Malicious PDF — malware analysis report

Static analysis result for SHA-256 44041f68ab4fa424…

MALICIOUS

PDF

19.2 KB Created: 2019-06-04 07:48:11 +01:00 Authoring application: mPDF 5.7
MD5: 0c0a2a547f5e7e188a201794bbb7bda6 SHA-1: 94a6ffe28f84da727e6f1b6f046c56454a08b124 SHA-256: 44041f68ab4fa424b6ba033030e6ee9d6e3cd06caa6bdeddf1fc661b49c54754
68 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic. While the document body is unreadable, the heuristic indicates a likely attempt to manipulate search engine results or redirect users to a large number of external resources. The SE_URGENCY_LURE heuristic suggests a social engineering pretext, though the specific content is not extractable. No scripts were extracted from this sample.

Heuristics 3

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Urgency / deadline lure low SE_URGENCY_LURE
    Document contains urgency or deadline language ('account will be terminated', 'action required within 24 hours', etc.) — useful context, but low-signal without other findings
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/4739730735737/Empty-Promises-and-Other-True-Cases-Crime-Files-7-by-Ann-Rule.pdf
    • http://cefasfese.4pu.com/2733739731738733/But-I-Trusted-You-and-Other-True-Cases-Crime-Files-14-by-Ann-Rule.pdf
    • http://cefasfese.4pu.com/2733738739732731/Last-Dance-Last-Chance-and-Other-True-Cases-Crime-Files-8-by-Ann-Rule.pdf
    • http://cefasfese.4pu.com/2736738739736/A-Rose-for-Her-Grave-and-Other-True-Cases-Crime-Files-1-by-Ann-Rule.pdf
    • http://cefasfese.4pu.com/1730734735732736734/The-X-Files-Cold-Cases-X-Files-1-by-Joe-Harris.pdf
    • http://cefasfese.4pu.com/7732730732735/True-Crime-2017-Homicide-amp-True-Crime-Stories-of-2017-by-Jack-Rosewood.pdf
    • http://cefasfese.4pu.com/1738732739735732/Counterfeit-Gods-The-Empty-Promises-of-Money-Sex-and-Power-and-the-Only-Hope-that-Matters-by-Timothy-J-Keller.pdf
    • http://cefasfese.4pu.com/2737739738730733/The-Mammoth-Book-of-Unsolved-Crime-The-Biggest-and-Best-Collection-of-Unsolved-Murder-and-Mystery-Cases-by-Roger-Wilkes.pdf
    • http://cefasfese.4pu.com/1730739730736733735/The-World-s-Most-Evil-Psychopaths-Horrifying-True-Life-Cases-by-John-Marlowe.pdf
    • http://cefasfese.4pu.com/6733737733731730/Crime-at-the-Chat-Caf-Nancy-Drew-Files-124-by-Carolyn-Keene.pdf
    • http://cefasfese.4pu.com/2734730738735734/Too-Late-to-Say-Goodbye-A-True-Story-of-Murder-and-Betrayal-by-Ann-Rule.pdf
    • http://cefasfese.4pu.com/6737738736735/A-Child-s-Book-of-True-Crime-by-Chloe-Hooper.pdf
    • http://cefasfese.4pu.com/2738737731731/The-Unwritten-Law-A-True-Crime-of-Passion-by-Danny-Cantrell.pdf
    • http://cefasfese.4pu.com/8734732732739732/The-Dead-and-the-Innocent-True-Crime-1692-by-Barbara-O-39-Sullivan.pdf
    • http://cefasfese.4pu.com/9734738738733738/Mob-Fest-29-The-True-Story-Behind-the-Birth-of-Organized-Crime-by-Bill-Tonelli.pdf
    • http://cefasfese.4pu.com/2738730730733733/Murderers-Row-A-Collection-of-Shocking-True-Crime-Stories-by-M-William-Phelps.pdf
    • http://cefasfese.4pu.com/2737739736731739/Death-at-the-Harbourview-Cafe-A-True-Crime-Story-by-Fred-Humber.pdf
    • http://cefasfese.4pu.com/2733732731731739/Passionate-Promises-Nine-Promises-to-Stir-Your-Passion-An-Embracing-Romance-Anthology-Book-1-by-Victoria-Vane.pdf
    • http://cefasfese.4pu.com/7737737731730737/Breathless-Promises-Alluring-Promises-3-by-Josie-Bordeaux.pdf
    • http://cefasfese.4pu.com/3733735737/True-Crime-Addict-How-I-Lost-Myself-in-the-Mysterious-Disappearance-of-Maura-Murray-by-James-Renner.pdf
    • http://cefasfese.4pu.com/2737739738730733/The-Mammoth-Book-of-Unsolved-Crime-The-Biggest-and-Best-Collection-of-Unsolved-Murder-and-Mystery-Cases-by-Roger-Wilke