Malicious PDF — malware analysis report

Static analysis result for SHA-256 37880f529e592f92…

MALICIOUS

PDF

26.7 KB Created: 2019-06-04 10:26:05 +01:00 Authoring application: mPDF 5.7
MD5: 7e8f6dc3e67e1ca6e51781024a1ac005 SHA-1: 1801ce32b711663da6f6327246d1d5891e2fa151 SHA-256: 37880f529e592f92805bf6abcba784dc4304bc336091bbddf0f177767274b4dc
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF file exhibits a critical heuristic firing for a link farm, containing 31 external links. These links, while individually labeled as benign, collectively suggest a pattern of SEO manipulation or traffic redirection. The document body is heavily obfuscated and unreadable, preventing a more detailed analysis of its specific lure. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/5739735737736734/100-Things-Clemson-Fans-Should-Know-amp-Do-Before-They-Die-100-Things-Fans-Should-Know-by-Lou-Sahadi.pdf
    • http://cefasfese.4pu.com/4732736735733736/100-Things-Dodgers-Fans-Should-Know-Do-Before-They-Die-by-Jon-Weisman.pdf
    • http://cefasfese.4pu.com/3732735738734732/Tales-from-the-Kurtherian-Universe-Fans-Write-For-The-Fans-1-by-S-E-Weir.pdf
    • http://cefasfese.4pu.com/1735731737731734/Cat-Lovers-Quotations-For-Fans-Of-Our-Feline-Friends-by-Various.pdf
    • http://cefasfese.4pu.com/1730733731731739731/Divergent-Fans-Cookbook-by-Megan-Parker.pdf
    • http://cefasfese.4pu.com/9734732730733738/Sportwetten-So-gewinnen-Fans-doppelt-by-Patrick-Reichelt.pdf
    • http://cefasfese.4pu.com/1730737738733733730/Gotthold-s-Emblems-or-Invisible-Things-Understood-by-Things-That-Are-Made-by-Christian-Scriver.pdf
    • http://cefasfese.4pu.com/3736734736739730/We-All-Married-Idiots-Three-Things-You-Will-Never-Change-About-Your-Marriage-and-Ten-Things-You-Can-by-Elaine-W-Miller.pdf
    • http://cefasfese.4pu.com/1731730734734730733/The-Whole-World-Sings-The-Fans-Behind-Barry-Manilow-by-Mandy-Strunk.pdf
    • http://cefasfese.4pu.com/3732732733738739/Charmed-Knits-Projects-for-Fans-of-Harry-Potter-by-Alison-Hansel.pdf
    • http://cefasfese.4pu.com/1730732734732737/Raving-Fans-A-Revolutionary-Approach-to-Customer-Service-by-Kenneth-H-Blanchard.pdf
    • http://cefasfese.4pu.com/2730731737731736/Among-the-Fans-From-the-Ashes-to-the-arrows-a-year-of-watching-the-watchers-by-Patrick-Collins.pdf
    • http://cefasfese.4pu.com/6734736736738/The-Art-of-Fixing-Things-Principles-of-Machines-and-How-to-Repair-Them-150-Tips-and-Tricks-to-Make-Things-Last-Longer-and-Save-You-Money-by-Lawrence-E-Pierce.pdf
    • http://cefasfese.4pu.com/3737735733732730/50-Things-To-Know-To-Stick-With-A-Workout-Motivational-Tips-To-Start-The-New-You-Today-50-Things-to-Know-Healthy-Living-Series-Book-4-by-Lisa-M-Rusczyk.pdf
    • http://cefasfese.4pu.com/4738731734733/Faithful-Two-Diehard-Boston-Red-Sox-Fans-Chronicle-the-Historic-2004-Season-by-Stewart-O-39-Nan.pdf
    • http://cefasfese.4pu.com/9734738733734734/Summary-of-The-Girl-in-the-Spider-s-Web-by-David-Lagercrantz-Trivia-Quiz-for-Fans-by-Whiz-Books.pdf
    • http://cefasfese.4pu.com/6739738739738737/Summary-of-The-Storied-Life-of-A-J-Fikry-A-Novel-by-Gabrielle-Zevin-Trivia-Quiz-for-Fans-by-Whiz-Books.pdf
    • http://cefasfese.4pu.com/7731733732734731/Before-We-Say-Goodbye-An-unforgettable-heart-warming-story-of-love-and-letting-go-perfect-for-fans-of-Jojo-Moyes-by-Madeleine-Reiss.pdf
    • http://cefasfese.4pu.com/1730737738734733738/Ornaments-Lace-Fans-Gloves-Walking-Sticks-Parasols-Jewelry-And-Trinkets-Moder-And-Manners-Supplement-by-Max-Von-Boehn.pdf
    • http://cefasfese.4pu.com/2737735737736/Things-Not-Seen-Things-1-by-Andrew-Clements.pdf
    • http://cefasfese.4pu.com/17307