Malicious PDF — malware analysis report

Static analysis result for SHA-256 3e9e950286176b61…

MALICIOUS

PDF

22.5 KB Created: 2020-03-22 23:37:24 +00:00 Authoring application: mPDF 5.7
MD5: 2206301e15bfcc33bf0e1bd4b667cb7e SHA-1: 613bbfe2375845fd583b76b6388be69834b555c5 SHA-256: 3e9e950286176b61138af002ded36057aa344d4c97842a02c532c9d84a42db3b
90 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The PDF file contains a large number of embedded URLs pointing to external PDF documents, hosted on the domain 'ieuicufioao.myhome.cx'. This is indicative of a link farm or SEO poisoning technique, likely intended to drive traffic or distribute further malicious content. The ML classifier also flagged this PDF as malicious with high confidence.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9784

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://ieuicufioao.myhome.cx/9554553558554/Prayer-Does-It-Make-Any-Difference-by-Philip-Yancey.pdf
    • http://ieuicufioao.myhome.cx/6555559556558553/I-Was-Just-Wondering-by-Philip-Yancey.pdf
    • http://ieuicufioao.myhome.cx/4551551557550/What-s-So-Amazing-About-Grace-by-Philip-Yancey.pdf
    • http://ieuicufioao.myhome.cx/3559559559558/The-Jesus-I-Never-Knew-by-Philip-Yancey.pdf
    • http://ieuicufioao.myhome.cx/3556551555556550/Finding-God-in-Unexpected-Places-by-Philip-Yancey.pdf
    • http://ieuicufioao.myhome.cx/6555559556554556/What-Good-Is-God-In-Search-of-a-Faith-That-Matters-by-Philip-Yancey.pdf
    • http://ieuicufioao.myhome.cx/3556550555550550/What-s-So-Amazing-About-Grace-Study-Guide-by-Philip-Yancey.pdf
    • http://ieuicufioao.myhome.cx/6555559556558559/What-s-So-Amazing-About-Grace-Where-is-God-When-It-Hurts-Two-Books-In-One-by-Philip-Yancey.pdf
    • http://ieuicufioao.myhome.cx/5550550555555552/What-Good-Is-God-On-the-Road-with-Stories-of-Grace-by-Philip-Yancey.pdf
    • http://ieuicufioao.myhome.cx/1550551556553552/Grace-Notes-Daily-Readings-with-a-Fellow-Pilgrim-by-Philip-Yancey.pdf
    • http://ieuicufioao.myhome.cx/1553552554556550/The-Wisdom-to-Know-the-Difference-When-to-Make-a-Change-and-When-to-Let-Go-by-Eileen-Flanagan.pdf
    • http://ieuicufioao.myhome.cx/6559552558559552/V-is-for-Vulnerable-An-Alphabet-for-People-Who-Want-to-Make-a-Difference-by-Seth-Godin.pdf
    • http://ieuicufioao.myhome.cx/9559557555556551/The-Participation-of-Women-in-Government-Does-It-Make-a-Difference-by-Daphne-De-Rebello.pdf
    • http://ieuicufioao.myhome.cx/7558554554558559/How-to-Influence-People-Make-a-Difference-in-Your-World-by-John-C-Maxwell.pdf
    • http://ieuicufioao.myhome.cx/9558551557559/The-Sender-A-Story-About-When-Right-Words-Make-All-The-Difference-by-Kevin-Elko.pdf
    • http://ieuicufioao.myhome.cx/7558554556553557/Etiquette-Guide-to-Japan-Know-the-Rules-That-Make-the-Difference-by-Boy-Lafayette-de-Mente.pdf
    • http://ieuicufioao.myhome.cx/4559557558552558/Impact-How-to-Get-Noticed-Motivate-Millions-and-Make-a-Difference-in-a-Noisy-World-by-Ken-McArthur.pdf
    • http://ieuicufioao.myhome.cx/6555553557556553/Prayer-by-Philip-Kerr.pdf
    • http://ieuicufioao.myhome.cx/9550558554554558/Where-Am-I-Giving-A-Global-Adventure-Exploring-How-to-Use-Your-Gifts-and-Talents-to-Make-a-Difference-by-Kelsey-Timmerman.pdf
    • http://ieuicufioao.myhome.cx/5552550552557/The-Excellence-Habit---How-Small-Changes-In-Our-Mindset-Can-Make-A-Big-Difference-In-Our-Lives-For-All-Who-Feel-Stuck-by-Vlad-Zachary.pdf