Malicious PDF — malware analysis report

Static analysis result for SHA-256 4dec3d3a336afffd…

MALICIOUS

PDF

23.8 KB Created: 2019-04-30 05:11:26 +01:00 Authoring application: mPDF 5.7
MD5: 457250140432319b1e1c4a23ba18ef97 SHA-1: 4242d3585ba255d5992170fb36c44c49e087d2db SHA-256: 4dec3d3a336afffdeee46af265eaa3652516a5ebee8e2596096cf9b7cbecc319
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1059.001 PowerShell

The PDF file was flagged by a machine learning classifier as malicious and contains a large number of embedded external links. The heuristic 'PDF_SEO_LINK_FARM' indicates that these links are likely part of a link farm, suggesting a deceptive or malicious purpose such as SEO manipulation or distributing further malware. No scripts were extracted, and the document body was heavily obfuscated, preventing a deeper analysis of the specific lure.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9901

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://unieoooq.linkpc.net/34e94e24e84e94e7/Origin-of-Inspiration-Seven-Short-Essays-for-Creative-People-by-Sam-Adoquei.pdf
    • http://unieoooq.linkpc.net/24e84e74e24e04e7/Inspiration-Sandwich-Stories-to-Inspire-Our-Creative-Freedom-by-S-A-R-K-.pdf
    • http://unieoooq.linkpc.net/34e24e34e44e34e6/Something-s-Lost-and-Must-be-Found-Six-Short-Tails-of-Inspiration-on-a-Long-Leash-by-Lisa-Begin-Kruysman.pdf
    • http://unieoooq.linkpc.net/24e14e14e14e64e3/Honne-the-Spirit-of-the-Chehalis-The-Indian-Interpretation-of-the-Origin-of-the-People-and-Animals-by-George-Sanders.pdf
    • http://unieoooq.linkpc.net/64e44e44e94e84e6/The-Body-Can-Speak-Essays-on-Creative-Movement-Education-with-Emphasis-on-Dance-and-Drama-by-Annelise-Mertz.pdf
    • http://unieoooq.linkpc.net/34e24e94e74e94e4/The-Good-Among-the-Great-19-Traits-of-the-Most-Admirable-Creative-and-Joyous-People-by-Donald-Van-de-Mark.pdf
    • http://unieoooq.linkpc.net/84e54e14e54e94e3/Short-Takes-Model-Essays-for-Composition-by-Elizabeth-Penfield.pdf
    • http://unieoooq.linkpc.net/74e54e34e64e04e5/The-Best-American-Series-20-Short-Stories-and-Essays-by-Geraldine-Brooks.pdf
    • http://unieoooq.linkpc.net/14e14e04e94e04e04e4/Parerga-and-Paralipomena-Short-Philosophical-Essays-Vol-2-by-Arthur-Schopenhauer.pdf
    • http://unieoooq.linkpc.net/94e84e34e34e54e2/The-Compact-Reader-Short-Essays-by-Method-and-Theme-by-Jane-E-Aaron.pdf
    • http://unieoooq.linkpc.net/14e14e54e74e94e8/The-TSA-vs-the-People-A-Short-Story-of-Vengeance-by-Robert-W-McGee.pdf
    • http://unieoooq.linkpc.net/44e74e74e04e24e3/Origin-ARS-Volume-4-Origin-ARS-4-by-Scottie-Futch.pdf
    • http://unieoooq.linkpc.net/44e74e74e04e04e5/Origin-A-R-S-Volume-1-Origin-ARS-1-by-Scottie-Futch.pdf
    • http://unieoooq.linkpc.net/44e14e54e94e74e6/A-Short-History-of-the-Jewish-People-From-Legendary-Times-to-Modern-Statehood-by-Raymond-P-Scheindlin.pdf
    • http://unieoooq.linkpc.net/24e94e14e04e04e8/The-Origin-The-Origin-1-by-Wilette-Youkey.pdf
    • http://unieoooq.linkpc.net/74e34e14e74e24e9/How-to-Be-More-Creative-An-Essential-Guide-to-Ignite-Your-Creative-Spark-and-Get-Ideas-Flowing-by-Nellie-Baroque.pdf
    • http://unieoooq.linkpc.net/24e84e34e44e94e0/Damn-Good-Advice-For-People-with-Talent-How-To-Unleash-Your-Creative-Potential-by-America-s-Master-Communicator-George-Lois-by-George-Lois.pdf
    • http://unieoooq.linkpc.net/14e14e04e84e84e54e3/Parerga-and-Paralipomena-Short-Philosophical-Essays-Vol-1-Parerga-by-Arthur-Schopenhauer.pdf
    • http://unieoooq.linkpc.net/34e04e34e74e6/A-Trip-to-the-Hardware-Store-amp-Other-Calamities-Quirky-Essays-for-Quirky-People-2-by-Barbara-Venkataraman.pdf
    • http://unieoooq.linkpc.net/24e44e04e84e2/Brighter-Than-You-Think-10-Short-Works-by-Alan-Moore-With-Critical-Essays-by-Marc-Sobel-by-Alan-Moore.pdf
    • http://unieoooq.linkpc.net/64e44e44e94e84e6/The-Body-Can-Speak-Essays-on-Creative-Movement-Education-with-Emph