Malicious PDF — malware analysis report

Static analysis result for SHA-256 fe2deefb4a450213…

MALICIOUS

PDF

22.3 KB Created: 2019-05-01 05:14:15 +01:00 Authoring application: mPDF 5.7
MD5: d99aa18a057fa71e2a89d4c28fecf18e SHA-1: 711d05bd1ab86b09f11bb5488a5ad9aff2c052b3 SHA-256: fe2deefb4a45021328ef307ee0a2dd09cde537c6aab2a972bac225eb056f6b4a
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF document contains a large number of embedded URLs, as indicated by the PDF_SEO_LINK_FARM heuristic. The ML classifier also flagged this PDF as malicious with high confidence. The embedded URLs point to external sites, suggesting a lure or redirection mechanism. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9925

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://kiteeearpdf.myhome.cx/6f212f216f210f219f212/The-Hermeneutical-Spiral-A-Comprehensive-Introduction-to-Biblical-Interpretation-by-Grant-R-Osborne.pdf
    • http://kiteeearpdf.myhome.cx/1f210f215f211f215f210f210/Biblical-Interpretation-by-Sharon-H-Ringe.pdf
    • http://kiteeearpdf.myhome.cx/8f216f215f215f214f219/Early-Biblical-Interpretation-by-James-L-Kugel.pdf
    • http://kiteeearpdf.myhome.cx/3f216f218f214f212f215/The-Parables-Biblical-Patristic-and-Liturgical-Interpretation-by-Dmitri-Royster.pdf
    • http://kiteeearpdf.myhome.cx/8f216f215f217f212f212/The-Idea-of-Biblical-Interpretation-Essays-in-Honor-of-James-L-Kugel-by-Hindy-Najman.pdf
    • http://kiteeearpdf.myhome.cx/5f218f219f216f217f213/Genocide-A-Comprehensive-Introduction-by-Adam-Jones.pdf
    • http://kiteeearpdf.myhome.cx/5f216f218f212f215f214/Philosophy-of-Mind-A-Comprehensive-Introduction-by-William-Jaworski.pdf
    • http://kiteeearpdf.myhome.cx/8f216f216f211f213f211/Introduction-to-Java-Programming-Comprehensive-Version-by-Y-Daniel-Liang.pdf
    • http://kiteeearpdf.myhome.cx/8f213f218f211f210f212/An-Introduction-to-Revelation-A-Pathway-to-Interpretation-by-Gilbert-Desrosiers.pdf
    • http://kiteeearpdf.myhome.cx/6f216f219f212f212f213/Biblical-Words-and-Their-Meaning-An-Introduction-to-Lexical-Semantics-by-Mois-s-Silva.pdf
    • http://kiteeearpdf.myhome.cx/6f212f216f211f211f215/Spiral-Spiral-in-Time-1-by-Judith-Schara.pdf
    • http://kiteeearpdf.myhome.cx/8f217f219f210f212f215/Introduction-to-Modern-Optics-by-Grant-R-Fowles.pdf
    • http://kiteeearpdf.myhome.cx/4f219f216f215f217f217/No-Depression-An-Introduction-to-Alternative-Country-Music-Whatever-That-Is-by-Grant-Alden.pdf
    • http://kiteeearpdf.myhome.cx/3f216f213f213f214f211/Biblical-Concepts-Freedom-A-Biblical-Definition---Glory-Divine-Nature-in-the-Bible-by-B-Cobbey-Crisler.pdf
    • http://kiteeearpdf.myhome.cx/1f218f212f217f211f215/Defining-Russia-Musically-Historical-and-Hermeneutical-Essays-by-Richard-Taruskin.pdf
    • http://kiteeearpdf.myhome.cx/5f212f211f219f213f217/Monte-Verde-A-Late-Pleistocene-Settlement-in-Chile-The-Archaeological-Context-and-Interpretation-Vol-2-The-Archaeological-Context-and-Interpretation-by-Tom-D-Dillehay.pdf
    • http://kiteeearpdf.myhome.cx/6f210f219f217f213f214/The-Interpretation-of-Dreams-The-Dream-as-a-Fulfillment-of-a-Wish-Distortion-in-Dreams-The-Method-of-Dream-Interpretation-The-Sources-of-Dreams-amp-The-Psychology-of-the-Dream-Activities-by-Sigmund-Freud.pdf
    • http://kiteeearpdf.myhome.cx/5f212f211f215f217f217/Personal-Memoirs-of-U-S-Grant-Part-5-by-Ulysses-S-Grant.pdf
    • http://kiteeearpdf.myhome.cx/7f215f215f217f214f210/Introduction-to-the-New-Testament-Particular-Introduction-Volume-2-by-Fr-d-ric-Godet.pdf
    • http://kiteeearpdf.myhome.cx/4f216f219f213f212f214/Spiral-by-Maddy-Edwards.pdf