Malicious PDF — malware analysis report

Static analysis result for SHA-256 206e16172bdcb76e…

MALICIOUS

PDF

26.0 KB Created: 2019-10-31 23:52:29 +00:00 Authoring application: mPDF 5.7
MD5: 471b732d62b252f4c95415711ab233be SHA-1: ad0fc69cd449545db8cf76a0ac6e5a709628af5d SHA-256: 206e16172bdcb76e8bae7bfe3b7438623c61af17b1cb016113c6585af0caef87
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The PDF contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic. These links point to various PDF documents, suggesting a link farm or redirection scheme. The document body is heavily obfuscated and unreadable, but the presence of numerous external links indicates a likely attempt to drive traffic to external resources. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/6739733733730735/What-Works-in-Girls-Education-Evidence-for-the-World-s-Best-Investment-by-Gene-B-Sperling.pdf
    • http://cefasfese.4pu.com/6739733734731738/For-Profit-Higher-Education-Developing-A-World-Class-Workforce-by-John-Sperling.pdf
    • http://cefasfese.4pu.com/6739733733731731/Classics-for-Girls-Pack-Janette-Oke-Classics-For-Girls-1-3-by-Natasha-Sperling.pdf
    • http://cefasfese.4pu.com/6739733733730730/Rebel-with-a-Cause-The-Entrepreneur-Who-Created-the-University-of-Phoenix-and-the-For-Profit-Revolution-in-Higher-Education-by-John-Sperling.pdf
    • http://cefasfese.4pu.com/9736731735730731/Investment-in-Learning-The-Individual-and-Social-Value-of-American-Higher-Education-The-Carnegie-Council-Series-by-Howard-Rothmann-Bowen.pdf
    • http://cefasfese.4pu.com/7733737734730737/Early-Childhood-Matters-Evidence-from-the-Effective-Pre-School-and-Primary-Education-Project-by-Kathy-Sylva.pdf
    • http://cefasfese.4pu.com/2737733733735739/Nothing-Daunted-The-Unexpected-Education-of-Two-Society-Girls-in-the-West-by-Dorothy-Wickenden.pdf
    • http://cefasfese.4pu.com/1730736739736731733/Hope-Deferred-Routledge-Revivals-Girls-Education-in-English-History-by-Josephine-Kamm.pdf
    • http://cefasfese.4pu.com/1731737736730730738/Assessing-Evidence-in-a-Postmodern-World-by-Bonnie-Brennen.pdf
    • http://cefasfese.4pu.com/7731735739731/Asperger-s-and-Girls-World-Renowned-Experts-Join-Those-with-Asperger-s-Syndrome-to-Resolve-Issues-That-Girls-and-Women-Face-Every-Day-by-Tony-Attwood.pdf
    • http://cefasfese.4pu.com/2737731730738738/God-The-Evidence-The-Reconciliation-of-Faith-and-Reason-in-a-Postsecular-World-by-Patrick-Glynn.pdf
    • http://cefasfese.4pu.com/8732736737731732/Education-for-Awakening-An-Eastern-Approach-to-Holistic-Education-Foundations-of-Holistic-Education-Series-by-Yoshiharu-Nakagawa.pdf
    • http://cefasfese.4pu.com/3731739732735739/Body-of-Evidence-Evidence-2-by-Rachel-Grant.pdf
    • http://cefasfese.4pu.com/2737731732734734/Cold-Evidence-Evidence-6-by-Rachel-Grant.pdf
    • http://cefasfese.4pu.com/5733732735734/The-One-World-Schoolhouse-Education-Reimagined-by-Salman-Khan.pdf
    • http://cefasfese.4pu.com/3736737734731733/The-Way-the-World-Works-by-Jude-Wanniski.pdf
    • http://cefasfese.4pu.com/1738730737733/Creating-a-World-That-Works-for-All-by-Sharif-M-Abdullah.pdf
    • http://cefasfese.4pu.com/1731739736736730732/Rural-Education-for-the-Twenty-First-Century-Identity-Place-and-Community-in-a-Globalizing-World-by-Kai-A-Schafft.pdf
    • http://cefasfese.4pu.com/2731733732738/Chaucer-His-Life-His-Works-His-World-by-Donald-R-Howard.pdf
    • http://cefasfese.4pu.com/2739738730731731/The-Joy-of-Reading-A-Passionate-Guide-to-189-of-the-World-s-Best-Authors-and-Their-Works-by-Charles-Van-Doren.pdf