Malicious PDF — malware analysis report

Static analysis result for SHA-256 20e7df3c625d4342…

MALICIOUS

PDF

43.4 KB Created: 2018-11-30 20:23:50 +03:00 Authoring application: dvips(k) 5.90a Copyright 2002 Radical Eye Software (via AFPL Ghostscript 8.53) First seen: 2019-01-12
MD5: 783ac47f2e4ce668b53c69929afe1c02 SHA-1: 7be40ad6b0a4a033c4e4f99beedd7044975ef892 SHA-256: 20e7df3c625d43425235f8295aea7f55e886f20dc06a25f9f2cb1dd1bfd59dfb
92 Risk Score

Machine Learning

  • Nyx PDF Classifier malicious score 0.9016

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://www.gorillawalker.com/educational-futures-dominant-and-contesting-visions-futures-in-education.pdf In PDF document text
    • http://www.gorillawalker.com/angel-of-darkness-the-true-story-of-randy-kraft-and.pdfIn PDF document text
    • http://www.gorillawalker.com/blood-canticle-the-vampire-chronicles.pdfIn PDF document text
    • http://www.gorillawalker.com/treasures-from-grandma-s-attic-grandma-s-attic-series.pdfIn PDF document text
    • http://www.gorillawalker.com/applied-data-centric-social-sciences-concepts-data-computation-and-theory.pdfIn PDF document text
    • http://www.gorillawalker.com/once-upon-a-thanksgiving-season-of-bounty-home-for-thanksgiving.pdfIn PDF document text
    • http://www.gorillawalker.com/laytime-and-demurrage-lloyd-s-shipping-law-library.pdfIn PDF document text
    • http://www.gorillawalker.com/rim-of-the-world-outlanders.pdfIn PDF document text
    • http://www.gorillawalker.com/a-helping-of-love-a-taste-of-love-story-unabridged.pdfIn PDF document text
    • http://www.gorillawalker.com/the-7-biggest-mistakes-that-can-wreck-your-florida-accident.pdfIn PDF document text
    • http://www.gorillawalker.com/hopi-indians-quebec-winter-carnival-dian-fossey-s-gorilla-study.pdfIn PDF document text
    • http://www.gorillawalker.com/add-and-the-college-student-a-guide-for-high-school.pdfIn PDF document text
    • http://www.gorillawalker.com/ethnography-and-interpretation-routledge-series-on-interpretive-methods.pdfIn PDF document text
    • http://www.gorillawalker.com/a-glimpse-of-norway.pdfIn PDF document text
    • http://www.gorillawalker.com/cilantro-a-book-of-recipes.pdfIn PDF document text
    • http://www.gorillawalker.com/managing-lawfully-health-safety-and-environment-super-series-fourth-edition.pdfIn PDF document text
    • http://www.gorillawalker.com/my-lobotomy.pdfIn PDF document text
    • http://www.gorillawalker.com/joy-to-the-world-keyboard-edition-worship-band-play-along.pdfIn PDF document text
    • http://www.gorillawalker.com/toward-a-theogy-of-anglo-saxon-humor-old-english-riddles.pdfIn PDF document text
    • http://www.gorillawalker.com/reliability-life-testing-handbook-volume-2.pdfIn PDF document text
    • http://www.gorillawalker.com/podiatry-for-the-reflexologist.pdfIn PDF document text
    • http://www.gorillawalker.com/twelve-smarting-tails.pdfIn PDF document text
    • http://www.gorillawalker.com/negro-leagues-chronology-events-in-organized-black-baseball-1920-1948.pdfIn PDF document text
    • http://www.gorillawalker.com/the-pagemaster-sticker-books.pdfIn PDF document text
    • http://www.gorillawalker.com/levee-worlds-of-element-volume-1.pdfIn PDF document text
    • http://www.gorillawalker.com/dead-is-a-battlefield-paperback.pdfIn PDF document text
    • http://www.gorillawalker.com/syn-fin.pdfIn PDF document text
    • http://www.gorillawalker.com/mythology-of-the-celtic-people.pdfIn PDF document text
    • http://www.gorillawalker.com/chapman-cooking-entertaining-on-your-boat.pdfIn PDF document text
    • http://www.gorillawalker.com/tango-discovery-series-advanced-classes-july-august-2001.pdfIn PDF document text
    • http://www.gorillawalker.com/72-delicious-fat-burning-drinks-smoothies-tea-soup-protein-shake.pdfIn PDF document text
    • http://www.gorillawalker.com/the-book-of-imaginary-beings-penguin-classics-deluxe-edition.pdfIn PDF document text
    • http://www.gorillawalker.com/plano-de-barcelona-barcelona-map-spanish-edition.pdfIn PDF document text
    • http://www.gorillawalker.com/research-in-alternative-fuel-development.pdfIn PDF document text
    • http://www.gorillawalker.com/devotions-upon-emergent-occasions-and-death-s-duel.pdfIn PDF document text
    • http://www.gorillawalker.com/neptune-the-allied-invasion-of-europe-and-the-d-day.pdfIn PDF document text
    • http://www.gorillawalker.com/game-theory-and-water-resources-critical-review-of-its-contributions.pdfIn PDF document text
    • http://www.gorillawalker.com/cuckold-broken-by-my-wife-s-doctor-mmf-first-time.pdfIn PDF document text
    • http://www.gorillawalker.com/empieza-a-tocar-saxofon-alto-bk-cd-absolute-beginners.pdfIn PDF document text
    • http://www.gorillawalker.com/introduction-to-fourier-analysis-and-wavelets-brooks-cole-series-in.pdfIn PDF document text
    • http://www.w3.org/1999/02/22-rdf-syntax-ns#In PDF document text
    • http://purl.org/dc/elements/1.1/In PDF document text
    • http://ns.adobe.com/xap/1.0/In PDF document text
    • http://ns.adobe.com/pdf/1.3/In PDF document text
    • http://ns.adobe.com/xap/1.0/mm/In PDF document text
    • http://www.aiim.org/pdfa/ns/extension/In PDF document text
    • http://www.aiim.org/pdfa/ns/schema#In PDF document text
    • http://www.aiim.org/pdfa/ns/property#In PDF document text
    • http://www.aiim.org/pdfa/ns/id/In PDF document text