Malicious PDF — malware analysis report

Static analysis result for SHA-256 17aaf9dd1285a8aa…

MALICIOUS

PDF

22.6 KB Created: 2020-03-15 14:46:14 +00:00 Authoring application: mPDF 5.7
MD5: ebf5cf3a1cfa81445fb9acd933141ed1 SHA-1: f314b6bdb54486c1741e131948848a71c51b4e3a SHA-256: 17aaf9dd1285a8aa77f3cb1bafa39bb11698509952f58e12e4e096b30ab62c7d
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links, as indicated by the PDF_SEO_LINK_FARM heuristic. These links, such as http://lwoscmobook.myhome.cx/152475244524352445245/True-The-Story-of-Us-1-by-Gwendolyn-Grace.pdf, likely serve as a lure to direct users to malicious websites. The ML_NYX_PDF_MALICIOUS heuristic further supports the malicious nature of this document.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9901

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://lwoscmobook.myhome.cx/152475244524352445245/True-The-Story-of-Us-1-by-Gwendolyn-Grace.pdf
    • http://lwoscmobook.myhome.cx/352435244524952485243/Saving-Grace-The-True-Story-of-a-Mother-to-be-a-Deranged-Attacker-and-an-Unborn-Child-by-Sarah-Brady.pdf
    • http://lwoscmobook.myhome.cx/15241524352495245/Tremaine-s-True-Love-True-Gentlemen-1-by-Grace-Burrowes.pdf
    • http://lwoscmobook.myhome.cx/352445244524452425249/Will-s-True-Wish-True-Gentlemen-3-by-Grace-Burrowes.pdf
    • http://lwoscmobook.myhome.cx/352455240524952445247/Gwendolyn-Brooks-Poetry-Collection-by-Gwendolyn-Brooks.pdf
    • http://lwoscmobook.myhome.cx/352485244524252465249/War-Story-The-Classic-True-Story-of-the-First-Generation-of-Green-Berets-by-Jim-Morris.pdf
    • http://lwoscmobook.myhome.cx/152425245524152435246/The-Duke-s-Disaster-True-Gentlemen-0-5-by-Grace-Burrowes.pdf
    • http://lwoscmobook.myhome.cx/152495249524852465249/Invisible-Aliens-in-Larry-s-Mouth---The-story-about-importance-of-teeth-brushing---Based-on-True-Story-by-Victoria-Sunsett.pdf
    • http://lwoscmobook.myhome.cx/65243524452465249/NARUTO------Naruto-Itachi-Shinden-K-my--hen-Naruto-True-Chronicles-1-Itachi-s-True-Story-Book-of-Bright-Light-by-Masashi-Kishimoto.pdf
    • http://lwoscmobook.myhome.cx/65247524052405244/NARUTO------Naruto-Sasuke-Shinden-An-ya-hen-Naruto-True-Chronicles-3-Sasuke-s-True-Story-Book-of-Sunrise-by-Masashi-Kishimoto.pdf
    • http://lwoscmobook.myhome.cx/752495245524652485248/Kennedy-A-Story-of-God-s-Grace-by-Craig-Buettner.pdf
    • http://lwoscmobook.myhome.cx/152485249524952455242/My-Mess-Believe-it-or-not-a-story-about-grace-by-Troy-Black.pdf
    • http://lwoscmobook.myhome.cx/952495243524752405249/The-Art-of-Inner-Beauty-A-Guide-to-Reveal-Your-True-Beauty-How-to-Embrace-Your-Birthmark-Scar-Body-Image-or-Appearance-by-Grace-Scott.pdf
    • http://lwoscmobook.myhome.cx/352485242524152405248/It-Was-Halloween-Night-A-Scary-Math-Story---With-Tangrams-by-Grace-Maccarone.pdf
    • http://lwoscmobook.myhome.cx/452425242524252495247/Unveiling-Grace-The-Story-of-How-We-Found-Our-Way-out-of-the-Mormon-Church-by-Lynn-K-Wilder.pdf
    • http://lwoscmobook.myhome.cx/552465247524152425244/The-True-Naomi-Story-by-A-M-Goldsher.pdf
    • http://lwoscmobook.myhome.cx/25247524852495241/The-True-Story-of-the-3-Little-Pigs-by-Jon-Scieszka.pdf
    • http://lwoscmobook.myhome.cx/152405244524052495247/The-Big-Lie-A-True-Story-by-Isabella-Leitner.pdf
    • http://lwoscmobook.myhome.cx/652465242524452455247/I-Am-Dodo-Not-a-True-Story-by-Kae-Nishimura.pdf
    • http://lwoscmobook.myhome.cx/452435248524652445244/The-True-Story-of-the-3-Little-Pigs-by-Jon-Scieszka.pdf