Malicious PDF — malware analysis report

Static analysis result for SHA-256 31fc1da6a0a5a080…

MALICIOUS

PDF

26.5 KB Created: 2019-05-05 13:26:05 +01:00 Authoring application: mPDF 5.7
MD5: cd6f910d0968dc1d42c0e543511bc7c8 SHA-1: baad2d6b7033061cb52bee5c69e4da034b9c3033 SHA-256: 31fc1da6a0a5a0802e8ebddf7e563daa17a777406bff1224f8f6cfecbc3b2676
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF file contains a large number of embedded URLs, forming a link farm. The primary heuristic indicates this is a PDF SEO link farm, suggesting the document's purpose is to drive traffic to these external links. While the document body is heavily obfuscated, the presence of numerous URLs points to a content-driven lure, likely for SEO manipulation or to indirectly distribute other content. No scripts were extracted, and the family is unknown.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9695

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/1731736739734734736/The-Pleasure-of-Your-Company-Simple-Ideas-for-Enjoyable-Entertaining-by-Ann-Platz.pdf
    • http://cefasfese.4pu.com/1731736739733737736/Platz-in-Bayern-Platz-in-Augsburg-Platz-in-Munchen-Platz-in-Nurnberg-Platz-in-Regensburg-Viktualienmarkt-Konigsplatz-by-Quelle-Wikipedia.pdf
    • http://cefasfese.4pu.com/1731736739733737738/Platz-in-Hessen-Platz-in-Frankfurt-Am-Main-Platz-in-Hanau-Platz-in-Kassel-Platz-in-Wiesbaden-by-Quelle-Wikipedia.pdf
    • http://cefasfese.4pu.com/2739738733731732/Pure-Pleasure-A-Guide-to-the-Twentieth-Century-s-Most-Enjoyable-Books-by-John-Carey.pdf
    • http://cefasfese.4pu.com/1731736739735739731/Platz-in-Dresden-Neumarkt-Liste-Der-Strassen-Und-Platze-in-Kaditz-Altmarkt-Postplatz-Albertplatz-Wiener-Platz-Strassburger-Platz-by-Quelle-Wikipedia.pdf
    • http://cefasfese.4pu.com/8739736733730/The-Pleasure-of-My-Company-by-Steve-Martin.pdf
    • http://cefasfese.4pu.com/4737738737738737/For-the-Pleasure-of-His-Company-An-Affair-of-the-Misty-City-by-Charles-Warren-Stoddard.pdf
    • http://cefasfese.4pu.com/3734736730738738/SWAP-Simple-ideas-that-will-inspire-you-to-transform-your-life-from-ordinary-to-successful-by-David-Ferrers.pdf
    • http://cefasfese.4pu.com/6738733734733731/A-View-from-the-Porch-Swing-Musings-And-a-Few-Brillant-Ideas-on-the-Simple-Life-by-Becky-Freeman.pdf
    • http://cefasfese.4pu.com/7731733736731/Great-Sex-Made-Simple-Tantric-Tips-to-Deepen-Intimacy-amp-Heighten-Pleasure-by-Mark-A-Michaels.pdf
    • http://cefasfese.4pu.com/8730730730737733/Millionaire-Mindset-HABITS-AND-SIMPLE-IDEAS-FOR-SUCCESS-YOU-CAN-START-NOW-Millionaire-Mind-Money-master-the-game-of-wealth-creation-by-successful-people-PROSPERITY-SUCCESS-SERIES-Book-2-by-Darnell-Smith.pdf
    • http://cefasfese.4pu.com/1737734736730731/Pleasure-Island-Pleasure-Cruise-3-by-Mandy-M-Roth.pdf
    • http://cefasfese.4pu.com/1737737734736731/Pleasure-Pleasure-Pain-or-Purpose-1-by-Al-Daltrey.pdf
    • http://cefasfese.4pu.com/8735736739739739/Male-Multiple-Orgasm-The-Ultimate-Guide-on-Becoming-a-Multi-Orgasmic-Man-Gain-Ultimate-Control---Get-More-Pleasure---Give-More-Pleasure-by-B-Foyer.pdf
    • http://cefasfese.4pu.com/7735730731734/For-His-Pleasure-For-His-Pleasure-1-by-Kelly-Favor.pdf
    • http://cefasfese.4pu.com/1736732738732735/Entertaining-Angels-by-Monica-Millard.pdf
    • http://cefasfese.4pu.com/1733735737730736/Entertaining-101-by-Linda-West-Eckhardt.pdf
    • http://cefasfese.4pu.com/1730731736739730731/Columbia-A-Third-Tale-of-Bestimmung-Company-Books-of-B-Company-Book-3-by-Chris-Pourteau.pdf
    • http://cefasfese.4pu.com/7735731735735738/Entertaining-with-a-Japanese-Flavor-by-Kiyoko-Konishi.pdf
    • http://cefasfese.4pu.com/8734730736731732/ABC-Pasta-An-Entertaining-Alphabet-by-Juana-Medina.pdf