Melinda-Takeuchi.pdf