Malicious PDF — malware analysis report

Static analysis result for SHA-256 6d718d10f0ad7ad7…

MALICIOUS

PDF

17.0 KB Created: 2019-04-30 04:07:10 +01:00 Authoring application: mPDF 5.7
MD5: 033e02a3bc432d0b29b61f91a1de48cd SHA-1: 7cc028b265e2c0fed6be1c4d8635b885c628b84c SHA-256: 6d718d10f0ad7ad7b1422cf4fed7e20a0d714fa3f3e45daef54cb1c508f3ad55
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links pointing to SEO-optimized PDF files on the domain 'muicuiu.dumb1.com'. This technique is often used to drive traffic to malicious or low-quality content, potentially as a precursor to further exploitation or to host phishing lures. The ML classifier also flagged this PDF as malicious.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9925

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/9a07a00a09a00a04/The-Illuminati-The-Ultimate-Illuminati-Guide-With-All-You-Need-to-Know-About-the-Illuminati-and-Its-Best-Conspiracies-by-Jack-Porter.pdf
    • http://muicuiu.dumb1.com/1a01a00a05a00a05/OBAMA-INVENTED-EBOLA-The-Illuminati-Truth-100-by-Mr-ILLUMINATI-The-Tinfoil-Hat-Wearer.pdf
    • http://muicuiu.dumb1.com/9a07a00a09a00a00/Illuminati-4-by-Joshua-Williamson.pdf
    • http://muicuiu.dumb1.com/9a07a00a09a07a00/Illuminati-5-by-Joshua-Williamson.pdf
    • http://muicuiu.dumb1.com/9a07a00a06a06a05/Illuminati-1-by-Joshua-Williamson.pdf
    • http://muicuiu.dumb1.com/9a07a00a09a07a01/Illuminati-7-by-Joshua-Williamson.pdf
    • http://muicuiu.dumb1.com/9a07a00a09a07a03/The-Illuminati-Phalanx-by-Adam-Weishaupt.pdf
    • http://muicuiu.dumb1.com/9a07a00a08a08a06/The-Illuminati-Protocol-by-Robert-J-Ristino.pdf
    • http://muicuiu.dumb1.com/9a07a00a05a06a03/Proof-of-the-Illuminati-by-Seth-Payson.pdf
    • http://muicuiu.dumb1.com/9a07a00a06a05a03/Cloak-of-the-Illuminati-by-William-Henry.pdf
    • http://muicuiu.dumb1.com/9a07a00a08a02a05/Illuminati-in-the-Music-Industry-by-Mark-Dice.pdf
    • http://muicuiu.dumb1.com/9a07a00a06a06a03/Illuminati-2-Deceit-and-Seduction-by-Henry-Makow.pdf
    • http://muicuiu.dumb1.com/9a07a00a08a02a06/The-Illuminati-s-Six-Dimensional-Universe-by-Adam-Weishaupt.pdf
    • http://muicuiu.dumb1.com/4a06a01a03a08a01/Illuminati-Papers-by-Robert-Anton-Wilson.pdf
    • http://muicuiu.dumb1.com/9a07a00a08a09a04/The-Anunnaki-Illuminati-Nemesis-by-Joan-Adamak.pdf
    • http://muicuiu.dumb1.com/9a07a00a08a02a04/Dark-Angel-Illuminati-2-by-Jane-West.pdf
    • http://muicuiu.dumb1.com/9a07a00a08a08a08/Illuminati---A-New-American-Religion-by-Matthew-Stanley.pdf
    • http://muicuiu.dumb1.com/9a04a08a02a08/Illuminati-The-Cult-That-Hijacked-the-World-by-Henry-Makow.pdf
    • http://muicuiu.dumb1.com/9a07a00a06a05a05/The-Illuminati-The-Secret-Society-That-Hijacked-the-World-by-Jim-Marrs.pdf
    • http://muicuiu.dumb1.com/9a07a00a06a06a06/Deeper-Insights-into-the-Illuminati-Formula-by-Fritz-Springmeier.pdf