Malicious PDF — malware analysis report

Static analysis result for SHA-256 4e369f73dda5ab14…

MALICIOUS

PDF

117.0 KB Created: 2022-07-17 15:18:09 +00:00 Authoring application: chegod (via PDF Master 1.0.1) First seen: 2026-06-19
MD5: 61753263ff2aa65e12a2b00d689dc2db SHA-1: d4c406eb17a58a16c5117e69cc990998a28ab0af SHA-256: 4e369f73dda5ab145f3e5ba0152d451bd7ba1343aaf94544844433f57232be78
94 Risk Score

Machine Learning

  • Nyx PDF Classifier clean score 0.0009

Heuristics 4

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • PDF link farm advertises cracked/pirated software medium PDF_CRACKED_SOFTWARE_LURE
    PDF contains many clickable links whose targets use cracked-software, keygen, serial-key, or warez vocabulary. These are SEO-spam lure documents that rank for software-piracy searches and route users to fake 'crack' download pages distributing potentially-unwanted programs, adware, or droppers. The PDF itself carries no exploit — the risk is the linked destinations.
  • External URI info PDF_URI
    PDF contains an external URL action
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://hardlyfind.com/bluie/dnpa/tier/ZG93bmxvYWR8c2swWmpkaE5ueDhNVFkxT0RBd05qWTVPWHg4TWpVNU1IeDhLRTBwSUZkdmNtUndjbVZ6Y3lCYldFMU1VbEJESUZZeUlGQkVSbDA/?kells=parksense.QXNtYXVsIEh1c25hIERhbiBBcnRpbnlhIExlbmdrYXAucGRmQXN&rifles=today`s PDF link annotation
    • https://openld.de/wp-content/uploads/2022/07/BullGuard_Antivirus_2020_2003736_Crack_Serial_Key_Latest_Upd.pdfIn PDF document text
    • https://www.shopaprop.com/wp-content/uploads/2022/07/sean_cody_esteban_and_jonathan.pdfIn PDF document text
    • http://infoimmosn.com/?p=23459In PDF document text
    • https://1w74.com/dwg-trueconvert-2017-32-bit-full-indir-tek-link-hot/In PDF document text
    • https://captainseduction.fr/jetbrains-clion-2018-1-5-x86x64-keygen-patch-repack-crack-download/In PDF document text
    • http://tuinfonavit.xyz/?p=22407In PDF document text
    • https://wanoengineeringsystems.com/atherosar9565driverwindows732bitdownload-verified/In PDF document text
    • http://www.giffa.ru/who/barry-manilow-manilow-greatest-hits-platinum-collection-flac-rar-better/In PDF document text
    • https://www.sanitea.com/wp-content/uploads/dafhar.pdfIn PDF document text
    • https://lalinea100x100.com/2022/07/17/kunci-jawaban-akuntansi-biaya-william-k-carter-edisi-14/In PDF document text
    • https://emiratesoptical.net/meiji-tokyo-renka-movie-english-sub/In PDF document text
    • https://mysukishop.com/wp-content/uploads/2022/07/murasu_anjal_10_crack_serial_113.pdfIn PDF document text
    • http://gomeztorrero.com/ready-reckoner-mumbai-2012-pdf/In PDF document text
    • https://intrendnews.com/fsx-p3d-latinvfr-san-juan-tjsj-free-obtain/In PDF document text
    • https://www.academiahowards.com/wp-content/uploads/2022/07/Eplan_Electric_P8_186_Crack.pdfIn PDF document text
    • https://www.webcard.irish/x-force-keygen-maya-2019-free-download-top/In PDF document text
    • https://cambodiaonlinemarket.com/symphony-g20-flash-file-mt6570-6-0-frp-dead-recovery-fix-customer-care-file-work/In PDF document text
    • http://www.ressn.com/vray-4-crack-top-for-sketchup-2019-full-version-licence-key/In PDF document text
    • https://efekt-metal.pl/witaj-swiecie/In PDF document text
    • http://masterarena-league.com/wp-content/uploads/2022/07/Windows_7_Ice_Extreme_V1_Crack_VERIFIED.pdfIn PDF document text
    • https://openld.de/wp-In PDF document text
    • https://cambodiaonlinemarket.com/symphony-g20-flash-file-mt6570-6-0-frp-dead-recovery-fix-In PDF document text
    • http://masterarena-league.com/wp-In PDF document text
    • http://masterarena-league.com/wp-content/uploads/2022/07/windows_7_ice_extreme_v1_crack_verified.pdfIn PDF document text
    • http://www.tcpdf.orgIn PDF document text
    • http://www.w3.org/1999/02/22-rdf-syntax-ns#In PDF document text
    • http://purl.org/dc/elements/1.1/In PDF document text
    • http://ns.adobe.com/xap/1.0/In PDF document text
    • http://ns.adobe.com/pdf/1.3/In PDF document text
    • http://ns.adobe.com/xap/1.0/mm/In PDF document text
    • http://www.aiim.org/pdfa/ns/extension/In PDF document text
    • http://www.aiim.org/pdfa/ns/schema#In PDF document text
    • http://www.aiim.org/pdfa/ns/property#In PDF document text
    • http://www.aiim.org/pdfa/ns/id/In PDF document text