Malicious PDF — malware analysis report

Static analysis result for SHA-256 ae66be448ec66f7c…

MALICIOUS

PDF

25.9 KB Created: 2020-03-18 21:21:58 +00:00 Authoring application: mPDF 5.7
MD5: 3305158e3a076a99bfebf5a8a4e13c46 SHA-1: 9cf5adeed3e30f617c3688f5eb9f5f5c10353769 SHA-256: ae66be448ec66f7c03458de229344f0ec5ffe4572a2252cf22a56975ae1efa2c
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1059.001 PowerShell

The PDF document contains a large number of embedded URLs pointing to external websites, as indicated by the PDF_SEO_LINK_FARM heuristic. The ML classifier also flagged this PDF as malicious. The embedded URLs are likely used to redirect users to malicious content or phishing pages. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9695

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://ieuicufioao.myhome.cx/7557552555554555/The-World-According-to-Fannie-Davis-My-Mother-s-Life-in-the-Detroit-Numbers-by-Bridgett-M-Davis.pdf
    • http://ieuicufioao.myhome.cx/1551559550552554552/Selected-readings-for-management-208-408-for-the-University-of-CA-Davis-by-Scott-Davis.pdf
    • http://ieuicufioao.myhome.cx/3550557556555550/As-The-Twig-Is-Bent-A-Matt-Davis-Mystery-Matt-Davis-Mysteries-1-by-Joe-Perrone-Jr-.pdf
    • http://ieuicufioao.myhome.cx/9558554550555/As-the-Twig-Is-Bent-A-Matt-Davis-Mystery-Matt-Davis-Mysteries-1-by-Joe-Perrone-Jr-.pdf
    • http://ieuicufioao.myhome.cx/5550551558559558/Don-t-Know-Much-About-Geography-Everything-You-Need-to-Know-About-the-World-but-Never-Learned-by-Kenneth-C-Davis.pdf
    • http://ieuicufioao.myhome.cx/1558559558559557/God-Of-Hope-Four-Men-Enter-Our-World-With-The-Plan-Genesis-Through-Revelation-by-J-Davis-Illingworth-Jr-.pdf
    • http://ieuicufioao.myhome.cx/4553557555559551/Dark-Victory-The-Life-of-Bette-Davis-by-Ed-Sikov.pdf
    • http://ieuicufioao.myhome.cx/4551556558555554/Amazing-Fables-How-Did-Life-Begin-by-Megan-Davis.pdf
    • http://ieuicufioao.myhome.cx/2554551553557550/Marine-The-Life-of-Chesty-Puller-by-Burke-Davis.pdf
    • http://ieuicufioao.myhome.cx/1550555553556554/Late-Victorian-Holocausts-El-Ni-o-Famines-and-the-Making-of-the-Third-World-by-Mike-Davis.pdf
    • http://ieuicufioao.myhome.cx/1551559556557550551/The-Book-of-Numbers-The-Secret-of-Numbers-and-How-They-Changed-the-World-by-Peter-J-Bentley.pdf
    • http://ieuicufioao.myhome.cx/3551556555550555/Life-in-the-Iron-Mills-and-Other-Stories-by-Rebecca-Harding-Davis.pdf
    • http://ieuicufioao.myhome.cx/1559550551552559/Fully-Alive-Lighten-Up-and-Live-Again-A-Journey-that-Will-Change-Your-LIfe-by-Ken-Davis.pdf
    • http://ieuicufioao.myhome.cx/2555554551558553/Hardtack-and-Coffee-or-The-Unwritten-Story-of-Army-Life-by-John-Davis-Billings.pdf
    • http://ieuicufioao.myhome.cx/2559552555553555/The-Numbers-Game-The-Commonsense-Guide-to-Understanding-Numbers-in-the-News-in-Politics-and-in-Life-by-Michael-Blastland.pdf
    • http://ieuicufioao.myhome.cx/3559554554553554/Angela-Davis-Speaks-by-Angela-Y-Davis.pdf
    • http://ieuicufioao.myhome.cx/1555556558554/Lawyer-s-Lawyer-The-Life-of-John-W-Davis-by-William-Henry-Harbaugh.pdf
    • http://ieuicufioao.myhome.cx/5559558556555554/Have-Mother-Will-Travel-A-Mother-and-Daughter-Discover-Themselves-Each-Other-and-the-World-by-Claire-Fontaine.pdf
    • http://ieuicufioao.myhome.cx/2554558557558551/Fannie-s-Last-Supper-Re-creating-One-Amazing-Meal-from-Fannie-Farmer-s-1896-Cookbook-by-Christopher-Kimball.pdf
    • http://ieuicufioao.myhome.cx/3558558555558552/In-The-End-by-L-M-Davis.pdf
    • http://ieuicufioao.myhome