Malicious PDF — malware analysis report

Static analysis result for SHA-256 12db8d21806de348…

MALICIOUS

PDF

22.2 KB Created: 2020-03-18 16:39:54 +00:00 Authoring application: mPDF 5.7
MD5: e72a4f550d705436922bd415bdd8d552 SHA-1: e1c969ae1be0cc9a7e994cca41fd3e35212d4a0b SHA-256: 12db8d21806de34835aabefb9b3806f155b8a0e85a9321fdbf31641341134e6b
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded URLs pointing to a single suspicious domain, identified by the PDF_SEO_LINK_FARM heuristic. The ML classifier also flagged the document as malicious. While no scripts were extracted, the presence of numerous external links suggests an attempt to redirect the user to potentially malicious content or engage in SEO spam. The document body, though partially corrupted, contains these URLs, indicating their intentional inclusion.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9728

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://easckaolp.myhome.cx/3842842840849848/Wise-Mind-Open-Mind-Finding-Purpose-and-Meaning-in-Times-of-Crisis-Loss-and-Change-by-Ronald-Alexander.pdf
    • http://easckaolp.myhome.cx/5846844849842844/Open-Heart-Open-Mind-by-Clara-Hughes.pdf
    • http://easckaolp.myhome.cx/3840847846842844/Fire-In-The-Mind-Doctor-Wise-Book-1-by-Arjay-Lewis.pdf
    • http://easckaolp.myhome.cx/4840846841841849/What-Does-That-Mean-Exploring-Mind-Meaning-and-Mysteries-by-Eldon-Taylor.pdf
    • http://easckaolp.myhome.cx/9843847849840843/Life-Evolving-Molecules-Mind-and-Meaning-by-Christian-de-Duve.pdf
    • http://easckaolp.myhome.cx/2849846844842845/The-Well-Trained-Mind-A-Guide-to-Classical-Education-at-Home-by-Susan-Wise-Bauer.pdf
    • http://easckaolp.myhome.cx/1841848842848849844/Louder-Than-Words-The-New-Science-of-How-the-Mind-Makes-Meaning-by-Benjamin-K-Bergen.pdf
    • http://easckaolp.myhome.cx/2843848840841849/On-Grief-and-Grieving-Finding-the-Meaning-of-Grief-Through-the-Five-Stages-of-Loss-by-Elisabeth-K-bler-Ross.pdf
    • http://easckaolp.myhome.cx/2846847845843848/Falling-Into-the-Fire-A-Psychiatrist-s-Encounters-with-the-Mind-in-Crisis-by-Christine-Montross.pdf
    • http://easckaolp.myhome.cx/9843843848846843/Not-What-They-Had-in-Mind-A-History-of-Policies-that-Produced-the-Financial-Crisis-of-2008-by-Arnold-Kling.pdf
    • http://easckaolp.myhome.cx/3849841847848840/Open-Heart-Clear-Mind-An-Introduction-to-the-Buddha-s-Teachings-by-Thubten-Chodron.pdf
    • http://easckaolp.myhome.cx/1847849845844840/TEACH-YOURSELF-MIND-POWERED-ZERO-DIET-WEIGHT-LOSS-the-mental-magic-series-by-James-F-Coyle.pdf
    • http://easckaolp.myhome.cx/4842849846845842/Zen-Mind-Beginner-s-Mind-Informal-Talks-on-Zen-Meditation-and-Practice-by-Shunryu-Suzuki.pdf
    • http://easckaolp.myhome.cx/8845847849842843/Mind-and-Brain-A-Dialogue-on-the-Mind-Body-Problem-by-Rocco-J-Gennaro.pdf
    • http://easckaolp.myhome.cx/4844847844841849/The-Future-of-the-Mind-The-Scientific-Quest-to-Understand-Enhance-and-Empower-the-Mind-by-Michio-Kaku.pdf
    • http://easckaolp.myhome.cx/6849844840841845/Change-Your-Mind-Lose-Weight-by-Sandrine-Baptiste.pdf
    • http://easckaolp.myhome.cx/3845847849845/Battlefield-of-the-Mind-Winning-the-Battle-in-Your-Mind-by-Joyce-Meyer.pdf
    • http://easckaolp.myhome.cx/2846848849846842/Battlefield-of-the-Mind-Devotional-100-Insights-That-Will-Change-the-Way-You-Think-by-Joyce-Meyer.pdf
    • http://easckaolp.myhome.cx/9844841846840/Learned-Optimism-How-to-Change-Your-Mind-and-Your-Life-by-Martin-E-P-Seligman.pdf
    • http://easckaolp.myhome.cx/1841846847847848/The-Mind-Thieves-Mind-Readers-2-by-Lori-Brighton.pdf