Malicious PDF — malware analysis report

Static analysis result for SHA-256 b245fbcded79f672…

MALICIOUS

PDF

20.4 KB Created: 2020-03-16 18:47:50 +00:00 Authoring application: mPDF 5.7
MD5: d46ba512b7570b6ddf1f872568802a27 SHA-1: 0b3d0c41fa7b3cbe414877fa2d9935eff936cf0b SHA-256: b245fbcded79f672121446e1b8f3d0f039843d0ab673ae3d1eff9297019e732d
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF file contains a large number of embedded links to external URLs, as indicated by the PDF_SEO_LINK_FARM heuristic. The ML classifier also flagged this PDF as malicious with high confidence. The primary purpose appears to be directing users to a link farm, likely for SEO manipulation or to serve as a distribution point for further malicious content.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9922

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://tanceubio.myhome.cx/83d23d43d83d73d8/F-Scott-Fitzgerald-Four-Pack---Benjamin-Button-This-Side-of-Paradise-The-Beautiful-and-Damned-The-Diamond-as-big-as-The-Ritz-Illustrated-by-Norman-Rockwell-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/93d93d83d33d13d1/This-Side-of-Paradise-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/93d93d83d63d43d1/The-Side-of-Paradise-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/93d83d53d43d23d9/The-Beautiful-and-Damned-by-F-Scott-Fitzgerald---Delphi-Classics-Illustrated-Delphi-Parts-Edition-F-Scott-Fitzgerald-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/83d13d63d93d83d5/The-Thoughtbook-of-F-Scott-Fitzgerald-A-Secret-Boyhood-Diary-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/13d93d13d13d93d5/The-Complete-Works-of-F-Scott-Fitzgerald-Classics-Book-8-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/83d23d43d73d43d0/THE-SHORT-STORIES-OF-F-SCOTT-FITZGERALD---A-New-Collection-Head-and-Shoulders-Bernice-Bobs-Her-Hair-The-Ice-Palace-The-Offshore-Pirate-May-Day-The-Jelly-Bean-The-Curious-Case-of-Benjamin-Button-The-Diamond-as-Big-as-the-Ritz-Winter-Dreams-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/13d93d23d53d53d0/F-Scott-Fitzgerald-Tales-of-the-Jazz-Age-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/93d63d73d13d9/The-Complete-Works-of-F-Scott-Fitzgerald-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/53d23d53d73d23d1/Fitzgerald-s-The-Great-Gatsby-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/83d13d63d83d63d9/The-Letters-of-F-Scott-Fitzgerald-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/83d13d63d93d23d2/The-Stories-of-F-Scott-Fitzgerald-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/33d53d13d73d93d6/Another-Side-of-Paradise-by-Sally-Koslow.pdf
    • http://tanceubio.myhome.cx/33d33d33d03d13d0/The-Other-Side-Of-Paradise-by-Noel-Barber.pdf
    • http://tanceubio.myhome.cx/33d73d73d93d63d6/The-Other-Side-Of-Paradise-by-Noel-Barber.pdf
    • http://tanceubio.myhome.cx/23d83d63d53d33d9/Paradise-Series-Paradise-Series-1-2-3-Crazy-in-Paradise-Deception-in-Paradise-Trouble-in-Paradise-Box-Set-by-Deborah-Brown.pdf
    • http://tanceubio.myhome.cx/43d43d63d43d73d7/All-the-Sad-Young-Men-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/63d23d03d63d13d1/The-Last-Gatsby-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/53d43d43d03d73d2/Before-there-was-Gatsby-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/43d43d53d03d63d5/On-Booze-by-F-Scott-Fitzgerald.pdf
    • http://tanceubio.myhome.cx/83d13d63d93d83d5/The-Thoughtbook-of-F-Scott-Fitzgerald-A-Secret-Boyhood-D