Malicious PDF — malware analysis report

Static analysis result for SHA-256 ae79caab19f34dda…

MALICIOUS

PDF

22.2 KB Created: 2019-05-02 17:41:24 +01:00 Authoring application: mPDF 5.7 First seen: 2020-12-28
MD5: 598a1fd8f7950c28bdabaf7cd00f23db SHA-1: 7bf80174e11378acef68d8427de4d70a6ca0d545 SHA-256: ae79caab19f34dda2b84d3636267979b1160d7c05ce9e50b29430835d1f634dd
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded URLs pointing to external PDF documents hosted on the domain 'kiteeearpdf.myhome.cx'. This heuristic firing, combined with the ML classifier, indicates a malicious intent to redirect users to potentially harmful content. No scripts were extracted from this sample, and the document body was heavily obfuscated, preventing a more detailed analysis of the specific lure.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9903

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://kiteeearpdf.myhome.cx/6f215f213f214f218f218/Evolving-Ourselves-How-Unnatural-Selection-and-Nonrandom-Mutation-are-Changing-Life-on-Earth-by-Juan-Enriquez.pdf In PDF document text
    • http://kiteeearpdf.myhome.cx/4f219f218f216f215f217/Unnatural-Selection-by-Thomas-Pryce.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/3f212f212f219f218f215/Every-Move-You-Make-Unnatural-Selection-2-by-Ann-Somerville.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/1f210f216f211f213f218f215/Voces-De-La-Tierra-La-Leccion-De-Juan-Rulfo-Voices-Of-The-Earth-The-Lesson-Of-Juan-Rulfo-La-Leccion-De-Juan-Rulfo-by-Felipe-Garrido.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/2f213f214f213f217/Unnatural-Selection-Choosing-Boys-over-Girls-and-the-Consequences-of-a-World-Full-of-Men-by-Mara-Hvistendahl.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/8f218f212f216f215f214/Opening-Science-The-Evolving-Guide-on-How-the-Internet-Is-Changing-Research-Collaboration-and-Scholarly-Publishing-by-Sonke-Bartling.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/7f211f219f212f218/Adaptive-Capacity-How-Organizations-Can-Thrive-in-a-Changing-World-by-Juan-Carlos-Eichholz.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/2f210f219f211f214f219/Day-After-Disaster-The-Changing-Earth-1-by-Sara-F-Hathaway.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/9f215f214f213f213f211/Heaven-On-Earth-An-Astrological-Entertainer-With-Slides-Wheels-And-Changing-Pictures-by-Fritz-Wegner.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/3f214f218f210f215/The-Selection-Stories-The-Prince-amp-The-Guard-The-Selection-0-5-2-5-by-Kiera-Cass.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/6f213f212f214f216/The-Selection-Series-Collection-The-Selection-0-5-1-2-2-5-3-by-Kiera-Cass.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/6f218f217f219f216/A-Brief-Life-by-Juan-Carlos-Onetti.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/4f213f216f219f214/The-Selection-The-Selection-1-by-Kiera-Cass.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/9f217f213f218f217/Life-A-Natural-History-of-the-First-Four-Billion-Years-of-Life-on-Earth-by-Richard-Fortey.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/4f214f218f215f213f216/A-New-History-of-Life-The-Radical-New-Discoveries-about-the-Origins-and-Evolution-of-Life-on-Earth-by-Peter-D-Ward.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/2f219f210f213f215/Special-Deliveries-Life-Changing-Moments-by-D-J-Kirkby.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/4f213f216f210f213/Kilimanjaro-and-Beyond-A-Life-Changing-Journey-by-Barry-Finlay.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/4f217f212f211f211f212/Special-Deliveries-Life-Changing-Moments-by-D-J-Kirkby.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/9f218f214f210f211/Ten-Life-Changing-Lessons-by-Winsome-Campbell-Green.pdfIn PDF document text
    • http://kiteeearpdf.myhome.cx/3f214f214f214f212f215/Changing-Tunes-The-Changing-Series-1-by-Heather-Gunter.pdfIn PDF document text