Malicious PDF — malware analysis report

Static analysis result for SHA-256 bcffcf7272d1f262…

MALICIOUS

PDF

17.7 KB Created: 2019-04-09 07:44:41 +01:00 Authoring application: mPDF 5.7 First seen: 2021-04-10
MD5: bb52f24ff3a905c9864330bb4257d5e2 SHA-1: bf426d785682ea54e2b08aa9f097abe942799b5f SHA-256: bcffcf7272d1f26271631b2965018eb867f1530196ad29bf6065c220d16fa495
92 Risk Score

Machine Learning

  • Nyx PDF Classifier malicious score 0.9925

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://xiixmcuin.linkpc.net/9207204201203/So-Many-Reasons-Why-So-Many-Reasons-1-by-Missy-Johnson.pdf In PDF document text
    • http://xiixmcuin.linkpc.net/9202202200204208/1000-Reasons-to-Be-Happy-1000-Reasons-by-David-Baird.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/1200209208201204202/Lonely-Planet-s-Ultimate-Travel-Our-List-of-the-500-Best-Places-to-See-Ranked-by-Lonely-Planet.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/5209201206203202/Lonely-Planet-Naples-Pompeii-amp-the-Amalfi-Coast-by-Lonely-Planet.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/1201201203202200206/Phineas-and-Ferb-Fanon---Angelina747-Characters-Characters-of-Miriam-Nicole-Gomez-Shapiro-an-Interview-with-Nicole-Emily-and-Sophie-Franziska-Gomez-Shapiro-Jacqueline-Leroy-Nicole-Gomez-Shapiro-Sahra-Graziano-Zwei-Kletten-Und-Ein-Schnabeltier-Com-by-Source-Wikia.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/9202200209203209/Lonely-Planet-Sri-Lanka-Phrasebook-Lonely-Planet-Phrasebook-India-by-Margit-Meinhold.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/9206205207208201/Lonely-Planet-Japan-Tokyo-by-Lonely-Planet.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/1208200203205209/The-Lonely-Girl-Lonely-Girl-1-by-Gracie-Wilson.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/3205204205203204/Lonely-Planet-Walking-in-Spain-by-Lonely-Planet.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/9201202205200205/Lonely-Planet-The-World-A-Traveller-s-Guide-to-the-Planet-by-Lonely-Planet.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/1209204200201202/Pollard-by-Laura-Beatty.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/4209205201208203/At-the-Seven-Stars-by-John-L-Beatty.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/2208205205208203/The-Sellout-by-Paul-Beatty.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/2204207201204208/The-Sellout-by-Paul-Beatty.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/4209205203204201/Witch-Dog-by-John-L-Beatty.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/3201203200202206/Little-Owl-Indian-by-Hetty-Burlingame-Beatty.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/2204207206203209/Master-Rosalind-by-John-L-Beatty.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/1205202205208205/A-Donkey-for-the-King-by-John-L-Beatty.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/3202205207208201/That-s-One-Ornery-Orphan-by-Patricia-Beatty.pdfIn PDF document text
    • http://xiixmcuin.linkpc.net/1204205200201/The-Queen-s-Own-Grove-by-Patricia-Beatty.pdfIn PDF document text