MALICIOUS — cdf4252d4.pdf
MALICIOUS — cdf4252d4.pdf is a pdf sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (71/100). 1 of 50 detection engines flagged it, exhibiting 1 ATT&CK technique.
Identification
- SHA-256:
0fd0ead431d36357fbcadeb74113e03f00339a16fe393e250801ae4aebc90a7f - SHA-1:
25bb4fa206136d375a4a91615ad3016a67d73e3f - MD5:
d71a2f91c00e7164b5f4b1df555092f7 - ssdeep:
768:4gGzpDM/pvI2ve4glImtcYZoScfvLG61PuJoW07g29yD:VGFA/p6c0oDfvK6hul00WyD - TLSH:
T12E306CF75093DD8C7B879B836DAB12DA608A938C6136939044CC772DC5BC6AD7F11821 - Submitted as: cdf4252d4.pdf
- File type: pdf · Size: 36986 bytes
- Verdict: malicious (71/100)
Detections (1 of 50 engines)
- Emsisoft (Emergency Kit): PDF.Spam.Heur.1
MITRE ATT&CK
Why this verdict
The malicious score of 71/100 is the fusion of 3 weighted signals:
- Embedded link rated malicious by URL analysis: https://dutitujazekap.weebly.com/uploads/1/3/0/8/130814390/665612.pdf - network signal, weight 0.70, confidence 0.80
- Embedded network infrastructure: https://gettraff.ru/wb?keyword=fra%C3%A7%C3%B5es%20alg%C3%A9bricas%20exercicios%20resolv, https://dutitujazekap.weebly.com/uploads/1/3/0/8/130814390/665612.pdf, https://rivisoni.weebly.com/uploads/1/3/0/7/130739016/9327281.pdf - static signal, weight 0.35, confidence 0.60
- Document active content: uri-action - static signal, weight 0.30, confidence 0.60
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
Embedded URLs
- https://gettraff.ru/wb?keyword=fra%C3%A7%C3%B5es%20alg%C3%A9bricas%20exercicios%20resolv
- https://dutitujazekap.weebly.com/uploads/1/3/0/8/130814390/665612.pdf
- https://rivisoni.weebly.com/uploads/1/3/0/7/130739016/9327281.pdf
- https://fekudumubaf.weebly.com/uploads/1/3/2/6/132681201/bodajetosason-bipejugibelumar-dupatiror-zabupuzuta.pdf
- https://vuzevarezevarot.weebly.com/uploads/1/3/0/7/130740461/1724297.pdf
- https://bedizegoresupa.weebly.com/uploads/1/3/1/3/131379398/baputedev.pdf
- https://zoxaminajoge.weebly.com/uploads/1/3/1/6/131637873/rebakomexusiso_zemagelarew_xituvuf.pdf
- https://walijogopabo.weebly.com/uploads/1/3/0/7/130776167/bigiluxa.pdf
- https://uploads.strikinglycdn.com/files/431c2a26-6318-43ac-b66e-12881408a0f3/5187093999.pdf
- https://uploads.strikinglycdn.com/files/5f4db6c4-c502-400c-ab46-9615cca90712/7850280668.pdf
- https://uploads.strikinglycdn.com/files/a900deee-f0cc-4d97-9392-d4684ad43a7a/finuxepu.pdf
- https://uploads.strikinglycdn.com/files/41025d5b-997d-40cb-9e8b-cea5c9e5a4df/59981127969.pdf
- https://uploads.strikinglycdn.com/files/0bf0cc1e-5f1a-40ba-8fa6-4679521f407d/fazutile.pdf
- https://jakedekokobara.weebly.com/uploads/1/3/1/3/131381480/nipomomuka_gisotufeje.pdf
- https://gusumadanu.weebly.com/uploads/1/3/2/6/132695601/b7841d6.pdf
- https://fanavepuru.weebly.com/uploads/1/3/1/8/131871984/db83515512.pdf
- https://pebiname.weebly.com/uploads/1/3/1/4/131453048/2871743.pdf
- https://nukevokisoget.weebly.com/uploads/1/3/2/7/132711970/regamafizesoxidiwed.pdf
- https://fupexorugukemig.weebly.com/uploads/1/3/0/8/130814763/fusegoj-xekawate-sumuxal-jerosedof.pdf
- https://fijojonibiw.weebly.com/uploads/1/3/2/6/132681787/a8401ec7a9859.pdf
- https://cdn.shopify.com/s/files/1/0268/8198/2645/files/2020_chrysler_sebring_sedan_owners_manual.pdf
- https://cdn.shopify.com/s/files/1/0498/7404/3038/files/repivukixotigora.pdf
- https://cdn.shopify.com/s/files/1/0480/7530/9220/files/2080559218.pdf
- https://cdn.shopify.com/s/files/1/0495/9672/7460/files/xixexojebimiwajiforiximi.pdf
- https://cdn.shopify.com/s/files/1/0428/5304/0295/files/violence_big_ideas_small_books_slavoj_iek.pdf
Embedded domains
- gettraff.ru
- dutitujazekap.weebly.com
- rivisoni.weebly.com
- fekudumubaf.weebly.com
- vuzevarezevarot.weebly.com
- bedizegoresupa.weebly.com
- zoxaminajoge.weebly.com
- walijogopabo.weebly.com
- uploads.strikinglycdn.com
- jakedekokobara.weebly.com
- gusumadanu.weebly.com
- fanavepuru.weebly.com
- pebiname.weebly.com
- nukevokisoget.weebly.com
- fupexorugukemig.weebly.com
- fijojonibiw.weebly.com
- cdn.shopify.com
- www.w3.org
- purl.org
- ns.adobe.com
Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report