Malicious PDF — malware analysis report

Static analysis result for SHA-256 b274af493977fd05…

MALICIOUS

PDF

46.7 KB Created: 2018-11-30 21:01:15 +03:00 Authoring application: Acrobat PDFMaker 8.1 for Word (via Adobe Acrobat 8.2) First seen: 2019-01-12
MD5: 6668d5bf0646d6047dfb2118a749eba9 SHA-1: 3fe10f9865f824487aad53fadbdb0baddd146c10 SHA-256: b274af493977fd05d037c43333c6dbd635451bd87e4e9fc20169fde88156abd8
92 Risk Score

Machine Learning

  • Nyx PDF Classifier malicious score 0.8509

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://www.gorillawalker.com/ukulele-christmas-songs.pdf In PDF document text
    • http://www.gorillawalker.com/stanley-cavell-religion-and-continental-philosophy-indiana-series-in-the.pdfIn PDF document text
    • http://www.gorillawalker.com/costa-daurada-michelin-zoom-maps.pdfIn PDF document text
    • http://www.gorillawalker.com/why-animation-matters.pdfIn PDF document text
    • http://www.gorillawalker.com/on-my-knees-a-stark-novel.pdfIn PDF document text
    • http://www.gorillawalker.com/three-priorities-for-a-strong-local-church.pdfIn PDF document text
    • http://www.gorillawalker.com/fifty-more-hikes-in-new-hampshire-day-hikes-and-backpacking.pdfIn PDF document text
    • http://www.gorillawalker.com/rhodesian-spring.pdfIn PDF document text
    • http://www.gorillawalker.com/the-upanayana-hindu-ceremonies-of-the-sacred-thread.pdfIn PDF document text
    • http://www.gorillawalker.com/the-rice-risotto-cookbook-the-complete-guide-to-choosing-using.pdfIn PDF document text
    • http://www.gorillawalker.com/go-for-the-goal-techniques-and-strategies-for-the-complete.pdfIn PDF document text
    • http://www.gorillawalker.com/the-rocket-sprint-start.pdfIn PDF document text
    • http://www.gorillawalker.com/siliciclastic-shelf-sediments.pdfIn PDF document text
    • http://www.gorillawalker.com/hiv-aids-care-and-counselling-a-multidisciplinary-approach.pdfIn PDF document text
    • http://www.gorillawalker.com/vegan-bootcamp-beginner-s-guide-to-a-healthier-meat-free.pdfIn PDF document text
    • http://www.gorillawalker.com/blackstone-s-statutes-on-contract-tort-and-restitution-2011-2012.pdfIn PDF document text
    • http://www.gorillawalker.com/foto-desnuda-de-blonde-short-hair-jeans-pornstar-ass-solo.pdfIn PDF document text
    • http://www.gorillawalker.com/better-latte-than-never.pdfIn PDF document text
    • http://www.gorillawalker.com/complete-statistical-physics.pdfIn PDF document text
    • http://www.gorillawalker.com/partition-classique-la-cucaracha-traditionnel-quatuor-de-trombones.pdfIn PDF document text
    • http://www.gorillawalker.com/inorganic-reactions-and-methods-the-formation-of-bonds-to-c.pdfIn PDF document text
    • http://www.gorillawalker.com/an-unauthorized-guide-to-black-sails-the-pirate-drama-on.pdfIn PDF document text
    • http://www.gorillawalker.com/deborah-turbeville-the-fashion-pictures.pdfIn PDF document text
    • http://www.gorillawalker.com/the-suitcase-entrepreneur-create-freedom-in-business-and-adventure-in.pdfIn PDF document text
    • http://www.gorillawalker.com/the-akhmatova-journals-volume-1-1938-1941.pdfIn PDF document text
    • http://www.gorillawalker.com/a-comparative-study-of-cataloging-rules-based-on-the-anglo.pdfIn PDF document text
    • http://www.gorillawalker.com/learning-to-rank-for-information-retrieval-and-natural-language-processing.pdfIn PDF document text
    • http://www.gorillawalker.com/the-mercury-13-the-untold-story-of-thirteen-american-women.pdfIn PDF document text
    • http://www.gorillawalker.com/the-maiden-that-was-victorian-domestic-obedience-kindle-edition.pdfIn PDF document text
    • http://www.gorillawalker.com/pop-up-origamic-architecture.pdfIn PDF document text
    • http://www.gorillawalker.com/maxim-s-a-mirror-of-parisian-life.pdfIn PDF document text
    • http://www.gorillawalker.com/ionizing-radiation-and-life.pdfIn PDF document text
    • http://www.gorillawalker.com/assessment-skills-for-paramedics.pdfIn PDF document text
    • http://www.gorillawalker.com/paleo-parents-beginner-guide-transform-your-meals-with-family-friendly.pdfIn PDF document text
    • http://www.gorillawalker.com/food-in-jars-preserving-in-small-batches-year-round.pdfIn PDF document text
    • http://www.gorillawalker.com/baby-massage-soothing-strokes-for-healthy-growth.pdfIn PDF document text
    • http://www.gorillawalker.com/electronic-processes-on-semiconductor-surfaces-during-chemisorption.pdfIn PDF document text
    • http://www.gorillawalker.com/lottery-little-dirty-secrets-for-newbies-only-kindle-edition.pdfIn PDF document text
    • http://www.gorillawalker.com/the-effect-of-spacing-on-yield-and-yield-components-of.pdfIn PDF document text
    • http://www.gorillawalker.com/the-economics-of-development-and-planning.pdfIn PDF document text
    • http://www.w3.org/1999/02/22-rdf-syntax-ns#In PDF document text
    • http://purl.org/dc/elements/1.1/In PDF document text
    • http://ns.adobe.com/xap/1.0/In PDF document text
    • http://ns.adobe.com/pdf/1.3/In PDF document text
    • http://ns.adobe.com/xap/1.0/mm/In PDF document text
    • http://www.aiim.org/pdfa/ns/extension/In PDF document text
    • http://www.aiim.org/pdfa/ns/schema#In PDF document text
    • http://www.aiim.org/pdfa/ns/property#In PDF document text
    • http://www.aiim.org/pdfa/ns/id/In PDF document text