Malicious PDF — malware analysis report

Static analysis result for SHA-256 074801905b1f960f…

MALICIOUS

PDF

22.7 KB Created: 2020-03-18 23:49:43 +00:00 Authoring application: mPDF 5.7
MD5: 3f6b51938cbd9ee57142fbc316148255 SHA-1: 7b3608daffa50c55cd789594ad0aa0a61410222f SHA-256: 074801905b1f960f48d422e8912a8618d6f25b56b23a6b2edfc584127899282e
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded URLs pointing to a single domain, identified by the PDF_SEO_LINK_FARM heuristic. This suggests the document is part of a link farm or SEO poisoning campaign, aiming to drive traffic to the linked content. No scripts were extracted, and the document body was heavily corrupted, limiting further analysis.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9796

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://ieuicufioao.myhome.cx/2555554557559555/What-Caused-the-Civil-War-Reflections-on-the-South-and-Southern-History-by-Edward-L-Ayers.pdf
    • http://ieuicufioao.myhome.cx/1555551551559/The-Promise-of-the-New-South-Life-After-Reconstruction-by-Edward-L-Ayers.pdf
    • http://ieuicufioao.myhome.cx/5550559554556556/Double-Duty-in-the-Civil-War-The-Letters-of-Sailor-and-Soldier-Edward-W-Bacon-by-Edward-W-Bacon.pdf
    • http://ieuicufioao.myhome.cx/2555554554553558/Drawn-with-the-Sword-Reflections-on-the-American-Civil-War-by-James-M-McPherson.pdf
    • http://ieuicufioao.myhome.cx/1554552552554553/The-New-South-Creed-A-Study-in-Southern-Mythmaking-by-Paul-M-Gaston.pdf
    • http://ieuicufioao.myhome.cx/1551552550556559553/Willa-Cather-s-Southern-Connections-Willa-Cather-s-Southern-Connections-New-Essays-on-Cather-and-the-South-New-Essays-on-Cather-and-the-South-by-Ann-Romines.pdf
    • http://ieuicufioao.myhome.cx/5551550559556557/Why-the-South-Lost-the-Civil-War-by-Richard-E-Beringer.pdf
    • http://ieuicufioao.myhome.cx/5551550559556554/Civil-Wars-Women-and-the-Crisis-of-Southern-Nationalism-by-George-C-Rable.pdf
    • http://ieuicufioao.myhome.cx/2555558554558553/Summer-Snow-Reflections-from-a-Black-Daughter-of-the-South-by-Trudier-Harris.pdf
    • http://ieuicufioao.myhome.cx/3553551558555557/My-Southern-Journey-True-Stories-from-the-Heart-of-the-South-by-Rick-Bragg.pdf
    • http://ieuicufioao.myhome.cx/6552555551559552/Southern-Routes-Secret-Recipes-from-the-Best-Down-Home-Joints-in-the-South-by-Ben-Vaughn.pdf
    • http://ieuicufioao.myhome.cx/5554558550556558/Civil-Procedure-in-South-Africa-by-Roshana-Kelbrick.pdf
    • http://ieuicufioao.myhome.cx/4555556552554558/Honest-Jeff-and-Dishonest-Abe-A-Southern-Children-s-Guide-to-the-Civil-War-by-Lochlainn-Seabrook.pdf
    • http://ieuicufioao.myhome.cx/5551556555556552/Southern-Black-Women-in-the-Modern-Civil-Rights-Movement-by-Bruce-A-Glasrud.pdf
    • http://ieuicufioao.myhome.cx/4552553552554550/Southern-Sin-True-Stories-of-the-Sultry-South-and-Women-Behaving-Badly-by-Lee-Gutkind.pdf
    • http://ieuicufioao.myhome.cx/2555554559559551/Unvanquished-How-Women-of-the-South-Survived-the-Civil-War-by-Pippa-Pralen.pdf
    • http://ieuicufioao.myhome.cx/5550559551554552/Southern-Labor-and-Black-Civil-Rights-Organizing-Memphis-Workers-by-Michael-K-Honey.pdf
    • http://ieuicufioao.myhome.cx/5550559559553557/Up-South-Civil-Rights-and-Black-Power-in-Philadelphia-by-Matthew-J-Countryman.pdf
    • http://ieuicufioao.myhome.cx/2555555550553558/Battle-on-the-Bay-The-Civil-War-Struggle-for-Galveston-by-Edward-T-Cotham-Jr-.pdf
    • http://ieuicufioao.myhome.cx/1550556556554555557/Property-and-Civil-Society-in-South-Western-Germany-1820-1914-by-Jonathan-Sperber.pdf