Malicious PDF — malware analysis report

Static analysis result for SHA-256 946ea8e9df248b60…

MALICIOUS

PDF

22.5 KB Created: 2020-03-14 01:52:30 +00:00 Authoring application: mPDF 5.7
MD5: 23e7b938a7676c0b83b29bcefc16934b SHA-1: a69ae73d6a15941b6952023e5a4b2b836328bced SHA-256: 946ea8e9df248b60485d500f8374a21435715be02b0285e954c76338e5be2e60
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF file was flagged by a machine learning classifier as malicious. Static analysis revealed a PDF_SEO_LINK_FARM heuristic firing, indicating the presence of a large number of embedded external links. These links, such as http://peldoaio.myhome.cx/33d73d03d13d53d2/To-Die-Daily-That-the-life-and-power-of-Christ-abides-continually-True-Life-1-by-C-J-Cutrone-II.pdf, are likely used to redirect users to malicious websites or download further malware. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9903

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://peldoaio.myhome.cx/33d73d03d13d53d2/To-Die-Daily-That-the-life-and-power-of-Christ-abides-continually-True-Life-1-by-C-J-Cutrone-II.pdf
    • http://peldoaio.myhome.cx/63d53d63d13d23d8/Women-of-Purpose-A-Daily-Devotional-for-Discovering-a-Meaningful-Life-in-Christ-by-Sara-Daigle.pdf
    • http://peldoaio.myhome.cx/93d33d43d03d63d4/The-Positive-Power-of-Jesus-Christ-Life-Changing-Adventures-in-Faith-by-Norman-Vincent-Peale.pdf
    • http://peldoaio.myhome.cx/13d83d83d43d83d6/Daily-Grace-for-Daily-Life-Encouragement-for-Women-by-Anita-Higman.pdf
    • http://peldoaio.myhome.cx/13d63d93d43d33d2/Courage-Companion-How-to-Live-Life-with-True-Power-by-Nina-Lesowitz.pdf
    • http://peldoaio.myhome.cx/73d83d33d13d23d5/The-Words-and-Works-of-Jesus-Christ-A-Study-of-the-Life-of-Christ-by-J-Dwight-Pentecost.pdf
    • http://peldoaio.myhome.cx/63d03d53d83d23d3/The-Imitation-of-Christ-Admonitions-Profitable-for-the-Spiritual-Life-Admonitions-Concerning-the-Inner-Life-on-Inward-Consolation-and-of-the-Sacrament-of-the-Altar-by-Thomas-Kempis.pdf
    • http://peldoaio.myhome.cx/13d03d63d73d03d03d9/The-True-Story-of-Andersonville-Prison-A-Defense-of-Major-Henry-Wirz-The-Prisoners-and-Their-Keepers-Daily-Life-at-Prison-Execution-of-the-Raiders-the-Accusations-Against-Wirz-The-Trial-by-George-Rawlinson.pdf
    • http://peldoaio.myhome.cx/53d03d23d93d53d2/Daily-Life-of-the-Ancient-Egyptians-by-Bob-Brier.pdf
    • http://peldoaio.myhome.cx/93d63d93d93d93d0/The-Reproduction-of-Daily-Life-by-Fredy-Perlman.pdf
    • http://peldoaio.myhome.cx/93d63d23d93d13d2/Life-in-Christ-by-Margo-A-Lebert.pdf
    • http://peldoaio.myhome.cx/33d93d53d93d33d6/Daily-Life-in-the-Middle-Ages-by-Paul-B-Newman.pdf
    • http://peldoaio.myhome.cx/43d93d03d83d63d1/Daily-Life-in-Ancient-India-From-200-BC-to-700-AD-by-Jeannine-Auboyer.pdf
    • http://peldoaio.myhome.cx/33d33d83d93d63d4/Daily-Life-in-Elizabethan-England-by-Jeffrey-L-Singman.pdf
    • http://peldoaio.myhome.cx/13d03d13d93d13d2/Why-Nothing-Works-The-Anthropology-of-Daily-Life-by-Marvin-Harris.pdf
    • http://peldoaio.myhome.cx/63d33d53d83d23d9/Daily-serenity-33-universal-precepts-of-inner-life-by-Thierry-Payet.pdf
    • http://peldoaio.myhome.cx/13d03d93d83d43d33d9/Ponder-Daily-Quotes-for-an-Inspired-Life-by-Jessie-Heiler.pdf
    • http://peldoaio.myhome.cx/23d53d73d83d03d7/Daily-Life-in-Holland-in-the-Year-1566-by-Rien-Poortvliet.pdf
    • http://peldoaio.myhome.cx/33d43d63d33d43d9/The-Joy-Diet-10-Daily-Practices-for-a-Happier-Life-by-Martha-N-Beck.pdf
    • http://peldoaio.myhome.cx/83d43d33d13d23d7/My-aphrodisiac-Daily-life-to-flirt-with-five-lovers-by-YUKIMURA-Chihiro.pdf
    • http://peldoaio