Malicious PDF — malware analysis report

Static analysis result for SHA-256 4e80aee114d0b33d…

MALICIOUS

PDF

26.8 KB Created: 2019-05-02 17:56:08 +01:00 Authoring application: mPDF 5.7
MD5: 1988957f623995b5eb010d8b9f7b1349 SHA-1: 6096176e23ad5bb8cb7834d5889a7308cb3c3c80 SHA-256: 4e80aee114d0b33d8e2029e601338f44ac073c87e047e8496ec8b770a242afe3
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1059.001 PowerShell

The PDF file contains a large number of embedded links pointing to external PDF documents on the domain 'kiteeearpdf.myhome.cx'. This is indicative of a link farm or a lure to download further malicious content. The ML classifier also strongly flagged this PDF as malicious. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9912

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://kiteeearpdf.myhome.cx/6f218f211f210f217f214/Jesus-in-the-House-of-the-Pharaohs-The-Essene-Revelations-on-the-Historical-Jesus-by-Ahmed-Osman.pdf
    • http://kiteeearpdf.myhome.cx/4f212f214f211f217f219/The-Jesus-Legend-A-Case-for-the-Historical-Reliability-of-the-Synoptic-Jesus-Tradition-by-Paul-Rhodes-Eddy.pdf
    • http://kiteeearpdf.myhome.cx/4f219f217f214f212f217/The-Jesus-Puzzle-Did-Christianity-Begin-with-a-Mythical-Christ-Challenging-the-Existence-of-an-Historical-Jesus-by-Earl-Doherty.pdf
    • http://kiteeearpdf.myhome.cx/3f216f213f212f215/Jesus-Freaks-Stories-of-Those-Who-Stood-for-Jesus-the-Ultimate-Jesus-Freaks-Jesus-Freaks-1-by-D-C-Talk.pdf
    • http://kiteeearpdf.myhome.cx/2f213f214f217f214f219/The-Historical-Jesus-Five-Views-by-James-K-Beilby.pdf
    • http://kiteeearpdf.myhome.cx/1f219f210f213f219f211/The-Quest-of-the-Historical-Jesus-by-Albert-Schweitzer.pdf
    • http://kiteeearpdf.myhome.cx/4f212f213f210f213f210/Jesus-the-Man-Decoding-the-Real-Story-of-Jesus-and-Mary-Magdalene-by-Barbara-Thiering.pdf
    • http://kiteeearpdf.myhome.cx/9f219f219f217f212f215/Jesus-Firsthand-Daily-Devotional-Meditations-for-Knowing-Jesus-by-David-Feddes.pdf
    • http://kiteeearpdf.myhome.cx/1f218f219f219f218f212/Sitting-at-the-Feet-of-Rabbi-Jesus-How-the-Jewishness-of-Jesus-Can-Transform-Your-Faith-by-Ann-Spangler.pdf
    • http://kiteeearpdf.myhome.cx/1f210f218f215f214f210f214/A-Year-with-Jesus-Daily-Readings-and-Reflections-on-Jesus-Own-Words-by-R-P-Nettelhorst.pdf
    • http://kiteeearpdf.myhome.cx/4f215f210f219f215f213/The-Historical-Christ-and-the-Theological-Jesus-by-Dale-C-Allison-Jr-.pdf
    • http://kiteeearpdf.myhome.cx/8f216f216f216f215f216/Historical-Jesus-A-Comprehensive-Guide-by-Gerd-Thei-en.pdf
    • http://kiteeearpdf.myhome.cx/4f212f212f214f216f218/Encounters-with-Jesus-Forty-Days-in-the-Life-of-Jesus-Through-the-Eyes-of-Those-He-Touched-by-Benjamin-Nelson.pdf
    • http://kiteeearpdf.myhome.cx/2f217f210f214f212f215/Searching-for-Jesus-New-Discoveries-in-the-Quest-for-Jesus-of-Nazareth-and-How-They-Confirm-the-Gospel-Accounts-by-Robert-J-Hutchinson.pdf
    • http://kiteeearpdf.myhome.cx/2f217f211f212f219f218/How-God-Became-Jesus-The-Real-Origins-of-Belief-in-Jesus-Divine-Nature-A-Response-To-Bart-Ehrman-by-Michael-F-Bird.pdf
    • http://kiteeearpdf.myhome.cx/1f210f215f217f212f218f213/A-Shift-in-Time-Finding-the-Real-Historical-Jesus-by-Lena-Einhorn.pdf
    • http://kiteeearpdf.myhome.cx/1f214f214f215f215f215/Saint-Saul-A-Skeleton-Key-to-the-Historical-Jesus-by-Donald-Harman-Akenson.pdf
    • http://kiteeearpdf.myhome.cx/6f217f215f210f212f216/Proving-History-Bayes-s-Theorem-and-the-Quest-for-the-Historical-Jesus-by-Richard-C-Carrier.pdf
    • http://kiteeearpdf.myhome.cx/6f218f210f219f216f217/Christianity-An-Ancient-Egyptian-Religion-by-Ahmed-Osman.pdf
    • http://kiteeearpdf.myhome.cx/7f210f218f218f211f215/Hor-Solitari-Or-Essays-Upon-Some-Remarkable-Names-and-Titles-of-Jesus-Christ-Occurring-in-the-Old-Testament-and-Declarative-of-His-Essential-Divinity-and-Gracious-Offices-in-the-Redemption-of-Men-to-Which-Is-Annexed-an-Essay-Chiefly-Historical-by-Ambrose-Serle.pdf
    • http://kiteeearpdf.myhome.cx/3f216f213f212f215/Jesus-Freaks-Stories-of-Those-Who-Stood-for-Jesus-the-Ultimate-Jesus-Freaks-Jesus-Freaks-1