Malicious PDF — malware analysis report

Static analysis result for SHA-256 30a2b52849525152…

MALICIOUS

PDF

22.1 KB Created: 2020-03-16 23:42:36 +00:00 Authoring application: mPDF 5.7
MD5: 03c9af8c3340d0a858036c45647a38f7 SHA-1: 590fd9dfb970e4cc5dda12c8ca7640448374ec99 SHA-256: 30a2b528495251520aa7652e28ba087c202449fbaaddf19579cd0ae98fe2bf36
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded links pointing to external PDF files hosted on the same domain. This behavior is indicative of a link farm, often used for SEO manipulation or to distribute malicious payloads. The ML classifier strongly supports the malicious verdict.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9903

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://calistazz.myhome.cx/1861860868867868867/The-World-as-Will-and-Idea-Abridged-in-1-Vol-by-Arthur-Schopenhauer.pdf
    • http://calistazz.myhome.cx/1861860869860860868/Arthur-Schopenhauer-The-World-as-Will-and-Idea-by-Irwin-Edman.pdf
    • http://calistazz.myhome.cx/1861860868867869864/The-Essential-Schopenhauer-Essays-amp-Selections-from-The-World-as-Will-amp-Representation-by-Arthur-Schopenhauer.pdf
    • http://calistazz.myhome.cx/8865864869863/The-World-as-Will-and-Representation-Vol-2-by-Arthur-Schopenhauer.pdf
    • http://calistazz.myhome.cx/1861860868869863862/The-Philosophy-of-Schopenhauer-by-Arthur-Schopenhauer.pdf
    • http://calistazz.myhome.cx/1861860868867863866/Essays-of-Schopenhauer-by-Arthur-Schopenhauer.pdf
    • http://calistazz.myhome.cx/6865867869861/Essays-and-Aphorisms-by-Arthur-Schopenhauer.pdf
    • http://calistazz.myhome.cx/1860862864865865862/The-Art-of-Literature-Nine-Essays-by-Arthur-Schopenhauer.pdf
    • http://calistazz.myhome.cx/1861860868867868866/The-Basis-of-Morality-by-Arthur-Schopenhauer.pdf
    • http://calistazz.myhome.cx/1861860868867868861/Essay-on-the-Freedom-of-the-Will-by-Arthur-Schopenhauer.pdf
    • http://calistazz.myhome.cx/8868861868864869/Aphorismen-zur-Lebensweisheit-by-Arthur-Schopenhauer.pdf
    • http://calistazz.myhome.cx/9864865862862862/Der-handschriftliche-Nachla-in-5-B-nden-by-Arthur-Schopenhauer.pdf
    • http://calistazz.myhome.cx/6864861861864/The-Horrors-and-Absurdities-of-Religion-by-Arthur-Schopenhauer.pdf
    • http://calistazz.myhome.cx/1861860868868864868/Philosophical-Writings-Arthur-Schopenhauer-by-Wolfgang-Schirmacher.pdf
    • http://calistazz.myhome.cx/5864864865860861/L-Art-d-avoir-toujours-raison-suivi-de-La-lecture-et-les-livres-et-Penseurs-personnels-by-Arthur-Schopenhauer.pdf
    • http://calistazz.myhome.cx/1861864863869868865/Das-Erotische-Unbehagen-in-Der-Russischen-Literatur-Um-1900-Subversive-Entsagung-Von-Arthur-Schopenhauer-Uber-Lev-Tolstoj-Und-Vladimir-Solov-ev-Zu-Fedor-Sologub-by-Cristina-Beretta.pdf
    • http://calistazz.myhome.cx/1861860869860861860/Schopenhauer-s-The-World-as-Will-and-Representation-A-Reader-s-Guide-by-Robert-J-Wicks.pdf
    • http://calistazz.myhome.cx/2862864864866860/Between-States-The-Transylvanian-Question-and-the-European-Idea-during-World-War-II-by-Holly-Case.pdf
    • http://calistazz.myhome.cx/7860861869864869/A-Beautiful-Mess-Photo-Idea-Book-95-Inspiring-Ideas-for-Photographing-Your-Friends-Your-World-and-Yourself-by-Elsie-Larson.pdf
    • http://calistazz.myhome.cx/1860865866867868/How-the-Scots-Invented-the-Modern-World-The-True-Story-of-How-Western-Europe-s-Poorest-Nation-Created-Our-World-and-Everything-in-It-by-Arthur-Herman.pdf
    • http://calistazz.myhome.cx/1861860868867868866/The-Basis-of-Moral