Malicious PDF — malware analysis report

Static analysis result for SHA-256 3ee549d6ae9d01fc…

MALICIOUS

PDF

21.1 KB Created: 2019-04-30 04:45:54 +01:00 Authoring application: mPDF 5.7
MD5: 90efa0b8d5883fc7bb4545b76f0d6035 SHA-1: 461197aa518dc8dc76427bf7c625add040f68d6c SHA-256: 3ee549d6ae9d01fc08c9df4e97075882607167963de906ccbae7ee9b89e09ceb
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1059.001 PowerShell

The PDF file contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic, which suggests a link farm or traffic-driving scheme. The ML classifier also strongly indicated maliciousness. While no scripts were extracted, the sheer volume of links points to a malicious intent, likely to distribute further content or lead users to malicious sites.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/7a01a00a05a07a09/Myth-and-Tragedy-in-Ancient-Greece-by-Jean-Pierre-Vernant.pdf
    • http://muicuiu.dumb1.com/7a01a00a05a07a08/Myth-and-Thought-Among-the-Greeks-by-Jean-Pierre-Vernant.pdf
    • http://muicuiu.dumb1.com/7a01a00a05a07a05/The-Universe-the-Gods-and-Men-by-Jean-Pierre-Vernant.pdf
    • http://muicuiu.dumb1.com/7a01a00a07a08a03/Htlv-I-and-Nervous-System-by-Jean-Claude-Vernant.pdf
    • http://muicuiu.dumb1.com/4a01a03a04a05a03/Persephone-and-the-Pomegranate-A-Myth-from-Greece-by-Kris-Waldherr.pdf
    • http://muicuiu.dumb1.com/1a00a07a08a00a04a00/Ancient-Greece-by-Philip-Ardagh.pdf
    • http://muicuiu.dumb1.com/3a04a02a08a07a08/Greece-Greece-Travel-Guide-The-30-Best-Tips-For-Your-Trip-To-Greece---The-Places-You-Have-To-See-Athens-Rhodes-Crete-Santorini-Corfu-Book-1-by-Traveling-The-World.pdf
    • http://muicuiu.dumb1.com/9a06a01a02a03a09/Hellas-the-Civilizations-of-Ancient-Greece-by-Keith-Branigan.pdf
    • http://muicuiu.dumb1.com/3a03a06a00a04a04/Mythos-A-Retelling-of-the-Myths-of-Ancient-Greece-by-Stephen-Fry.pdf
    • http://muicuiu.dumb1.com/5a01a02a09a08/Gods-and-Goddesses-of-Ancient-Greece-by-Edward-E-Barthell.pdf
    • http://muicuiu.dumb1.com/4a05a07a07a03a04/The-Journey-to-Ancient-Greece-Time-Trip-1-by-Jason-McKenney.pdf
    • http://muicuiu.dumb1.com/6a09a03a06a07a07/The-Greeks-and-Us-A-Comparative-Anthropology-of-Ancient-Greece-by-Marcel-Detienne.pdf
    • http://muicuiu.dumb1.com/2a03a08a07a08a02/Hounds-and-Hunting-in-Ancient-Greece-by-Denison-Bingham-Hull.pdf
    • http://muicuiu.dumb1.com/6a07a06a05a02a09/Le-Tombeau-de-Pierre-Pierre-Gripari-1925-1990-by-Jean-Charles-Angrand.pdf
    • http://muicuiu.dumb1.com/5a01a03a02a03a06/The-Discovery-of-Freedom-in-Ancient-Greece-Revised-and-Updated-Edition-by-Kurt-Raaflaub.pdf
    • http://muicuiu.dumb1.com/1a00a09a08a01a04a03/Spies-Espionage-and-Covert-Operations-From-Ancient-Greece-to-the-Cold-War-by-Michael-Rank.pdf
    • http://muicuiu.dumb1.com/4a02a09a06a07a00/Portrait-of-a-Priestess-Women-and-Ritual-in-Ancient-Greece-by-Joan-Breton-Connelly.pdf
    • http://muicuiu.dumb1.com/4a02a09a01a08a01/The-Ancient-City-A-Study-of-the-Religion-Laws-and-Institutions-of-Greece-and-Rome-by-Numa-Denis-Fustel-de-Coulanges.pdf
    • http://muicuiu.dumb1.com/5a08a05a09a04a02/Ancestor-of-the-West-Writing-Reasoning-and-Religion-in-Mesopotamia-Elam-and-Greece-by-Jean-Bott-ro.pdf
    • http://muicuiu.dumb1.com/7a03a08a07a03a02/Homo-Necans-The-Anthropology-of-Ancient-Greek-Sacrificial-Ritual-and-Myth-by-Walter-Burkert.pdf
    • http://muicuiu.dumb1.com/3a04a02a08a07a08/Greece