Malicious PDF — malware analysis report

Static analysis result for SHA-256 e8df1b45352843aa…

MALICIOUS

PDF

16.7 KB Created: 2019-05-07 09:12:32 +01:00 Authoring application: mPDF 5.7
MD5: f36387c930286e3ae3331dc07aa6f373 SHA-1: 5d5b0d53ae914666085f882cfd414377f3ac1847 SHA-256: e8df1b45352843aa11758b3a1fc4254f1e815a40ad2236513a7b8e43b56fa579
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1059.001 PowerShell

The PDF file was flagged by a machine learning classifier as malicious. It contains a large number of embedded URLs that form a link farm, a common technique for SEO poisoning or distributing malicious content. While the specific URLs appear benign, the sheer volume and structure suggest a malicious intent to redirect users. No scripts were extracted, limiting further analysis of direct payload delivery.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9913

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/2a00a08a06a07/Speak-To-Me-of-Love-by-Robin-Lee-Hatcher.pdf
    • http://muicuiu.dumb1.com/4a03a01a05a02a01/Speak-to-Me-of-Love-by-Robin-Lee-Hatcher.pdf
    • http://muicuiu.dumb1.com/1a01a04a04a03/Love-Letter-to-the-Editor-by-Robin-Lee-Hatcher.pdf
    • http://muicuiu.dumb1.com/1a02a05a08a01/In-His-Arms-Coming-to-America-3-by-Robin-Lee-Hatcher.pdf
    • http://muicuiu.dumb1.com/4a05a04a08a04a09/Beloved-Where-the-Heart-Lives-3-by-Robin-Lee-Hatcher.pdf
    • http://muicuiu.dumb1.com/1a05a02a08a09a00/Diamond-Place-Harts-Crossing-3-by-Robin-Lee-Hatcher.pdf
    • http://muicuiu.dumb1.com/1a01a01a05a05/Patterns-of-Love-Coming-to-America-2-by-Robin-Lee-Hatcher.pdf
    • http://muicuiu.dumb1.com/2a04a05a09a01a08/Patterns-of-Love-Coming-to-America-2-by-Robin-Lee-Hatcher.pdf
    • http://muicuiu.dumb1.com/4a09a01a02a08a05/Love-Without-End-Kings-Meadow-Romance-1-by-Robin-Lee-Hatcher.pdf
    • http://muicuiu.dumb1.com/1a05a02a08a08a09/Sweet-Dreams-Drive-Hart-s-Crossing-4-by-Robin-Lee-Hatcher.pdf
    • http://muicuiu.dumb1.com/5a04a00a03a09/Shadows-by-Robin-McKinley.pdf
    • http://muicuiu.dumb1.com/2a00a07a00a05a08/Shadows-A-Shade-of-Halloween-2-by-Robin-Todd.pdf
    • http://muicuiu.dumb1.com/5a04a09a05a09a08/Robin-Sharma-75-Inspiring-and-Motivating-Life-Lessons-from-Robin-Sharma-Robin-Sharma-Robin-Sharma-Book-Robin-Sharma-Facts-Robin-Sharma-Lessons-Robin-Sharma-Words-by-Sami-S-Reed.pdf
    • http://muicuiu.dumb1.com/2a03a01a02a07a00/Angel-s-Tip-Ellie-Hatcher-2-by-Alafair-Burke.pdf
    • http://muicuiu.dumb1.com/6a01a04a04a08a07/Dead-Connection-Ellie-Hatcher-1-by-Alafair-Burke.pdf
    • http://muicuiu.dumb1.com/6a08a04a07a05/Burnt-Toast-And-Other-Philosophies-of-Life-by-Teri-Hatcher.pdf
    • http://muicuiu.dumb1.com/1a08a01a00a06a02/Burnt-Toast-And-Other-Philosophies-of-Life-by-Teri-Hatcher.pdf
    • http://muicuiu.dumb1.com/3a00a08a01a04a03/Batman-and-Robin-Volume-7-Robin-Rises-by-Peter-J-Tomasi.pdf
    • http://muicuiu.dumb1.com/1a02a07a09a07a05/Stealing-Shadows-Bishop-Special-Crimes-Unit-1-Shadows-1-by-Kay-Hooper.pdf
    • http://muicuiu.dumb1.com/4a08a05a05a09/Out-of-the-Shadows-Bishop-Special-Crimes-Unit-3-Shadows-3-by-Kay-Hooper.pdf
    • http://muicuiu.dumb1.com/5a04a09a05a09a08/Robin-Sharma-75-Inspiring-and-Motivating-Life-Lessons-from-Robin-Sharma-Robin-Sharma-Robin-Sharma-Book-Robin-Sharma-Facts-Robin-Sharma-Lessons-Robin-Sharma-Words-by-Sami-S-Re