Malicious PDF — malware analysis report

Static analysis result for SHA-256 8cfe182dd811f273…

MALICIOUS

PDF

22.6 KB Created: 2019-05-01 19:35:42 +01:00 Authoring application: mPDF 5.7 First seen: 2019-06-27
MD5: a0680e968cde5e676364e8ce2e3fc995 SHA-1: 7085f7a17f25762406dbf097024a3685a4bbbfb0 SHA-256: 8cfe182dd811f2735dd3008a1bdf1c3c3991402e5847e27575a8409c92f036bb
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded external links, as indicated by the PDF_SEO_LINK_FARM heuristic. The ML_NYX_PDF_MALICIOUS heuristic also flagged the file with high confidence. The embedded URLs point to a domain that appears to be used for distributing content, potentially malicious, under the guise of book titles. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9903

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://kiteeearpdf.myhome.cx/9f216f210f211f210f214/Your-Life-Your-Money-Your-Choice-Spend-it-Wisely-by-Steve-Gehrmann.pdf In PDF document text
    • http://kiteeearpdf.myhome.cx/9f216f210f213f211f218/Your-Life-Your-Money-Your-Choice-Spend-It-Wisely-by-Steve-Gehrmann.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/2f215f212f212f218f219/The-Soul-of-Money-Transforming-Your-Relationship-with-Money-and-Life-by-Lynne-Twist.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/1f211f213f210f211f210f211/Clark-Howard-s-Living-Large-in-Lean-Times-250-Ways-to-Buy-Smarter-Spend-Smarter-and-Save-Money-by-Clark-Howard.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/1f210f213f215f215f214f215/The-Soul-and-Money-by-Jeremias-Gotthelf-Tr-by-G-Vere---Scholar-s-Choice-Edition-by-Albert-Bitzius.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/5f219f218f212f219/Life-Is-a-Choice-A-Guide-to-Success-in-Life-by-David-Washington.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/7f217f212f214f216/America-s-Cheapest-Family-Gets-You-Right-on-the-Money-Your-Guide-to-Living-Better-Spending-Less-and-Cashing-in-on-Your-Dreams-by-Steve-Economides.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/5f211f215f211f215f211/Economics-for-Life-An-economist-reflects-on-the-meaning-of-life-money-and-what-really-matters-by-Ian-Harper.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/1f219f217f210f215f212/Set-for-Life-Dominate-Life-Money-and-the-American-Dream-by-Scott-Trench.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/9f210f213f210f219/Options-The-Secret-Life-of-Steve-Jobs-by-Fake-Steve-Jobs.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/4f212f213f218f213f213/The-Red-Bandanna-A-Life-A-Choice-A-Legacy-by-Tom-Rinaldi.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/8f210f218f215f210f210/Jake-s-Choice-To-Save-a-Life-2-by-Jim-Britts.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/9f218f212f219f216/Men-Money-and-Chocolate-What-more-could-there-be-to-life-by-Menna-van-Praag.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/8f211f212f216f213f216/Worth-It-Your-Life-Your-Money-Your-Terms-by-Amanda-Steinberg.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/1f219f210f214f219f217/Life-In-Spite-of-Me-Extraordinary-Hope-After-a-Fatal-Choice-by-Kristen-Jane-Anderson.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/6f217f215f219f219/Life-In-Spite-of-Me-Extraordinary-Hope-After-a-Fatal-Choice-by-Kristen-Jane-Anderson.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/6f210f211f218f210f215/Your-Money-or-Your-Life-The-Tyranny-of-Global-Finance-by-Eric-Toussaint.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/4f219f212f219f218f214/Healing-Is-a-Choice-10-Decisions-That-Will-Transform-Your-Life-and-10-Lies-That-Can-Prevent-You-From-Making-Them-by-Stephen-Arterburn.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/1f216f211f216f217f211/The-Plain-Choice-A-True-Story-of-Choosing-to-Live-an-Amish-Life-by-Sherry-Gore.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/5f218f218f217f217/In-Search-Of-The-Excellent-Self-Personal-Health-And-Integrity-As-A-Guide-To-A-Life-Of-Choice-by-Carl-A-Flecker.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/5f219f218f2In PDF document text