Malicious PDF — malware analysis report

Static analysis result for SHA-256 ad3ee382cd1f2056…

MALICIOUS

PDF

18.7 KB Created: 2019-05-02 17:11:58 +01:00 Authoring application: mPDF 5.7
MD5: 35d8308d7c25ed6fbea9693591c11a41 SHA-1: aa9a286464294facab7d45e6c6704bff51a245c1 SHA-256: ad3ee382cd1f2056d2b1132865ccc60c72ac4b2fcd2726bae545d03d2a347c9f
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The file was detected as malicious by ClamAV and an ML classifier. It contains embedded URLs that point to external PDF files. The presence of these external links suggests an attempt to redirect the user to potentially malicious content, likely for further exploitation or malware delivery. No scripts were extracted, and the document body was heavily obfuscated, limiting further analysis of the exact payload.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 3

  • ClamAV: Pdf.Malware.Agent-9897038-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Pdf.Malware.Agent-9897038-0
  • External URI info PDF_URI
    PDF contains an external URL action
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://unieoooq.linkpc.net/34e04e34e24e04e1/Saint-Thomas-Aquinas-by-G-K-Chesterton.pdf
    • http://unieoooq.linkpc.net/34e64e24e54e84e1/Saint-Francis-of-Assisi-by-G-K-Chesterton.pdf
    • http://unieoooq.linkpc.net/64e64e04e94e44e4/On-the-Eternity-of-the-World-by-Thomas-Aquinas.pdf
    • http://unieoooq.linkpc.net/14e84e94e84e64e7/On-Prayer-And-The-Contemplative-Life-by-Thomas-Aquinas.pdf
    • http://unieoooq.linkpc.net/84e14e94e54e34e6/Guide-to-Thomas-Aquinas-by-Josef-Pieper.pdf
    • http://unieoooq.linkpc.net/44e44e24e04e94e2/Practical-Theology-Spiritual-Direction-from-St-Thomas-Aquinas-by-Peter-Kreeft.pdf
    • http://unieoooq.linkpc.net/54e44e74e34e74e9/The-Cardinal-Virtues-Prudence-Justice-Fortitude-and-Temperance-by-Thomas-Aquinas.pdf
    • http://unieoooq.linkpc.net/84e04e94e04e34e8/Tibi-Soli-Peccavi-Thomas-Aquinas-on-Guilt-and-Forgiveness-by-Henk-J-M-Schoot.pdf
    • http://unieoooq.linkpc.net/14e14e44e64e74e74e9/Summa-Theologiae-the-Complete-Paperback-Set-60-Volumes-Plus-One-Index-Volume-by-Thomas-Aquinas.pdf
    • http://unieoooq.linkpc.net/74e34e84e94e64e1/THOMAS-VON-AQUIN-by-G-K-Chesterton.pdf
    • http://unieoooq.linkpc.net/84e24e04e44e64e6/God-s-Love-Through-the-Spirit-The-Holy-Spirit-in-Thomas-Aquinas-and-John-Wesley-by-Kenneth-M-Loyer.pdf
    • http://unieoooq.linkpc.net/44e04e24e14e14e0/Do-We-Agree-A-Debate-Between-G-K-Chesterton-and-Bernard-Shaw-with-Hilaire-Belloc-in-the-Chair-by-G-K-Chesterton.pdf
    • http://unieoooq.linkpc.net/54e34e14e44e54e7/A-Saint-on-Death-Row-The-Story-of-Dominique-Green-by-Thomas-Cahill.pdf
    • http://unieoooq.linkpc.net/74e34e84e94e64e5/Saint-Thomas-of-Aquin-and-Ideology-by-Pietro-Maria-Ferr-.pdf
    • http://unieoooq.linkpc.net/74e34e94e04e34e2/The-Life-and-Labours-of-Saint-Thomas-of-Aquin-by-Roger-Bede-Vaughan.pdf
    • http://unieoooq.linkpc.net/94e64e24e74e94e2/Der-Graf-von-Saint-Germain---Alchemist-oder-Hochstapler-Eine-Biografie-by-Thomas-Freller.pdf
    • http://unieoooq.linkpc.net/84e44e74e74e64e0/Comunas-Do-Departamento-de-Dordonha-Brantome-Perigueux-Bonneville-Et-Saint-Avit-de-Fumadieres-Javerlhac-Et-La-Chapelle-Saint-Robert-by-Source-Wikipedia.pdf
    • http://unieoooq.linkpc.net/44e44e54e24e44e0/Saint-Ben-Saint-Ben-1-by-John-Fischer.pdf
    • http://unieoooq.linkpc.net/74e54e64e04e44e2/Memoirs-of-the-Duc-de-Saint-Simon-1710-1715-by-Louis-de-Rouvroy-Saint-Simon.pdf
    • http://unieoooq.linkpc.net/84e04e74e44e24e9/San-Tommaso-by-G-K-Chesterton.pdf
    • http://unieoooq.linkpc.net/14e14e44e64