Malicious PDF — malware analysis report

Static analysis result for SHA-256 45d2cfaa57ffcae9…

MALICIOUS

PDF

18.5 KB Created: 2019-05-03 06:26:44 +01:00 Authoring application: mPDF 5.7
MD5: 8b1d9c8975caa8ba7a4d70ba8be3b142 SHA-1: 1a834f309aa1e7de44c74b84fc3e5f72758a3e18 SHA-256: 45d2cfaa57ffcae98266362874730895afb1252d15c434dcf1f30c7e35487052
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The PDF file contains a large number of embedded URLs, identified as a link farm. While the URLs themselves are currently marked as benign, the sheer volume and structure suggest an attempt to manipulate search engine results or redirect users to potentially malicious content. No scripts were extracted, limiting further analysis of the file's direct actions.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/4739730737736731/Rack-Ruin-and-Murder-Campbell-and-Carter-Mystery-2-by-Ann-Granger.pdf
    • http://cefasfese.4pu.com/5732738734735734/The-Carter-Boys-by-Desiree-M-Granger.pdf
    • http://cefasfese.4pu.com/5735737732735732/PAX-BRITANNIA-Murder-on-the-Frontier-A-Centurion-Sextus-Mystery-A-Centurion-Sextus-Murder-Mystery-by-Richard-Orton.pdf
    • http://cefasfese.4pu.com/1731739738735730/Murder-Becomes-Manhattan-A-Dalton-Lee-Mystery-The-Murder-Becomes-series-Book-1-by-Jeffrey-Eaton.pdf
    • http://cefasfese.4pu.com/4738738737731732/Sex-Murder-And-A-Double-Latte-A-Sophie-Katz-Murder-Mystery-1-by-Kyra-Davis.pdf
    • http://cefasfese.4pu.com/6730735736738736/Murder-on-the-Green-A-gripping-crime-mystery-full-of-cooking-and-murder-by-H-V-Coombs.pdf
    • http://cefasfese.4pu.com/4739731735735739/Murder-in-the-Green-Libby-Sarjeant-Murder-Mystery-Series-by-Lesley-Cookman.pdf
    • http://cefasfese.4pu.com/6735736739739/Sex-Murder-And-A-Double-Latte-A-Sophie-Katz-Murder-Mystery-1-by-Kyra-Davis.pdf
    • http://cefasfese.4pu.com/4739731733737733/Murder-Imperfect-Libby-Sarjeant-Murder-Mystery-Series-by-Lesley-Cookman.pdf
    • http://cefasfese.4pu.com/3737736733739732/Murder-by-Serpents-The-Murder-Quilt-Theo-and-Tony-Abernathy-Mystery-1-by-Barbara-Graham.pdf
    • http://cefasfese.4pu.com/6737735735739/The-Edge-of-Ruin-An-Emily-Weiss-Mystery-by-Irene-Fleming.pdf
    • http://cefasfese.4pu.com/1730732737734738731/The-Chronicles-of-Narnia-Rack-Box-Set-7-Books-in-1-Box-Set-by-C-S-Lewis.pdf
    • http://cefasfese.4pu.com/4732736734738737/The-Mystery-in-Arizona-Trixie-Belden-6-by-Julie-Campbell.pdf
    • http://cefasfese.4pu.com/1731734738732732730/The-Gatehouse-Mystery-Trixie-Belden-3-by-Julie-Campbell.pdf
    • http://cefasfese.4pu.com/7736739738735737/Ruin-Ruin-Saga-1-by-Harry-Manners.pdf
    • http://cefasfese.4pu.com/4730735730732733/Scheduled-to-Die-A-Carter-Mays-Mystery-2-by-Alan-Cupp.pdf
    • http://cefasfese.4pu.com/6736731733738738/Maharajah-The-Blake-and-Avery-Mystery-Series-1-by-M-J-Carter.pdf
    • http://cefasfese.4pu.com/2731737736734730/Dying-Brand-Allison-Campbell-Mystery-3-by-Wendy-Tyson.pdf
    • http://cefasfese.4pu.com/3737736733737738/Tear-Down-and-Die-Cara-Mia-Delgatto-Mystery-1-by-Joanna-Campbell-Slan.pdf
    • http://cefasfese.4pu.com/4738738737730739/Chocolate-Dipped-Death-A-Candy-Shop-Mystery-2-by-Sammi-Carter.pdf