Malicious PDF — malware analysis report

Static analysis result for SHA-256 59c8836424c4c010…

MALICIOUS

PDF

21.7 KB Created: 2019-04-30 04:46:35 +01:00 Authoring application: mPDF 5.7
MD5: 16e957c6fd321f14ae1f1cd626ed660a SHA-1: 45c7feb40916fa200efe66c8207dff7c83d7744b SHA-256: 59c8836424c4c01087643347350053450abe660218b9de35570cfde7dbd674ae
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded links, as indicated by the PDF_SEO_LINK_FARM heuristic. The ML classifier also flagged this PDF as malicious with high confidence. The embedded links, such as http://xiixmcuin.linkpc.net/6207204201206207/The-Wholeness-of-Nature-Goethe-s-Way-Toward-a-Science-of-Conscious-Participation-in-Nature-by-Henri-Bortoft.pdf, are likely used to redirect users to malicious websites or download further malware. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://xiixmcuin.linkpc.net/6207204201206207/The-Wholeness-of-Nature-Goethe-s-Way-Toward-a-Science-of-Conscious-Participation-in-Nature-by-Henri-Bortoft.pdf
    • http://xiixmcuin.linkpc.net/2206207205200208/Your-Brain-On-Nature-The-Science-of-Nature-s-Influence-on-Your-Health-Happiness-and-Vitality-by-Eva-M-Selhub.pdf
    • http://xiixmcuin.linkpc.net/3204201205204202/Beyond-Ecophobia-Reclaiming-the-Heart-in-Nature-Education-Nature-Literacy-Series-Vol-1-Nature-Literacy-by-David-Sobel.pdf
    • http://xiixmcuin.linkpc.net/5200201200/The-Nature-Fix-Why-Nature-Makes-Us-Happier-Healthier-and-More-Creative-by-Florence-Williams.pdf
    • http://xiixmcuin.linkpc.net/5200203200202205/Bound-By-Nature-Forces-of-Nature-1-by-Cooper-Davis.pdf
    • http://xiixmcuin.linkpc.net/3206204206206205/Just-A-Theory-Exploring-The-Nature-Of-Science-by-Mordechai-Ben-Ari.pdf
    • http://xiixmcuin.linkpc.net/4203205205202209/The-Rebirth-of-Nature-The-Greening-of-Science-and-God-by-Rupert-Sheldrake.pdf
    • http://xiixmcuin.linkpc.net/3205206206207208/The-Best-American-Science-and-Nature-Writing-2012-by-Dan-Ariely.pdf
    • http://xiixmcuin.linkpc.net/6201205209202208/The-Best-American-Science-and-Nature-Writing-2014-by-Deborah-Blum.pdf
    • http://xiixmcuin.linkpc.net/1208207202205/Science-Under-Siege-The-Politician-s-War-on-Nature-and-Truth-by-Todd-Wilkinson.pdf
    • http://xiixmcuin.linkpc.net/7203200203203201/Man-Beast-and-Zombie-What-Science-Can-and-Cannot-Tell-Us-about-Human-Nature-by-Kenan-Malik.pdf
    • http://xiixmcuin.linkpc.net/9205201207202201/The-Best-American-Science-and-Nature-Writing-2017-by-Hope-Jahren.pdf
    • http://xiixmcuin.linkpc.net/1201206201201200204/The-Best-American-Science-and-Nature-Writing-2007-by-Richard-Preston.pdf
    • http://xiixmcuin.linkpc.net/1205209206207/The-Language-of-Nature-An-Essay-in-the-Philosophy-of-Science-by-David-Hawkins.pdf
    • http://xiixmcuin.linkpc.net/1201202203202201201/Humanity-and-Nature-Ecology-Science-and-Society-by-Yrj-Haila.pdf
    • http://xiixmcuin.linkpc.net/1200205206200206/The-Flight-of-the-Iguana-A-Sidelong-View-of-Science-and-Nature-by-David-Quammen.pdf
    • http://xiixmcuin.linkpc.net/4204209203203/Naming-Nature-The-Clash-Between-Instinct-and-Science-by-Carol-Kaesuk-Yoon.pdf
    • http://xiixmcuin.linkpc.net/7201207207208201/A-Bedside-Nature-Genius-and-Eccentricity-in-Science-1869-1953-by-Walter-Gratzer.pdf
    • http://xiixmcuin.linkpc.net/1207208209205201/The-Whole-Story-of-Climate-What-Science-Reveals-About-the-Nature-of-Endless-Change-by-E-Kirsten-Peters.pdf
    • http://xiixmcuin.linkpc.net/3206204208202206/Primate-Visions-Gender-Race-and-Nature-in-the-World-of-Modern-Science-by-Donna-J-Haraway.pdf
    • http://xiixmcuin.linkpc.net/3204201205204202/Beyond-Ecophobia-Reclaiming-the-He