Malicious PDF — malware analysis report

Static analysis result for SHA-256 3352a0ac879c566f…

MALICIOUS

PDF

15.3 KB Created: 2019-04-30 10:34:05 +01:00 Authoring application: mPDF 5.7
MD5: 9a01655bc14f80a496817b8e50dfd194 SHA-1: 6274da049d6fd8b6bf6c9fbb50c874cb75e77450 SHA-256: 3352a0ac879c566f5808a27768583b05723011c66a73f261e0a8dc551ecbf47a
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF document contains a large number of embedded links to external websites, identified by the PDF_SEO_LINK_FARM heuristic. While the specific URLs extracted were labeled as confirmed benign, the sheer volume and structure suggest a malicious intent, possibly for SEO manipulation or to redirect users to malicious content. The ML_NYX_PDF_MALICIOUS heuristic further supports the malicious classification.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9778

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/1a07a08a06a00a00/Accidentally-Married-to-a-Vampire-Accidentally-Yours-2-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/1a08a01a05a09a03/Sun-God-Seeks-Surrogate-Accidentally-Yours-3-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/1a04a04a01a08a01/Accidentally-Famous-Accidentally-2-Candy-Apple-14-by-Lisa-Papademetriou.pdf
    • http://muicuiu.dumb1.com/1a04a04a01a04a04/Accidentally-Fooled-Accidentally-3-Candy-Apple-16-by-Lisa-Papademetriou.pdf
    • http://muicuiu.dumb1.com/1a08a08a06a07a03/Accidentally-Married-Married-1-by-Victorine-E-Lieske.pdf
    • http://muicuiu.dumb1.com/3a03a09a03a08/Mack-The-King-Trilogy-4-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/3a04a02a05a02/Tommaso-Immortal-Matchmakers-Inc-2-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/1a08a01a06a01a06/Merciless-The-Mermen-Trilogy-3-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/1a00a09a03a06a06/Smart-Tass-OHellNo-1-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/3a09a07a01/Tailored-for-Trouble-Happy-Pants-1-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/1a09a00a01a07a00/Mr-Rook-Mr-Rook-s-Island-1-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/1a03a04a01a02a03/King-for-a-Day-The-King-Trilogy-2-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/2a06a08a06a02a04/King-for-a-Day-The-King-Trilogy-2-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/4a05a07a08a01/Mermen-The-Mermen-Trilogy-1-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/3a00a08a06a06a01/The-King-Trilogy-Boxed-Set-The-King-Trilogy-1-3-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/1a08a07a08a02a09/Happy-Pants-Cafe-Happy-Pants-0-5-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/1a08a08a05a02a09/Fate-Book-Fate-Book-1-by-Mimi-Jean-Pamfiloff.pdf
    • http://muicuiu.dumb1.com/2a00a01a01a04a05/Accidentally-in-Love-With-Him-Again-by-Nikita-Singh.pdf
    • http://muicuiu.dumb1.com/2a07a02a06a01a06/Love-Accidentally-by-Sarah-Pekkanen.pdf
    • http://muicuiu.dumb1.com/4a07a01a06a03a07/Accidentally-on-Purpose-by-Bree-Stonefield.pdf
    • http://muicuiu.dumb1.com/3a09a07a01/Ta