Malicious PDF — malware analysis report

Static analysis result for SHA-256 af53a0a801bf1394…

MALICIOUS

PDF

21.6 KB Created: 2019-05-01 19:34:18 +01:00 Authoring application: mPDF 5.7
MD5: c26354c26941ca9695920314e7a11c49 SHA-1: bb9ccbe8d8993332cc72aa1a5739a7e18cbd1e4c SHA-256: af53a0a801bf1394adbfdbad2ec42dfd68c4bfda51df189c8166881c9b84942f
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic. These links, such as http://kiteeearpdf.myhome.cx/1f211f210f216f212f219f219/Jinny-Beyer-s-Color-Confidence-for-Quilters-by-Jinny-Beyer.pdf, are likely intended to direct the user to malicious content. The ML classifier also strongly indicated maliciousness.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://kiteeearpdf.myhome.cx/1f211f210f216f212f219f219/Jinny-Beyer-s-Color-Confidence-for-Quilters-by-Jinny-Beyer.pdf
    • http://kiteeearpdf.myhome.cx/9f211f212f210f214f210/Wider-die-kalte-Vernunft-by-Arno-Gruen.pdf
    • http://kiteeearpdf.myhome.cx/8f210f210f211f218f218/Die-Mythologie-in-Carl-Spittelers-Olympischen-Fr-hling-by-Walter-Adrian.pdf
    • http://kiteeearpdf.myhome.cx/1f211f214f213f215f215f217/Vorbild-Und-Vernunft-Die-Regelung-Von-Lachen-Und-Scherzen-Im-Mittelalterlichen-Islam-by-Ludwig-Ammann.pdf
    • http://kiteeearpdf.myhome.cx/1f210f217f211f212f212f217/Dumme-Herde-b-se-Hirten-Religion-das-Verbrechen-an-der-Vernunft-by-Peter-Rohregger.pdf
    • http://kiteeearpdf.myhome.cx/8f217f212f216f213f212/Die-Stanislaskis-1-3-Melodie-der-Liebe-Verf-hrung-in-Manhattan-Gegen-jede-Vernunft-by-Nora-Roberts.pdf
    • http://kiteeearpdf.myhome.cx/6f215f212f211f211f210/Oedipe-sans-complexe-Les-enseignements-cach-s-de-la-mythologie-grecque-by-Gilbert-Andrieu.pdf
    • http://kiteeearpdf.myhome.cx/9f219f212f214f212f218/Die-Grenzen-Der-Vernunft-Eine-Untersuchung-Zu-Zielen-Und-Motiven-Des-Deutschen-Idealismus-by-Rolf-Peter-Horstmann.pdf
    • http://kiteeearpdf.myhome.cx/1f210f211f210f210f216f210/Das-Muttertrauma-in-Der-Griechischen-Mythologie-Eine-Psychologische-Interpretation-Der-Theogonia-Von-Hesiod-by-Ewald-Rumpf.pdf
    • http://kiteeearpdf.myhome.cx/2f214f212f212f218f215/Agony-by-Mark-Beyer.pdf
    • http://kiteeearpdf.myhome.cx/6f214f216f217f210f219/Atonement-by-Kirsten-Beyer.pdf
    • http://kiteeearpdf.myhome.cx/1f211f210f216f213f211f215/Amy-and-Jordan-by-Mark-Beyer.pdf
    • http://kiteeearpdf.myhome.cx/2f216f213f211f218f210/An-Eye-For-An-Eye-Matthew-Richter-2-by-L-D-Beyer.pdf
    • http://kiteeearpdf.myhome.cx/1f211f214f211f213f215f218/Mythologie-in-Moderner-Lyrik-Osip-E-Mandel-stam-VOR-Dem-Hintergrund-Des--Silbernen-Zeitalters--by-Petra-Hesse.pdf
    • http://kiteeearpdf.myhome.cx/1f211f210f216f213f210f211/Gatecrash-The-Secretist-2-by-Doug-Beyer.pdf
    • http://kiteeearpdf.myhome.cx/9f216f215f212f210/Dark-Venture-by-Audrey-White-Beyer.pdf
    • http://kiteeearpdf.myhome.cx/1f211f210f216f212f219f211/Return-to-Ravnica-The-Secretist-1-by-Doug-Beyer.pdf
    • http://kiteeearpdf.myhome.cx/1f210f215f212f210f210f218/Griechische-Mythologie-Gesamtausgabe-in-2-B-nden-Heldensagen-und-Heldendichtungen-Herkules-Der-Trojanische-Krieg-Theseus-Die-Argonauten-by-Ludwig-Preller.pdf
    • http://kiteeearpdf.myhome.cx/1f211f214f212f218f212f214/Out-Of-The-Absurdity-of-Life-Globale-Musik-by-Theresa-Beyer.pdf
    • http://kiteeearpdf.myhome.cx/9f212f212f219f213f212/Die-5-gr-ten-Di-t-Fehler---Sch-tzt-Ihre-Di-t--und-Vernunft-by-Charly-Kusch.pdf