Malicious PDF — malware analysis report

Static analysis result for SHA-256 d09ab99a652231db…

MALICIOUS

PDF

21.7 KB Created: 2019-05-03 18:50:38 +01:00 Authoring application: mPDF 5.7
MD5: dd7b246939e7662718c0c902c9c1ac57 SHA-1: 047c0af11b5c3b40dea94ee0c45e18f2f0d38807 SHA-256: d09ab99a652231db46b357f31866c522f1ad37d1f4e10d678b6aa8be155aa7c2
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF contains a large number of external links, as indicated by the PDF_SEO_LINK_FARM heuristic. The ML classifier also strongly flagged this PDF as malicious. The embedded URLs point to a domain that appears to be hosting a link farm, likely intended to direct users to malicious content or phishing sites. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://kiteeearpdf.myhome.cx/2f213f216f218f218f213/Hat-Dance-Emilia-Cruz-Mysteries-2-by-Carmen-Amato.pdf
    • http://kiteeearpdf.myhome.cx/1f215f219f213f219f219/Oh-Mexico-Love-and-Adventure-in-Mexico-City-by-Lucy-Neville.pdf
    • http://kiteeearpdf.myhome.cx/5f213f215f211/The-Hidden-Memory-of-Objects-by-Danielle-Mages-Amato.pdf
    • http://kiteeearpdf.myhome.cx/4f215f213f213f211f216/City-of-Darkness-City-of-Light-by-Marge-Piercy.pdf
    • http://kiteeearpdf.myhome.cx/3f211f216f217f216f211/City-of-Darkness-City-of-Light-by-Marge-Piercy.pdf
    • http://kiteeearpdf.myhome.cx/5f218f216f212f211f214/Sex-Work-and-the-City-The-Social-Geography-of-Health-and-Safety-in-Tijuana-Mexico-by-Yasmina-Katsulis.pdf
    • http://kiteeearpdf.myhome.cx/2f212f215f214f211f218/Something-in-the-Air-The-Story-of-American-Passion-and-Defiance-in-the-1968-Mexico-City-Olympics-by-Richard-Hoffer.pdf
    • http://kiteeearpdf.myhome.cx/2f211f217f215f218f212/The-Hidden-Light-of-Objects-by-Mai-Al-Nakib.pdf
    • http://kiteeearpdf.myhome.cx/2f218f212f210f219f219/Hidden-in-the-Early-Light-by-Tecla-Emerson.pdf
    • http://kiteeearpdf.myhome.cx/3f219f214f210f212/The-Mortal-Instruments-the-Complete-Collection-City-of-Bones-City-of-Ashes-City-of-Glass-City-of-Fallen-Angels-City-of-Lost-Souls-City-of-Heavenly-Fire-by-Cassandra-Clare.pdf
    • http://kiteeearpdf.myhome.cx/4f216f212f214f216f219/The-Hidden-Light-of-Northern-Fires-by-Daren-Wang.pdf
    • http://kiteeearpdf.myhome.cx/1f211f212f218f215f212/The-Hidden-City-The-House-War-1-by-Michelle-West.pdf
    • http://kiteeearpdf.myhome.cx/9f213f215f215f219f216/War-of-Chaos-The-Hidden-city-of-Chelldrah-ham-2-by-Stephan-von-Clinkerhoffen.pdf
    • http://kiteeearpdf.myhome.cx/1f219f215f212f211f212/War-of-Chaos-The-Hidden-City-of-Chelldrah-ham-2-by-Stephan-von-Clinkerhoffen.pdf
    • http://kiteeearpdf.myhome.cx/1f211f216f217f214f218f216/New-Mexico-Baptisms-Church-in-San-Ildefonso-1700-1796-by-New-Mexico-Genealogical-Society.pdf
    • http://kiteeearpdf.myhome.cx/5f214f218f219f218f211/Stad-in-de-Filipijnen-Cebu-City-Filipijnse-Stad-Davao-City-Quezon-City-Vigan-Iloilo-City-Baguio-Batangas-City-Lucena-Zamboanga-City-by-Bron-Wikipedia.pdf
    • http://kiteeearpdf.myhome.cx/1f210f215f219f214f213f216/Con-Maximiliano-En-Mexico-With-Maximilian-in-Mexico-by-Brigitte-Hamann.pdf
    • http://kiteeearpdf.myhome.cx/9f219f214f219f211f210/The-Code-of-the-City-Standards-and-the-Hidden-Language-of-Place-Making-by-Eran-Ben-Joseph.pdf
    • http://kiteeearpdf.myhome.cx/1f219f219f217f214f216/Field-Notes-from-a-Hidden-City-An-Urban-Nature-Diary-by-Esther-Woolfson.pdf
    • http://kiteeearpdf.myhome.cx/4f210f218f214f216f214/Dark-in-the-City-of-Light-by-Paul-Robertson.pdf
    • http://kiteeearpdf.myhome.cx/2f212f215f214f211f218/Something-in-the-Air-The-Story-of-American-Passion-and-Defiance-in-the-1968-Mexico-City-Olympics-by-Richard-Hoffer