Malicious PDF — malware analysis report

Static analysis result for SHA-256 e8d739976b05dd32…

MALICIOUS

PDF

18.7 KB Created: 2019-05-03 06:58:30 +01:00 Authoring application: mPDF 5.7
MD5: 2c61d41e427aed942df06969b6cc0f2b SHA-1: 21b7df1f915d7785cc4e71fdfc81a0ea78a16509 SHA-256: e8d739976b05dd321f19ae6dd6b4b81c0a4aa19b96809aae9810c877694a7b29
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1059.001 PowerShell

The PDF contains a large number of embedded URLs, identified by the PDF_SEO_LINK_FARM heuristic. While many of these URLs point to benign book titles, the sheer volume and the ML classifier's high confidence score suggest a malicious intent, likely for SEO spam or to redirect users to malicious content. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9775

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/8a02a09a01a02a09/Mastering-Digital-Black-and-White-A-Photographer-s-Guide-to-High-Quality-Black-And-White-Imaging-and-Printing-by-Amadou-Diallo.pdf
    • http://muicuiu.dumb1.com/5a02a03a06a08a02/The-White-House-by-JaQuavis-Coleman.pdf
    • http://muicuiu.dumb1.com/2a03a09a04a05/Batman-Black-and-White-Batman-Black-and-White-1-by-Mark-Chiarello.pdf
    • http://muicuiu.dumb1.com/2a01a06a08a01a09/White-Women-The-Sex-Black-Men-Love-Why-White-Women-Is-the-Choice-for-Cheating-Black-Men-by-Raymoni-Love.pdf
    • http://muicuiu.dumb1.com/3a02a04a06a00a05/Island-People-by-Coleman-Dowell.pdf
    • http://muicuiu.dumb1.com/5a03a03a09a05/Too-Much-Flesh-and-Jabez-by-Coleman-Dowell.pdf
    • http://muicuiu.dumb1.com/5a02a03a06a09a05/Fatal-Impressions-Coleman-and-Dinah-Greene-Mysteries-2-by-Reba-White-Williams.pdf
    • http://muicuiu.dumb1.com/4a08a09a00a09a01/Black-Berry-Sweet-Juice-On-Being-Black-and-White-in-Canada-by-Lawrence-Hill.pdf
    • http://muicuiu.dumb1.com/2a06a02a01a06a05/Black-In-White-Quentin-Black-Mystery-1-by-J-C-Andrijeski.pdf
    • http://muicuiu.dumb1.com/4a07a07a00a08a08/A-Man-Called-White-The-Autobiography-of-Walter-White-by-Walter-Francis-White.pdf
    • http://muicuiu.dumb1.com/7a02a08a00a07a05/White-Nation-Fantasies-of-White-Supremacy-in-a-Multicultural-Society-by-Ghassan-Hage.pdf
    • http://muicuiu.dumb1.com/8a02a00a08/White-Fragility-Why-It-s-So-Hard-for-White-People-to-Talk-About-Racism-by-Robin-DiAngelo.pdf
    • http://muicuiu.dumb1.com/2a03a00a09a08a06/White-Logic-White-Methods-Racism-and-Methodology-by-Tukufu-Zuberi.pdf
    • http://muicuiu.dumb1.com/2a07a08a04a09a01/White-House-Autumn-The-President-s-Daughter-2-by-Ellen-Emerson-White.pdf
    • http://muicuiu.dumb1.com/4a04a00a07a08a02/A-Dream-of-Ebony-and-White-A-Retelling-of-Snow-White-Beyond-the-Four-Kingdoms-Book-4-by-Melanie-Cellier.pdf
    • http://muicuiu.dumb1.com/4a00a00a05a04a08/White-Awake-An-Honest-Look-at-What-It-Means-to-Be-White-by-Daniel-Hill.pdf
    • http://muicuiu.dumb1.com/1a00a06a05a06a01/The-Black-amp-White-You-Don-t-See-by-Des-Jernigan.pdf
    • http://muicuiu.dumb1.com/1a07a01a00a07a03/Absorbing-White-The-White-Trilogy-3-by-Charlotte-E-Hart.pdf
    • http://muicuiu.dumb1.com/3a04a05a07a09a08/The-Black-And-White-Of-It-by-Ann-Allen-Shockley.pdf
    • http://muicuiu.dumb1.com/9a06a09a07a02/Black-and-White-by-Paul-Volponi.pdf