Malicious PDF — malware analysis report

Static analysis result for SHA-256 29dcd3027af66347…

MALICIOUS

PDF

29.9 KB Created: 2019-04-30 02:52:41 +01:00 Authoring application: mPDF 5.7
MD5: 6f587adefe4ff073d37f178ad3ceabeb SHA-1: 87493c7cac734485cc3d9ff5dfe74480c7e967d1 SHA-256: 29dcd3027af66347ede1b7e3b4b73b82e91fef5bc86c7cd2fdfb25f0de56cb0e
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF document was flagged by a machine learning classifier as malicious and contains a large number of embedded external links. The heuristic 'PDF_SEO_LINK_FARM' indicates that the document is designed to link to 32 external PDF files, with the first URL being http://muicuiu.dumb1.com/7a04a07a09a03a07/The-Toe-Ring---Manservant-Two-Works-of-Erotic-Domination-in-the-Classic-Style-by-Wilson-Henshaw.pdf. This suggests a tactic to drive traffic or distribute further malicious content through a link farm.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9670

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/7a04a07a09a03a07/The-Toe-Ring---Manservant-Two-Works-of-Erotic-Domination-in-the-Classic-Style-by-Wilson-Henshaw.pdf
    • http://muicuiu.dumb1.com/7a04a08a00a02a03/The-Toe-Ring---Manservant---Caging-Andrew-Three-Works-of-Erotic-Female-Domination-by-Wilson-Henshaw.pdf
    • http://muicuiu.dumb1.com/7a04a07a08a08a06/Manservant---Egyptian-Bondage---A-Journey-to-Disgrace-Decadence-and-Female-Domination-in-the-Classic-Style-by-Ms-Rachilde.pdf
    • http://muicuiu.dumb1.com/7a04a07a08a08a02/Manservant---Egyptian-Bondage---Ancient-Sorceries-Revisited-Decadence-and-Female-Domination-in-the-Classic-Style-by-Ms-Rachilde.pdf
    • http://muicuiu.dumb1.com/7a04a08a00a03a00/Obsession-and-Revenge---Volume-One-Four-Works-of-Erotic-Female-Governance-by-Wilson-Henshaw.pdf
    • http://muicuiu.dumb1.com/7a04a08a00a02a05/Evil-Stepdaughter---Manservant---Chattel-Three-Tales-of-Erotic-Domination-by-Domenic-Hyde.pdf
    • http://muicuiu.dumb1.com/4a02a05a03a06a09/Kristen-Meets-an-Alpha-Male-An-Erotic-Tale-of-Exhibtionism-and-Domination-by-Anne-Hedonia.pdf
    • http://muicuiu.dumb1.com/7a08a09a04a05a03/Venus-Ascendant---Between-a-Rock-and-a-Hard-Face---From-Behind-a-Mask-of-Ennui-Three-Works-of-Female-Domination-by-Shauna-Willets.pdf
    • http://muicuiu.dumb1.com/7a07a03a05a05a07/The-Mid-Century-Modern-Garden-Capturing-the-Classic-Style-by-Ethne-Clarke.pdf
    • http://muicuiu.dumb1.com/1a01a03a05a04a09a07/Casual-Living-No-fuss-style-for-a-comfortable-home-by-Judith-Wilson.pdf
    • http://muicuiu.dumb1.com/1a07a06a08a02a06/Mounting-Cristo-An-Erotic-Foray-Into-Alexander-Dumas-Classic-Novel-Sexy-Classics-Book-4-by-Sierra-LaGrange.pdf
    • http://muicuiu.dumb1.com/2a05a07a08a01a01/How-to-Be-Organized-in-Spite-of-Yourself-Time-and-Space-Management-that-Works-with-Your-Personal-Style-by-Sunny-Schlenger.pdf
    • http://muicuiu.dumb1.com/8a01a08a08a08a08/Classic-Sex-Positions-Reinvented-Your-Favorite-Sex-Positions---100-Wild-and-Erotic-Ways-by-Moushumi-Ghose.pdf
    • http://muicuiu.dumb1.com/2a05a07a02a09a06/All-Marketers-Are-Liars-The-Underground-Classic-that-Explains-How-Marketing-Really-Works---and-Why-Authenticity-is-the-Best-Marketing-of-All-by-Seth-Godin.pdf
    • http://muicuiu.dumb1.com/7a07a08a02a09a01/The-Classic-Works-of-H-C-Yarrow-by-Harry-Cr-cy-Yarrow.pdf
    • http://muicuiu.dumb1.com/7a08a02a06a09a08/The-Classic-Works-of-I-M-Haldeman-by-Isaac-Massey-Haldeman.pdf
    • http://muicuiu.dumb1.com/3a05a07a02a03a05/Only-the-Ring-Finger-Knows-The-Ring-Will-Confess-His-Love-Only-the-Ring-Finger-Knows-4-by-Satoru-Kannagi.pdf
    • http://muicuiu.dumb1.com/7a00a02a00a07a01/OMG-Erotic-Gallery---Janeth-a-brunet-in-your-room-by-OMG-Erotic.pdf
    • http://muicuiu.dumb1.com/4a05a06a04a00a00/Ring-Of-Destiny-Ring-Of-Fate-by-Randall-E-Osborne.pdf
    • http://muicuiu.dumb1.com/2a05a08a09a05a04/The-New-York-Times-Manual-of-Style-and-Usage-Revised-and-Expanded-Edition-The-Official-Style-Guide-Used-by-the-Writers-and-Editors-of-the-World-s-Most-Authoritative-Newspaper-by-Allan-M-Siegal.pdf
    • http://muicuiu.dumb1.com/7a04a07a08a08a02/Manservant---Egyptian-Bondage---Ancient-Sorceries-Revisited-Decadence-and-Female-Domination-in-the-Classic-Style-by-Ms-Rachild