Malicious PDF — malware analysis report

Static analysis result for SHA-256 1ba1bf9b470363ea…

MALICIOUS

PDF

29.8 KB Created: 2020-03-18 16:33:29 +00:00 Authoring application: mPDF 5.7
MD5: 14bd5d2f1c378e2bbe9ba574c86c068e SHA-1: cc7a69023152d6b25a3f317c077ce279dfbe7c50 SHA-256: 1ba1bf9b470363ea9f8a0696a1aaee5d28276e673552ecd7d8345f1e0682b996
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded external links, identified by the PDF_SEO_LINK_FARM heuristic. The ML classifier also flagged this PDF as malicious with high confidence. The primary function appears to be directing users to a link farm, likely for SEO spam or to host further malicious content.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9689

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://ieuicufioao.myhome.cx/7555553559/The-Cadaver-King-and-the-Country-Dentist-A-True-Story-of-Injustice-in-the-American-South-by-Radley-Balko.pdf
    • http://ieuicufioao.myhome.cx/4557554558559552/OverKill-The-Rise-of-Paramilitary-Police-Raids-in-America-by-Radley-Balko.pdf
    • http://ieuicufioao.myhome.cx/2555554554557558/A-Year-in-the-South-1865-The-True-Story-of-Four-Ordinary-People-Who-Lived-Through-the-Most-Tumultuous-Twelve-Months-in-American-History-by-Stephen-V-Ash.pdf
    • http://ieuicufioao.myhome.cx/2554554553553551/The-Cyanide-Canary-A-True-Story-of-Injustice-by-Joseph-Hilldorfer.pdf
    • http://ieuicufioao.myhome.cx/2553550555554554/The-King-of-Sting-The-Amazing-True-Story-of-a-Modern-American-Outlaw-by-Craig-Glazer.pdf
    • http://ieuicufioao.myhome.cx/4551555552555554/Kaffir-Boy-The-True-Story-of-a-Black-Youth-s-Coming-of-Age-in-Apartheid-South-Africa-by-Mark-Mathabane.pdf
    • http://ieuicufioao.myhome.cx/2558550551556557/The-Feud-The-Hatfields-and-McCoys-The-True-Story-by-Dean-King.pdf
    • http://ieuicufioao.myhome.cx/1558555553557555/Skeletons-on-the-Zahara-A-True-Story-of-Survival-by-Dean-King.pdf
    • http://ieuicufioao.myhome.cx/2557559552556551/Give-a-Boy-a-Gun-A-True-Story-of-Law-and-Disorder-in-the-American-West-by-Jack-Olsen.pdf
    • http://ieuicufioao.myhome.cx/4554551557553555/In-the-Country-of-Country-A-Journey-to-the-Roots-of-American-Music-by-Nicholas-Dawidoff.pdf
    • http://ieuicufioao.myhome.cx/4554555556552558/The-15-17-to-Paris-The-True-Story-of-a-Terrorist-a-Train-and-Three-American-Heroes-by-Anthony-Sadler.pdf
    • http://ieuicufioao.myhome.cx/1550558551554550554/To-the-Moon-The-True-Story-of-the-American-Heroes-on-the-Apollo-8-Spaceship-by-Jeffrey-Kluger.pdf
    • http://ieuicufioao.myhome.cx/5558550553550/The-Four-Secrets-Your-Dentist-Never-Told-You-White-Teeth-Pink-Gums-Fresh-Breath-for-Life-The-4-Secrets-Your-Dentist-Never-Told-You-Book-1-by-Garry-Bonsall.pdf
    • http://ieuicufioao.myhome.cx/1554559556550/An-American-Plague-The-True-and-Terrifying-Story-of-the-Yellow-Fever-Epidemic-of-1793-by-Jim-Murphy.pdf
    • http://ieuicufioao.myhome.cx/5554558553559554/You-Can-t-Try-a-Dead-Man-The-Untold-Story-of-Injustice-by-Howard-Judee.pdf
    • http://ieuicufioao.myhome.cx/4551557550556/Farewell-to-Manzanar-A-True-Story-of-Japanese-American-Experience-During-and-After-the-World-War-II-Internment-by-Jeanne-Wakatsuki-Houston.pdf
    • http://ieuicufioao.myhome.cx/4552553553559559/My-Underground-American-Dream-My-True-Story-as-an-Undocumented-Immigrant-Who-Became-a-Wall-Street-Executive-by-Julissa-Arce.pdf
    • http://ieuicufioao.myhome.cx/2557559552558553/The-Confessions-of-an-American-Black-Widow-A-True-Story-of-Greed-Lust-and-a-Murderous-Wife-by-Gregg-Olsen.pdf
    • http://ieuicufioao.myhome.cx/4556553557555558/The-Thieves-of-Threadneedle-Street-The-Incredible-True-Story-of-the-American-Forgers-Who-Nearly-Broke-the-Bank-of-England-by-Nicholas-Booth.pdf
    • http://ieuicufioao.myhome.cx/5559553553559556/Passport-to-Hiroshima-The-Unthinkable-Inspiring-Journey-of-a-Japanese-American-Family---Based-on-a-True-Story-by-Toshiharu-Kano.pdf
    • http://ieuicufioao.myhome.cx/2553550555554554/Th