Malicious PDF — malware analysis report

Static analysis result for SHA-256 782a54aa4875908f…

MALICIOUS

PDF

137.2 KB Created: 2022-07-20 02:35:10 +00:00 Authoring application: uryaxaiv (via PDF Master 1.0.1) First seen: 2026-06-16
MD5: d7827cca5c8896986e0016c9c7234b9c SHA-1: ad1700a260f9474fec708f2ff27e41888470e10b SHA-256: 782a54aa4875908f1088a214e5ba561d6893c6909609c27d9d3d4d2edab45e41
94 Risk Score

Machine Learning

  • Nyx PDF Classifier clean score 0.0005

Heuristics 4

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • PDF link farm advertises cracked/pirated software medium PDF_CRACKED_SOFTWARE_LURE
    PDF contains many clickable links whose targets use cracked-software, keygen, serial-key, or warez vocabulary. These are SEO-spam lure documents that rank for software-piracy searches and route users to fake 'crack' download pages distributing potentially-unwanted programs, adware, or droppers. The PDF itself carries no exploit — the risk is the linked destinations.
  • External URI info PDF_URI
    PDF contains an external URL action
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://godsearchs.com/litvinenko/fellas/lawhorne./ZG93bmxvYWR8TFI3WnpCc2FueDhNVFkxT0RJeU1EZzJObng4TWpVNU1IeDhLRTBwSUZkdmNtUndjbVZ6Y3lCYldFMU1VbEJESUZZeUlGQkVSbDA?reproduce=QmlvbmljIFNoaWVsZDogQmF0dGxlIGZvciBTcGFjZSBOZWJ1bGEgT21lZ2EQml PDF link annotation
    • https://www.goleisureholidays.com/wp-content/uploads/2022/07/ansperc.pdfIn PDF document text
    • http://www.perfectlifestyle.info/x-plane-11-add-on-sam-followme-hacked-download-2022/In PDF document text
    • https://blackskillset.business/wp-content/uploads/2022/07/Sam_Amp_Dan_Floaty_Flatmates_Keygen_Crack_Serial_Key___Download_Updated.pdfIn PDF document text
    • https://superstitionsar.org/deadly-hunter-vr-activation-with-registration-code/In PDF document text
    • https://media1.ambisonic.se/2022/07/Burger_Lord_Cheat_Code_For_Windows_Latest.pdfIn PDF document text
    • https://youfee.de/wp-content/uploads/2022/07/emmarau.pdfIn PDF document text
    • https://smish.me/wp-content/uploads/2022/07/Good_Pizza_Great_Pizza__Premium_Winter_Decors_2021_Install_Crack___With_License_Key.pdfIn PDF document text
    • https://youfee.de/wp-content/uploads/2022/07/Electronic_Super_Joy_2__Groove_Wizards_Tower_KeyGenerator__Free_License_Key.pdfIn PDF document text
    • https://deccan-dental.com/incremental-adventures-premium-experience-2-pack-hack-with-registration-code-free/In PDF document text
    • https://mbsr-kurse-koeln.com/2022/07/20/mini-island-cheat-code-with-keygen-win-mac/In PDF document text
    • https://h-stop.com/wp-content/uploads/2022/07/olyeuta.pdfIn PDF document text
    • https://thefpds.org/2022/07/20/rogue-dungeon-cheat-code-with-full-keygen-download-for-pc-updated-2022/In PDF document text
    • https://westghostproductions.com/wp-content/uploads/2022/07/Fantasy_Grounds__BoomsticksnThunderguns_Hacked__Torrent.pdfIn PDF document text
    • http://yotop.ru/2022/07/20/thehunter-call-of-the-wild-bearclaw-lite-compound-bow-crack-keygen-free-download-for-windows/In PDF document text
    • https://seoburgos.com/pixel-puzzles-traditional-jigsaws-hack-free-registration-code-download/In PDF document text
    • http://yogaapaia.it/archives/59790In PDF document text
    • https://frostinealps.com/wp-content/uploads/2022/07/waneoli.pdfIn PDF document text
    • https://thelifeofbat.com/wp-content/uploads/2022/07/dayheka.pdfIn PDF document text
    • https://greenearthcannaceuticals.com/wp-content/uploads/2022/07/Block_Blowout-1.pdfIn PDF document text
    • http://www.giffa.ru/who/train-simulator-obb-1044-loco-add-on-crack-keygen-serial-key-free-download-updated-2022/In PDF document text
    • http://www.perfectlifestyle.info/x-plane-11-add-on-sam-followme-hacked-In PDF document text
    • https://blackskillset.business/wp-content/uploads/2022/07/Sam_Amp_Dan_FloatIn PDF document text
    • https://media1.ambisonic.se/2022/07/Burger_Lord_Cheat_Code_For_Windows_LIn PDF document text
    • https://smish.me/wp-content/uploads/2022/07/Good_Pizza_Great_Pizza__PremiuIn PDF document text
    • https://youfee.de/wp-content/uploads/2022/07/Electronic_Super_Joy_2__GrooveIn PDF document text
    • https://deccan-dental.com/incremental-adventures-premium-experience-2-pack-In PDF document text
    • https://mbsr-kurse-koeln.com/2022/07/20/mini-island-cheat-code-with-keygen-In PDF document text
    • https://thefpds.org/2022/07/20/rogue-dungeon-cheat-code-with-full-keygen-In PDF document text
    • https://westghostproductions.com/wp-content/uploads/2022/07/Fantasy_GrounIn PDF document text
    • http://yotop.ru/2022/07/20/thehunter-call-of-the-wild-bearclaw-lite-compound-In PDF document text
    • https://seoburgos.com/pixel-puzzles-traditional-jigsaws-hack-free-registration-In PDF document text
    • https://greenearthcannaceuticals.com/wp-In PDF document text
    • http://www.giffa.ru/who/train-simulator-obb-1044-loco-add-on-crack-keygen-In PDF document text
    • http://www.tcpdf.orgIn PDF document text
    • http://www.w3.org/1999/02/22-rdf-syntax-ns#In PDF document text
    • http://purl.org/dc/elements/1.1/In PDF document text
    • http://ns.adobe.com/xap/1.0/In PDF document text
    • http://ns.adobe.com/pdf/1.3/In PDF document text
    • http://ns.adobe.com/xap/1.0/mm/In PDF document text
    • http://www.aiim.org/pdfa/ns/extension/In PDF document text
    • http://www.aiim.org/pdfa/ns/schema#In PDF document text
    • http://www.aiim.org/pdfa/ns/property#In PDF document text
    • http://www.aiim.org/pdfa/ns/id/In PDF document text