Malicious PDF — malware analysis report

Static analysis result for SHA-256 c2ba515c61cb2592…

MALICIOUS

PDF

40.7 KB Created: 2018-11-22 08:02:14 +03:00 Authoring application: Adobe Acrobat Pro 10.0.0 (via ESP Ghostscript 7.07) First seen: 2018-12-09
MD5: 3ff0193a9fda603c529e73daecef5ec0 SHA-1: 38a166e0ee255a1e8d6d48377d76d0a3dbedc1b7 SHA-256: c2ba515c61cb2592a77991ef7f15c1e836a7c880bc374ed8ebc52c2e5fdf5504
92 Risk Score

Machine Learning

  • Nyx PDF Classifier malicious score 0.9181

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://www.gorillawalker.com/mojo-the-mobile-journalism-handbook-how-to-make-broadcast-videos.pdf In PDF document text
    • http://www.gorillawalker.com/dollhouse-magic-how-to-make-and-find-simple-dollhouse-furniture.pdfIn PDF document text
    • http://www.gorillawalker.com/malton-treasure-hunt-on-foot-huntfun-co-uk.pdfIn PDF document text
    • http://www.gorillawalker.com/a-legal-bibliography-of-the-british-commonwelth-of-nations-7.pdfIn PDF document text
    • http://www.gorillawalker.com/fifty-shades-darker-fifty-shades-freed-books-two-and-three.pdfIn PDF document text
    • http://www.gorillawalker.com/little-red-riding-hood-folk-fairytales.pdfIn PDF document text
    • http://www.gorillawalker.com/mr-squirrel-and-the-moon.pdfIn PDF document text
    • http://www.gorillawalker.com/adventures-in-the-magic-playhouse-the-pirates-treasure.pdfIn PDF document text
    • http://www.gorillawalker.com/surgery-of-the-shoulder-data-handling-in-science-and-technology.pdfIn PDF document text
    • http://www.gorillawalker.com/islamerica-staggering-through-the-darkness-into-the-light.pdfIn PDF document text
    • http://www.gorillawalker.com/lesbian-boi-tales-volume-1.pdfIn PDF document text
    • http://www.gorillawalker.com/in-danger-s-path-the-corps-series-book-8.pdfIn PDF document text
    • http://www.gorillawalker.com/world-vegetarian-classics-over-200-essential-international-recipes-for-the.pdfIn PDF document text
    • http://www.gorillawalker.com/words-of-divine-comfort-kindle-edition.pdfIn PDF document text
    • http://www.gorillawalker.com/juvenile-delinquency-9th-edition.pdfIn PDF document text
    • http://www.gorillawalker.com/serenade-sheet-music-p8202-1936.pdfIn PDF document text
    • http://www.gorillawalker.com/sniper-a-novel.pdfIn PDF document text
    • http://www.gorillawalker.com/sciencefusion-teacher-edition-grades-6-8-module-b-the-diversity.pdfIn PDF document text
    • http://www.gorillawalker.com/alimentacion-equilibrada-en-la-vida-moderna-plus-vitae-spanish-edition.pdfIn PDF document text
    • http://www.gorillawalker.com/how-to-write-a-novel-learn-the-critical-skills-that.pdfIn PDF document text
    • http://www.gorillawalker.com/paris-by-metro-an-underground-history.pdfIn PDF document text
    • http://www.gorillawalker.com/his-day-in-her-shoes-crossdressing-femdom-feminization-kindle-edition.pdfIn PDF document text
    • http://www.gorillawalker.com/the-power-house.pdfIn PDF document text
    • http://www.gorillawalker.com/el-arte-epistolar-en-el-renacimento-espanol-serie-a-monograf.pdfIn PDF document text
    • http://www.gorillawalker.com/jes-s-por-qu-el-mundo-sigue-fascinado-con-l.pdfIn PDF document text
    • http://www.gorillawalker.com/fakir-the.pdfIn PDF document text
    • http://www.gorillawalker.com/the-future-of-health-policy.pdfIn PDF document text
    • http://www.gorillawalker.com/jaguar-c-type-d-type-gold-portfolio-1951-1960.pdfIn PDF document text
    • http://www.gorillawalker.com/the-tabernacle-of-david.pdfIn PDF document text
    • http://www.gorillawalker.com/flora-europaea-vol-1-psilotaceae-to-platanaceae.pdfIn PDF document text
    • http://www.gorillawalker.com/the-donor-acceptor-approach-to-molecular-interactions.pdfIn PDF document text
    • http://www.gorillawalker.com/great-movie-instrumental-solos-violin-piano-accompaniment.pdfIn PDF document text
    • http://www.gorillawalker.com/the-quotable-abigail-adams.pdfIn PDF document text
    • http://www.gorillawalker.com/historia-de-bogota-spanish-edition.pdfIn PDF document text
    • http://www.gorillawalker.com/academic-dictionary-of-pharmacy.pdfIn PDF document text
    • http://www.gorillawalker.com/catherine-the-great-and-potemkin-the-imperial-love-affair.pdfIn PDF document text
    • http://www.gorillawalker.com/origami-racer-fold-your-own-racers-and-battle-your-friends.pdfIn PDF document text
    • http://www.gorillawalker.com/risk-management-in-life-critical-systems-iste.pdfIn PDF document text
    • http://www.gorillawalker.com/the-official-dlab-training-manual-study-guide-and-practice-test.pdfIn PDF document text
    • http://www.gorillawalker.com/essential-habits-21-life-changes-that-can-make-you-creative.pdfIn PDF document text
    • http://www.w3.org/1999/02/22-rdf-syntax-ns#In PDF document text
    • http://purl.org/dc/elements/1.1/In PDF document text
    • http://ns.adobe.com/xap/1.0/In PDF document text
    • http://ns.adobe.com/pdf/1.3/In PDF document text
    • http://ns.adobe.com/xap/1.0/mm/In PDF document text
    • http://www.aiim.org/pdfa/ns/extension/In PDF document text
    • http://www.aiim.org/pdfa/ns/schema#In PDF document text
    • http://www.aiim.org/pdfa/ns/property#In PDF document text
    • http://www.aiim.org/pdfa/ns/id/In PDF document text