MALICIOUS
122
Risk Score
Malware Insights
MITRE ATT&CK
T1566.001 Spearphishing Attachment
The PDF document contains multiple links and a heuristic firing indicating it's a lure for game hacks or generators. The document body, though partially corrupted, contains references to 'Roblox Jailbreak Money Cheat Engine' and a URL that aligns with the lure. The presence of embedded URIs and the ML classifier's high confidence score suggest malicious intent, likely to redirect users to a site that hosts malware or phishing content.
Machine Learning
- Nyx PDF Classifier malicious score 0.7795
Heuristics 5
-
PDF links to a 'free generator / game hack' redirector high PDF_GAME_HACK_REDIRECT_LUREPDF's clickable action targets a redirector of the form /app/<id>/<slug>-game-hack — the landing-page shape of a large SEO 'free spins / generator / game hack' lure family that funnels victims through rotating disposable hosts to a malware/scam payload. The multi-link variants also trip ML/link-farm rules; this catches the single-link variants that otherwise score clean.
-
Security software disable instruction high SE_SECURITY_BYPASSDocument instructs the user to disable antivirus or security software — unusual for ordinary documents and high-risk in an unsolicited file
-
Visual download / call-to-action button lure low SE_DOWNLOAD_BUTTONDocument contains a call-to-action phrase ('Click here to download', 'Download Now', etc.) — low-signal unless other findings point to a malicious workflow
-
External URI info PDF_URIPDF contains an external URL action
-
Embedded URL info EMBEDDED_URLOne or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.URL http://enigmagenerator.com/app/431946152/roblox-game-hack PDF link annotation
- https://gaj.rs/images/roblox-cheat-codes-mad-city.pdfIn PDF document text
- http://optsuvenir.by/images/how-to-hack-roblox-accounts-2021-zero.pdfIn PDF document text
- http://grupodin.com.br/images/rbxfree-com-free-robux-2021.pdfIn PDF document text
- http://baah.ca/images/how-to-get-free-coins-in-roblox-pet-simulator.pdfIn PDF document text
- http://firesafetyservices.biz/images/roblox-friend-hack.pdfIn PDF document text
- http://www.agri-tech.com.au/images/descargar-hack-de-roblox-jailbreak-2021.pdfIn PDF document text
- https://www.iadh.bi/images/roblox-buff-shirt-free.pdfIn PDF document text
- https://wandpiraten.de/images/make-roblox-t-shirts-free.pdfIn PDF document text
- http://garrisonjazz.com/images/free-robux-without-human-verification-or-email.pdfIn PDF document text
- http://safeandsecurelocksmith.ca/images/roblox-free-robux-hack-generator.pdfIn PDF document text
- http://www.hawler.in/images/how-to-hack-roblox-without-verification.pdfIn PDF document text
- https://pemadamapi.net/images/how-to-make-t-shirts-for-free-on-roblox.pdfIn PDF document text
- http://boliviagasenergia.com/images/top-ten-ways-to-get-free-robux.pdfIn PDF document text
- http://lepatrimoinedesvallees.fr/images/how-to-get-robux-for-free-without-builders-club.pdfIn PDF document text
- http://clubpure.org/images/denis-free-admin-town-roblox.pdfIn PDF document text
- https://www.dierenartsberghman.be/images/free-tokens-roblox-assassin.pdfIn PDF document text
- http://grand-ural74.ru/images/roblox-play-free-online-no-download.pdfIn PDF document text
- http://altc.de/images/free-gamepass-roblox-scripts-site-v3rmillionnet.pdfIn PDF document text
- http://feuerwehr-rheinau.de/images/how-to-have-bc-free-roblox-2021.pdfIn PDF document text
- http://pizzeria-rosso.pl/images/roblox-card-includes-free-virtual-item.pdfIn PDF document text
- http://medicalafrica.net/images/get-free-robux-without-hacking.pdfIn PDF document text
- http://www.copoint.co.uk/images/free-robux-codes-2021-september.pdfIn PDF document text
- http://elize-photography.co.za/images/how-to-hacker-roblox-for-free-robux-2021.pdfIn PDF document text
- https://www.audev.com/images/downloadsgamenet-roblox-apocalypse-rising-hack-unpatched.pdfIn PDF document text
- http://ivalor.fr/images/comment-hacker-roblox-sur-pc.pdfIn PDF document text
- http://agrupamentoescolas-alfredo-da-silva.com/images/roblox-scripters-for-free.pdfIn PDF document text
- https://www.coriglianocalabro.it/images/free-robux-and-tix-hack-no-download.pdfIn PDF document text
- https://www.romedia.gr/images/how-to-get-robux-without-paying-or-hacking.pdfIn PDF document text
- https://www.lavigny.ch/images/roblox-hack-flood-escape-2.pdfIn PDF document text
- http://www.pcclawyers.com.au/images/roblox-jailbreak-money-hack-deutsch.pdfIn PDF document text
- https://jdlgroup.ca/images/free-redeemable-roblox-cards-2021.pdfIn PDF document text
- http://a1scan3d.com/images/mega-roblox-cheat.pdfIn PDF document text
- https://www.acoustiguard.com/images/roblox-anthro-paid-for-free.pdfIn PDF document text
- http://muko-unterfranken.info/images/roblox-build-a-boat-hack.pdfIn PDF document text
- http://www.fanciullovito.it/images/roblox-free-fgteev-t-shirt-free.pdfIn PDF document text
- https://www.air-shop.cz/images/how-to-get-free-robux-2021-edit-this-cookie.pdfIn PDF document text
- https://www.ukrtrans.biz/images/reverse-a-roblox-hack.pdfIn PDF document text
- http://generatorgallery.com.au/images/how-to-get-free-robux-in-2021.pdfIn PDF document text
- https://www.wildpark-johannismuehle.de/images/roblox-cheat-dungeon-quest.pdfIn PDF document text
- http://www.gadanie.lv/images/free-gifts-roblox.pdfIn PDF document text
- https://ceranique.nl/images/roblox-free-memverships.pdfIn PDF document text
- http://ilifemarket.ru/images/pastebin-robux-free-birthday-reward-7.pdfIn PDF document text
- http://xn--apartementos-smfora-cala-ratjada-4vc.de/images/roblox-kicked-by-server-cheat-engine.pdfIn PDF document text
- http://brusivojimi.com/images/roblox-alt-delete-hack-2021.pdfIn PDF document text
- http://museumkk.ru/images/how-to-get-free-robux-safely-on-an-ipad-lenovo.pdfIn PDF document text
- https://consorziocsa-asicaivano.it/images/how-to-get-free-robux-on-roblox-working-2021-fast.pdfIn PDF document text
- http://ediliziacasati.it/images/free-steam-codes-no-survey-robux.pdfIn PDF document text
- http://italymania.ru/images/irobux-fun-roblox-online-hack.pdfIn PDF document text
- http://harmonygardens.ca/images/roblox-legends-of-speed-hack-pain-exist-descargar.pdfIn PDF document text
+18 more URL(s)
Extracted artifacts 2
Files carved from inside the sample during analysis.
| Filename | Kind | Source | Size |
|---|---|---|---|
stream_003_off0000856d.bin |
decompressed-pdf-stream | PDF FlateDecoded stream at offset 0x856D | 25960 bytes |
SHA-256: 26b2905e64c83c1b7975b52deaeed13ffa7f0bba40aa62d8d3d2d825f66c59e4 |
|||
font_01_sfnt_off0000bf6b.bin |
pdf-font-stream | PDF embedded font (sfnt) at offset 0xBF6B | 18796 bytes |
SHA-256: d1f5102513b34b4b9fb02d0c680c7643f61e4f36c78b67a21f9757b38677a26a |
|||
Open this report in the interactive analyzer, or submit your own file for analysis.