Malicious PDF — malware analysis report

Static analysis result for SHA-256 731a0324625f7931…

MALICIOUS

PDF

20.9 KB Created: 2020-02-13 22:00:38 +00:00 Authoring application: mPDF 5.7
MD5: 2f446e0865cf7643e8c9dc0671c78b66 SHA-1: 402b11b2661b4be216d66c57404f60e4ea0f749e SHA-256: 731a0324625f793117e13d1da9a617736e6eac004ff43243ed442aab2c14911b
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

This PDF file contains a large number of embedded URLs pointing to external PDF documents, indicative of a link farm or SEO poisoning attack. The ML classifier also flagged this file as malicious with high confidence. The primary purpose appears to be directing users to a malicious domain, likely for further exploitation or to serve malicious content.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9942

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://weisncio.myhome.cx/6623623627622629/The-Count-of-Monte-Cristo-Inti-Classics-Annotated-by-Alexandre-Dumas-p-re-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/6627622627623620/Grof-Monte-Kristo-II-The-Count-Of-Monte-Cristo-part-2-of-3-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/1621627626624620628/The-Works-of-Alexandre-Dumas-Vol-2-of-30-The-Count-Of-Monte-Cristo-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/1620629628620625627/The-Count-of-Monte-Cristo-By-Alexandre-Dumas---Rank-30-Of-100-100-Formatted-Wordwise-Enabled-Active-TOC-Active-Footnotes-Illustrated--JKL-Classics-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/5622628627622629/The-Count-of-Monte-Cristo-Vol-4-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/6620627624627628/The-Count-of-Monte-Cristo-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/5624627625620621/The-Count-of-Monte-Cristo-Alexandre-Dumas-by-Rob-Nudds.pdf
    • http://weisncio.myhome.cx/5627624620623620/The-Count-Of-Monte-Cristo-Original-Version-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/7626625624627624/The-Count-of-Monte-Cristo-and-3-similar-type-of-works-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/8621627620629622/The-Count-of-Monte-Cristo-Annotated-with-short-biography-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/5626624627621625/The-Count-of-Monte-Cristo-New-Edition-With-Active-Table-Of-Contents-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/9620629621629621/The-Count-of-Monte-Cristo-Great-Illustrated-Classics-D224-28-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/1621628627620623626/The-Count-of-Monte-Cristo-Abridged-Edition-Dover-Books-on-Literature-amp-Drama-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/5623621622626625/The-Count-of-Monte-Cristo-Audiobook-Twenty-Thousand-Leagues-Under-the-Sea-The-Moonstone-The-Prince-and-the-Pauper-Ivanhoe-amp-Alice-s-Adventures-in-Wonderland-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/5625626627620620/Le-Comte-de-Monte-Cristo-oeuvre-complete-annot-e-par-Alexandre-Dumas-p-re-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/6627622626625620/THE-COUNTESS-OF-MONTE-CRISTO-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/4625626627623/Le-Comte-de-Monte-Cristo-I-Le-Comte-de-Monte-Cristo-1-of-2-by-Alexandre-Dumas.pdf
    • http://weisncio.myhome.cx/5620623627622628/The-Count-of-Monte-Cristo-Wild-and-Wanton-3-by-Monica-Corwin.pdf
    • http://weisncio.myhome.cx/5620623627622627/The-Count-of-Monte-Cristo-Wild-and-Wanton-2-by-Monica-Corwin.pdf
    • http://weisncio.myhome.cx/9623627624629624/Der-Graf-von-Monte-Christo-Gesamtausgabe-in-6-B-nden-Abenteuer-Klassiker-by-Alexandre-Dumas.pdf