Malicious PDF — malware analysis report

Static analysis result for SHA-256 b850b263336ec2e3…

MALICIOUS

PDF

19.0 KB Created: 2020-03-18 22:33:00 +00:00 Authoring application: mPDF 5.7 First seen: 2021-05-04
MD5: fe536b2565960ae9dfa464894a506efd SHA-1: 5b4efe693888fb622359b2f214b2bee33cad5b44 SHA-256: b850b263336ec2e362d466bbcd084b3ff1e290120eda957ad77481015b6703ea
92 Risk Score

Machine Learning

  • Nyx PDF Classifier malicious score 0.9912

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://lwoscmobook.myhome.cx/452455240524552415248/A-Question-Worth-Asking-Questions-for-a-Highlander-Book-6-by-Angeline-Fortin.pdf In PDF document text
    • http://lwoscmobook.myhome.cx/452455240524552415246/A-Question-for-Harry-Questions-for-a-Highlander-4-by-Angeline-Fortin.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/352485245524252475249/A-Question-of-Love-Questions-for-a-Highlander-1-by-Angeline-Fortin.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/352485245524252485242/A-Question-of-Trust-Questions-for-a-Highlander-2-by-Angeline-Fortin.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/252475244524052465244/A-Laird-for-All-Time-by-Angeline-Fortin.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/352485245524252485243/My-Heart-s-in-the-Highlands-by-Angeline-Fortin.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/352405240524352475245/A-Time-amp-Place-for-Every-Laird-by-Angeline-Fortin.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/352405240524352475248/Love-in-the-Time-of-a-Highland-Laird-by-Angeline-Fortin.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/552455245524352435243/20-Christmas-Recipes-amp-Book-Club-Questions-Inspired-by-Hansel-amp-Gretel-Bonus-Content-Book-Club-Ideas-Questions-for-The-Hunger-Games-Mockingjay-and-Twenty-Twenty-Books-and-Food-1-by-Buffy-Naillon.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/252425248524552485241/QBQ-The-Question-Behind-the-Question-Practicing-Personal-Accountability-in-Work-and-in-Life-by-John-G-Miller.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/25240524352425248/A-Highlander-s-Passion-Highlander-s-Beloved-2-by-Vonnie-Davis.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/15241524152425249/The-Highlander-s-Touch-Highlander-3-by-Karen-Marie-Moning.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/152485249524152485247/Highlander-s-Faerie-Highlander-Heat-5-by-Joanne-Wadsworth.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/65248524052475249/Wishing-for-a-Highlander-Highland-Wishes-Book-1-by-Jessi-Gage.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/452495243524052445248/The-Book-of-Questions-by-Pablo-Neruda.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/352455243524552475240/Totally-Worth-Christmas-The-Worth-4-5-by-Mara-Jacobs.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/85245524452485247/Highlander-for-the-Holidays-Highlander-8-by-Janet-Chapman.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/452495246524852435245/Highlander-In-Her-Dreams-Highlander-2-by-Allie-Mackay.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/45245524852405242/Claimed-by-the-Highlander-Highlander-2-by-Julianne-MacLean.pdfIn PDF document text
    • http://lwoscmobook.myhome.cx/152475242524552485242/Loving-the-Highlander-Highlander-2-by-Janet-Chapman.pdfIn PDF document text