Malicious PDF — malware analysis report

Static analysis result for SHA-256 f8f242dd5fb77a23…

MALICIOUS

PDF

16.1 KB Created: 2019-05-01 07:42:51 +01:00 Authoring application: mPDF 5.7 First seen: 2022-07-02
MD5: b2e6758db7e62379b75929f50c06edfa SHA-1: f2952b175ea91be9035382d1e38792057df961c0 SHA-256: f8f242dd5fb77a2336f4c1a873f7f5e1c6e7ef02c02e445fc0eedc282089bc8a
100 Risk Score

Machine Learning

  • Nyx PDF Classifier malicious score 0.9898

Heuristics 3

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Visual download / call-to-action button lure low SE_DOWNLOAD_BUTTON
    Document contains a call-to-action phrase ('Click here to download', 'Download Now', etc.) — low-signal unless other findings point to a malicious workflow
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://muicuiu.dumb1.com/4a01a01a05a06a05/No-Strings-Attached-Razor-Bay-3-by-Susan-Andersen.pdf In PDF document text
    • http://muicuiu.dumb1.com/2a08a03a00a07a01/Strings-Attached-by-Mandy-Baggot.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a04a05a02a00a08/No-Strings-Attached-by-Jaci-Burton.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a02a00a08a00a07/No-Strings-Attached-Falling-for-You-1-by-Nicolette-Day.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a08a03a09a08a07/No-Strings-Attached-Chic-Manila-3-by-Mina-V-Esguerra.pdfIn PDF document text
    • http://muicuiu.dumb1.com/7a07a07a05a08a02/No-Strings-Attached-The-Edge-Series-by-Jennifer-Labelle.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a00a04a06a06a00/It-Had-to-be-You-by-Susan-Andersen.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a08a02a05a07a07/On-Thin-Ice-by-Susan-Andersen.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a01a03a00a09a04/Burning-Up-by-Susan-Andersen.pdfIn PDF document text
    • http://muicuiu.dumb1.com/3a09a03a06a00a05/Exposure-by-Susan-Andersen.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a01a01a03a06a02/Getting-Lucky-Marine-2-by-Susan-Andersen.pdfIn PDF document text
    • http://muicuiu.dumb1.com/4a03a01a08a00a02/All-Shook-Up-Baby-4-by-Susan-Andersen.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a05a07a06a06a05/Razor-Razor-Saga-1-by-Rue-Volley.pdfIn PDF document text
    • http://muicuiu.dumb1.com/3a05a02a06a08a00/Razor-Razor-Saga-1-by-Rue-Volley.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a00a01a01a07a00a02/Andersen---The-Illustrated-Fairy-Tales-of-Hans-Christian-Andersen-by-Hans-Christian-Andersen.pdfIn PDF document text
    • http://muicuiu.dumb1.com/6a05a09a08a04a06/Hans-Andersen-s-Fairy-Tales-Pictured-by-Mabel-Lucie-Attwell-by-Hans-Christian-Andersen.pdfIn PDF document text
    • http://muicuiu.dumb1.com/8a05a08a04a03/Fairy-Tales-by-Hans-Andersen-by-Hans-Christian-Andersen.pdfIn PDF document text
    • http://muicuiu.dumb1.com/1a08a04a03a04a02/The-Complete-Hans-Christian-Andersen-Fairy-Tales-by-Hans-Christian-Andersen.pdfIn PDF document text
    • http://muicuiu.dumb1.com/2a03a03a00a05a07/Grimms-Fairy-Tales-and-Andersen-s-Fairy-Tales-by-Hans-Christian-Andersen.pdfIn PDF document text
    • http://muicuiu.dumb1.com/9a06a05a07a00a08/Theory-of-Hopf-Algebras-Attached-to-Group-Schemes-by-Hiroshi-Yanagihara.pdfIn PDF document text