Malicious PDF — malware analysis report

Static analysis result for SHA-256 b157743394ab7060…

MALICIOUS

PDF

17.2 KB Created: 2020-02-12 01:34:35 +00:00 Authoring application: mPDF 5.7
MD5: 0569c78d0cacf358155192d7d905338d SHA-1: c136876d95bf630684a546ad64cd5cae5883d9fb SHA-256: b157743394ab70608c4a10403f77904ef0ea3d040724c5bf6582e0623886a679
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded links pointing to external PDF files hosted on the domain 'ieuicufioao.myhome.cx'. This behavior is indicative of a link farm or a phishing lure designed to redirect users to potentially malicious content. The ML classifier also strongly flagged this PDF as malicious. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9925

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://ieuicufioao.myhome.cx/2557556551552557/The-Color-of-Earth-Color-Trilogy-1-by-Kim-Dong-Hwa.pdf
    • http://ieuicufioao.myhome.cx/7551550553559555/Color-by-Number-Flowers-30-fun-amp-relaxing-color-by-number-projects-to-engage-amp-entertain-by-Walter-Foster-Creative-Team.pdf
    • http://ieuicufioao.myhome.cx/7551550553559553/Color-by-Number-Mandalas-30-fun-amp-relaxing-color-by-number-projects-to-engage-amp-entertain-by-Walter-Foster-Creative-Team.pdf
    • http://ieuicufioao.myhome.cx/2551556555557/Bright-Earth-Art-and-the-Invention-of-Color-by-Philip-Ball.pdf
    • http://ieuicufioao.myhome.cx/1550552556557554552/Color-Correction-in-Final-Cut-Studio-Grading-and-Correcting-with-Final-Cut-Pro-7-and-Color-1-5-With-DVD-ROM-by-Michael-Wohl.pdf
    • http://ieuicufioao.myhome.cx/6550551557558558/-COLOR-BIBLE-Ao-no-Futsumashi-Color-Bible-by-Kazue-Kato.pdf
    • http://ieuicufioao.myhome.cx/9559552557550555/Manuela-Color-Canela-Manuela-Color-of-Cinnamon-by-Elena-Dreser.pdf
    • http://ieuicufioao.myhome.cx/5554558558554559/The-Beauty-of-Color-The-Ultimate-Beauty-Guide-for-Skin-of-Color-by-Iman.pdf
    • http://ieuicufioao.myhome.cx/7550551557552556/Exploring-Color-Exploring-Color-by-Nita-Leland.pdf
    • http://ieuicufioao.myhome.cx/4554559551554553/Color-of-You-by-C-S-Poe.pdf
    • http://ieuicufioao.myhome.cx/2559552555559552/The-Color-of-Love-by-H-M-Trey.pdf
    • http://ieuicufioao.myhome.cx/2553555557551555/The-Color-of-Tea-by-Hannah-Tunnicliffe.pdf
    • http://ieuicufioao.myhome.cx/4551558553558559/Color-Me-by-Blaine-D-Arden.pdf
    • http://ieuicufioao.myhome.cx/5554558551/The-Color-of-Our-Sky-by-Amita-Trasi.pdf
    • http://ieuicufioao.myhome.cx/1551554553555558551/Color-by-Penguins-by-Ed-Heck.pdf
    • http://ieuicufioao.myhome.cx/1551554550553558/Sky-Color-by-Peter-H-Reynolds.pdf
    • http://ieuicufioao.myhome.cx/3558557558554551/The-Color-of-Cold-and-Ice-by-J-Schlenker.pdf
    • http://ieuicufioao.myhome.cx/2558553557553552/Color-by-Taishi-Zaou.pdf
    • http://ieuicufioao.myhome.cx/1555556553555557/The-Color-Of-Beauty-by-Goob-Er.pdf
    • http://ieuicufioao.myhome.cx/4553555552559554/The-Color-of-Grace-by-Linda-Kage.pdf
    • http://ieuicufioao.myhome.cx/6550551557558558/-COLOR-BIBLE-A