Malicious PDF — malware analysis report

Static analysis result for SHA-256 a8a9716dce4bc822…

MALICIOUS

PDF

109.6 KB Created: 2022-10-14 16:41:33 +00:00 Authoring application: quasan (via PDF Master 1.0.1) First seen: 2026-06-17
MD5: a7897355db0edb58b55aec379b7172e1 SHA-1: 1191ee3260c388251d837f48976e3a5eac32b96d SHA-256: a8a9716dce4bc8222b640426cfb86fd223ec3c681c067ce3f4c11948780d056a
64 Risk Score

Machine Learning

  • Nyx PDF Classifier clean score 0.0013

Heuristics 3

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • External URI info PDF_URI
    PDF contains an external URL action
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://siteslocate.com/rickets/agri/maid/nationaldebtline/seba.shirelles?ZG93bmxvYWR8YloyTmpoM2EzeDhNVFkyTlRjek16ZzBNWHg4TWpVNU1IeDhLRTBwSUZkdmNtUndjbVZ6Y3lCYldFMU1VbEJESUZZeUlGQkVSbDA=S2ltbXkgU3QgUGV0ZXJzYnVyZyAxNHlvS2l=entreat& PDF link annotation
    • http://rydbergaren.se/wp-content/uploads/2022/10/Refrigeration_And_Air_Conditioning_Cp_Arora_Manual_Solution_Rapidshare.pdfIn PDF document text
    • http://vesinhnhatrang.com/?p=19834In PDF document text
    • http://werco.us/?p=49239In PDF document text
    • https://classifieds.cornerecho.com/advert/adobe-color-cc-offline-extra-quality/In PDF document text
    • https://executiverighthand.com/wp-content/uploads/2022/10/Rohs_721_Cutting_Plotter_Drivers.pdfIn PDF document text
    • https://www.noidabestproperty.com/wp-content/uploads/2022/10/Crack_Keygen_BETTER_For_Cutlist_Fx.pdfIn PDF document text
    • http://hotelthequeen.it/2022/10/14/total-immersion-racing-link-download-game-free/In PDF document text
    • http://resistanceschool.info/?p=516711In PDF document text
    • https://tourismcenter.ge/wp-content/uploads/2022/10/HD_Online_Player_young_video_models_daphne_9y_irina_1.pdfIn PDF document text
    • https://mideshaven.com/wp-content/uploads/2022/10/walsap.pdfIn PDF document text
    • http://www.tcpdf.orgIn PDF document text
    • http://www.w3.org/1999/02/22-rdf-syntax-ns#In PDF document text
    • http://purl.org/dc/elements/1.1/In PDF document text
    • http://ns.adobe.com/xap/1.0/In PDF document text
    • http://ns.adobe.com/pdf/1.3/In PDF document text
    • http://ns.adobe.com/xap/1.0/mm/In PDF document text
    • http://www.aiim.org/pdfa/ns/extension/In PDF document text
    • http://www.aiim.org/pdfa/ns/schema#In PDF document text
    • http://www.aiim.org/pdfa/ns/property#In PDF document text
    • http://www.aiim.org/pdfa/ns/id/In PDF document text