Malicious PDF — malware analysis report

Static analysis result for SHA-256 0ba5ccf6099f4da2…

MALICIOUS

PDF

20.0 KB Created: 2019-05-01 17:18:10 +01:00 Authoring application: mPDF 5.7
MD5: 6bcb5b3b84392f8eb05855c7dd7246a1 SHA-1: 51e8a31348ee462f77e944c4f1d33c872fe72ca1 SHA-256: 0ba5ccf6099f4da2783a6200d5161a04ce3661b94be2c4d200d40010ddde02b0
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded URLs, identified by the PDF_SEO_LINK_FARM heuristic, pointing to various book titles. The ML_NYX_PDF_MALICIOUS heuristic also flagged the document. The embedded URLs are likely used to drive traffic to these external PDF files, potentially for SEO poisoning or to host malicious content disguised as legitimate documents.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9922

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://unieoooq.linkpc.net/44e04e54e04e8/SAMPLER-ONLY-Catching-Fire-The-Hunger-Games-2-by-Suzanne-Collins.pdf
    • http://unieoooq.linkpc.net/34e84e64e84e1/Catching-Fire-The-Hunger-Games-2-by-Suzanne-Collins.pdf
    • http://unieoooq.linkpc.net/94e74e94e94e54e3/Catching-Fire-Hunger-Games-2-by-Suzanne-Collins.pdf
    • http://unieoooq.linkpc.net/24e74e14e74e74e1/Catching-Fire-The-Hunger-Games-2-by-Suzanne-Collins.pdf
    • http://unieoooq.linkpc.net/74e34e14e94e14e5/Mockingjay-The-Final-Book-of-The-Hunger-Games-The-Hunger-Games-by-Suzanne-Collins.pdf
    • http://unieoooq.linkpc.net/74e14e64e34e24e8/The-Hunger-Games-by-Suzanne-Collins.pdf
    • http://unieoooq.linkpc.net/54e54e64e14e14e9/The-Hunger-Games-by-Suzanne-Collins.pdf
    • http://unieoooq.linkpc.net/64e24e84e34e64e0/The-Hunger-Games-1---D-dsspillet-by-Suzanne-Collins.pdf
    • http://unieoooq.linkpc.net/24e64e84e04e34e8/The-Hunger-Games-Trilogy-by-Suzanne-Collins.pdf
    • http://unieoooq.linkpc.net/64e04e54e14e74e0/Int-grale-Hunger-Games-by-Suzanne-Collins.pdf
    • http://unieoooq.linkpc.net/94e64e54e3/Mockingjay-The-Hunger-Games-3-by-Suzanne-Collins.pdf
    • http://unieoooq.linkpc.net/54e94e24e44e34e1/The-Hunger-Games-Special-Edition-by-Suzanne-Collins.pdf
    • http://unieoooq.linkpc.net/54e24e44e54e44e6/Hunger-Games-tome-1---extrait-offert-by-Suzanne-Collins.pdf
    • http://unieoooq.linkpc.net/54e54e54e34e34e8/Mockingjay-Hunger-Games-Final-Book----A-Detailed-Summary-About-This-Book-Of-Suzanne-Collins-Bonus-Fun-Quizzes-To-Help-You-Understand-The-Book-Mockingjay-Audiobook-Movie-Paperback-Dvd-Part-1-2-by-Mr-Summary.pdf
    • http://unieoooq.linkpc.net/54e54e54e24e54e1/The-Hunger-Games-The-Interactive-Quiz-Book-The-Hunger-Games-Series-1-by-M-J-Roan.pdf
    • http://unieoooq.linkpc.net/34e04e24e04e84e4/The-Unofficial-Hunger-Games-Cookbook-From-Lamb-Stew-to-quot-Groosling-quot---More-than-150-Recipes-Inspired-by-The-Hunger-Games-Trilogy-by-Emily-Ansara-Baines.pdf
    • http://unieoooq.linkpc.net/54e54e54e34e24e9/The-Hunger-Games-ULTIMATE-Trivia-Bundle-UNOFFICIAL-Quiz-Book-Bundle-Pack-Volumes-1-4-BLACK-The-Hunger-Games-Trivia-5-by-Kay-Brody.pdf
    • http://unieoooq.linkpc.net/54e54e54e34e34e4/Sleepover-Unofficial-Jennifer-Lawrence-Trivia-Games-What-is-your-Hunger-Games-IQ-Book-1-by-A-M-Rice.pdf
    • http://unieoooq.linkpc.net/44e64e04e64e94e5/Hunger-for-Dystopian-Sampler-by-Anna-Carey.pdf
    • http://unieoooq.linkpc.net/14e24e54e74e54e6/Catching-on-Fire-by-Sue-Knott.pdf