Malicious PDF — malware analysis report

Static analysis result for SHA-256 332c4dccda3c99cc…

MALICIOUS

PDF

19.7 KB Created: 2019-05-02 11:11:33 +01:00 Authoring application: mPDF 5.7
MD5: f8e46024b5a3572a30dc0f1db723104d SHA-1: 261fb4b982707702ee8a7b65ba34ce4214f4552f SHA-256: 332c4dccda3c99ccf63d6437c006ec99ff03b30d68f364fa9d80364140e5f5ac
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded links to external websites, as indicated by the PDF_SEO_LINK_FARM heuristic. While the specific content of these linked pages is not directly analyzed, the sheer volume and the nature of the heuristic suggest a malicious intent, possibly for SEO manipulation or to redirect users to malicious content. The ML classifier also strongly flagged this PDF as malicious.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9942

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/1a07a04a05a06a00/His-Billion-Dollar-Baby-by-Lea-Nolan.pdf
    • http://muicuiu.dumb1.com/4a09a08a09a05a05/Billion-Dollar-Baby-1-by-Simone-Holloway.pdf
    • http://muicuiu.dumb1.com/1a00a07a08a00a09a02/Billion-Dollar-Love-by-Aisha-Brooks.pdf
    • http://muicuiu.dumb1.com/4a02a08a00a02a03/The-Billion-Dollar-Boy-Jupiter-2-by-Charles-Sheffield.pdf
    • http://muicuiu.dumb1.com/3a02a09a03a09a03/The-Billion-Dollar-Marriage-Contract-by-Alyssa-Urbano.pdf
    • http://muicuiu.dumb1.com/4a07a06a09a05a05/The-Billion-Dollar-Bad-Boy-The-Billionaire-s-Club-2-by-Jackie-Ashenden.pdf
    • http://muicuiu.dumb1.com/1a06a06a00a02/The-Billion-Dollar-Sure-Thing-by-Paul-Emil-Erdman.pdf
    • http://muicuiu.dumb1.com/5a06a00a01a01a02/Billion-Dollar-Baby-Bargain-by-Tessa-Radley.pdf
    • http://muicuiu.dumb1.com/3a05a07a04a03a02/The-Billion-Dollar-Threat-Llewellyn-the-Ghost-1-by-Peter-Worthington.pdf
    • http://muicuiu.dumb1.com/5a03a08a05a01a04/Billion-Dollar-Cowboy-Cowboys-amp-Brides-1-by-Carolyn-Brown.pdf
    • http://muicuiu.dumb1.com/1a01a05a04a02a06a00/Billion-Dollar-Turnaround-The-3m-Spinoff-That-Became-Imation-by-William-T-Monahan.pdf
    • http://muicuiu.dumb1.com/1a02a03a06/The-Billion-Dollar-Spy-A-True-Story-of-Cold-War-Espionage-and-Betrayal-by-David-E-Hoffman.pdf
    • http://muicuiu.dumb1.com/3a02a09a05a09a08/Junkyard-Planet-Travels-in-the-Billion-Dollar-Trash-Trade-by-Adam-Minter.pdf
    • http://muicuiu.dumb1.com/3a04a08a09a07a05/The-Billion-Dollar-Spy-A-True-Story-of-Cold-War-Espionage-and-Betrayal-by-David-E-Hoffman.pdf
    • http://muicuiu.dumb1.com/1a00a03a00a05a02/Cold-Steel-Lakshmi-Mittal-And-The-Multi-Billion-Dollar-Battle-For-A-Global-Empire-by-Tim-Bouquet.pdf
    • http://muicuiu.dumb1.com/1a09a07a07a09a05/A-Dollar-Short-The-Bottom-Dollar-Series-Book-2-by-Karin-Gillespie.pdf
    • http://muicuiu.dumb1.com/1a01a04a08a04a05/Dangerous-Odds-My-Secret-Life-Inside-an-Illegal-Billion-Dollar-Sports-Betting-Operation-by-Marisa-Lankester.pdf
    • http://muicuiu.dumb1.com/5a06a00a02a09a07/Billion-Dollar-Baby-Bargain-The-Moretti-Arrangement-The-Moretti-Legacy-3-by-Tessa-Radley.pdf
    • http://muicuiu.dumb1.com/7a04a00a04a00a07/Homoeopathic-Treatment-of-Diarrhoea-Dysentry-Cholera-Morbus-and-the-Cholera-by-Benjamin-Franklin-Joslin.pdf
    • http://muicuiu.dumb1.com/7a04a00a02a06a04/The-Cholera-Preventive-the-Asiatic-Cholera-by-A-Minister.pdf
    • http://muicuiu.dumb1.com/1a02a03a06/The-Billion-Dol