Malicious PDF — malware analysis report

Static analysis result for SHA-256 d3e2c87a507bbf25…

MALICIOUS

PDF

130.7 KB Created: 2022-07-26 04:45:41 +00:00 Authoring application: painbre (via PDF Master 1.0.1) First seen: 2026-06-21
MD5: 3d217ab6bd574584e3a0200907de5d77 SHA-1: 108befc51fcdda1e25810a7ddd6303d704c44c96 SHA-256: d3e2c87a507bbf25ed5dd9a95b94860debdcd1fab514b221e442055951aa59ea
94 Risk Score

Machine Learning

  • Nyx PDF Classifier clean score 0.0005

Heuristics 4

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • PDF link farm advertises cracked/pirated software medium PDF_CRACKED_SOFTWARE_LURE
    PDF contains many clickable links whose targets use cracked-software, keygen, serial-key, or warez vocabulary. These are SEO-spam lure documents that rank for software-piracy searches and route users to fake 'crack' download pages distributing potentially-unwanted programs, adware, or droppers. The PDF itself carries no exploit — the risk is the linked destinations.
  • External URI info PDF_URI
    PDF contains an external URL action
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://starsearchtool.com/concordant.QVVUT0RFU0suRUNPVEVDVC5BTkFMWVNJUy4yMDExLldJVEguWC1GT1JDRS5LRVlHRU4QVV/ZG93bmxvYWR8SmQ0ZW00M2RYeDhNVFkxT0RJeE9EazROWHg4TWpVNU1IeDhLRTBwSUZkdmNtUndjbVZ6Y3lCYldFMU1VbEJESUZZeUlGQkVSbDA/highstreet/vivolinx/kagrana/quieting/noctambulism/riboflavin PDF link annotation
    • https://efekt-metal.pl/witaj-swiecie/In PDF document text
    • http://www.hva-concept.com/steinberg-wavelab-v5-01a-h2o-serial-key/In PDF document text
    • http://clubonlineusacasino.com/wp-content/uploads/2022/07/Speed_Hindi_Download_High_Quality.pdfIn PDF document text
    • https://smartsizebuildings.com/advert/anurag-4-3-setup-new-free-download/In PDF document text
    • https://www.jbdsnet.com/wp-content/uploads/2022/07/WWE_2K17__Future_Stars_Pack_crack_FREE_Serial_Key.pdfIn PDF document text
    • http://www.cpakamal.com/wp-content/uploads/2022/07/Sid_Meiers_Civilization_Beyond_Earth__Rising_Tide_download_r.pdfIn PDF document text
    • https://greengrovecbd.com/blog/keygen-xf-trunest-2013-x32-exe-__full__/In PDF document text
    • http://in-loving-memory.online/?p=60950In PDF document text
    • http://bellarefood.com/wp-content/uploads/2022/07/kaledet.pdfIn PDF document text
    • https://transitdamagerepairs.com/wp-content/uploads/2022/07/download_spongebob_squarepants_full_episode_bahasa_indonesia.pdfIn PDF document text
    • http://ramchandars.com/wp-content/uploads/2022/07/Download_Wondershare_Winsuite_2012_For_Windows_7_Torrent_Pirate_241_Free-1.pdfIn PDF document text
    • https://coolbreezebeverages.com/adobe-acrobat-xi-pro-10-1-16-multilingual-crack-full-link-version/In PDF document text
    • https://www.pickupevent.com/winagents-ios-config-editor-_top_-cracked/In PDF document text
    • https://shodalap.org/wp-content/uploads/2022/07/Fantastic_Four_English_2_Hindi_Dubbed_Movies.pdfIn PDF document text
    • https://sarahebott.org/wp-content/uploads/2022/07/Singh_Is_King_Full_Movie_Hd_1080p_Bluray_Download.pdfIn PDF document text
    • https://pzn.by/wp-content/uploads/2022/07/chinese_pharmacopoeia_2010_pdf.pdfIn PDF document text
    • https://srkvilaskodaikanal.com/2022/07/26/undertale-soundtrack-free-download-patch-better/In PDF document text
    • https://www.myai-world.com/wp-content/uploads/2022/07/witcher_3_complete_quest_command.pdfIn PDF document text
    • https://www.radiosky.net/wp-content/uploads/2022/07/AssassinsCreedHighlycompressed16mb.pdfIn PDF document text
    • https://ebbsarrivals.com/2022/07/26/hey-sharde-maa-lata-mangeshkar-mp3-work-free-31/In PDF document text
    • http://clubonlineusacasino.com/wp-In PDF document text
    • https://www.jbdsnet.com/wp-content/uploads/2022/07/WWE_2K17__Future_Stars_In PDF document text
    • http://www.cpakamal.com/wp-content/uploads/2022/07/Sid_Meiers_Civilization_BeIn PDF document text
    • https://transitdamagerepairs.com/wp-content/uploads/2022/07/download_spongebIn PDF document text
    • http://ramchandars.com/wp-content/uploads/2022/07/Download_Wondershare_WiIn PDF document text
    • https://coolbreezebeverages.com/adobe-acrobat-xi-pro-10-1-16-multilingual-crack-In PDF document text
    • https://shodalap.org/wp-In PDF document text
    • https://sarahebott.org/wp-content/uploads/2022/07/Singh_Is_King_Full_Movie_Hd_1In PDF document text
    • https://srkvilaskodaikanal.com/2022/07/26/undertale-soundtrack-free-download-In PDF document text
    • https://www.myai-world.com/wp-In PDF document text
    • https://www.radiosky.net/wp-In PDF document text
    • https://ebbsarrivals.com/2022/07/26/hey-sharde-maa-lata-mangeshkar-mp3-work-In PDF document text
    • http://ramchandars.com/wp-content/uploads/2022/07/download_wondershare_winsuite_2012_for_windows_7_torrent_pirate_241_free-1.pdfIn PDF document text
    • http://www.tcpdf.orgIn PDF document text
    • http://www.w3.org/1999/02/22-rdf-syntax-ns#In PDF document text
    • http://purl.org/dc/elements/1.1/In PDF document text
    • http://ns.adobe.com/xap/1.0/In PDF document text
    • http://ns.adobe.com/pdf/1.3/In PDF document text
    • http://ns.adobe.com/xap/1.0/mm/In PDF document text
    • http://www.aiim.org/pdfa/ns/extension/In PDF document text
    • http://www.aiim.org/pdfa/ns/schema#In PDF document text
    • http://www.aiim.org/pdfa/ns/property#In PDF document text
    • http://www.aiim.org/pdfa/ns/id/In PDF document text