Malicious PDF — malware analysis report

Static analysis result for SHA-256 547537e6d263aaa1…

MALICIOUS

PDF

22.8 KB Created: 2019-04-30 06:46:53 +01:00 Authoring application: mPDF 5.7
MD5: 9e1d0916cea29a636db629593c38d69b SHA-1: 7ab0f54cc8ec5f3700c0886a145700539a31a588 SHA-256: 547537e6d263aaa150dfdca46607745163c392962d34751f534bf55ce0fa6977
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious File

The PDF file was flagged by a machine learning classifier and contains a large number of embedded external links, indicating a link farm or redirection scheme. The primary heuristic, PDF_SEO_LINK_FARM, suggests the document's purpose is to host numerous links, likely for SEO manipulation or to distribute malicious content. While the document body is heavily obfuscated and unreadable, the presence of many URLs points towards a delivery mechanism for further malicious activity.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9726

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/6a00a07a08a01a04/Sweet-s-Hortus-Britannicus-Or-a-Catalogue-of-Plants-Cultivated-in-the-Gardens-of-Great-Britain-Arranged-in-Natural-Orders-Volume-PT-12-by-Robert-Sweet.pdf
    • http://muicuiu.dumb1.com/6a00a07a08a02a07/Sweet-s-Hortus-Britannicus-Or-a-Catalogue-of-Plants-Cultivated-in-the-Gardens-of-Great-Britain-Arranged-in-Natural-Orders-by-Robert-Sweet.pdf
    • http://muicuiu.dumb1.com/5a09a08a06a04a01/Plants-vs-Zombies-Volume-4-Grown-Sweet-Home-by-Andie-Tong.pdf
    • http://muicuiu.dumb1.com/5a04a06a09a08/The-Sweet-Evil-Complete-Collection-Sweet-Evil-Sweet-Peril-Sweet-Reckoning-by-Wendy-Higgins.pdf
    • http://muicuiu.dumb1.com/1a00a06a06a09a07a03/The-Origin-of-Cultivated-Plants-by-Franz-Schwanitz.pdf
    • http://muicuiu.dumb1.com/5a00a05a07a05a00/The-Origin-of-Plants-The-People-and-Plants-That-Have-Shaped-Britain-s-Garden-History-Since-the-Year-1000-by-Maggie-Campbell-Culver.pdf
    • http://muicuiu.dumb1.com/2a01a01a05a09a03/Sweet-Hope-Sweet-Home-3-Carillo-Boys-2-by-Tillie-Cole.pdf
    • http://muicuiu.dumb1.com/8a04a06a00a00a07/Lizzy-and-the-Magic-Coat-Sweet-Sweet-Dreams-by-Taliba-Morgan.pdf
    • http://muicuiu.dumb1.com/4a06a04/Sweet-Hope-Sweet-Home-3-Carillo-Boys-2-by-Tillie-Cole.pdf
    • http://muicuiu.dumb1.com/4a00a00a04a04/Sweet-Fall-Sweet-Home-2-Carillo-Boys-1-by-Tillie-Cole.pdf
    • http://muicuiu.dumb1.com/2a00a02a08a03a09/A-Love-So-Sweet-Sweet-with-Heat-Weston-Bradens-1-by-Addison-Cole.pdf
    • http://muicuiu.dumb1.com/4a04a03a05a01a08/Loving-an-Eaton-Sweet-Persuasions-Sweet-Destiny-by-Rochelle-Alers.pdf
    • http://muicuiu.dumb1.com/2a02a05a00a03a04/Sweet-Cowboy-Christmas-Sweet-Texas-3-5-by-Candis-Terry.pdf
    • http://muicuiu.dumb1.com/1a02a08a06a06a00/Sweet-Chaos-Kali-Sweet-2-by-Misty-Evans.pdf
    • http://muicuiu.dumb1.com/1a00a01a02a00a03a00/Sweet-Payback-Samantha-Sweet-8-by-Connie-Shelton.pdf
    • http://muicuiu.dumb1.com/3a09a03a03a05a00/Sweet-Treats-Sweet-Perfection-1-by-Stormy-Glenn.pdf
    • http://muicuiu.dumb1.com/7a05a00a03a00a08/Travels-Through-That-Part-of-North-America-Formerly-Called-Louisiana-Vol-2-Illustrated-with-Notes-Relative-Chiefly-to-Natural-History-To-Which-Is-Added-by-the-Translator-a-Systematic-Catalogue-of-All-the-Known-Plants-of-English-North-America-or-a-Flo-by-Bossu-Bossu.pdf
    • http://muicuiu.dumb1.com/7a09a03a00a09/Sweet-Possession-Sweet-5-by-Maya-Banks.pdf
    • http://muicuiu.dumb1.com/2a07a00a00a06a04/Sweet-Surrender-Sweet-1-by-Maya-Banks.pdf
    • http://muicuiu.dumb1.com/1a04a08a08a00a03/Sweet-Little-Lies-Sweet-2-by-Abbi-Glines.pdf
    • http://muicuiu.dumb1.com/5a04a06a09a08/The-Sweet-Evil-Complete-Collection-Sweet-Evil-Sweet-Peril-Sweet-Reckoning-by-Wendy-Higgins.p