Malicious PDF — malware analysis report

Static analysis result for SHA-256 b3add86aafe44bdd…

MALICIOUS

PDF

28.0 KB Created: 2019-04-29 23:11:42 +01:00 Authoring application: mPDF 5.7
MD5: eb5a1f75cea420e62b5f98dedd67e934 SHA-1: ecb3c3d0d077ceae3311b5dfe7e77c7e8c63a305 SHA-256: b3add86aafe44bddd43835f75f6eed536315924ebde7315cd44db6bdec02a24e
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF contains a large number of embedded links to external documents, characteristic of a link farm. While the ML classifier flagged this as malicious, the specific intent appears to be driving traffic to these external resources rather than executing a direct payload from the PDF itself. The document body is heavily obfuscated, preventing a more detailed analysis of its immediate purpose.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9695

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/3a08a06a07a02a09/The-Addictive-Personality-Understanding-the-Addictive-Process-and-Compulsive-Behavior-by-Craig-Nakken.pdf
    • http://muicuiu.dumb1.com/4a09a03a01a02a06/Addictive-Relationships-Reclaiming-Your-Boundaries-by-Joy-Miller.pdf
    • http://muicuiu.dumb1.com/5a02a01a08/Irresistible-The-Rise-of-Addictive-Technology-and-the-Business-of-Keeping-Us-Hooked-by-Adam-Alter.pdf
    • http://muicuiu.dumb1.com/1a07a07a01a00a09/Calming-Your-Addictive-Mind-The-Buddha-s-Path-to-Breaking-Free-by-Amy-Barton-Cayton.pdf
    • http://muicuiu.dumb1.com/1a09a02a08a06a04/Relapse-Prevention-Maintenance-Strategies-in-the-Treatment-of-Addictive-Behaviors-by-G-Alan-Marlatt.pdf
    • http://muicuiu.dumb1.com/4a00a08a06a09a02/The-Angry-Heart-Overcoming-Borderline-and-Addictive-Disorders-An-Interactive-Self-Help-Guide-by-Joseph-Santoro.pdf
    • http://muicuiu.dumb1.com/6a07a02a01a05a00/Principles-of-Behavior-Change-Understanding-Behavior-Modification-Techniques-by-Edward-P-Sarafino.pdf
    • http://muicuiu.dumb1.com/7a03a08a02a02a01/Little-Habits-Big-Habits-Eliminating-Addictive-Habits-Leading-To-a-Lively-and-Happier-Lifestyle-by-Heather-Suskind.pdf
    • http://muicuiu.dumb1.com/7a08a02a07a01/Brain-Lock-Free-Yourself-from-Obsessive-Compulsive-Behavior-by-Jeffrey-M-Schwartz.pdf
    • http://muicuiu.dumb1.com/8a05a03a01a05a08/Obsessive-Compulsive-Behavior-In-Samuel-Beckett-s-Trilogy-by-Jude-R-Meche.pdf
    • http://muicuiu.dumb1.com/7a06a00a03a01a04/Polarities-of-Experience-Relatedness-and-Self-Definition-in-Personality-Development-Psychopathology-and-the-Therapeutic-Process-by-Sidney-J-Blatt.pdf
    • http://muicuiu.dumb1.com/1a03a09a05a08a06/Wartime-Understanding-and-Behavior-in-the-Second-World-War-by-Paul-Fussell.pdf
    • http://muicuiu.dumb1.com/9a02a05a06a02a01/Adrenaline-Junkies-and-Template-Zombies-Understanding-Patterns-of-Project-Behavior-by-Tom-DeMarco.pdf
    • http://muicuiu.dumb1.com/4a00a09a02a06a09/Living-in-the-Dead-Zone-Janis-Joplin-and-Jim-Morrison-Understanding-Borderline-Personality-Disorder-by-Gerald-Faris.pdf
    • http://muicuiu.dumb1.com/8a06a09a04a06a01/Supporting-Positive-Behavior-Responding-to-Behavior-Guiding-Challenging-Behavior-Assorted-Pack-Winning-Ways-for-Early-Childhood-Professionals-by-Gigi-Schweikert.pdf
    • http://muicuiu.dumb1.com/4a06a05a06a07a05/How-to-Think-Like-a-Horse-Essential-Insights-for-Understanding-Equine-Behavior-and-Building-an-Effective-Partnership-with-Your-Horse-by-Cherry-Hill.pdf
    • http://muicuiu.dumb1.com/6a07a02a00a09a08/Beyond-Behavior-Modification-A-Cognitive--Behavorial-Approach-to-Behavior-Management-in-the-School-by-Joseph-S-Kaplan.pdf
    • http://muicuiu.dumb1.com/3a02a09a08a09a01/Risky-Behavior-Bad-Behavior-1-by-L-A-Witt.pdf
    • http://muicuiu.dumb1.com/3a03a06a04a05a03/Reckless-Behavior-Bad-Behavior-3-by-L-A-Witt.pdf
    • http://muicuiu.dumb1.com/4a06a01a07a09a01/Romantic-Behavior-Bad-Behavior-4-by-L-A-Witt.pdf
    • http://muicuiu.dumb1.com/1a09a02a08a06a04/Relapse-Prevention-Maintenance-Stra