Malicious PDF — malware analysis report

Static analysis result for SHA-256 03de62f69169fcd0…

MALICIOUS

PDF

25.1 KB Created: 2019-11-07 16:42:45 +00:00 Authoring application: mPDF 5.7
MD5: 35b852be544f8f2c0a7e8821d3bde9d9 SHA-1: 456d03641f4e2f87d4f306353b2a4c06d5fe2a4c SHA-256: 03de62f69169fcd07e4e74a5e41b2f384f94071c9baa94b55236b9b47af0ad94
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links to external PDF files, characteristic of a link farm. This suggests an attempt to direct users to potentially malicious or unwanted content, possibly as a form of SEO abuse or to host further malicious documents. The ML classifier also flagged this PDF as malicious.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9716

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/4730730734732730/The-Hip-Mama-Survival-Guide-Advice-from-the-Trenches-on-Pregnancy-Childbirth-Cool-Names-Clueless-Doctors-Potty-Training-and-Toddler-Avengers-by-Ariel-Gore.pdf
    • http://cefasfese.4pu.com/2737738735737737/Whatever-Mom-Hip-Mama-s-Guide-to-Raising-a-Teenager-by-Ariel-Gore.pdf
    • http://cefasfese.4pu.com/3739735730739738/Toddler-411-Clear-Answers-amp-Smart-Advice-for-Your-Toddler-by-Denise-Fields.pdf
    • http://cefasfese.4pu.com/4737732737732739/Princess-Polly-s-Potty-Potty-Training-for-Girls-by-Andrea-Pinnington.pdf
    • http://cefasfese.4pu.com/8730732739732737/Ultimate-Film-Festival-Survival-Guide-by-Chris-Gore.pdf
    • http://cefasfese.4pu.com/6734736734735730/The-Caveman-s-Pregnancy-Companion-A-Survival-Guide-for-Expectant-Fathers-by-David-Port.pdf
    • http://cefasfese.4pu.com/2735731736732733/The-Complete-Book-of-Pregnancy-and-Childbirth-by-Sheila-Kitzinger.pdf
    • http://cefasfese.4pu.com/1730730737733732737/Affen-Tzu-Training-Guide-Affen-Tzu-Training-Book-Features-Affen-Tzu-Housetraining-Obedience-Training-Agility-Training-Behavioral-Training-Tricks-and-More-by-Kathy-Patterson.pdf
    • http://cefasfese.4pu.com/7736730738732/The-End-of-Eve-by-Ariel-Gore.pdf
    • http://cefasfese.4pu.com/7733731730739734/The-Traveling-Death-and-Resurrection-Show-by-Ariel-Gore.pdf
    • http://cefasfese.4pu.com/9730737736735731/Infant-Potty-Training-A-Gentle-And-Primeval-Method-Adapted-To-Modern-Living-by-Laurie-Boucke.pdf
    • http://cefasfese.4pu.com/7730732736732739/Numerology-Made-Plain-The-Science-Of-Names-And-Numbers-And-The-Law-Of-Vibration-by-Ariel-Yvon-Taylor.pdf
    • http://cefasfese.4pu.com/1731733735735732730/Survival-Fitness-The-6-Best-Bodyweight-Training-Physical-Fitness-Exercises-for-Escape-and-Survival-by-Sam-Fury.pdf
    • http://cefasfese.4pu.com/4737739732734735/Women-s-Encyclopedia-of-Health-and-Emotional-Healing-Top-Women-Doctors-Share-Their-Unique-Self-Help-Advice-on-Your-Body-Your-Feelings-and-Your-Life-by-Denise-Foley.pdf
    • http://cefasfese.4pu.com/1733737736737731/Birthing-from-Within-An-Extra-Ordinary-Guide-to-Childbirth-Preparation-by-Pam-England.pdf
    • http://cefasfese.4pu.com/7737737739735/Husband-Coached-Childbirth-The-Bradley-Method-of-Natural-Childbirth-by-Robert-A-Bradley.pdf
    • http://cefasfese.4pu.com/3730732739730734/Toddler-Care-Book-A-Complete-Guide-from-1-Year-to-5-Years-Old-by-Jeremy-Friedman.pdf
    • http://cefasfese.4pu.com/4733732735739732/The-Modern-Caveman-s-Alternative-Guide-To-Pregnancy-by-Paul-Palmer.pdf
    • http://cefasfese.4pu.com/3734737735730731/The-Modern-Caveman-s-Alternative-Guide-To-Pregnancy-by-Paul-A-Palmer.pdf
    • http://cefasfese.4pu.com/3739739738737737/Pregnancy-OMG-The-First-Ever-Photographic-Guide-for-Modern-Mamas-to-Be-by-Nancy-Redd.pdf