Malicious PDF — malware analysis report

Static analysis result for SHA-256 8ab586b398008164…

MALICIOUS

PDF

20.6 KB Created: 2020-03-20 11:22:11 +00:00 Authoring application: mPDF 5.7
MD5: db7594b80734f116806f18089b23c9d6 SHA-1: 7aebf7e0729e4a8f145503bc54237272716268a3 SHA-256: 8ab586b398008164df2017e662f8d49548445bb4fa2494c597ccdf5f2de43930
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF file was flagged by a machine learning classifier as malicious and contains a large number of embedded links, identified as a PDF SEO link farm. These links, such as http://ieuicufioao.myhome.cx/4553552554557559/The-Last-of-the-Doughboys-The-Forgotten-Generation-and-Their-Forgotten-World-War-by-Richard-Rubin.pdf, likely serve to redirect users to malicious websites or phishing pages. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9924

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://ieuicufioao.myhome.cx/4553552554557559/The-Last-of-the-Doughboys-The-Forgotten-Generation-and-Their-Forgotten-World-War-by-Richard-Rubin.pdf
    • http://ieuicufioao.myhome.cx/3556558554558553/The-Last-of-the-Doughboys-The-Forgotten-Generation-and-Their-Forgotten-World-War-by-Richard-Rubin.pdf
    • http://ieuicufioao.myhome.cx/8555559558557552/The-Last-of-the-Doughboys-The-Forgotten-Generation-and-Their-Forgotten-World-War-by-Richard-Rubin.pdf
    • http://ieuicufioao.myhome.cx/6554558551555/Forgotten-Hollywood-Forgotten-History-by-Manny-Pacheco.pdf
    • http://ieuicufioao.myhome.cx/2557559556555555/Forgotten-Self-Forgotten-Self-1-by-Rachel-Carr.pdf
    • http://ieuicufioao.myhome.cx/1551551556559558557/Forgotten-Realms-Deities-List-of-Forgotten-Realms-Characters-List-of-Forgotten-Realms-Deities-Giant-Deities-Lolth-Elf-Deities-Tiamat-by-Source-Wikipedia.pdf
    • http://ieuicufioao.myhome.cx/3556551557559557/The-Confession-of-Saint-Patrick-by-St-Patrick.pdf
    • http://ieuicufioao.myhome.cx/2551551552555557/The-Journals-of-Patrick-Gass-Member-of-the-Lewis-and-Clark-Expedition-by-Patrick-Gass.pdf
    • http://ieuicufioao.myhome.cx/3553551556550557/The-River-Is-Home-And-Angel-City-a-Patrick-Smith-Reader-by-Patrick-D-Smith.pdf
    • http://ieuicufioao.myhome.cx/3550559553551551/Patrick-O-Connell-s-Refined-American-Cuisine-The-Inn-at-Little-Washington-by-Patrick-O-39-Connell.pdf
    • http://ieuicufioao.myhome.cx/2555555557550553/Inside-Lincoln-s-Army-The-Diary-of-Marsena-Rudolph-Patrick-by-Marsena-Rudolph-Patrick.pdf
    • http://ieuicufioao.myhome.cx/1552558556552556/The-Collected-Poems-of-Patrick-Lane-by-Patrick-Lane.pdf
    • http://ieuicufioao.myhome.cx/6559557557559557/Patrick-Jourdain-s-Problem-Corner-by-Patrick-Jourdain.pdf
    • http://ieuicufioao.myhome.cx/2559558550558550/Neil-Patrick-Harris-Choose-Your-Own-Autobiography-by-Neil-Patrick-Harris.pdf
    • http://ieuicufioao.myhome.cx/7559552553557551/More-Dashing-Further-Letters-of-Patrick-Leigh-Fermor-by-Patrick-Leigh-Fermor.pdf
    • http://ieuicufioao.myhome.cx/1552555558551551/The-Forgotten-by-M-Stringfield.pdf
    • http://ieuicufioao.myhome.cx/7552552551557553/Forgotten-by-Anthony-Izzo.pdf
    • http://ieuicufioao.myhome.cx/1559555551552557/The-Forgotten-Sin-Purifiers-1-by-M-B-Coit.pdf
    • http://ieuicufioao.myhome.cx/2556554559553550/All-Is-Not-Forgotten-by-Wendy-Walker.pdf
    • http://ieuicufioao.myhome.cx/1551558552558559/Forgotten-Treasures-by-B-M-Killaire.pdf
    • http://ieuicufioao.myhome.cx/1551551556559558557/Forgotten-Realms-Deities-List-of-Forgotten-Realms-Characters-List-of-Forgotten-Realms-Deities-Giant-Deities-Lolth-Elf-Deities-Tiamat