Malicious PDF — malware analysis report

Static analysis result for SHA-256 9410e4e0aa3c5547…

MALICIOUS

PDF

114.6 KB Created: 2022-09-09 11:38:23 +00:00 Authoring application: kealwebs (via PDF Master 1.0.1) First seen: 2026-06-12
MD5: 7fb089d196195f94768b29e72baa5829 SHA-1: ca02cf54e2ebec13f42983e8039258b9ed70c790 SHA-256: 9410e4e0aa3c5547f8552f3d1ac82775efbf835d9aa91fcec92d1cfe07a244f3
74 Risk Score

Machine Learning

  • Nyx PDF Classifier clean score 0.0202

Heuristics 4

  • Password-protected archive handoff high SE_PASSWORD_ARCHIVE_LURE
    Document gives password instructions for an archive or attachment — often used to keep payloads encrypted until after gateway scanning
  • PDF link farm advertises cracked/pirated software medium PDF_CRACKED_SOFTWARE_LURE
    PDF contains many clickable links whose targets use cracked-software, keygen, serial-key, or warez vocabulary. These are SEO-spam lure documents that rank for software-piracy searches and route users to fake 'crack' download pages distributing potentially-unwanted programs, adware, or droppers. The PDF itself carries no exploit — the risk is the linked destinations.
  • External URI info PDF_URI
    PDF contains an external URL action
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://awarefinance.com/easygoing?expats=feasters&windchime=malnutrition.upetha.RmlsZUxvY2F0b3IgUHJvIDguNSBCdWlsZCAyOTQ0IENyYWNrIFtMYXRlc3RdIDIwMjARml&ZG93bmxvYWR8b3MxTjJSck5IeDhNVFkyTWpZNE1ETTVNSHg4TWpVNE4zeDhLRTBwSUVobGNtOXJkU0JiUm1GemRDQkhSVTVk=amphibians PDF link annotation
    • http://topfleamarket.com/?p=79351In PDF document text
    • https://bustedrudder.com/advert/gta-iv-data4-cab-rar-statusmeldungen-reklame-4-12-6-words-high-quality/In PDF document text
    • https://blu-realestate.com/password-sleepingmen-com-full/In PDF document text
    • https://libreriaguillermo.com/wp-content/uploads/2022/09/ryddcos.pdfIn PDF document text
    • https://youngindialeadership.com/en/top-download-buku-pengantar-pendidikan-pdf/In PDF document text
    • http://www.studiofratini.com/kelyje-2-crack-parsisiusti-skype-best/In PDF document text
    • https://captainseduction.fr/wp-content/uploads/2022/09/la_ragazza_delle_arance_pdf.pdfIn PDF document text
    • https://turn-key.consulting/2022/09/09/idm-version-6-11-final-build-8-crack-free-new-download/In PDF document text
    • https://cadorix.ro/wp-content/uploads/2022/09/Material_Science_Metallurgy_Pakirappa_Book_Free_Download_Pdf.pdfIn PDF document text
    • https://floating-taiga-82930.herokuapp.com/vcarve_pro_6_0_keygen_11.pdfIn PDF document text
    • https://turn-key.consulting/wp-content/uploads/2022/09/Visualgdb_Full_Version.pdfIn PDF document text
    • https://budgetparticipatifnivernais.fr/wp-content/uploads/2022/09/Gfx_Boot_Customizer_V1007.pdfIn PDF document text
    • https://fast-bastion-68106.herokuapp.com/danell.pdfIn PDF document text
    • https://www.tiempodejujuy.com.ar/advert/call-of-duty-modern-warfare-2-download-full-torent-tpb-pc/In PDF document text
    • https://ancient-waters-45795.herokuapp.com/sony_vaio_bios_one_time_password_generatorrar.pdfIn PDF document text
    • https://arteshantalnails.com/2022/09/09/gta-san-andreas-trabzon-city-2-tayfun-key-rar/In PDF document text
    • http://xn----btbbblceagw8cecbb8bl.xn--p1ai/tuneskit-crack-extra-quality/In PDF document text
    • http://psychomotorsports.com/?p=63965In PDF document text
    • https://still-brook-09471.herokuapp.com/Wwe_Smackdown_Vs_Raw_2013_Ps2_Iso.pdfIn PDF document text
    • https://swapandsell.net/2022/09/09/l2007-mastering-limiter-crack-_best_-co/In PDF document text
    • https://bustedrudder.com/advert/gta-iv-data4-cab-rar-statusmeldungen-reklame-4-12-6-words-high-In PDF document text
    • https://cadorix.ro/wp-In PDF document text
    • http://www.tcpdf.orgIn PDF document text
    • http://www.w3.org/1999/02/22-rdf-syntax-ns#In PDF document text
    • http://purl.org/dc/elements/1.1/In PDF document text
    • http://ns.adobe.com/xap/1.0/In PDF document text
    • http://ns.adobe.com/pdf/1.3/In PDF document text
    • http://ns.adobe.com/xap/1.0/mm/In PDF document text
    • http://www.aiim.org/pdfa/ns/extension/In PDF document text
    • http://www.aiim.org/pdfa/ns/schema#In PDF document text
    • http://www.aiim.org/pdfa/ns/property#In PDF document text
    • http://www.aiim.org/pdfa/ns/id/In PDF document text