SUSPICIOUS — cbse_syllabus_for_class_10_science_p.pdf
SUSPICIOUS — cbse_syllabus_for_class_10_science_p.pdf is a pdf sample analyzed by MalwareAnalyzer by Cyble with a suspicious verdict (44/100). 2 of 53 detection engines flagged it.
Identification
- SHA-256:
4b6d8cdba39dc329f0733942bdda7786827de4e96855c75ec20fdb8def408317 - SHA-1:
a7cb49b4b9e80910629eb18ba9e9caa11abc82d0 - MD5:
4bf6088c42c522dc384bd34307c07674 - ssdeep:
1536:UGFSp6rF25aVOalGu5kpZzQPgK09idDFPR1zH6A:hFSp6rQ5qOalf5mzQYK09izR1zV - TLSH:
T1C3358EF32097DD4D7AC6EF03AEBE28185145C788612297A044983B6DD4BC2BE6F51A60 - Submitted as: cbse_syllabus_for_class_10_science_p.pdf
- File type: pdf · Size: 59437 bytes
- Verdict: suspicious (44/100)
Detections (2 of 53 engines)
- MalwareAnalyser heuristics (entropy/packer): high-entropy-blob
- Emsisoft (Emergency Kit): PDF.Spam.Heur.1
Why this verdict
The suspicious score of 44/100 is the fusion of 3 weighted signals:
- Embedded network infrastructure: https://cctraff.ru/strik?keyword=cbse+syllabus+for+class+10+science+p, https://cdn.shopify.com/s/files/1/0266/7868/9976/files/csr2_legends_guide.pdf, https://cdn.shopify.com/s/files/1/0437/3459/7784/files/treman_state_park_gorge_trail.pdf - static signal, weight 0.35, confidence 0.60
- Document active content: uri-action - static signal, weight 0.30, confidence 0.60
- Packing/obfuscation: high-entropy-blob - static signal, weight 0.25, confidence 0.55
Dynamic analysis (windows)
0 behavior events · 0 ATT&CK techniques · 0 dropped files.
Runtime network
- none
Embedded URLs
- https://cctraff.ru/strik?keyword=cbse+syllabus+for+class+10+science+p
- https://cdn.shopify.com/s/files/1/0266/7868/9976/files/csr2_legends_guide.pdf
- https://cdn.shopify.com/s/files/1/0437/3459/7784/files/treman_state_park_gorge_trail.pdf
- https://cdn.shopify.com/s/files/1/0431/2917/6232/files/panic_away_joe_barry.pdf
- https://cdn.shopify.com/s/files/1/0435/0892/4568/files/descargar_gta_san_andreas_portable.pdf
- https://uploads.strikinglycdn.com/files/3757d6a9-3109-4aa3-9e69-ca39f9625b99/23881167247.pdf
- https://uploads.strikinglycdn.com/files/2ff5d945-083f-45b3-b0e7-9c99b3b3aae5/flamme_de_pyromancie_dark_souls_3.pdf
- https://uploads.strikinglycdn.com/files/07278d13-f130-4c34-af4e-f34412f1a1c6/14209649819.pdf
- https://uploads.strikinglycdn.com/files/2e80f017-c65e-40af-b24e-d7e5d110eb18/21175615089.pdf
- https://uploads.strikinglycdn.com/files/e8ef82a9-621e-49cd-94fc-a76630b03319/35276250777.pdf
- https://uploads.strikinglycdn.com/files/ede93d13-b828-401a-9565-3e6a2b08d21e/2497750814.pdf
- https://uploads.strikinglycdn.com/files/3c864aa3-86c8-4b32-8d59-c8434dc16f98/sodilula.pdf
- https://uploads.strikinglycdn.com/files/7f4ce8d2-c2fd-4bdc-8f04-9c93fb552c2e/90369621957.pdf
- https://uploads.strikinglycdn.com/files/1063eae6-f323-4296-9b1c-44ecf96c695b/surox.pdf
- https://uploads.strikinglycdn.com/files/6c202ecb-547a-4dd9-9a58-5a0b52aeadf6/zotafejolumap.pdf
- https://uploads.strikinglycdn.com/files/8b66abe4-cd5c-4817-83d4-a05fbaf80575/nebizop.pdf
- https://uploads.strikinglycdn.com/files/50b190d2-b061-4380-811d-697cce436cf8/nokikobiwanememowomut.pdf
- https://uploads.strikinglycdn.com/files/2d1b109d-23cb-42a0-b5f6-52719f1ec5e1/90302965628.pdf
- https://cdn.shopify.com/s/files/1/0435/4700/0983/files/bafebuxi.pdf
- https://cdn.shopify.com/s/files/1/0484/4155/7146/files/22603179909.pdf
- https://uploads.strikinglycdn.com/files/f18cc520-8226-4028-ba38-84a827355fa6/54085456177.pdf
- https://uploads.strikinglycdn.com/files/cb1f73d9-b91b-4cfa-8043-759245a63a46/rekikifumorurak.pdf
- https://uploads.strikinglycdn.com/files/85cf22cb-d786-475f-a309-15ae90ae6888/morusovunubawipusobot.pdf
- http://www.w3.org/1999/02/22-rdf-syntax-ns#
- http://purl.org/dc/elements/1.1/
Embedded domains
- cctraff.ru
- cdn.shopify.com
- uploads.strikinglycdn.com
- www.w3.org
- purl.org
- ns.adobe.com
Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report