Malicious PDF — malware analysis report

Static analysis result for SHA-256 353a736fc728b42a…

MALICIOUS

PDF

11.5 KB Created: 2019-05-02 00:54:27 +01:00 Authoring application: mPDF 5.7
MD5: 2629b66d008358e35b936bdeca7d225c SHA-1: e091d1ace5f55aa75ab36c48a508e0c42831695b SHA-256: 353a736fc728b42a555f534fc5140acd3f582a1a8bf73e0d8a447c96c714a553
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded links pointing to external PDF files hosted on the domain 'muicuiu.dumb1.com'. This behavior is indicative of a link farm or a lure to download further malicious content. The ML classifier also flagged this PDF as malicious. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.7304

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/6a03a07a00a07a01/L-accueil-by-St-phane-Barbery.pdf
    • http://muicuiu.dumb1.com/8a05a02a02a08a08/Les-Bannis-de-Hitler-Accueil-Et-Luttes-Des-Exiles-Allemands-En-France-1933-1939-by-Gilbert-Badia.pdf
    • http://muicuiu.dumb1.com/6a06a02a09a06a08/Le-Samoy-de-illustr-L-alimentation-l-ducation-du-chiot-le-choix-l-accueil-dans-sa-famille-by-Marie-Columeau-FOUCHET.pdf
    • http://muicuiu.dumb1.com/6a03a07a00a07a03/babbleon-by-James-Barbery.pdf
    • http://muicuiu.dumb1.com/2a01a04a02a02a02/A-Eleg-ncia-Do-Ouri-o-by-Muriel-Barbery.pdf
    • http://muicuiu.dumb1.com/6a03a07a00a06a05/Po-sie-Opus-1-by-St-phane-Barbery.pdf
    • http://muicuiu.dumb1.com/3a02a06a04a04/The-Elegance-of-the-Hedgehog-by-Muriel-Barbery.pdf
    • http://muicuiu.dumb1.com/6a02a02a00a06a02/A-elegancia-do-ourizo-by-Muriel-Barbery.pdf
    • http://muicuiu.dumb1.com/1a05a08a06a03a06/The-Life-of-Elves-by-Muriel-Barbery.pdf
    • http://muicuiu.dumb1.com/8a01a00a05a08/The-Elegance-of-the-Hedgehog-by-Muriel-Barbery.pdf
    • http://muicuiu.dumb1.com/4a09a01a00a08a09/Gourmet-Rhapsody-by-Muriel-Barbery.pdf
    • http://muicuiu.dumb1.com/6a03a07a01a02a00/S-CRATES-Y-LOS-TIGRES-AZULES-Un-an-lisis-cr-tico-de-la-Filosof-a-la-Historia-y-la-Literatura-by-Roberto-Barbery-Anaya.pdf