Malicious PDF — malware analysis report

Static analysis result for SHA-256 145f7793db2a7182…

MALICIOUS

PDF

23.4 KB Created: 2020-03-18 22:33:54 +00:00 Authoring application: mPDF 5.7
MD5: f80a358be44496a3510b7d718277a72d SHA-1: 7161be19d94da80c6026b3d972cc9d46ca05f318 SHA-256: 145f7793db2a71827f3fee44505ea91baa0edb8444065d637dcf8ed37405e6be
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF file contains a large number of embedded external links, identified by the PDF_SEO_LINK_FARM heuristic. These links likely serve as a lure to direct users to malicious websites or to download further malware. The ML_NYX_PDF_MALICIOUS heuristic also flagged the document with high confidence. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9901

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://easckaolp.myhome.cx/9846847845848843/Another-Economy-is-Possible-Culture-and-Economy-in-a-Time-of-Crisis-by-Manuel-Castells.pdf
    • http://easckaolp.myhome.cx/3846847845849842/End-of-Millennium-The-Information-Age-Economy-Society-and-Culture-Volume-III-by-Manuel-Castells.pdf
    • http://easckaolp.myhome.cx/9846847845844845/Castells-Reader-Cities-Social-Theory-by-Manuel-Castells.pdf
    • http://easckaolp.myhome.cx/7843846842847846/The-Anti-Development-State-The-Political-Economy-of-Permanent-Crisis-in-the-Philippines-by-Walden-Bello.pdf
    • http://easckaolp.myhome.cx/9843841847843845/Institutions-and-the-Path-to-the-Modern-Economy-Political-Economy-of-Institutions-and-Decisions-by-Greif.pdf
    • http://easckaolp.myhome.cx/9846847845844840/Conversations-with-Manuel-Castells-by-Manuel-Castells.pdf
    • http://easckaolp.myhome.cx/7842843849841840/The-Leap-Launching-Your-Full-Time-Career-in-Our-Part-Time-Economy-by-Robert-Dickie.pdf
    • http://easckaolp.myhome.cx/1840840843849845840/Reinventing-Ireland-Culture-Society-and-the-Global-Economy-by-Peadar-Kirby.pdf
    • http://easckaolp.myhome.cx/1840848849848842843/Hellenistic-Egypt-Monarchy-Society-Economy-Culture-by-Jean-Bingen.pdf
    • http://easckaolp.myhome.cx/1841840845841843842/Paint-amp-Polish-Cultural-Economy-and-Visual-Culture-from-the-West-Side-by-Roula-Kenneth-Blocker.pdf
    • http://easckaolp.myhome.cx/9846845844845847/The-Accelerating-Technonomic-Medium-Atom-It-s-Time-to-Upgrade-the-Economy-by-Kartik-Gada.pdf
    • http://easckaolp.myhome.cx/6841848840843845/Political-Economy-and-the-Novel-A-Literary-History-of-quot-Homo-Economicus-quot-Palgrave-Studies-in-Literature-Culture-and-Economics-by-Sarah-Comyn.pdf
    • http://easckaolp.myhome.cx/1841840841848841849/The-Political-Economy-of-Income-Distribution-in-Turkey-The-Political-Economy-of-Income-Distribution-in-Developing-Countries-1-by-Bienen.pdf
    • http://easckaolp.myhome.cx/9846847847842845/Manuel-Castells-by-Jesse-Russell.pdf
    • http://easckaolp.myhome.cx/9846847847842846/Manuel-Castells-by-Frank-Webster.pdf
    • http://easckaolp.myhome.cx/9846847845847845/The-Urban-Question-A-Marxist-Approach-by-Manuel-Castells.pdf
    • http://easckaolp.myhome.cx/9846847846845844/Technopoles-of-the-World-The-Making-of-21st-Century-Industrial-Complexes-by-Manuel-Castells.pdf
    • http://easckaolp.myhome.cx/9846847844849846/The-Internet-Galaxy-Reflections-on-the-Internet-Business-and-Society-by-Manuel-Castells.pdf
    • http://easckaolp.myhome.cx/4845845844840848/Dark-Economy-by-M-Keedwell.pdf
    • http://easckaolp.myhome.cx/1841841847847847845/Engineering-Economy-by-William-G-Sullivan.pdf