Malicious PDF — malware analysis report

Static analysis result for SHA-256 b735678eaceac705…

MALICIOUS

PDF

20.7 KB Created: 2019-05-02 01:59:07 +01:00 Authoring application: mPDF 5.7
MD5: 9eda6cd29e47329f0d6c6a5419c606fa SHA-1: bfadbcdf9b89bef73620499647c59f303131f0a0 SHA-256: b735678eaceac7059a9c7515e44a690234ca7c3b565203af3188984b26cdf621
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file was flagged by a machine learning classifier and contains a large number of embedded external links, characteristic of a link farm or phishing lure. The heuristic 'PDF_SEO_LINK_FARM' indicates a mass of external PDF links, with the first identified URL being http://kiteeearpdf.myhome.cx/1f215f216f213f219f210/Dragon-Fate-War-of-the-Blades-1-by-J-D-Hallowell.pdf. This suggests the document's primary purpose is to redirect users to potentially malicious content hosted on external sites.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9904

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://kiteeearpdf.myhome.cx/1f215f216f213f219f210/Dragon-Fate-War-of-the-Blades-1-by-J-D-Hallowell.pdf
    • http://kiteeearpdf.myhome.cx/3f213f219f218f213f218/Dragon-Justice-by-J-D-Hallowell.pdf
    • http://kiteeearpdf.myhome.cx/2f215f218f214f215f218/Games-of-Fate-Fate-Fire-Shifter-Dragon-1-by-Kris-Austen-Radcliffe.pdf
    • http://kiteeearpdf.myhome.cx/2f218f219f217f219f217/The-Hunter-s-Blades-Collector-s-Edition-Forgotten-Realms-Hunter-s-Blades-1-3-Legend-of-Drizzt-14-16-by-R-A-Salvatore.pdf
    • http://kiteeearpdf.myhome.cx/2f219f219f216f213f215/Dragon-Born-Kindled-by-Fate-2-by-Misha-Paige.pdf
    • http://kiteeearpdf.myhome.cx/2f219f219f217f216f219/Dragon-Marked-Kindled-by-Fate-Book-3-by-Misha-Paige.pdf
    • http://kiteeearpdf.myhome.cx/3f217f216f216f217f214/Conpulsio-Fate-Fire-Shifter-Dragon-1-5-by-Kris-Austen-Radcliffe.pdf
    • http://kiteeearpdf.myhome.cx/4f211f217f218f214f217/The-Silence-Cycle-Episode-Two-Broken-Fate-Fire-Shifter-Dragon-4-2-by-Kris-Austen-Radcliffe.pdf
    • http://kiteeearpdf.myhome.cx/4f217f217f210f211f214/Dominion-of-Blades-Dominion-of-Blades-1-by-Matt-Dinniman.pdf
    • http://kiteeearpdf.myhome.cx/2f211f216f211f213f218/The-Cardinal-s-Blades-The-Cardinal-s-Blades-1-by-Pierre-Pevel.pdf
    • http://kiteeearpdf.myhome.cx/4f219f213f217f215f219/Dragon-Prince-Series-Including-Melanie-Rawn-Dragon-Prince-Sunrunner-s-Fire-the-Star-Scroll-Sunrunner-High-Prince-Stronghold-Novel-the-Dragon-Token-Skybowl-Dragon-Prince-and-Dragon-Star-Trilogies-Diarmadhi-Merida-Dragon-Prince-Isulk-im-by-Hephaestus-Books.pdf
    • http://kiteeearpdf.myhome.cx/8f217f215f212f216f213/G-A-Aiken-Dragon-Bundle-The-Dragon-Who-Loved-Me-What-a-Dragon-Should-Know-Last-Dragon-Standing-amp-How-to-Drive-a-Dragon-Crazy-by-G-A-Aiken.pdf
    • http://kiteeearpdf.myhome.cx/4f217f216f215f213f214/Whispers-of-Fate-Mistresses-of-Fate-2-by-Deirdre-Dore.pdf
    • http://kiteeearpdf.myhome.cx/6f214f214f219f214f211/Fate-Forgotten-Fate-of-the-Gods-2-by-Amalia-Dillin.pdf
    • http://kiteeearpdf.myhome.cx/2f211f218f218f210f219/Shattered-Fate-Twisted-Fate-1-by-Leri-Lake.pdf
    • http://kiteeearpdf.myhome.cx/7f216f215f210f218f213/Creating-Fate-Role-of-Fate-3-by-Tamra-Lassiter.pdf
    • http://kiteeearpdf.myhome.cx/1f219f218f214f216f210/Tempting-Fate-Fate-of-the-Gods-1-5-by-Amalia-Dillin.pdf
    • http://kiteeearpdf.myhome.cx/2f210f210f210f216f216/Fate-Heals-Twist-of-Fate-2-by-Tina-Saxon.pdf
    • http://kiteeearpdf.myhome.cx/2f218f211f210f218f215/Beyond-Fate-Fate-of-the-Gods-3-by-Amalia-Dillin.pdf
    • http://kiteeearpdf.myhome.cx/4f213f214f218f216f210/Enduring-Fate-Fate-for-Love-1-by-Alicia-Rae.pdf
    • http://kiteeearpdf.myhome.cx/4f211f217f218f214f21