Malicious PDF — malware analysis report

Static analysis result for SHA-256 31a0057fbb52e718…

MALICIOUS

PDF

20.7 KB Created: 2020-03-15 13:21:12 +00:00 Authoring application: mPDF 5.7
MD5: ec2ef45f205646973a6cd23b9fb738b3 SHA-1: f3eee46b49ed9796db72eb2f68aaf5f6ffc8cbad SHA-256: 31a0057fbb52e7188db043c55c2aa1fdeee3f9ade23ee22b6117308b63140b8c
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded external links, identified by the PDF_SEO_LINK_FARM heuristic. The ML classifier also flagged this PDF as malicious with high confidence. The primary attack pattern appears to be a link farm designed to direct users to external resources, potentially for SEO manipulation or to serve further malicious content.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9904

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://peldoaio.myhome.cx/93d93d13d73d63d3/Meat-Eater-Adventures-from-the-Life-of-an-American-Hunter-by-Steven-Rinella.pdf
    • http://peldoaio.myhome.cx/63d63d73d13d63d6/The-Scavenger-s-Guide-to-Haute-Cuisine-by-Steven-Rinella.pdf
    • http://peldoaio.myhome.cx/43d73d13d23d73d0/Fork-It-Over-The-Intrepid-Adventures-of-a-Professional-Eater-by-Alan-Richman.pdf
    • http://peldoaio.myhome.cx/33d33d73d53d9/The-Meat-Market-Jonathan-Harkon-Adventures-1-by-James-Chalk.pdf
    • http://peldoaio.myhome.cx/43d23d53d43d43d9/American-Legend-The-Real-Life-Adventures-of-David-Crockett-by-Buddy-Levy.pdf
    • http://peldoaio.myhome.cx/73d03d83d73d83d3/The-Hunter-Trilogy-I-ADVENTURES-in-love-LIFE-AND-LARCENY-II-YOUNG-LOVE-CRIME-AND-SUSPENSE-III-VENTURE-beyond-the-year-2055-by-William-Serle.pdf
    • http://peldoaio.myhome.cx/93d93d13d83d83d4/More-Red-Meat-The-Second-Collection-of-Red-Meat-Cartoons-by-Max-Cannon.pdf
    • http://peldoaio.myhome.cx/43d73d13d23d93d0/Talking-with-My-Mouth-Full-My-Life-as-a-Professional-Eater-by-Gail-Simmons.pdf
    • http://peldoaio.myhome.cx/43d73d53d53d13d6/The-Hasheesh-Eater-Being-Passages-from-the-Life-of-a-Pythagorean-by-Fitz-Hugh-Ludlow.pdf
    • http://peldoaio.myhome.cx/73d03d43d43d33d0/Adventures-of-a-Young-Sculptor-The-Development-and-Early-Life-of-Avard-T-Fairbanks-a-20th-Century-American-Sculptor-by-Eugene-F-Fairbanks.pdf
    • http://peldoaio.myhome.cx/13d83d33d33d53d9/The-Passionate-Vegetable-Health-Inspired-Recipes-to-Revitalize-Your-Life-for-Vegetarians-or-Meat-Lovers-by-Suzanne-Landry.pdf
    • http://peldoaio.myhome.cx/43d13d33d13d73d0/The-Hasheesh-Eater-s-Companion-Accompanying-Fitz-Hugh-Ludlow-s-quot-the-Hasheesh-Eater-quot-by-David-M-Gross.pdf
    • http://peldoaio.myhome.cx/53d53d73d63d0/The-Adventures-of-Dwarfgiants-Serpent-of-the-Sulphur-Sea-by-Steven-Jacklin.pdf
    • http://peldoaio.myhome.cx/43d03d43d33d23d9/All-American-Ads-of-the-80-s-by-Steven-Heller.pdf
    • http://peldoaio.myhome.cx/23d33d53d83d03d8/The-Absolutely-Amazing-Adventures-of-Agent-Auggie-Spinoza-by-Steven-Stickler.pdf
    • http://peldoaio.myhome.cx/33d73d93d43d23d5/The-Absolutely-Amazing-Adventures-of-Agent-Auggie-Spinoza-by-Steven-Stickler.pdf
    • http://peldoaio.myhome.cx/43d33d23d33d53d9/The-Pirate-Tales-and-Adventures-of-Jollier-Roger-and-the-Golden-Cross-by-Steven-M-Vincent.pdf
    • http://peldoaio.myhome.cx/53d93d83d93d7/The-Incredible-Adventures-of-Professor-Branestawm-by-Norman-Hunter.pdf
    • http://peldoaio.myhome.cx/83d93d43d93d93d7/American-Virgin-Volume-3-Wet-by-Steven-T-Seagle.pdf
    • http://peldoaio.myhome.cx/23d03d83d83d93d7/The-Sin-Eater-s-Daughter-The-Sin-Eater-s-Daughter-1-by-Melinda-Salisbury.pdf
    • http://peldoaio.myhome.cx/93d93d13d83d83d4/More-Red-Meat-The-Second-C