MALICIOUS — miwuxelo-kikukiroli-vitijataw.pdf
MALICIOUS — miwuxelo-kikukiroli-vitijataw.pdf is a pdf sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (71/100). 1 of 50 detection engines flagged it, exhibiting 1 ATT&CK technique.
Identification
- SHA-256:
fc4d6b11f46bc92152689ea24d98cb7a50728ca0ac8146e8878c4b5e862867c5 - SHA-1:
e7441cd89f3d34a27d6100e30b7590731aa29980 - MD5:
5413d979b0bc68945f870c0618b95dab - ssdeep:
768:ygGzpDxeVt+CIouXQEQ8O6AchtPq4stu5hJLMORizSpmzEwBW4alU:vGFFeXQctu5nLMOnpmzEeW4alU - TLSH:
T1A0306BF314A7ED8CBA879B03A9DB2559208AD7486237D760588C773CD4BC67EBE00950 - Submitted as: miwuxelo-kikukiroli-vitijataw.pdf
- File type: pdf · Size: 38961 bytes
- Verdict: malicious (71/100)
Detections (1 of 50 engines)
- Emsisoft (Emergency Kit): PDF.Spam.Heur.1
MITRE ATT&CK
Why this verdict
The malicious score of 71/100 is the fusion of 3 weighted signals:
- Embedded link rated malicious by URL analysis: https://povutepumik.weebly.com/uploads/1/3/2/7/132741486/3719004.pdf - network signal, weight 0.70, confidence 0.80
- Embedded network infrastructure: https://ggtraff.ru/wb?keyword=quantum%20mechanics%20500%20problems%20with%20solutions%20aruldhas%20pdf, https://boguvetasitob.weebly.com/uploads/1/3/1/3/131380850/309006dd.pdf, https://povutepumik.weebly.com/uploads/1/3/2/7/132741486/3719004.pdf - static signal, weight 0.35, confidence 0.60
- Document active content: uri-action - static signal, weight 0.30, confidence 0.60
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
Embedded URLs
- https://ggtraff.ru/wb?keyword=quantum%20mechanics%20500%20problems%20with%20solutions%20aruldhas%20pdf
- https://boguvetasitob.weebly.com/uploads/1/3/1/3/131380850/309006dd.pdf
- https://povutepumik.weebly.com/uploads/1/3/2/7/132741486/3719004.pdf
- https://fekudumubaf.weebly.com/uploads/1/3/2/6/132681201/2bba1d0.pdf
- https://vuxozajuje.weebly.com/uploads/1/3/1/3/131379873/vunud.pdf
- https://mupibidegupek.weebly.com/uploads/1/3/0/8/130874042/f22694.pdf
- https://uploads.strikinglycdn.com/files/843325f8-4aac-4ce8-897d-12825f8368b6/sokowugeti.pdf
- https://uploads.strikinglycdn.com/files/b25aaa01-cd41-4f9c-b667-e0c608bb06fd/81809651902.pdf
- https://uploads.strikinglycdn.com/files/bd1246b3-63a6-4e5e-ac2b-047135b55b71/gexetabakegino.pdf
- https://uploads.strikinglycdn.com/files/627c1245-0abd-4241-ae6b-bfb0e6cdb724/tilopugat.pdf
- https://uploads.strikinglycdn.com/files/192b62f9-350f-443c-9369-ac84c9064b0c/mijavaxumate.pdf
- https://cdn-cms.f-static.net/uploads/4365536/normal_5f870fd4a8291.pdf
- https://cdn-cms.f-static.net/uploads/4365539/normal_5f870cf86c3da.pdf
- https://cdn-cms.f-static.net/uploads/4366369/normal_5f87222f47553.pdf
- https://cdn-cms.f-static.net/uploads/4365580/normal_5f86fe7dee259.pdf
- https://site-1038331.mozfiles.com/files/1038331/tulimuzaxafivo.pdf
- https://site-1039148.mozfiles.com/files/1039148/dolevexapipi.pdf
- https://site-1040509.mozfiles.com/files/1040509/nanutamariluw.pdf
- https://site-1039907.mozfiles.com/files/1039907/panerabebaruk.pdf
- https://site-1044161.mozfiles.com/files/1044161/57565038935.pdf
- https://cdn.shopify.com/s/files/1/0497/5581/6090/files/fallout_new_vegas_parents_guide.pdf
- https://cdn.shopify.com/s/files/1/0480/9103/7859/files/the_hobbit_story.pdf
- https://uploads.strikinglycdn.com/files/788800f5-ab8e-4776-88ad-8bea3ed6ca0a/80387206703.pdf
- https://uploads.strikinglycdn.com/files/2b5fa85c-0593-4e1a-b126-17e688208215/37627081796.pdf
- https://uploads.strikinglycdn.com/files/1fc3e816-7b8c-4542-a967-f7d55f552f23/jeluxusegupi.pdf
Embedded domains
- ggtraff.ru
- boguvetasitob.weebly.com
- povutepumik.weebly.com
- fekudumubaf.weebly.com
- vuxozajuje.weebly.com
- mupibidegupek.weebly.com
- uploads.strikinglycdn.com
- cdn-cms.f-static.net
- site-1038331.mozfiles.com
- site-1039148.mozfiles.com
- site-1040509.mozfiles.com
- site-1039907.mozfiles.com
- site-1044161.mozfiles.com
- cdn.shopify.com
- www.w3.org
- purl.org
- ns.adobe.com
Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report