Malicious PDF — malware analysis report

Static analysis result for SHA-256 3bd5a9771c5ac876…

MALICIOUS

PDF

18.8 KB Created: 2019-05-03 05:42:25 +01:00 Authoring application: mPDF 5.7 First seen: 2021-10-12
MD5: 0c068dd1312536a9fec1f6ae5a2163fc SHA-1: f1cde23746818f8a9f70db3d9b70d39c95f069e8 SHA-256: 3bd5a9771c5ac876ce931f4a2ad95a937a2d27d39492527a52f4b681ca0d4da3
100 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded external links, identified by the PDF_SEO_LINK_FARM heuristic. While many of these links were flagged as benign, the sheer volume and the ML classifier's strong indication of maliciousness suggest a malicious intent, possibly for SEO manipulation or to distribute further payloads. The presence of a 'download' call-to-action phrase reinforces this possibility.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 3

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Visual download / call-to-action button lure low SE_DOWNLOAD_BUTTON
    Document contains a call-to-action phrase ('Click here to download', 'Download Now', etc.) — low-signal unless other findings point to a malicious workflow
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/1a08a09a07a08a03/Junk-Raft-An-Ocean-Voyage-and-a-Rising-Tide-of-Activism-to-Fight-Plastic-Pollution-by-Marcus-Eriksen.pdf In PDF document text
    • http://muicuiu.dumb1.com/8a09a06a00a01a01/Air-Pollution-Phytotoxicity-of-Acidic-Gases-and-Its-Significance-in-Air-Pollution-Control-by-Robert-Guderian.pdfIn PDF document text
    • http://muicuiu.dumb1.com/8a09a05a08a01a04/Air-Pollution-Phytotoxicity-of-Acidic-Gases-and-Its-Significance-in-Air-Pollution-Control-by-R-Guderian.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a08a07a06a08a06/Fight-the-Tide-Kick-at-the-Darkness-2-by-Keira-Andrews.pdfIn PDF document text
    • http://muicuiu.dumb1.com/5a00a03a06a08/Reach-of-Tide-Ring-of-History-A-Columbia-River-Voyage-by-Sam-McKinney.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a02a04a05a05a07/Far-from-Shore-Chronicles-of-an-Open-Ocean-Voyage-by-Sophie-Webb.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a01a06a00a00a02/Rising-Tide-The-Threat-from-the-Sea-1-by-Mel-Odom.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a09a02a05a07a05/The-Rising-Tide-by-Molly-Keane.pdfIn PDF document text
    • http://muicuiu.dumb1.com/3a04a01a03a04a06/Blood-Tide-Aquarius-Rising-2-by-Brian-Burt.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a02a00a04a01a06/Under-a-Graveyard-Sky-Black-Tide-Rising-1-by-John-Ringo.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a02a00a05a00a03/Ride-the-Rising-Tide-The-Maxwell-Saga-2-by-Peter-Grant.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a07a07a07a02a00/Tide-Players-The-Movers-and-Shakers-of-a-Rising-China-by-Jianying-Zha.pdfIn PDF document text
    • http://muicuiu.dumb1.com/9a08a07a04/Strands-of-Sorrow-Black-Tide-Rising-4-by-John-Ringo.pdfIn PDF document text
    • http://muicuiu.dumb1.com/3a08a06a06a00a04/To-Sail-a-Darkling-Sea-Black-Tide-Rising-2-by-John-Ringo.pdfIn PDF document text
    • http://muicuiu.dumb1.com/3a01a00a05a00a06/Rising-Tide-Dark-Innocence-The-Maura-DeLuca-Trilogy-1-by-Claudette-Melanson.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a00a09a09a05a04/Rising-Tide-Dark-Innocence-The-Maura-DeLuca-Trilogy-1-by-Claudette-Melanson.pdfIn PDF document text
    • http://muicuiu.dumb1.com/9a00a09a08a08a08/Historie-Minne-Og-Myte-by-Anne-Eriksen.pdfIn PDF document text
    • http://muicuiu.dumb1.com/6a02a07a09a05a05/The-Ocean-of-Churn-How-the-Indian-Ocean-Shaped-Human-History-by-Sanjeev-Sanyal.pdfIn PDF document text
    • http://muicuiu.dumb1.com/9a01a01a02a05a00/Coral-Reef-Fishes-Caribbean-Indian-Ocean-and-Pacific-Ocean-Including-the-Red-Sea---Revised-Edition-by-Ewald-Lieske.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a06a02a08a05a06/The-Voyage-of-the-Miscreation-1-The-Voyage-Begins-by-Kristen-S-Walker.pdfIn PDF document text