MALICIOUS
90
Risk Score
Malware Insights
MITRE ATT&CK
T1566.001 Spearphishing Attachment
The PDF document contains multiple embedded URLs that promise game hacks and currency, such as 'roblox-game-hack'. The document body and heuristics indicate a lure for free game-related items, which is a common tactic for distributing malware or conducting phishing. The ML classifier also flagged this PDF as malicious with high confidence.
Machine Learning
- Nyx PDF Classifier malicious score 0.8852
Heuristics 5
-
PDF links to a 'free generator / game hack' redirector high PDF_GAME_HACK_REDIRECT_LUREPDF's clickable action targets a redirector of the form /app/<id>/<slug>-game-hack — the landing-page shape of a large SEO 'free spins / generator / game hack' lure family that funnels victims through rotating disposable hosts to a malware/scam payload. The multi-link variants also trip ML/link-farm rules; this catches the single-link variants that otherwise score clean.
-
Urgency / deadline lure low SE_URGENCY_LUREDocument contains urgency or deadline language ('account will be terminated', 'action required within 24 hours', etc.) — useful context, but low-signal without other findings
-
Visual download / call-to-action button lure low SE_DOWNLOAD_BUTTONDocument contains a call-to-action phrase ('Click here to download', 'Download Now', etc.) — low-signal unless other findings point to a malicious workflow
-
External URI info PDF_URIPDF contains an external URL action
-
Embedded URL info EMBEDDED_URLOne or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.URL https://enigmagenerator.com/app/431946152/roblox-game-hack PDF link annotation
- http://towtrucklosangeles.com/images/free-clothing-roblox-hack.pdfIn PDF document text
- https://www.romedia.gr/images/roblox-weight-lifting-sim-hack.pdfIn PDF document text
- https://sitam.co.in/images/roblox-hack-robux-download-android.pdfIn PDF document text
- http://reisebild.eu/images/instinct-roblox-hack.pdfIn PDF document text
- http://armatrutz.de/images/how-to-get-free-catalog-items-roblox-2021.pdfIn PDF document text
- http://cadcam.no/images/free-robux-console-hack.pdfIn PDF document text
- http://baah.ca/images/free-password-roblox.pdfIn PDF document text
- http://yochin.org.tw/images/how-to-use-noclip-hacks-roblox-2021-november.pdfIn PDF document text
- http://picuruta.com.br/images/roblox-hack-rbx-june2021.pdfIn PDF document text
- http://www.pcclawyers.com.au/images/free-webs-that-give-you-free-robux.pdfIn PDF document text
- https://letturatarghe.it/images/how-to-get-free-robux-no-hacks-2021-in-seconds.pdfIn PDF document text
- http://bau-lk.de/images/comment-avoir-des-robux-avec-cheat-engine.pdfIn PDF document text
- http://fairwaygolftravel.co.uk/images/free-robux-using-inspect-2021.pdfIn PDF document text
- http://jdlrelocation.com/images/i-got-free-robux-from-this.pdfIn PDF document text
- http://immobil-service.it/images/bun-hacks-roblox.pdfIn PDF document text
- http://www.marambio.com.ar/images/hey-google-how-to-get-free-robux.pdfIn PDF document text
- https://cluster-consulting.com/images/how-to-do-the-frog-hack-in-roblox.pdfIn PDF document text
- http://gops.pruszczgdanski.pl/images/pastebincom-roblox-robux-hack.pdfIn PDF document text
- https://socialvalue.gr/images/how-to-hack-roblox-with-inspect-element-2021.pdfIn PDF document text
- http://ferienhaus-summt.de/images/good-roblox-booga-booga-websites-to-hack.pdfIn PDF document text
- http://icomsolutions.com.au/images/how-to-trade-for-free-in-roblox.pdfIn PDF document text
- http://vipservice-bg.com/images/bit-slicer-hacks-roblox.pdfIn PDF document text
- http://addair.co.uk/images/free-audio-upload-for-roblox.pdfIn PDF document text
- http://julo-it.net/images/como-descarar-roblox-hack-para-pc.pdfIn PDF document text
- https://meltonschool.org/images/ultimate-free-robux-generator.pdfIn PDF document text
- http://cmfd.nl/images/how-to-get-free-robux-no-joke-2021.pdfIn PDF document text
- http://aiyta.com/images/hoto-get-free-robux-works-100-no-human-no-survey.pdfIn PDF document text
- https://www.lavigny.ch/images/roblox-download-free-app.pdfIn PDF document text
- http://uptodate.az/images/do-you-get-free-robux.pdfIn PDF document text
- http://lichtdrukkerijwijchen.nl/images/roblox-song-code-for-cheat-codes.pdfIn PDF document text
- http://almacargo.com/images/free-robux-promo-codes-2021-may.pdfIn PDF document text
- http://julo-it.net/images/roblox-robux-hack-cheat-engine-62-2021.pdfIn PDF document text
- https://estalagemmonteverde.com.br/images/roblox-free-robux-xbox-one.pdfIn PDF document text
- http://www.zdravazena.sk/images/i-want-robux-for-free-now.pdfIn PDF document text
- http://www.maranata4x4.co.za/images/free-roblox-accounts-2021-pastebin.pdfIn PDF document text
- http://agrupamentoescolas-alfredo-da-silva.com/images/roblox-hack-robux-download-2021.pdfIn PDF document text
- https://www.wijhalenhetop.nl/images/roblox-hack-days.pdfIn PDF document text
- http://nosocomium.rv.ua/images/how-to-hack-a-persons-in-roblox.pdfIn PDF document text
- http://www.pbconsulting.it/images/comment-hacker-pour-avoir-des-robux-2021.pdfIn PDF document text
- http://bilhetim.com.br/images/does-roblox-track-the-ip-of-the-hacker.pdfIn PDF document text
- http://studentslovetravel.com/images/como-hackear-a-jugadores-de-roblox.pdfIn PDF document text
- http://fiur-malermeister.de/images/free-robux-without-human-verification-on-android.pdfIn PDF document text
- https://www.psychotherapie-naturheilpraxis.de/images/roblox-deathrun-hack-script-pastebin.pdfIn PDF document text
- http://nikabio.com/images/como-hackear-roblox-admin.pdfIn PDF document text
- https://verdensbarn.no/images/roblox-ro-piece-hacks.pdfIn PDF document text
- https://tokunfome.com.br/images/teach-me-how-to-hack-roblox-accounts.pdfIn PDF document text
- http://www.exikom.com.ua/images/hacks-roblox-dragon-ball-rage.pdfIn PDF document text
- https://socialvalue.gr/images/free-codes-for-roblox-trade-hangout.pdfIn PDF document text
- http://learningarabic.co.uk/images/roblox-free-robux-tampermonkey.pdfIn PDF document text
+16 more URL(s)
Extracted artifacts 2
Files carved from inside the sample during analysis.
| Filename | Kind | Source | Size |
|---|---|---|---|
font_00_sfnt_off0000706c.bin |
pdf-font-stream | PDF embedded font (sfnt) at offset 0x706C | 24364 bytes |
SHA-256: c457fe95f37fd17670d2451f7bbba588ebeb40f24506da2fdf362d0b5b98d482 |
|||
font_01_sfnt_off0000a855.bin |
pdf-font-stream | PDF embedded font (sfnt) at offset 0xA855 | 19108 bytes |
SHA-256: 2b63f2d40af14dc52b7416bde6761c9a046b5ace2ef7f7005a35fd5104984083 |
|||
Open this report in the interactive analyzer, or submit your own file for analysis.