Malicious PDF — malware analysis report

Static analysis result for SHA-256 4564eba69c71f57a…

MALICIOUS

PDF

21.1 KB Created: 2019-05-07 03:46:53 +01:00 Authoring application: mPDF 5.7
MD5: b66c0afda259e6dbf57ffd8aac13fc20 SHA-1: 20a0b5a958612488861334f1a8385294719c3c80 SHA-256: 4564eba69c71f57ac18d6a9f531776f510db390365027417db042260b3b4969d
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Phishing:Spearphishing Attachment T1204.002 Malicious Link

The PDF file contains a large number of embedded links to external PDF documents, forming a link farm. The primary heuristic firing, PDF_SEO_LINK_FARM, indicates this is a technique to artificially inflate search engine rankings or distribute content. While no malicious scripts were extracted, the sheer volume of links and the ML classifier's high confidence suggest a malicious intent, likely to drive traffic to potentially harmful or misleading content. The URLs themselves appear to be related to anorexia, possibly as a lure.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9939

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://xiixmcuin.linkpc.net/4209203208206206/Ten-Mile-Morning-My-Journey-Through-Anorexia-Nervosa-by-Adam-Lamparello.pdf
    • http://xiixmcuin.linkpc.net/4209203208208201/Anorexia-Nervosa-A-Guide-to-Recovery-by-Lindsey-Hall.pdf
    • http://xiixmcuin.linkpc.net/4209204203203204/Treating-and-Overcoming-Anorexia-Nervosa-by-Steven-Levenkron.pdf
    • http://xiixmcuin.linkpc.net/4209204203206203/Anorexia-Nervosa-Finding-the-Life-Line-by-Barbara-C-Unell.pdf
    • http://xiixmcuin.linkpc.net/4209204201204207/Eating-Disorders-Obesity-Anorexia-Nervosa-And-The-Person-Within-by-Hilde-Bruch.pdf
    • http://xiixmcuin.linkpc.net/4209204203205208/The-Thin-Woman-Feminism-Post-Structuralism-and-the-Social-Psychology-of-Anorexia-Nervosa-by-Helen-Malson.pdf
    • http://xiixmcuin.linkpc.net/4209204201203207/Theory-and-Treatment-of-Anorexia-Nervosa-and-Bulimia-Biomedical-Sociocultural-and-Psychological-Perspectives-by-Steven-Emmett.pdf
    • http://xiixmcuin.linkpc.net/4209204203205209/Starving-A-Personal-Journey-Through-Anorexia-by-Christie-Pettit.pdf
    • http://xiixmcuin.linkpc.net/7203204203202204/Yes-I-Glow-in-the-Dark-One-MIle-from-Three-Mile-Island-to-Fukushima-and-Beyond-by-Libbe-HaLevy.pdf
    • http://xiixmcuin.linkpc.net/7208209207206/The-Green-Mile-Part-2-The-Mouse-on-the-Mile-by-Stephen-King.pdf
    • http://xiixmcuin.linkpc.net/6201202203205206/The-Tale-of-Two-Horses-A-10-000-Mile-Journey-as-Told-by-the-Horses-by-Aim-Tschiffely.pdf
    • http://xiixmcuin.linkpc.net/1206201209205/Autumn-Across-America-A-Naturalist-s-Record-of-a-20-000-Mile-Journey-Through-the-North-American-Autumn-by-Edwin-Way-Teale.pdf
    • http://xiixmcuin.linkpc.net/7209205208207206/Morning-Mastery-How-to-Be-Productive-amp-Achieve-Your-Goals-with-a-Morning-Ritual-by-Lance-Devoir.pdf
    • http://xiixmcuin.linkpc.net/2203208208204204/Top-of-the-Morning-Inside-the-Cutthroat-World-of-Morning-TV-by-Brian-Stelter.pdf
    • http://xiixmcuin.linkpc.net/3207200202208203/The-Morning-Star-In-Which-the-Extraordinary-Correspondence-of-Griffin-amp-Sabine-is-Illuminated-Morning-Star-Trilogy-3-by-Nick-Bantock.pdf
    • http://xiixmcuin.linkpc.net/1201208201209205207/El-celibato-sacerdotal-Ensayo-n-458-by-Johann-Adam-Adam-M-ller.pdf
    • http://xiixmcuin.linkpc.net/1202203200209208/And-Call-Me-in-the-Morning-And-Call-Me-in-the-Morning-1-by-Willa-Okati.pdf
    • http://xiixmcuin.linkpc.net/4209203207204201/Empty-A-Story-of-Anorexia-by-Christie-Pettit.pdf
    • http://xiixmcuin.linkpc.net/3204202202202/Wasted-A-Memoir-of-Anorexia-and-Bulimia-by-Marya-Hornbacher.pdf
    • http://xiixmcuin.linkpc.net/4209203208207203/An-Apple-a-Day-A-Memoir-of-Love-and-Recovery-from-Anorexia-by-Emma-Woolf.pdf
    • http://xiixmcuin.linkpc.net/4209204201203207/Theory-and-Treatment-of-Anorexia-Nervosa-and-Bulimia-Biomedical-Sociocultural-and-Psychological-Perspectives