Malicious PDF — malware analysis report

Static analysis result for SHA-256 4564ad4a9da145bc…

MALICIOUS

PDF

24.2 KB Created: 2019-05-02 05:02:13 +01:00 Authoring application: mPDF 5.7
MD5: 68506929799e6d226d34bfcfd60f8b86 SHA-1: bbb4a48d3ad6b2f7c16d5c9db0bb4072b57ca9f8 SHA-256: 4564ad4a9da145bcaa937b2107ac0a7b05cd33d921da484ea313894b8975c7c5
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1204.002 Malicious Link

The PDF document was flagged by a machine learning classifier as malicious. A critical heuristic identified it as a link farm containing numerous external PDF links, likely for SEO manipulation or to host malicious content. While the document body is heavily obfuscated, the presence of many links suggests a deceptive intent. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9901

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://unieoooq.linkpc.net/24e74e74e04e2/Invisible-Lines-by-Mary-Amato.pdf
    • http://unieoooq.linkpc.net/74e84e54e24e6/The-Naked-Mole-Rat-Letters-by-Mary-Amato.pdf
    • http://unieoooq.linkpc.net/14e04e84e44e44e54e3/Beginner-Rock-Guitar-Lessons-Guitar-Instruction-Guide-to-Learn-How-to-Play-Licks-Chords-Scales-Techniques-Lead-amp-Rhythm-Guitar-Basic-Music-Theory-and-Exercises-Book-Videos-amp-TAB-by-Damon-Ferrante.pdf
    • http://unieoooq.linkpc.net/94e64e94e64e64e9/Ensembles-for-Guitar-Volume-1-Ensemble-Guitar-Parts-for-Suzuki-Guitar-School-Volume-1-by-Simon-Salz.pdf
    • http://unieoooq.linkpc.net/14e14e44e84e44e44e2/Next-Steps-in-Bass-Bass-Guitar-Book-for-Beginners-amp-Advanced---Learn-Scales-Notes-Tabs-amp-Tuning-on-the-Next-Level-by-Markus-Vieweg.pdf
    • http://unieoooq.linkpc.net/14e04e94e94e04e34e8/Essential-Elements-for-Guitar---Book-1-Comprehensive-Guitar-Method-by-Will-Schmid.pdf
    • http://unieoooq.linkpc.net/54e54e64e64e94e8/Fingerstyle-Jazz-Guitar-Teaching-Your-Guitar-to-Walk-With-CD-by-Paul-Musso.pdf
    • http://unieoooq.linkpc.net/54e54e44e94e54e7/Guitar-Rigs-Classic-Guitar-amp-Amp-Combinations-by-Dave-Hunter.pdf
    • http://unieoooq.linkpc.net/94e04e74e94e74e2/Bluegrass-Guitar-Guitar-Books-by-H-Traum.pdf
    • http://unieoooq.linkpc.net/74e64e14e84e74e7/101-Riffs-and-Solos-for-Cigar-Box-Guitar-Essential-Lessons-for-3-String-Slide-Cigar-Box-Guitar-by-Brent-Robitaille.pdf
    • http://unieoooq.linkpc.net/14e04e84e44e34e94e0/Guitar-Arpeggio-Handbook-2nd-Edition-120-Lesson-Step-By-Step-Guide-to-Guitar-Arpeggios-Music-Theory-and-Technique-Building-Exercises-Beginner-to-Advanced-Levels-Book-amp-Videos-by-Damon-Ferrante.pdf
    • http://unieoooq.linkpc.net/64e44e64e94e64e1/Frankenstein---Phoenix-Science-Fiction-Classics-with-notes-and-critical-essays-by-Mary-Wollstonecraft-Shelley.pdf
    • http://unieoooq.linkpc.net/74e44e54e44e0/Guitar-Face-Guitar-Face-1-by-Sasha-Marshall.pdf
    • http://unieoooq.linkpc.net/84e44e54e84e14e9/Satie-for-the-Guitar-Guitar-Solo-by-Satie-Erik.pdf
    • http://unieoooq.linkpc.net/64e54e54e04e14e8/Lamontagne-Ray-Guitar-Chord-Songbook-Gtr-Book-Guitar-Chord-Songbooks-by-Ray-Lamontagne.pdf
    • http://unieoooq.linkpc.net/44e24e24e44e14e2/Daron-s-Guitar-Chronicles-Volume-Five-Daron-s-Guitar-Chronicles-5-by-Cecilia-Tan.pdf
    • http://unieoooq.linkpc.net/34e34e74e74e04e2/Daron-s-Guitar-Chronicles-Volume-Three-Daron-s-Guitar-Chronicles-3-by-Cecilia-Tan.pdf
    • http://unieoooq.linkpc.net/94e44e14e94e14e4/Notes-on-a-Rebellion-Notes-from-Random-Knight-1-by-Valentina-Hepburn.pdf
    • http://unieoooq.linkpc.net/24e74e64e54e24e9/Under-Virga-by-Joe-Amato.pdf
    • http://unieoooq.linkpc.net/24e14e74e54e04e3/Other-Eyes-by-Barbara-D-39-Amato.pdf
    • http://unieoooq.linkpc.net/14e14e44e84e44e44e2/Next-Steps-in-