Malicious PDF — malware analysis report

Static analysis result for SHA-256 c87edb24b02c0acb…

MALICIOUS

PDF

25.9 KB Created: 2019-05-07 04:00:07 +01:00 Authoring application: mPDF 5.7
MD5: c3dcfcdbe7e72074f6025ac56d0993b2 SHA-1: 2c8fda492869c15feef65e065d928a631b77bc8c SHA-256: c87edb24b02c0acb6dc0565167d77b40c9a24df61feb2eeb7c6f476a3e25b1de
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1204.002 Malicious Link

The PDF file contains a link farm with 31 external PDF links, as indicated by the PDF_SEO_LINK_FARM heuristic. The ML classifier also flagged this PDF as malicious with high confidence. The primary attack pattern involves directing users to a large number of external documents, likely for SEO poisoning or to host malicious content.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9908

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/1a00a09a06a05a04a02/Europaische-Identitatsfindung-Das-Reich-ALS-Europaische-Vision-by-Michael-E-ig.pdf
    • http://muicuiu.dumb1.com/1a01a02a09a08a05a07/Europaische-Keramik-Seit-1950-Sammlung-Dr-Hans-Thiemann-E-Bestandskatalog-Ausstellung-Im-Museum-Fur-Kunst-U-Gewerbe-Hamburg-6-Juni-2-Septem-by-Heinz-Spielmann.pdf
    • http://muicuiu.dumb1.com/1a00a09a06a06a06a06/Europaische-Zentralbank-by-Otmar-Franz.pdf
    • http://muicuiu.dumb1.com/1a00a09a06a06a02a04/Europaische-Union-by-Josef-Weindl.pdf
    • http://muicuiu.dumb1.com/1a00a09a06a04a04a05/Einf-hrung-In-Die-Europ-ische-Ethnologie-by-Wolfgang-Kaschuba.pdf
    • http://muicuiu.dumb1.com/1a00a09a06a06a01a08/Europaische-Tourismuspolitik-by-Ursula-Braun-Moser.pdf
    • http://muicuiu.dumb1.com/1a01a00a00a01a09a05/Kodifikation-Und-Anpassung-Des-Bulgarischen-Ipr-an-Das-Europaische-Recht-by-Petja-Maesch.pdf
    • http://muicuiu.dumb1.com/1a00a00a06a05a08a06/Billie-Wilder-Eine-Europaische-Karriere-by-Andreas-Hutter.pdf
    • http://muicuiu.dumb1.com/6a05a09a08a04a06/Hans-Andersen-s-Fairy-Tales-Pictured-by-Mabel-Lucie-Attwell-by-Hans-Christian-Andersen.pdf
    • http://muicuiu.dumb1.com/1a01a00a01a00a07a03/Transit-46-Europ-ische-Revue-Krise-Kritik-Kapitalismus-by-J-rgen-Osterhammel.pdf
    • http://muicuiu.dumb1.com/9a00a03a03a00a03/London-Eine-europ-ische-Metropole-in-Texten-und-Bildern-by-Norbert-Kohl.pdf
    • http://muicuiu.dumb1.com/1a01a09a00a07a04a03/Europaische-Nachbarn--Vertraut-Und-Fremd-Padagogik-Interkultureller-Begegnungen-by-Lucette-Colin.pdf
    • http://muicuiu.dumb1.com/8a02a08a03a00a08/Evu-Das-Europaische-Schuldvertragsubereinkommen-Ubereinkommen-Uber-Das-Auf-Vertragliche-Schuldverhaltnisse-Anzuwendende-R-by-Joseph-Braunbeck.pdf
    • http://muicuiu.dumb1.com/1a01a00a08a09a00a04/Europaische-Entwicklungsroman-in-Europa-Und-Ubersee-Literarische-Lebensentwurfe-Der-Neuzeit-by-Heinz-Hillmann.pdf
    • http://muicuiu.dumb1.com/1a00a01a02a09a09a06/Europaische-Salons-Hohepunkte-Einer-Versunkenen-Weiblichen-Kultur-by-Verena-von-der-Heyden-Rynsch.pdf
    • http://muicuiu.dumb1.com/2a04a01a05a03a03/Panzer-Commander-The-Memoirs-of-Colonel-Hans-von-Luck-by-Hans-von-Luck.pdf
    • http://muicuiu.dumb1.com/3a08a02a08a03a05/Panzer-Commander-The-Memoirs-of-Colonel-Hans-von-Luck-by-Hans-von-Luck.pdf
    • http://muicuiu.dumb1.com/1a01a06a04a07a03a05/Europ-ische-Kleinsprachen-Zu-Lage-und-Status-der-kleinen-Sprachen-an-Schwelle-zum-dritten-Jahrtausend-by-Heinrich-P-Kelz.pdf
    • http://muicuiu.dumb1.com/1a00a06a00a03a00a07/Europ-ische-Perspektiven-Der-Demokratie-Historische-Pr-missen-Und-Aktuelle-Wandlungsprozesse-In-Der-Eu-Und-Ausgew-hlten-Nationalstaaten-by-Guido-Thiemeyer.pdf
    • http://muicuiu.dumb1.com/8a07a04a03a05a01/Die-Europaische-Friedensordnung-Und-Die-Souveranitat-Der-Staaten-Jubilaumskonferenz-25-Jahre-Hessische-Stiftung-Friedens--Und-Konfliktforschung-by-Bruno-Schoch.pdf
    • http://muicuiu.dumb1.com/1a00a09a06a06a06a06/Europaische-Zentralba