Malicious PDF — malware analysis report

Static analysis result for SHA-256 0762411ba0168798…

MALICIOUS

PDF

20.6 KB Created: 2020-02-05 09:18:31 +00:00 Authoring application: mPDF 5.7
MD5: d483e814e418bd6856b2744e0fb6b4ff SHA-1: 037e7eebc853b5f2c241782e6da80a338c69e2a9 SHA-256: 0762411ba01687989e68163c23e76eaae377e67c49aa9b3547757c58cca83180
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF document was flagged by a machine learning classifier and contains a large number of embedded external links, characteristic of a link farm or SEO poisoning attack. The embedded URLs, such as http://eascasas.myhome.cx/1aa8aa3aa3aa8aa8/Animal-Rights-All-That-Matters-by-Mark-Rowlands.pdf, are likely intended to redirect users to malicious content or phishing sites. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9942

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://eascasas.myhome.cx/1aa8aa3aa3aa8aa8/Animal-Rights-All-That-Matters-by-Mark-Rowlands.pdf
    • http://eascasas.myhome.cx/1aa0aa0aa4aa7aa7/Animal-Rights-Human-Rights-Ecology-Economy-and-Ideology-in-the-Canadian-Arctic-by-George-Wenzel.pdf
    • http://eascasas.myhome.cx/2aa5aa5aa0aa1aa7/The-Animal-Rights-Handbook-Everyday-Ways-to-Save-Animal-Lives-by-Laura-Fraser.pdf
    • http://eascasas.myhome.cx/2aa5aa0aa7aa0aa7/Running-with-the-Pack-by-Mark-Rowlands.pdf
    • http://eascasas.myhome.cx/3aa9aa6aa3aa9aa6/The-Philosopher-At-The-End-Of-The-Universe-Philosophy-Explained-Through-Science-Fiction-Films-by-Mark-Rowlands.pdf
    • http://eascasas.myhome.cx/4aa0aa1aa5aa6aa9/Women-and-the-Animal-Rights-Movement-by-Emily-Gaarder.pdf
    • http://eascasas.myhome.cx/1aa8aa3aa4aa1aa9/Animal-Rights-amp-Human-Morality-by-Bernard-E-Rollin.pdf
    • http://eascasas.myhome.cx/1aa0aa2aa3aa6aa7aa8/Animal-Rights-Current-Debates-and-New-Directions-by-Cass-R-Sunstein.pdf
    • http://eascasas.myhome.cx/1aa8aa3aa1aa6aa8/Empty-Cages-Facing-the-Challenge-of-Animal-Rights-by-Tom-Regan.pdf
    • http://eascasas.myhome.cx/1aa8aa3aa1aa4aa1/Rain-Without-Thunder-The-Ideology-of-the-Animal-Rights-Movement-by-Gary-L-Francione.pdf
    • http://eascasas.myhome.cx/3aa1aa8aa6aa8aa9/Incredible-Animal-Dads-Fun-Animal-Books-For-Kids-With-Facts-amp-Incredible-Photos-Exploring-Our-Incredible-World-Children-s-Book-Series-by-Mark-Smith.pdf
    • http://eascasas.myhome.cx/1aa8aa3aa4aa1aa3/Beyond-Animal-Rights-A-Feminist-Caring-Ethic-for-the-Treatment-of-Animals-by-Josephine-Donovan.pdf
    • http://eascasas.myhome.cx/3aa7aa7aa3aa9aa5/The-Incredibles-Family-Matters-by-Mark-Waid.pdf
    • http://eascasas.myhome.cx/7aa7aa5aa5aa7aa8/Family-Matters-A-Mark-Landry-Novel-by-Randall-H-Miller.pdf
    • http://eascasas.myhome.cx/3aa1aa0aa7aa5aa3/The-Food-Matters-Cookbook-500-Revolutionary-Recipes-for-Better-Living-by-Mark-Bittman.pdf
    • http://eascasas.myhome.cx/3aa1aa8aa9aa9aa6/Incredible-Animal-Moms-by-Mark-Smith.pdf
    • http://eascasas.myhome.cx/2aa4aa9aa3aa9aa0/Stuff-Matters-The-Strange-Stories-of-the-Marvellous-Materials-that-Shape-Our-Man-made-World-by-Mark-Miodownik.pdf
    • http://eascasas.myhome.cx/8aa7aa0aa3aa1/White-Male-Privilege-A-Study-of-Racism-in-America-50-Years-After-the-Voting-Rights-Act-by-Mark-Rosenkranz.pdf
    • http://eascasas.myhome.cx/5aa0aa1aa6aa9aa4/Bleating-Hearts-Exposing-the-Hidden-World-of-Animal-Suffering-by-Mark-Hawthorne.pdf
    • http://eascasas.myhome.cx/4aa1aa4aa7aa9aa1/Rights-of-Inheritance-Asserting-Rights-1-by-Sandra-Bard.pdf