Malicious PDF — malware analysis report

Static analysis result for SHA-256 c91af8bbbe0e690c…

MALICIOUS

PDF

39.9 KB Created: 2018-11-15 18:31:59 +03:00 Authoring application: LaTeX with hyperref package (via PDFlib PLOP 2.0.0p6 (SunOS)/Acrobat Distiller 5.0.5 (Windows)) First seen: 2018-11-20
MD5: 574d39f13b73e739d854ab39d8f28892 SHA-1: 85fdf04b25504d06a45e3e6fdc37507950e01897 SHA-256: c91af8bbbe0e690c36c8c74f762a30cd1b582e7814f1bb4b1323be0cc8d1b1e2
92 Risk Score

Machine Learning

  • Nyx PDF Classifier malicious score 0.9027

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://www.gorillawalker.com/chemical-and-biological-warfare.pdf In PDF document text
    • http://www.gorillawalker.com/house-of-worship-sacred-spaces-in-america.pdfIn PDF document text
    • http://www.gorillawalker.com/the-aeneid-a-new-prose-translation-wonders-of-the-world.pdfIn PDF document text
    • http://www.gorillawalker.com/conservatism-in-summation-rules-for-closely-spaced-modes-report.pdfIn PDF document text
    • http://www.gorillawalker.com/disabled-desires-2-teasing-tabitha.pdfIn PDF document text
    • http://www.gorillawalker.com/life-on-mars-the-one-way-mission-kindle-edition.pdfIn PDF document text
    • http://www.gorillawalker.com/romancing-the-clock-2nd-edition.pdfIn PDF document text
    • http://www.gorillawalker.com/the-speeches-discourses-and-prayers-of-col-john-barkstead-col.pdfIn PDF document text
    • http://www.gorillawalker.com/a-simple-guide-to-tooth-discoloration-and-related-diseases-a.pdfIn PDF document text
    • http://www.gorillawalker.com/knopf-guide-california-knopf-guides.pdfIn PDF document text
    • http://www.gorillawalker.com/office-skills-the-finishing-touch.pdfIn PDF document text
    • http://www.gorillawalker.com/blood-song-blood-singer.pdfIn PDF document text
    • http://www.gorillawalker.com/fargo-moorhead-metro-area-flood-control-and-red-river-basin.pdfIn PDF document text
    • http://www.gorillawalker.com/heat-energy-god-s-design-for-the-physical-world.pdfIn PDF document text
    • http://www.gorillawalker.com/tdy.pdfIn PDF document text
    • http://www.gorillawalker.com/asia-today-hong-kong-video-tape-50-minutes-vhs.pdfIn PDF document text
    • http://www.gorillawalker.com/the-top-5-most-notorious-outlaws-jesse-james-billy-the.pdfIn PDF document text
    • http://www.gorillawalker.com/end-times-a-biblical-study-of-current-and-future-events.pdfIn PDF document text
    • http://www.gorillawalker.com/backhoe-loader-handbook-advanced-techniques-for-operators.pdfIn PDF document text
    • http://www.gorillawalker.com/the-traveller-s-handbook-of-algeria-and-tunisia-with-maps.pdfIn PDF document text
    • http://www.gorillawalker.com/santa-claus-is-coming-storm-intensity-cat-3-candy-kane.pdfIn PDF document text
    • http://www.gorillawalker.com/shape-sorters-opposites.pdfIn PDF document text
    • http://www.gorillawalker.com/it-s-all-in-your-head-kindle-single.pdfIn PDF document text
    • http://www.gorillawalker.com/a-more-perfect-union.pdfIn PDF document text
    • http://www.gorillawalker.com/more-civil-war-curiosities-fascinating-tales-infamous-characters-and-strange.pdfIn PDF document text
    • http://www.gorillawalker.com/the-herbal-kitchen-cooking-with-fragrance-and-flavor.pdfIn PDF document text
    • http://www.gorillawalker.com/essential-proteen-a-life-skills-program-for-helping-teens-succeed.pdfIn PDF document text
    • http://www.gorillawalker.com/complete-encyclopedia-of-automatic-army-rifles.pdfIn PDF document text
    • http://www.gorillawalker.com/realizing-human-rights-moving-from-inspiration-to-impact.pdfIn PDF document text
    • http://www.gorillawalker.com/making-groceries-a-story-of-creole-cooking-from-a-creole.pdfIn PDF document text
    • http://www.gorillawalker.com/seeing-through-clothes.pdfIn PDF document text
    • http://www.gorillawalker.com/all-we-know-of-love.pdfIn PDF document text
    • http://www.gorillawalker.com/translating-hollywood.pdfIn PDF document text
    • http://www.gorillawalker.com/atlas-of-flexible-bronchoscopy.pdfIn PDF document text
    • http://www.gorillawalker.com/session-nine-lessons-learned-the-succubus-sub-book-9.pdfIn PDF document text
    • http://www.gorillawalker.com/an-alien-in-my-house.pdfIn PDF document text
    • http://www.gorillawalker.com/the-new-icelandic-cookbook.pdfIn PDF document text
    • http://www.gorillawalker.com/bottle-of-red.pdfIn PDF document text
    • http://www.gorillawalker.com/induced-after-death-communication-a-new-therapy-for-healing-grief.pdfIn PDF document text
    • http://www.gorillawalker.com/mosby-s-comprehensive-review-of-practical-nursing-for-nclex-pn.pdfIn PDF document text
    • http://www.w3.org/1999/02/22-rdf-syntax-ns#In PDF document text
    • http://purl.org/dc/elements/1.1/In PDF document text
    • http://ns.adobe.com/xap/1.0/In PDF document text
    • http://ns.adobe.com/pdf/1.3/In PDF document text
    • http://ns.adobe.com/xap/1.0/mm/In PDF document text
    • http://www.aiim.org/pdfa/ns/extension/In PDF document text
    • http://www.aiim.org/pdfa/ns/schema#In PDF document text
    • http://www.aiim.org/pdfa/ns/property#In PDF document text
    • http://www.aiim.org/pdfa/ns/id/In PDF document text