Malicious PDF — malware analysis report

Static analysis result for SHA-256 25bdb886a82fbe6a…

MALICIOUS

PDF

26.7 KB Created: 2019-04-30 02:48:24 +01:00 Authoring application: mPDF 5.7
MD5: 69763867e26cc744c3cce07b5e124ceb SHA-1: 798ac56741188f063d6ab5c9b1e696bb9b1f1893 SHA-256: 25bdb886a82fbe6a7782ba57cb5289615cbf4ac4e74c5086cdbb23ed0327524e
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1059.001 PowerShell

The PDF contains a large number of embedded URLs, as indicated by the PDF_SEO_LINK_FARM heuristic. While many of these URLs were classified as benign, the sheer volume and the ML classifier's high confidence score suggest a malicious intent, possibly to redirect users to phishing sites or malware. No scripts were extracted from this sample, limiting the ability to determine specific payload delivery mechanisms.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9695

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://seasasac.lflinkup.com/6da4da6da4da2/The-Amazing-Journey-True-Story-of-a-Father-and-Son-s-Odyssey-Around-the-World-by-Grady-Hicks.pdf
    • http://seasasac.lflinkup.com/4da0da1da5da8da4/Cry-of-the-Tiger-The-Amazing-True-Story-of-Tony-Anthony-A-Kung-Fu-World-Champion-by-Angela-Little.pdf
    • http://seasasac.lflinkup.com/8da6da2da6da4/A-Street-Cat-Named-Bob-The-Amazing-True-Story-of-One-Man-and-His-Cat-by-James-Bowen.pdf
    • http://seasasac.lflinkup.com/1da1da8da6da4da0/God-Inside-the-Fire-An-Amazing-True-Story-by-Greg-Stelley.pdf
    • http://seasasac.lflinkup.com/2da3da9da4da3da5/The-Search-for-Nefertiti-The-True-Story-of-an-Amazing-Discovery-by-Joann-Fletcher.pdf
    • http://seasasac.lflinkup.com/3da1da6da4da3da7/The-Impossible-Rescue-The-True-Story-of-an-Amazing-Arctic-Adventure-by-Martin-W-Sandler.pdf
    • http://seasasac.lflinkup.com/4da0da2da1da0/The-Film-Club-A-True-Story-of-a-Father-and-Son-by-David-Gilmour.pdf
    • http://seasasac.lflinkup.com/2da3da0da5da4da4/The-King-of-Sting-The-Amazing-True-Story-of-a-Modern-American-Outlaw-by-Craig-Glazer.pdf
    • http://seasasac.lflinkup.com/5da9da0da6da5da2/Here-Come-the-Girl-Scouts-The-Amazing-All-True-Story-of-Juliette-Daisy-Gordon-Low-and-Her-Great-Adventure-by-Shana-Corey.pdf
    • http://seasasac.lflinkup.com/4da3da6da6da1da1/Wounds-of-the-Father-A-True-Story-of-Child-Abuse-Betrayal-and-Redemption-by-Elizabeth-Garrison.pdf
    • http://seasasac.lflinkup.com/3da4da1da6da7da8/Dandelion-on-My-Pillow-Butcher-Knife-Beneath-The-True-Story-of-an-Amazing-Family-that-Lived-with-and-Loved-Kids-who-Killed-by-Nancy-Thomas.pdf
    • http://seasasac.lflinkup.com/1da7da0da1da2da6/The-Amazing-quot-True-quot-Story-of-a-Teenage-Single-Mom-by-Katherine-Arnoldi.pdf
    • http://seasasac.lflinkup.com/1da2da4da8da8da7/The-Hornet-s-Sting-The-Amazing-Untold-Story-Of-Second-World-War-Spy-Thomas-Sneum-by-Mark-Ryan.pdf
    • http://seasasac.lflinkup.com/2da5da0da8da9da4/Finding-Gobi-The-True-Story-Of-A-Little-Dog-And-An-Incredible-Journey-by-Dion-Leonard.pdf
    • http://seasasac.lflinkup.com/7da2da9da2da1da5/Natali-s-Journey-the-True-Story-of-a-Rhythmic-Gymnast-by-Fran-Victor.pdf
    • http://seasasac.lflinkup.com/9da1da6da6da6da4/Secret-Journey-to-Planet-Serpo-A-True-Story-of-Interplanetary-Travel-by-Len-Kasten.pdf
    • http://seasasac.lflinkup.com/5da9da5da2da0da4/Undeniable-Destinythe-True-Story-Of-A-Modern-Day-Joseph-Journey-by-Linda-Caster.pdf
    • http://seasasac.lflinkup.com/1da8da5da9da3da8/Escape-from-Slavery-The-True-Story-of-My-Ten-Years-in-Captivity-and-My-Journey-to-Freedom-in-America-by-Francis-Bok.pdf
    • http://seasasac.lflinkup.com/5da0da0da0da9da2/Wilderness-journey-A-true-love-story-Vienna-Brooks-saga-by-Erna-M-Holyer.pdf
    • http://seasasac.lflinkup.com/5da9da3da3da9da6/Passport-to-Hiroshima-The-Unthinkable-Inspiring-Journey-of-a-Japanese-American-Family---Based-on-a-True-Story-by-Toshiharu-Kano.pdf
    • http://seasasac.lflinkup.com/1da1da8da6da