Malicious PDF — malware analysis report

Static analysis result for SHA-256 1cfc4ce27f3bc018…

MALICIOUS

PDF

33.9 KB Created: 2020-03-19 05:45:00 +00:00 Authoring application: mPDF 5.7
MD5: 0fe0afcebbc4362e17832d10aa2e7e97 SHA-1: 0f85ee68f78866a2ba25d683b1889f8f181158f1 SHA-256: 1cfc4ce27f3bc01892a70dbb6e900ac3f4700459d5637b2a73759c0c5539bb59
92 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The PDF contains multiple embedded URLs that point to external resources, disguised as book titles. The ClamAV detection and ML classifier strongly indicate malicious intent, likely to deliver a secondary payload. The presence of external URIs suggests a dropper functionality.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9707

Heuristics 3

  • ClamAV: Pdf.Dropper.Agent-7664309-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Pdf.Dropper.Agent-7664309-0
  • External URI info PDF_URI
    PDF contains an external URL action
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://reiteaspdf.dyndns.co.za/69fa39fa09fa19fa69fa9/Five-Love-Languages-Journal-How-To-Express-Heartfelt-Commitment-To-Your-Mate-by-Gary-Chapman.pdf
    • http://reiteaspdf.dyndns.co.za/19fa19fa79fa39fa09fa69fa7/Five-Love-Languages-How-to-Express-Heartfelt-Commitment-to-Your-Mate-by-G-Chapman.pdf
    • http://reiteaspdf.dyndns.co.za/29fa69fa39fa79fa89fa6/The-5-Love-Languages-of-Children-by-Gary-Chapman.pdf
    • http://reiteaspdf.dyndns.co.za/39fa69fa19fa89fa09fa7/The-Five-Love-Languages-for-Singles-by-Gary-Chapman.pdf
    • http://reiteaspdf.dyndns.co.za/39fa79fa89fa29fa49fa0/The-Five-Love-Languages-Singles-Edition-by-Gary-Chapman.pdf
    • http://reiteaspdf.dyndns.co.za/19fa19fa09fa99fa79fa8/The-Five-Languages-of-Apology-by-Gary-Chapman.pdf
    • http://reiteaspdf.dyndns.co.za/29fa69fa79fa09fa89fa8/The-Five-Languages-of-Appreciation-in-the-Workplace-Empowering-Organizations-by-Encouraging-People-by-Gary-Chapman.pdf
    • http://reiteaspdf.dyndns.co.za/79fa89fa49fa09fa99fa0/Love-Journal-Valentine-s-Day-Love-Journal-Diary-Memory-Notebook-Keepsake-Journal-Sketchbook-Blank-Book-Bullet-Journal-Notebook-Planner-Size-6x9-150-Dot-Grid-Pages-by-Night-Fairy.pdf
    • http://reiteaspdf.dyndns.co.za/79fa89fa49fa19fa09fa0/Love-Journal-Valentine-s-Day-Love-Journal-Diary-Memory-Notebook-Keepsake-Journal-Sketchbook-Blank-Book-Bullet-Journal-Notebook-Planner-Size-6x9-150-Blank-Pages-by-Night-Fairy.pdf
    • http://reiteaspdf.dyndns.co.za/39fa69fa49fa39fa39fa6/Love-as-a-Way-of-Life-Seven-Keys-to-Transforming-Every-Aspect-of-Your-Life-by-Gary-Chapman.pdf
    • http://reiteaspdf.dyndns.co.za/79fa89fa49fa09fa29fa1/Love-Journal-Valentine-s-Day-Love-Journal-Diary-Memory-Notebook-Keepsake-Journal-Sketchbook-Blank-Book-Bullet-Journal-Notebook-Planner-by-Night-Fairy-Size-6x9-150-Dot-Grid-Pages-by-Night-Fairy.pdf
    • http://reiteaspdf.dyndns.co.za/79fa89fa49fa09fa99fa1/Love-Journal-Valentine-s-Day-Love-Journal-Diary-Memory-Notebook-Keepsake-Journal-Sketchbook-Blank-Book-Bullet-Journal-Notebook-Planner-by-Night-Fairy-Size-6x9-150-Lined-Pages-by-Night-Fairy.pdf
    • http://reiteaspdf.dyndns.co.za/79fa89fa49fa09fa89fa6/Love-Journal-Valentine-s-Day-Love-Journal-Diary-Memory-Notebook-Keepsake-Journal-Sketchbook-Blank-Book-Bullet-Journal-Notebook-Planner-by-Night-Fairy-Size-6x9-150-Dot-Grid-Pages-by-Night-Fairy.pdf
    • http://reiteaspdf.dyndns.co.za/79fa89fa49fa09fa99fa4/Love-Journal-Valentine-s-Day-Love-Journal-Diary-Memory-Notebook-Keepsake-Journal-Sketchbook-Blank-Book-Bullet-Journal-Notebook-Planner-by-Night-Fairy-Size-6x9-150-Dot-Grid-Pages-by-Night-Fairy.pdf
    • http://reiteaspdf.dyndns.co.za/79fa89fa49fa09fa29fa6/Love-Journal-Valentine-s-Day-Love-Journal-Diary-Memory-Notebook-Keepsake-Journal-Sketchbook-Blank-Book-Bullet-Journal-Notebook-Planner-by-Night-Fairy-Size-6x9-150-Blank-Pages-by-Night-Fairy.pdf
    • http://reiteaspdf.dyndns.co.za/49fa49fa59fa89fa89fa2/It-Happens-Every-Spring-by-Gary-Chapman.pdf
    • http://reiteaspdf.dyndns.co.za/89fa69fa09fa39fa99fa1/Die-f-nf-Sprachen-der-Liebe-f-r-Teenager-by-Gary-Chapman.pdf
    • http://reiteaspdf.dyndns.co.za/69fa19fa29fa39fa79fa2/Ce-que-j-aurais-aim-savoir-avant-de-me-marier-by-Gary-Chapman.pdf
    • http://reiteaspdf.dyndns.co.za/29fa09fa79fa29fa59fa3/Anger-Handling-a-Powerful-Emotion-in-a-Healthy-Way-by-Gary-Chapman.pdf
    • http://reiteaspdf.dyndns.co.za/69fa79fa59fa09fa49fa9/Au-coeur-des-5-langages-de-l-amour-Le-secret-des-couples-qui-durent-by-Gary-Chapman.pdf
    • http://reiteaspdf.dyndns.co.za/29fa69fa79fa09fa89fa8/The-Five-Languages-of-Appreciation-in-the-W