Malicious PDF — malware analysis report

Static analysis result for SHA-256 26634806e508288f…

MALICIOUS

PDF

23.5 KB Created: 2019-04-30 09:44:45 +01:00 Authoring application: mPDF 5.7
MD5: a14611354b045031a6030da4df6a6b67 SHA-1: efaf0b2b24547357d8b247ed7274857a0df5a1f9 SHA-256: 26634806e508288f7e03faeb9a91dd3d7bc2f66126062b73d8990930ac009491
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file contains a large number of embedded links, as indicated by the PDF_SEO_LINK_FARM heuristic. These links point to various PDF documents, suggesting a link farm or a method to distribute or redirect users to other content. The ML classifier also flagged this PDF as malicious. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9711

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/3a01a01a05a02a00/Cake-Boy-The-Kitchen-Diaries-Recipes-to-delight-and-devour-from-Great-British-Bake-Off-Star-Liam-Charles-by-Liam-Charles.pdf
    • http://muicuiu.dumb1.com/3a01a01a05a01a09/The-Great-British-Bake-Off-Get-Baking-for-Friends-and-Family-by-The-Bake-Off-Team.pdf
    • http://muicuiu.dumb1.com/5a05a07a03a06a06/Dump-Cake-Recipes-Quick-Easy-And-Really-Tasty-Dump-Cake-Recipes-Including-Cherry-Strawberry-Peach-Apple-Pumpkin-Learn-How-To-Make-A-Dump-Cake-The-Dump-Cakes-Dump-Dinner-Recipes-Book-6-by-Alexandra-Gauthier.pdf
    • http://muicuiu.dumb1.com/3a00a07a00a01a05/Great-British-Bake-Off-Celebrations-by-Linda-Collister.pdf
    • http://muicuiu.dumb1.com/2a01a01a02a03a09/The-Story-of-the-Great-British-Bake-Off-by-Anita-Singh.pdf
    • http://muicuiu.dumb1.com/2a01a01a02a04a02/Great-British-Bake-Off-Everyday-Over-100-Foolproof-Bakes-by-Linda-Collister.pdf
    • http://muicuiu.dumb1.com/9a08a05a01a09a00/Great-Expectations-by-Charles-Dickens-Illustrated-Delphi-Parts-Edition-Charles-Dickens-by-Charles-Dickens.pdf
    • http://muicuiu.dumb1.com/3a01a01a01a03a06/Slow-Cooker-Cookbook-for-Beginners-30-Easy-and-Delicious-Recipes-for-Your-Slow-Cooker-The-Easiest-Way-to-Cook-Amazing-Meals-That-Will-Delight-You-Your-and-Friends-Essential-Kitchen-Series-20-by-Sarah-Sophia.pdf
    • http://muicuiu.dumb1.com/3a00a08a05a05a04/Kitchen-Sense-More-Than-600-Recipes-to-Make-You-a-Great-Home-Cook-by-Mitchell-Davis.pdf
    • http://muicuiu.dumb1.com/9a06a06a03a06/Dark-Incidence-by-A-G-Liam.pdf
    • http://muicuiu.dumb1.com/7a07a05a00a05/The-Sniper-by-Liam-O-39-Flaherty.pdf
    • http://muicuiu.dumb1.com/8a08a01a00a01/The-Informer-by-Liam-O-39-Flaherty.pdf
    • http://muicuiu.dumb1.com/8a07a00a01a08a03/The-Modern-Vat-by-Liam-Ebrill.pdf
    • http://muicuiu.dumb1.com/5a01a01a01a02a00/Where-the-Dead-Men-Go-by-Liam-McIlvanney.pdf
    • http://muicuiu.dumb1.com/1a00a03a07a01a08/Famine-by-Liam-O-39-Flaherty.pdf
    • http://muicuiu.dumb1.com/8a04a01a04a00a09/5-Ways-to-Create-A-New-You-by-Liam-Veaux.pdf
    • http://muicuiu.dumb1.com/3a02a07a07a00a02/Black-Cat-s-Tales-by-Liam-O-39-Murchu.pdf
    • http://muicuiu.dumb1.com/4a08a00a08a06a02/Loving-Liam-by-Gloria-Herrmann.pdf
    • http://muicuiu.dumb1.com/8a06a02a02a03a02/Liam-s-Happiness-The-Portland-Pack-1-by-Kam-Miller.pdf
    • http://muicuiu.dumb1.com/5a00a05a07a00a09/Liam-Davis-amp-The-Raven-by-Anyta-Sunday.pdf
    • http://muicuiu.dumb1.com/2a01a01