Malicious PDF — malware analysis report

Static analysis result for SHA-256 3351966c6865252f…

MALICIOUS

PDF

19.7 KB Created: 2019-05-04 14:00:14 +01:00 Authoring application: mPDF 5.7
MD5: 9d9ccaa66b0f6f5fbcfa4e95d9a83e75 SHA-1: 3773a7c50c326971425006d2499a7a0e7c6905c7 SHA-256: 3351966c6865252f2dba0ea861d849d5cc5b6e83db164708bb834716ff551959
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1204.002 Malicious Link

The PDF was flagged by a machine learning classifier as malicious. It contains a large number of embedded URLs, many of which point to external PDF files. The heuristic PDF_SEO_LINK_FARM indicates a link farm, suggesting the document's primary purpose is to direct users to a large number of external resources, potentially for SEO manipulation or to host further malicious content. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9922

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://seasasac.lflinkup.com/5da1da6da4da2da7/Imperial-Twilight-The-Opium-War-and-the-End-of-China-s-Last-Golden-Age-by-Stephen-R-Platt.pdf
    • http://seasasac.lflinkup.com/9da6da2da6da5da1/Opium-Regimes-China-Britain-and-Japan-1839-1952-by-Timothy-Brook.pdf
    • http://seasasac.lflinkup.com/9da2da3da0da6da4/Imperial-China-900-1800-by-Frederick-W-Mote.pdf
    • http://seasasac.lflinkup.com/1da1da6da3da6da8da6/History-of-Imperial-China-by-Endymion-Wilkinson.pdf
    • http://seasasac.lflinkup.com/1da4da1da6da7da1/The-Red-Brush-Writing-Women-of-Imperial-China-by-Wilt-L-Idema.pdf
    • http://seasasac.lflinkup.com/1da1da6da3da7da3da4/The-History-of-Imperial-China-A-Research-Guide-by-Endymion-Porter-Wilkinson.pdf
    • http://seasasac.lflinkup.com/5da1da4da5da8da1/Technology-and-Gender-Fabrics-of-Power-in-Late-Imperial-China-by-Francesca-Bray.pdf
    • http://seasasac.lflinkup.com/2da8da9da1da7da0/Thrall-Twilight-of-the-Aspects-World-of-WarCraft-9-by-Christie-Golden.pdf
    • http://seasasac.lflinkup.com/9da6da2da3da8da6/Air-Opium-Opium-2-by-Colin-Falconer.pdf
    • http://seasasac.lflinkup.com/4da8da7da0da1da5/Imperial-Dreams-Tracking-the-Imperial-Woodpecker-Through-the-Wild-Sierra-Madre-by-Tim-Gallagher.pdf
    • http://seasasac.lflinkup.com/4da0da2da4da2da6/China-s-Wings-War-Intrigue-Romance-and-Adventure-in-the-Middle-Kingdom-During-the-Golden-Age-of-Flight-by-Gregory-Crouch.pdf
    • http://seasasac.lflinkup.com/8da6da8da1da4/Sweet-Carolina-Heroines-of-the-Golden-West-1-by-Stephen-Bly.pdf
    • http://seasasac.lflinkup.com/2da8da2da9da2/Asian-Ideas-of-East-And-West-Tagore-And-His-Critics-In-Japan-China-And-India-by-Stephen-N-Hay.pdf
    • http://seasasac.lflinkup.com/5da0da7da5da6da8/Gathering-at-the-Golden-Gate-Mobilizing-for-War-in-the-Philippines-1898-by-Stephen-D-Coats.pdf
    • http://seasasac.lflinkup.com/3da5da2da7da0/The-Twilight-Saga-The-Official-Illustrated-Guide-Twilight-4-5-by-Stephenie-Meyer.pdf
    • http://seasasac.lflinkup.com/4da7da3da2da4da1/Life-and-Death-Twilight-Reimagined-Twilight-1-75-by-Stephenie-Meyer.pdf
    • http://seasasac.lflinkup.com/6da8da6da6da7da8/The-Dark-of-Twilight-Twilight-Shifters-1-by-Kate-Danley.pdf
    • http://seasasac.lflinkup.com/2da8da1da5da4da0/Twilight-Life-and-Death-Twilight-1-1-75-by-Stephenie-Meyer.pdf
    • http://seasasac.lflinkup.com/1da6da2da9da9da3/The-Twilight-Saga-Twilight-1-4-by-Stephenie-Meyer.pdf
    • http://seasasac.lflinkup.com/3da2da4da8da4/The-Twilight-Collection-Twilight-1-3-by-Stephenie-Meyer.pdf
    • http://seasasac.lflinkup.com/5da1da4da5da8da1/Technology-and-Gender-Fabrics-of-Power-