Malicious PDF — malware analysis report

Static analysis result for SHA-256 fa4495f6e302eeae…

MALICIOUS

PDF

20.3 KB Created: 2020-03-19 03:38:02 +00:00 Authoring application: mPDF 5.7
MD5: 6a296342512ca8f8add07878bc0678c6 SHA-1: 2b4f572d58e46c88ef646104b22075d739871fb3 SHA-256: fa4495f6e302eeae523b388f6c006bb0105c1f7c5cc7037efb8c4a8379bc9bcc
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious File

The PDF file was flagged by a machine learning classifier and contains a large number of embedded links. The heuristic 'PDF_SEO_LINK_FARM' indicates that these links are likely part of a scheme to distribute malicious content or lead users to phishing pages. The URLs point to a domain that appears to be used for hosting these linked documents.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9922

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://laoieoa.myhome.cx/7c05c05c05c07c05/A-Commentary-On-The-Gospel-Of-St-Luke-Volume-I-by-Fr-d-ric-Godet.pdf
    • http://laoieoa.myhome.cx/7c05c05c05c06c07/A-Commentary-on-the-Gospel-of-St-Luke-by-Fr-d-ric-Godet.pdf
    • http://laoieoa.myhome.cx/7c05c05c06c08c02/Commentary-on-the-Gospel-of-St-John-1-by-Fr-d-ric-Godet.pdf
    • http://laoieoa.myhome.cx/1c03c08c08c05c02/Commentary-on-the-Gospel-of-Luke-The-English-Text-by-J-Norval-Geldenhuys.pdf
    • http://laoieoa.myhome.cx/7c05c05c06c02c09/Commentary-on-St-Paul-s-First-Epistle-to-the-Corinthians-Vol-1-by-F-Godet.pdf
    • http://laoieoa.myhome.cx/7c05c05c08c01c03/Introduction-to-the-New-Testament-Volume-1-by-Fr-d-ric-Godet.pdf
    • http://laoieoa.myhome.cx/4c06c07c03c09c01/The-Certainty-of-Violet-and-Luke-Volume-5-by-Jessica-Sorensen.pdf
    • http://laoieoa.myhome.cx/4c00c06c09c06c07/Matthew-Henry-s-Commentary-In-One-Volume-Genesis-to-Revelation-by-Leslie-F-Church.pdf
    • http://laoieoa.myhome.cx/6c06c07c09c09c05/The-Vedanta-Sutras-with-the-Commentary-by-Ramanuja-Sacred-Books-of-the-East-Volume-48-by-George-Thibaut.pdf
    • http://laoieoa.myhome.cx/1c01c06c05c05c03c07/The-Lost-Gospel-The-Quest-for-the-Gospel-of-Judas-Iscariot-by-Herbert-Krosney.pdf
    • http://laoieoa.myhome.cx/8c00c03c04c02c02/Pentateuch-with-Targum-Onkelos-and-Rashi-s-Commentary-Torah-the-Book-of-Bamidbar-Numbers-Volume-IV-by-Abraham-M-Silbermann.pdf
    • http://laoieoa.myhome.cx/8c00c03c04c02c00/Pentateuch-with-Targum-Onkelos-and-Rashi-s-Commentary-Torah---The-Book-of-Shemot-Exodus-Volume-II-by-Abraham-M-Silbermann.pdf
    • http://laoieoa.myhome.cx/8c00c03c04c02c01/Pentateuch-with-Targum-Onkelos-and-Rashi-s-Commentary-Torah---The-Book-of-Vayyiqra-Leviticus-Volume-III-by-Abraham-M-Silbermann.pdf
    • http://laoieoa.myhome.cx/9c02c09c01c04c04/The-Rest-of-the-Gospel-When-the-Partial-Gospel-Has-Worn-You-Out-by-Dan-Stone.pdf
    • http://laoieoa.myhome.cx/7c01c01c04c03c03/Sophocles-The-Plays-and-Fragments-Volume-4-the-Philoctetes-With-Critical-Notes-Commentary-and-Translation-in-English-Prose-by-Richard-Claverhouse-Jebb.pdf
    • http://laoieoa.myhome.cx/1c00c03c04c03c08c03/Das-M-dchen-und-der-Deserteur-Luke-Sinclair-Western-Band-27-by-Luke-Sinclair.pdf
    • http://laoieoa.myhome.cx/9c06c04c09c04c03/Im-Banne-von-El-Lobo-Luke-Sinclair-Western-Band-18-by-Luke-Sinclair.pdf
    • http://laoieoa.myhome.cx/7c05c05c07c05c00/Etudes-Bibliques-by-Fr-d-ric-Godet.pdf
    • http://laoieoa.myhome.cx/7c05c05c06c07c05/Articles-et-Sermons-by-Fr-d-ric-Godet.pdf
    • http://laoieoa.myhome.cx/7c05c05c06c06c09/Studies-on-the-New-Testament-by-Fr-d-ric-Godet.pdf
    • http://laoieoa.myhome.cx/6c06c07c09c09c05/The-Vedanta-Sutras-with-the-Commentary-by-Ramanuja-Sacred-Bo