Malicious PDF — malware analysis report

Static analysis result for SHA-256 1cce612544a320cb…

MALICIOUS

PDF

19.6 KB Created: 2020-03-12 02:16:47 +00:00 Authoring application: mPDF 5.7
MD5: e8ec1c95344d0a8ca3631f404ea9edb7 SHA-1: 3b2be3fda750aa77d0befd2e14107bf433d1e6ed SHA-256: 1cce612544a320cb735fca4323464197d87fbff7f7d26f73be4d6799db86cdcf
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1059.001 PowerShell

The PDF file contains a large number of embedded links, as indicated by the PDF_SEO_LINK_FARM heuristic. These links all point to the same domain, weisncio.myhome.cx, and appear to be designed to direct users to various external PDF files. The ML_NYX_PDF_MALICIOUS classifier also flagged this file with high confidence. No scripts were extracted from this sample. The primary attack pattern involves a link farm designed to lead users to potentially malicious content.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://weisncio.myhome.cx/1620623623628626627/Watermarks-A-Teaching-Guiding-Primer-for-Part--amp-Full-Time-College-Faculty-by-Don-Prickel.pdf
    • http://weisncio.myhome.cx/1620622620626623627/The-Growing-Use-of-Part-Time-Faculty-Understanding-Causes-and-Effects-New-Directions-for-Higher-Education-104-by-David-W-Leslie.pdf
    • http://weisncio.myhome.cx/7622623629621620/The-Leap-Launching-Your-Full-Time-Career-in-Our-Part-Time-Economy-by-Robert-Dickie.pdf
    • http://weisncio.myhome.cx/2627623629627621/The-U-S-Constitution-A-Reader-by-Hillsdale-College-Politics-Faculty.pdf
    • http://weisncio.myhome.cx/5627624623623628/The-Electoral-College-Primer-by-Lawrence-D-Longley.pdf
    • http://weisncio.myhome.cx/6624620620627626/Generation-1-5-in-College-Composition-Teaching-Academic-Writing-to-U-S--Educated-Learners-of-ESL-by-Mark-Roberge.pdf
    • http://weisncio.myhome.cx/8624629621623625/Educating-the-academically-underprepared-Practices-of-community-college-instructors-credited-with-success-in-teaching-developmental-reading-writing-by-Negar-Farakish.pdf
    • http://weisncio.myhome.cx/8625621625629/Stopping-Time-Part-1-Wicked-Lovely-2-5-Part-I-by-Melissa-Marr.pdf
    • http://weisncio.myhome.cx/7628622626629627/Guys-in-College-by-Matthew-Haldeman-Time.pdf
    • http://weisncio.myhome.cx/4625622621620622/The-System-The-Glory-and-Scandal-of-Big-Time-College-Football-by-Jeff-Benedict.pdf
    • http://weisncio.myhome.cx/1620628620624624628/Studying-Smart-Time-Management-for-College-Students-by-Diana-Scharf.pdf
    • http://weisncio.myhome.cx/4626624625625627/How-to-Travel-Full-Time-by-Colin-Wright.pdf
    • http://weisncio.myhome.cx/1623626620623623/Full-Time-Father-Hometown-Heartbreakers-5-by-Susan-Mallery.pdf
    • http://weisncio.myhome.cx/4627627626626621/Full-Full-Full-of-Love-by-Trish-Cooke.pdf
    • http://weisncio.myhome.cx/1620626627622624621/Movin-on-Living-and-Traveling-Full-Time-in-a-Recreational-Vehicle-by-Ron-Hofmeister.pdf
    • http://weisncio.myhome.cx/6622629620620622/Semaru-Nick-of-Time-Full-Metal-Panic-10-by-Shouji-Gatou.pdf
    • http://weisncio.myhome.cx/1621626622625620623/YuYu-Hakusho-Volume-13-Full-Power-One-Last-Time-by-Yoshihiro-Togashi.pdf
    • http://weisncio.myhome.cx/7625629623629626/Chicken-Soup-for-the-College-Soul-Inspiring-and-Humorous-Stories-About-College-by-Jack-Canfield.pdf
    • http://weisncio.myhome.cx/2627627627622622/College-Boys-Men-of-Holsum-College-1-by-Daisy-Harris.pdf
    • http://weisncio.myhome.cx/7625629624625620/The-College-Life-Kihanna-in-College-1-by-Mercy-Amare.pdf