Malicious PDF — malware analysis report

Static analysis result for SHA-256 8d79944baf23c8df…

MALICIOUS

PDF

20.9 KB Created: 2019-05-02 17:42:47 +01:00 Authoring application: mPDF 5.7
MD5: d863df5b74abd5e314b0ef088f2412b5 SHA-1: b0526574837e69365a649947a0e5e62c95a01ded SHA-256: 8d79944baf23c8df34a531ecd3872fc08fb33a1668243bd1cf00b6c3a7596135
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The critical PDF_SEO_LINK_FARM heuristic indicates this PDF contains a mass of external links, with the first identified URL being http://kiteeearpdf.myhome.cx/7f213f212f216f215/American-Icon-Alan-Mulally-and-the-Fight-to-Save-Ford-Motor-Company-by-Bryce-G-Hoffman.pdf. The ML classifier also flagged this PDF with high confidence. The presence of numerous links suggests a social engineering tactic to lure users to potentially malicious websites.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9904

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://kiteeearpdf.myhome.cx/7f213f212f216f215/American-Icon-Alan-Mulally-and-the-Fight-to-Save-Ford-Motor-Company-by-Bryce-G-Hoffman.pdf
    • http://kiteeearpdf.myhome.cx/2f212f213f210f219f219/Fed-Up-Our-Fight-to-Save-America-from-Washington-by-Rick-Perry.pdf
    • http://kiteeearpdf.myhome.cx/3f216f214f213f214f217/Battle-Cry-for-a-Generation-The-Fight-to-Save-America-s-Youth-by-Ron-Luce.pdf
    • http://kiteeearpdf.myhome.cx/7f212f217f213f212f215/Marissa-Mayer-and-the-Fight-to-Save-Yahoo-by-Nicholas-Carlson.pdf
    • http://kiteeearpdf.myhome.cx/3f216f217f215f213f213/American-Jesus-How-the-Son-of-God-Became-a-National-Icon-by-Stephen-R-Prothero.pdf
    • http://kiteeearpdf.myhome.cx/3f211f215f219f215f216/Pit-Bull-The-Battle-over-an-American-Icon-by-Bronwen-Dickey.pdf
    • http://kiteeearpdf.myhome.cx/2f219f212f219f214f219/White-Spirit-Fly-Free-One-Man-s-Fight-To-Save-Britain-s-Swans-by-Pamela-Townsend.pdf
    • http://kiteeearpdf.myhome.cx/1f214f213f215f219f210/The-Grand-Ole-Opry-The-Making-of-an-American-Icon-by-Colin-Escott.pdf
    • http://kiteeearpdf.myhome.cx/4f219f210f212f217/In-the-Name-of-God-The-True-Story-of-the-Fight-to-Save-Children-from-Faith-Healing-Homicide-by-Cameron-Stauth.pdf
    • http://kiteeearpdf.myhome.cx/2f217f212f216f212f211/The-Secret-World-of-Red-Wolves-The-Fight-to-Save-North-America-s-Other-Wolf-by-T-DeLene-Beeland.pdf
    • http://kiteeearpdf.myhome.cx/3f213f214f211f219f217/Our-Native-Bees-North-America-s-Endangered-Pollinators-and-the-Fight-to-Save-Them-by-Paige-Embry.pdf
    • http://kiteeearpdf.myhome.cx/5f210f219f210f210f210/American-Nietzsche-A-History-of-an-Icon-and-His-Ideas-by-Jennifer-Ratner-Rosenhagen.pdf
    • http://kiteeearpdf.myhome.cx/3f219f214f216f219f210/Lady-on-the-Hill-How-Biltmore-Estate-Became-an-American-Icon-by-Howard-E-Covington-Jr-.pdf
    • http://kiteeearpdf.myhome.cx/7f216f219f210f219f216/Why-GM-Matters-Inside-the-Race-to-Transform-an-American-Icon-by-William-Holstein.pdf
    • http://kiteeearpdf.myhome.cx/2f211f216f213f217/The-Life-You-Save-May-Be-Your-Own-An-American-Pilgrimage-by-Paul-Elie.pdf
    • http://kiteeearpdf.myhome.cx/6f213f210f215f217f217/Gerald-R-Ford-The-American-Presidents-38-by-Douglas-Brinkley.pdf
    • http://kiteeearpdf.myhome.cx/2f212f214f219f215f219/The-Diary-of-an-American-Au-Pair-A-Novel-by-Marjorie-Leet-Ford.pdf
    • http://kiteeearpdf.myhome.cx/6f212f210f213f213f216/Proud-My-Fight-for-an-Unlikely-American-Dream-by-Ibtihaj-Muhammad.pdf
    • http://kiteeearpdf.myhome.cx/4f212f213f215f219f212/War-Against-War-The-American-Fight-for-Peace-1914-1918-by-Michael-Kazin.pdf
    • http://kiteeearpdf.myhome.cx/3f213f210f211f210f217/Just-Do-These-Few-Things-How-to-Find-and-Develop-Exceptional-Talent-Share-the-Wealth-and-Build-a-Great-Company-and-Culture-by-Jeffrey-Alan-Rowe.pdf
    • http://kiteeearpdf.myhome.cx/4f219f210f212f217/In