Malicious PDF — malware analysis report

Static analysis result for SHA-256 9c200a94408cb660…

MALICIOUS

PDF

21.2 KB Created: 2020-02-10 13:03:13 +00:00 Authoring application: mPDF 5.7
MD5: 9733d1a52acf3188b4fc8d55b86e3879 SHA-1: 98192b09d7276859c3d69f04e8aab43f1194e20a SHA-256: 9c200a94408cb660d363a57e31f0b4741bcba47505d398c5e0550251b5773fcd
90 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The PDF file contains a large number of embedded links pointing to external PDF documents on the domain 'ieuicufioao.myhome.cx'. This behavior is indicative of a link farm or a redirection scheme designed to drive traffic to potentially malicious content. The ML classifier strongly supports the malicious verdict.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://ieuicufioao.myhome.cx/1554558553551553/Body-Movers-Body-Movers-1-by-Stephanie-Bond.pdf
    • http://ieuicufioao.myhome.cx/1554558552559553/2-Bodies-for-the-Price-of-1-Body-Movers-2-by-Stephanie-Bond.pdf
    • http://ieuicufioao.myhome.cx/2557550557555550/6-Killer-Bodies-Body-Movers-6-by-Stephanie-Bond.pdf
    • http://ieuicufioao.myhome.cx/2557558559552557/Body-Guard-by-Stephanie-James.pdf
    • http://ieuicufioao.myhome.cx/6558550553552/The-Body-Keeps-the-Score-Brain-Mind-and-Body-in-the-Healing-of-Trauma-by-Bessel-A-van-der-Kolk.pdf
    • http://ieuicufioao.myhome.cx/6557556559550558/Crafting-the-Body-Divine-Ritual-Movement-and-Body-Art-by-Yasmine-Galenorn.pdf
    • http://ieuicufioao.myhome.cx/8557555554559559/The-Body-Wars-Why-body-dissatisfaction-is-at-epidemic-proportions-and-how-we-can-fight-back-by-Aric-Sigman.pdf
    • http://ieuicufioao.myhome.cx/2555556557551552/The-Body-Book-The-Law-of-Hunger-the-Science-of-Strength-and-Other-Ways-to-Love-Your-Amazing-Body-by-Cameron-D-az.pdf
    • http://ieuicufioao.myhome.cx/2556557556551550/Every-Body-Yoga-Let-Go-of-Fear-Get-On-the-Mat-Love-Your-Body-by-Jessamyn-Stanley.pdf
    • http://ieuicufioao.myhome.cx/2556550554550556/Beautiful-Flesh-A-Body-of-Essays-by-Stephanie-G-39-Schwind.pdf
    • http://ieuicufioao.myhome.cx/7552550551558558/Body-and-Body-Functions-by-Judith-Dompierre.pdf
    • http://ieuicufioao.myhome.cx/9558556551557557/Body-Language---Read-and-Understand-Body-Language-by-Body-Language-Guru.pdf
    • http://ieuicufioao.myhome.cx/7550550552555550/So-Stressed-Regain-Your-Peace-of-Mind-and-Heal-the-Destructive-Effects-of-Stress-on-Your-Body-by-Stephanie-McClellan.pdf
    • http://ieuicufioao.myhome.cx/4559554553557552/Love-Your-Body-Love-Your-Life-5-Steps-to-End-Negative-Body-Obsession-and-Start-Living-Happily-and-Confidently-by-Sarah-Maria.pdf
    • http://ieuicufioao.myhome.cx/2550556557554559/Body-of-Law-Body-of-Law-1-by-Amanda-Lance.pdf
    • http://ieuicufioao.myhome.cx/7552555557555/Natural-Body-Detox-How-To-Naturally-Cleanse-And-Detox-Your-Body-by-Laura-Serio.pdf
    • http://ieuicufioao.myhome.cx/4559553551551558/Body-Clutter-Love-Your-Body-Love-Yourself-by-Marla-Cilley.pdf
    • http://ieuicufioao.myhome.cx/1550554551559552550/Rethinking-Aesthetics-The-Role-of-Body-in-Design-The-Role-of-Body-in-Design-by-Ritu-Bhatt.pdf
    • http://ieuicufioao.myhome.cx/4552558557557554/The-Body-Finder-The-Body-Finder-1-by-Kimberly-Derting.pdf
    • http://ieuicufioao.myhome.cx/3553553559559/The-Body-Finder-The-Body-Finder-1-by-Kimberly-Derting.pdf
    • http://ieuicufioao.myhome.cx/2555556557551552/The-Body-Book-The-Law-of