Malicious PDF — malware analysis report

Static analysis result for SHA-256 500f49bf2e7802b5…

MALICIOUS

PDF

20.7 KB Created: 2019-05-02 01:44:14 +01:00 Authoring application: mPDF 5.7
MD5: 45f656bcf5cb7c1d2152b963d0cc1dec SHA-1: 4727e5a7f2d3ccf0485d425f22ec7468fb9104a0 SHA-256: 500f49bf2e7802b59bde5f4cb3f24fc6d11240b429a31fea37adbaf268eba661
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded external links, as indicated by the PDF_SEO_LINK_FARM heuristic. While many of these links point to benign content related to baking, the sheer volume and the nature of the heuristic suggest a malicious intent, possibly for SEO manipulation or to distribute further malicious content. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9942

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/9a08a02a02a03a04/Cupcakes-amp-Muffins-von-A-Z-Von-Amarena-Muffins-bis-Zitronen-Cupcakes-by-August-Oetker.pdf
    • http://muicuiu.dumb1.com/1a00a03a04a03a09a04/1-Teig---55-Kuchen-Torten-Cupcakes-amp-Co-Trendrezepte-f-r-Kuchen-Torten-Cupcakes-Muffins-Tassenkuchen-amp-Eistorten-by-Al-na-nn.pdf
    • http://muicuiu.dumb1.com/1a00a03a04a03a09a03/Low-Carb-Kuchen-amp-Torten-Die-besten-Rezepte-f-r-Kuchen-Torten-Cupcakes-Muffins-und-K-hlschranktorten-by-Jan-Vermer.pdf
    • http://muicuiu.dumb1.com/1a00a09a05a05a06a07/Cupcakes-Cupcakes-and-More-Cupcakes-by-Lilach-German.pdf
    • http://muicuiu.dumb1.com/1a08a03a03a08a03/Vegan-Cupcakes-Take-Over-the-World-75-Dairy-Free-Recipes-for-Cupcakes-that-Rule-by-Isa-Chandra-Moskowitz.pdf
    • http://muicuiu.dumb1.com/1a01a08a08a01a04a06/Vegane-Muffins-T-rtchen-amp-Pl-tzchen-Vegan-backen-f-r-Jedermann-Vegane-Rezepte-zum-Backen-von-Muffins-T-rtchen-Keksen-und-Pl-tzchen-by-Naumann-amp-G-bel-Verlag.pdf
    • http://muicuiu.dumb1.com/1a01a05a04a07a02a07/Tarot-A-New-Handbook-for-the-Apprentice-The-Connolly-Tarot-Revised-by-Eileen-Connolly.pdf
    • http://muicuiu.dumb1.com/1a00a07a06a00a05a00/Muffins-and-Mourning-Tea-by-H-Y-Hanna.pdf
    • http://muicuiu.dumb1.com/1a00a07a06a01a06a05/Blueberry-Muffins-and-Other-Thoughts-by-Jamey-Boelhower.pdf
    • http://muicuiu.dumb1.com/6a05a08a06a00a07/Cupcakes-by-Elinor-Klivans.pdf
    • http://muicuiu.dumb1.com/1a00a07a06a01a07a00/Muffin-Recipes---How-to-Bake-Muffins-Like-A-Pro-by-Judith-Stone.pdf
    • http://muicuiu.dumb1.com/1a00a07a06a01a00a02/The-Anti-Muffins-Austin-Family-4-5-by-Madeleine-L-39-Engle.pdf
    • http://muicuiu.dumb1.com/1a00a07a06a01a00a09/Amazing-Muffins-and-Butter-Spreads-by-Sara-Winlet.pdf
    • http://muicuiu.dumb1.com/2a07a04a03a04a04/Cupcakes-and-Cowboys-by-Lindzee-Armstrong.pdf
    • http://muicuiu.dumb1.com/5a04a09a08a04a02/Meadow-Muffins-in-the-Trail-Dodging-Life-s-Little-Disasters-by-T-K-Galarneau.pdf
    • http://muicuiu.dumb1.com/1a00a07a06a02a00a02/Monkey-with-a-Tool-Belt-and-the-Maniac-Muffins-by-Chris-Monroe.pdf
    • http://muicuiu.dumb1.com/6a04a06a02a05a04/Murderous-Muffins-Chubby-Chicks-Club-2-by-Lois-Lavrisa.pdf
    • http://muicuiu.dumb1.com/2a07a05a04a09a09/All-s-Fair-in-Love-and-Cupcakes-by-Betsy-St-Amant.pdf
    • http://muicuiu.dumb1.com/1a00a05a00a01a08a09/Sisters-Guide-to-NYC-Cupcakes-by-Nanette-McLain.pdf
    • http://muicuiu.dumb1.com/1a00a07a06a01a07a01/Muffins-and-Mayhem-Recipes-for-a-Happy-if-Disorderly-Life-by-Suzanne-Beecher.pdf