Malicious PDF — malware analysis report

Static analysis result for SHA-256 08aecf59a3abd094…

MALICIOUS

PDF

21.6 KB Created: 2020-03-19 20:23:46 +00:00 Authoring application: mPDF 5.7
MD5: 437d9625aeae392ae3fbfbf0e1b5d6a7 SHA-1: eb2457f759f664c4c9f1b93b2fd97e053a919ee6 SHA-256: 08aecf59a3abd094b0f72618f2756dde0e05628adb5a8950c9d9e75415505f23
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links pointing to external PDF files hosted on the domain 'owlaokopdf.myhome.cx'. This behavior is indicative of a link farm or a lure to a malicious site, likely intended to distribute further malware or phish for credentials. The ML classifier also flagged this PDF as malicious with high confidence.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9925

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://owlaokopdf.myhome.cx/581678169816481638169/Georges-Bataille-A-Critical-Introduction-by-Benjamin-Noys.pdf
    • http://owlaokopdf.myhome.cx/681628169816681638161/Communization-and-Its-Discontents-Contestation-Critique-and-Contemporary-Struggles-by-Benjamin-Noys.pdf
    • http://owlaokopdf.myhome.cx/181638169816481688167/Story-of-the-Eye-by-Georges-Bataille.pdf
    • http://owlaokopdf.myhome.cx/681698165816881668160/Histoire-de-l-oeil-by-Georges-Bataille.pdf
    • http://owlaokopdf.myhome.cx/881628161816781618165/Blue-of-Noon-by-Georges-Bataille.pdf
    • http://owlaokopdf.myhome.cx/581678169816481638166/Against-Architecture-The-Writings-of-Georges-Bataille-by-Denis-Hollier.pdf
    • http://owlaokopdf.myhome.cx/581678169816381678163/Prehistoric-Painting-Lascaux-or-the-Birth-of-Art-by-Georges-Bataille.pdf
    • http://owlaokopdf.myhome.cx/581678169816381678164/Divine-Filth-Lost-Writings-by-Georges-Bataille.pdf
    • http://owlaokopdf.myhome.cx/781678164816281608164/Mapping-A-Critical-Introduction-to-Cartography-and-GIS-A-Critical-Introduction-to-GIS-and-Cartography-by-Jeremy-W-Crampton.pdf
    • http://owlaokopdf.myhome.cx/581678169816481648161/Undercover-Surrealism-Georges-Bataille-and-Documents-by-Dawn-Ades.pdf
    • http://owlaokopdf.myhome.cx/681648165816581658163/Phenomenology-and-Phantasmatology-On-the-Philosophy-of-Georges-Bataille-by-Rodolphe-Gasch-.pdf
    • http://owlaokopdf.myhome.cx/881638165816681628166/Les-r-cits-de-Georges-Bataille-Empreinte-de-Raymond-Roussel-by-Jean-Louis-Cornille.pdf
    • http://owlaokopdf.myhome.cx/681618166816381608164/The-Autobiography-of-Benjamin-Franklin-Complete-Prepared-for-Use-in-Schools-with-Introduction-Notes-and-a-Supplementary-Sketch-Concuding-the-Story-of-Franklin-s-Life-Presented-Mainly-in-His-Own-Words-by-Benjamin-Franklin.pdf
    • http://owlaokopdf.myhome.cx/681648162816181618167/Autobiography-of-Benjamin-Franklin-with-an-introduction-by-Verner-W-by-Benjamin-Franklin.pdf
    • http://owlaokopdf.myhome.cx/581688161816881658166/Descartes-An-Analytical-and-Historical-Introduction-by-Georges-Dicker.pdf
    • http://owlaokopdf.myhome.cx/981698161816681678160/Critical-Focus-An-Introduction-To-Film-by-Richard-M-Blumenberg.pdf
    • http://owlaokopdf.myhome.cx/481618165816381648164/Critical-Race-Theory-An-Introduction-by-Richard-Delgado.pdf
    • http://owlaokopdf.myhome.cx/581638164816981648167/Patrick-Chamoiseau-A-Critical-Introduction-by-Wendy-Knepper.pdf
    • http://owlaokopdf.myhome.cx/581638169816081658164/Henri-Lefebvre-A-Critical-Introduction-by-Andy-Merrifield.pdf
    • http://owlaokopdf.myhome.cx/1816081608168816181648160/Social-Problems-An-Introduction-to-Critical-Constructionism-by-Robert-Heiner.pdf