Malicious PDF — malware analysis report

Static analysis result for SHA-256 80bc8a698c98bc86…

MALICIOUS

PDF

20.5 KB Created: 2020-03-12 00:16:02 +00:00 Authoring application: mPDF 5.7
MD5: 55f50130999b17a1e10d30c3d9e578db SHA-1: 5741cb9337d745e0742214859b684346609887f5 SHA-256: 80bc8a698c98bc86519bba48849d3b3c7015fc86abbc4d39c7550264fac6031e
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 User Execution: Malicious File

The PDF contains a large number of embedded links to external PDF files, hosted on a suspicious domain. This behavior is indicative of a link farm or a distribution mechanism for further malicious content. The ML classifier strongly supports the malicious verdict. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9942

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://rtuninnsi.myhome.cx/66a86a56a16a26a6/Anne-of-the-Island-by-Lucy-Maud-Montgomery-Unabridged-1915-Original-Version-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/16a16a86a76a06a76a1/Anne-of-Green-Gables-the-Children-s-Classic-Novel-by-Lucy-Maud-Montgomery-Classic-Books-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/56a16a56a16a56a3/Montgomery-of-Tasmania-Henry-and-Maud-Montgomery-in-Australasia-by-Robert-Withycombe.pdf
    • http://rtuninnsi.myhome.cx/16a06a36a76a26a86a0/Empowered-by-Nature-the-Child-Heroines-in-Lucy-Maud-Montgomery-s-Novels-quot-Emily-of-New-Moon-quot-and-quot-Anne-of-Green-Gables-quot-and-The-Green-World-Archetype-by-Melanie-B-ttner.pdf
    • http://rtuninnsi.myhome.cx/86a46a66a76a56a7/Anne-of-the-Island-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/16a56a96a46a46a2/Anne-of-the-Island-Anne-of-Green-Gables-3-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/36a16a46a46a26a9/Anne-of-the-Island-Anne-of-Green-Gables-3-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/16a16a26a56a06a86a3/Anne-of-the-Island-Anne-of-Green-Gables-3-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/16a96a16a46a16a0/Anne-of-the-Island-Anne-of-Green-Gables-3-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/46a26a46a76a06a2/History-of-Joseph-Smith-by-His-Mother-Lucy-Mack-Smith-The-Unabridged-Original-Version-by-Lucy-Mack-Smith.pdf
    • http://rtuninnsi.myhome.cx/16a66a86a56a46a7/The-Memoirs-of-Field-Marshal-the-Viscount-Montgomery-of-Alamein-K-G-by-Bernard-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/36a86a46a76a66a5/Memoirs-of-Field-Marshal-Montgomery-by-Bernard-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/26a66a86a16a66a4/The-Selected-Journals-Of-L-M-Montgomery-Vol-4-1929-1935-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/76a76a76a46a46a7/Anne-des-Pignons-Verts-Anne-of-Green-Gables-French-edition-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/66a66a96a16a36a9/Anne-Tina-Hateup-H-jo-Anne-of-Green-Gables-Sundanese-Edition-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/96a56a06a36a86a5/Anne-of-Windy-Poplars-Anne-Shirley-Series-Book-4-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/66a66a66a46a5/Anne-s-House-of-Dreams-Anne-of-Green-Gables-5-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/46a36a56a96a46a8/Anne-s-House-of-Dreams-Anne-of-Green-Gables-5-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/96a56a06a36a16a8/Anne-of-Avonlea-Anne-Shirley-Series-2-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/36a26a56a56a9/Anne-of-Avonlea-Anne-of-Green-Gables-2-by-L-M-Montgomery.pdf
    • http://rtuninnsi.myhome.cx/16a06a36a76a26a86a0/Empowered-by-Nature-the-Child-Heroines-in-Lucy-Maud-Montgomery-s-Novels-quot-Emily-