Malicious PDF — malware analysis report

Static analysis result for SHA-256 9d48b70bbbdb7a51…

MALICIOUS

PDF

20.1 KB Created: 2020-03-15 09:46:41 +00:00 Authoring application: mPDF 5.7
MD5: 085ed5090d7f4684bacf71fa4df57155 SHA-1: 85dcd85fbb82203b19f73f3e53c8aac8fa0793ba SHA-256: 9d48b70bbbdb7a5197b3ff9a35e5ec06de0df939acf683f4cebdb1785e0a04b3
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious File

The PDF contains a large number of embedded URLs pointing to external sites, a technique often used for SEO poisoning or to redirect users to malicious content. The ML classifier strongly flagged this PDF as malicious. The embedded URLs likely serve as a lure to download further malicious payloads or to engage in phishing activities.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9942

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://tanceubio.myhome.cx/13d73d33d83d93d2/The-Ultimate-Hitchhiker-s-Guide-Five-Complete-Novels-and-One-Story-Hitchhiker-s-Guide-to-the-Galaxy-1-5-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/83d13d73d23d53d2/The-Ultimate-Hitchhiker-s-Guide-to-the-Galaxy-Hitchhiker-s-Guide-1-5-short-story-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/73d03d93d43d9/The-Hitchhiker-s-Guide-to-the-Galaxy-The-Trilogy-of-Four-Hitchhiker-s-Guide-1-4-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/83d73d13d43d63d6/The-Hitchhiker-s-Guide-to-the-Galaxy-Hitchhiker-s-Guide-to-the-Galaxy-1-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/53d93d43d43d63d0/The-Hitchhiker-s-Guide-to-the-Galaxy-Hitchhiker-s-Guide-to-the-Galaxy-1-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/13d33d33d43d43d7/The-Hitchhiker-s-Guide-to-the-Galaxy-Hitchhiker-s-Guide-to-the-Galaxy-1-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/33d73d73d23d73d0/The-Hitchhiker-s-Guide-To-The-Galaxy-Hitchhiker-s-Guide-to-the-Galaxy-1-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/13d83d73d03d33d2/The-Hitchhiker-s-Guide-to-the-Galaxy-Hitchhiker-s-Guide-to-the-Galaxy-1-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/13d03d93d03d03d73d5/The-Lost-Chapters-of-the-Hitchhikers-Guide-to-the-Galaxy-Hitchhiker-s-Guide-to-the-Galaxy-1-1-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/53d33d93d93d83d2/The-Hitchhiker-s-Guide-to-the-Galaxy-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/93d43d33d63d2/The-Restaurant-at-the-End-of-the-Universe-Hitchhiker-s-Guide-to-the-Galaxy-2-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/33d23d63d83d6/The-Restaurant-at-the-End-of-the-Universe-Hitchhiker-s-Guide-to-the-Galaxy-2-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/33d23d83d23d5/Life-the-Universe-and-Everything-Hitchhiker-s-Guide-to-the-Galaxy-3-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/83d83d43d03d03d6/The-Hitchhiker-s-Guide-to-the-Hitchhiker-s-Guide-to-the-Galaxy-by-Eoin-Colfer.pdf
    • http://tanceubio.myhome.cx/43d73d93d33d23d6/Mostly-Harmless-Hitchhiker-s-Guide-5-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/73d93d53d83d53d0/Mostly-Harmless-Hitchhiker-s-Guide-5-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/43d73d73d73d33d3/Life-the-Universe-and-Everything-Hitchhiker-s-Guide-3-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/43d73d73d73d43d7/So-Long-and-Thanks-for-All-the-Fish-Hitchhiker-s-Guide-4-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/23d53d73d03d23d5/So-Long-and-Thanks-for-All-the-Fish-Hitchhiker-s-Guide-4-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/43d83d03d33d63d1/The-Restaurant-at-the-End-of-the-Universe-Hitchhiker-s-Guide-2-by-Douglas-Adams.pdf
    • http://tanceubio.myhome.cx/13d33d33d43d43d7/The-Hitchhiker-s-Guide-to-the-Galaxy-Hitchhiker-s-Guide-to-the-Galaxy-1-by-D