Malicious PDF — malware analysis report

Static analysis result for SHA-256 42fca65b0c3e8b74…

MALICIOUS

PDF

19.3 KB Created: 2019-05-02 16:39:13 +01:00 Authoring application: mPDF 5.7
MD5: 857725c6c1b57510046c8c10c06d9a38 SHA-1: 2440312ec7d4b8a73e4371e92fe7f52037632681 SHA-256: 42fca65b0c3e8b7406052958903f23368d4bd172a07a735b25d3b0d255f7044c
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF file contains a large number of embedded URLs, identified as a link farm. While the URLs themselves are currently marked as benign, the sheer volume and structure suggest a malicious intent, possibly for SEO manipulation or to distribute further malicious content. The PDF structure and embedded links are indicative of a phishing or content distribution attack. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/7737738734737733/A-Judge-of-Their-Characters-by-Lucrezia-.pdf
    • http://cefasfese.4pu.com/7737738736734731/Baci-Roventi---I-racconti-Segreti-di-Lucrezia-by-Lucrezia-.pdf
    • http://cefasfese.4pu.com/4735734732730/Light-on-Lucrezia-Lucrezia-Borgia-2-by-Jean-Plaidy.pdf
    • http://cefasfese.4pu.com/5737730739731739/Siddhartha-It-Is-Not-for-Me-to-Judge-Another-Man-s-Life-I-Must-Judge-I-Must-Choose-I-Must-Spurn-Purely-for-Myself-for-Myself-Alone-by-Hermann-Hesse.pdf
    • http://cefasfese.4pu.com/4731734732733738/Disney-s-Junior-Encyclopedia-of-Animated-Characters-Including-Characters-from-Your-Favorite-Disney-Pixar-Films-by-M-L-Dunham.pdf
    • http://cefasfese.4pu.com/5736736737730735/How-To-Draw-Anime-amp-Game-Characters-Volume-5-Bishoujo-Game-Characters-v-5-by-Tadashi-Ozawa.pdf
    • http://cefasfese.4pu.com/7737733730738732/Criminal-Minds-Characters-List-of-Criminal-Minds-Characters-Aaron-Hotchner-Derek-Morgan-Spencer-Reid-Jennifer-Jareau-David-Rossi-by-Books-LLC.pdf
    • http://cefasfese.4pu.com/9730736732731/Batman-Judge-Dredd-Judgment-on-Gotham-Batman-Judge-Dredd-1-by-Alan-Grant.pdf
    • http://cefasfese.4pu.com/1730739733735731738/The-Munsters-Characters-List-of-the-Munsters-Characters-Marilyn-Munster-Herman-Munster-Lily-Munster-Grandpa-Eddie-Munster-by-Books-LLC.pdf
    • http://cefasfese.4pu.com/7737738735736734/Lucrezia-in-Cile-by-Italy.pdf
    • http://cefasfese.4pu.com/7737738736734739/Letters-From-Derbyshire-by-Lucrezia-.pdf
    • http://cefasfese.4pu.com/7737738734731732/Lucrezia-by-John-Grahaam.pdf
    • http://cefasfese.4pu.com/7737738736735733/Their-Share-of-Vexations-by-Lucrezia-.pdf
    • http://cefasfese.4pu.com/7737738736734733/Sorn-English-Edition-by-Lucrezia.pdf
    • http://cefasfese.4pu.com/7737738734738733/Lucrezia-Borgia-by-Ferdinand-Gregorovius.pdf
    • http://cefasfese.4pu.com/7737738735736731/Requiem-for-Lucrezia-by-Marc-Williams.pdf
    • http://cefasfese.4pu.com/7737738736735737/The-Knot-Nine-Moons-Nalee-7-by-Lucrezia.pdf
    • http://cefasfese.4pu.com/7737738734737732/Il-Lupo-Nove-Lune-Nalee-Vol-1-by-Lucrezia.pdf
    • http://cefasfese.4pu.com/7737738734739739/Lucrezia-Borgia-The-Pope-s-Daughter-by-Unknown.pdf
    • http://cefasfese.4pu.com/3739739736738733/Madonna-of-the-Seven-Hills-Lucrezia-Borgia-1-by-Jean-Plaidy.pdf
    • http://cefasfese.4pu.com/5736736737730735/How-To-Draw-Anime-amp-Game-Characters-Volume-5-Bisho