Malicious PDF — malware analysis report

Static analysis result for SHA-256 9e816f127aab4a17…

MALICIOUS

PDF

19.0 KB Created: 2019-05-02 01:03:44 +01:00 Authoring application: mPDF 5.7
MD5: 9de7faa8be80ff2e27dd100e31285b95 SHA-1: ce2e93249a5185a092358a943cecc4828ece3e50 SHA-256: 9e816f127aab4a17c899b1c2a1ae6bdf4ab1c4d0ff38d36caf90e33647253c1b
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file contains a large number of embedded links to external PDF documents hosted on the domain 'muicuiu.dumb1.com'. This behavior is indicative of a link farm or a redirection mechanism, likely intended to lead users to malicious content or phishing sites. The ML classifier also strongly flagged this PDF as malicious.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/5a06a05a04a06a08/The-Poudre-A-Photo-History-by-Stanley-R-Case.pdf
    • http://muicuiu.dumb1.com/5a06a05a04a02a04/The-Men-from-the-Poudre-Canyon-Poudre-Canyon-Saga-3-by-Dave-P-Fisher.pdf
    • http://muicuiu.dumb1.com/1a00a01a03a09a02a00/The-Case-of-the-Fiery-Fingers-by-Erle-Stanley-Gardner.pdf
    • http://muicuiu.dumb1.com/5a01a08a04a00/The-Mysterious-Case-of-the-Allbright-Academy-by-Diane-Stanley.pdf
    • http://muicuiu.dumb1.com/8a02a05a05a01a04/The-Case-of-the-Substitute-Face-by-Erle-Stanley-Gardner.pdf
    • http://muicuiu.dumb1.com/1a08a07a01a05a06/The-Case-of-the-Angry-Mourner-by-Erle-Stanley-Gardner.pdf
    • http://muicuiu.dumb1.com/9a00a05a00a03a04/The-Case-of-the-Careless-Kitten-by-Erle-Stanley-Gardner.pdf
    • http://muicuiu.dumb1.com/8a06a03a05a03a01/The-Case-of-the-Restless-Redhead-by-Erle-Stanley-Gardner.pdf
    • http://muicuiu.dumb1.com/4a09a02a06a02a08/The-Case-of-the-Mischievous-Doll-by-Erle-Stanley-Gardner.pdf
    • http://muicuiu.dumb1.com/1a01a06a04a04a02a08/The-Horten-Ho-9-A-Photo-History-by-David-Myhra.pdf
    • http://muicuiu.dumb1.com/4a04a09a02a05a08/The-Case-Of-The-Phantom-Fortune-Perry-Mason-Mysteries-by-Erle-Stanley-Gardner.pdf
    • http://muicuiu.dumb1.com/4a04a06a03a05a02/The-Pawprints-of-History-Dogs-and-the-Course-of-Human-Events-by-Stanley-Coren.pdf
    • http://muicuiu.dumb1.com/9a09a09a05a03/Inventing-Stanley-Park-An-Environmental-History-by-Sean-Kheraj.pdf
    • http://muicuiu.dumb1.com/7a07a08a02a05a07/Geisha-A-Photographic-History-1872-1912-by-Stanley-B-Burns.pdf
    • http://muicuiu.dumb1.com/3a08a03a07a03a09/God-Honor-Fatherland-A-Photo-History-of-Panzergrenadier-Division-quot-Grossdeutschland-quot-on-the-Eastern-Front-1942-1944-by-Thomas-McGuirl.pdf
    • http://muicuiu.dumb1.com/2a00a00a04a06a03/A-History-of-Metallography-The-Development-of-Ideas-on-the-Structure-of-Metals-Before-1890-by-Cyril-Stanley-Smith.pdf
    • http://muicuiu.dumb1.com/6a05a09a01a03a08/The-Worst-Case-Scenario-Almanac-History-by-Joshua-Piven.pdf
    • http://muicuiu.dumb1.com/9a05a01a08a05a06/The-Sacco-and-Vanzetti-Case-A-Brief-History-with-Documents-by-Michael-M-Topp.pdf
    • http://muicuiu.dumb1.com/9a05a02a00a01a00/Sacco-and-Vanzetti-The-History-of-20th-Century-America-s-Most-Controversial-Case-by-Charles-River-Editors.pdf
    • http://muicuiu.dumb1.com/5a03a00a02a02a05/The-Making-of-the-Northern-Ontario-School-of-Medicine-A-Case-Study-in-the-History-of-Medical-Education-by-Geoffrey-Tesson.pdf
    • http://muicuiu.dumb1.com/4a04a06a03a05a02/The-Pawprints-of-History-Dogs-and-the-Course-of-Human-Events-by-S