Malicious PDF — malware analysis report

Static analysis result for SHA-256 d6899ac5c28ac748…

MALICIOUS

PDF

16.7 KB Created: 2019-05-02 01:05:50 +01:00 Authoring application: mPDF 5.7 First seen: 2021-03-01
MD5: 4a86f4979fb566b0cfc3243670433359 SHA-1: 02d452acc11c441c9dd3afcd67b5fe1944dd4cda SHA-256: d6899ac5c28ac74863ab4449e76fca01d66420a5017153c29092924d4aef080e
100 Risk Score

Machine Learning

  • Nyx PDF Classifier malicious score 0.9810

Heuristics 3

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Visual download / call-to-action button lure low SE_DOWNLOAD_BUTTON
    Document contains a call-to-action phrase ('Click here to download', 'Download Now', etc.) — low-signal unless other findings point to a malicious workflow
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/1a02a01a08a06a00/A-Cold-Day-in-Hell-Cold-Case-Investigation-1-by-Lissa-Marie-Redmond.pdf In PDF document text
    • http://muicuiu.dumb1.com/1a07a08a06a06a01/The-Cold-Cold-Ground-Detective-Sean-Duffy-1-by-Adrian-McKinty.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a00a03a06a08/A-Cold-Dark-Place-Cold-Justice-1-by-Toni-Anderson.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a01a07a08a01a05/Over-in-the-Arctic-Where-the-Cold-Winds-Blow-Where-the-Cold-Wind-Blows-Sharing-Nature-with-Children-Books-by-Marianne-Berkes.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a08a06a01a06a04/Cold-Secrets-Cold-Justice-7-by-Toni-Anderson.pdfIn PDF document text
    • http://muicuiu.dumb1.com/3a01a08a09a03a00/Cold-Pursuit-Cold-Justice-2-by-Toni-Anderson.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a09a04a05a06a08/Cold-Blooded-Cold-Justice-9-by-Toni-Anderson.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a08a01a09a04a04/Cold-Light-of-Day-Cold-Justice-3-by-Toni-Anderson.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a01a04a07a07a06/In-From-the-Cold-Cold-Country-1-by-Mercy-Celeste.pdfIn PDF document text
    • http://muicuiu.dumb1.com/9a05a03a07/The-Pines-of-Winder-Ranch-A-Cold-Creek-Homecoming-A-Cold-Creek-Reunion-by-RaeAnne-Thayne.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a02a00a07a07a00/The-Cold-Cold-Sea-by-Linda-Huber.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a04a02a08a07a00/Cold-as-Ice-Cold-as-Ice-1-by-Charles-Sheffield.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a00a02a01a06a04/Leaving-Cold-Sassy-The-Unfinished-Sequel-to-Cold-Sassy-Tree-by-Olive-Ann-Burns.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a01a06a02a09/A-Cold-Creek-Noel-Cowboys-of-Cold-Creek-11-by-RaeAnne-Thayne.pdfIn PDF document text
    • http://muicuiu.dumb1.com/3a04a05a06a03a01/A-Cold-Creek-Secret-Cowboys-of-Cold-Creek-7-by-RaeAnne-Thayne.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a05a02a08a06a09/Murder-At-Cold-Creek-College-Cold-Creek-1-by-Christa-Nardi.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a02a02a04a01/Cold-Ridge-Cold-Ridge-U-S-Marshals-1-by-Carla-Neggers.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a00a09a08a09a09/The-Vow-by-Kim-Carpenter.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a02a04a01a03a09/The-Vow-by-Kim-Carpenter.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a02a09a09a09a05/Words-the-Dog-Knows-by-J-R-Carpenter.pdfIn PDF document text