Malicious PDF — malware analysis report

Static analysis result for SHA-256 5d3921d860a82d04…

MALICIOUS

PDF

23.7 KB Created: 2019-05-01 19:17:31 +01:00 Authoring application: mPDF 5.7
MD5: 6a6d297624bbcf8a6790dbf80c9a7166 SHA-1: d703a5c5b50aec3e2a36cc9ba73f137ad488c46e SHA-256: 5d3921d860a82d040604b218c4d435202d0217e29971172751ab1284a332a40f
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF document contains a large number of embedded links, identified as a link farm. The primary heuristic indicates this is a tactic to SEO poison or distribute malicious content. While the URLs themselves are currently marked as benign, the sheer volume and structure suggest a malicious intent to redirect users to potentially harmful content. No scripts were extracted, and the document body was unreadable.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9903

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://seasasac.lflinkup.com/5da1da4da6da8da9/Why-Americans-Hate-the-Media-and-How-It-Matters-by-Jonathan-M-Ladd.pdf
    • http://seasasac.lflinkup.com/1da5da1da3da1/Why-Americans-Hate-Politics-by-E-J-Dionne-Jr-.pdf
    • http://seasasac.lflinkup.com/1da2da8da4da3da3/Hotel-Ladd-Ladd-Springs-Book-3-by-Dianne-Venetta.pdf
    • http://seasasac.lflinkup.com/1da2da6da9da0da1/Ladd-Fortune-Ladd-Springs-Book-2-by-Dianne-Venetta.pdf
    • http://seasasac.lflinkup.com/2da3da4da7da4da7/Christians-Are-Hate-Filled-Hypocrites-and-Other-Lies-You-ve-Been-Told-A-Sociologist-Shatters-Myths-from-the-Secular-and-Christian-Media-by-Bradley-R-E-Wright.pdf
    • http://seasasac.lflinkup.com/7da2da6da3da6/Don-t-Hate-the-Player-Hate-the-Game-by-Katie-Ashley.pdf
    • http://seasasac.lflinkup.com/1da4da6da4da6da8/Nothing-Matters-Family-Matters-Book-1-by-Liana-Key.pdf
    • http://seasasac.lflinkup.com/5da1da4da7da0da1/Comparing-Media-Systems-Three-Models-of-Media-and-Politics-by-Daniel-C-Hallin.pdf
    • http://seasasac.lflinkup.com/1da9da7da1da3da7/Social-Media-Marketing-Risk-Management-for-Safety-amp-Profit-How-to-Make-More-Money-Cut-Costs-amp-Mitigate-Your-Social-Media-Marketing-Risks-Now-Before-It-s-Too-Late-Shocking-Social-Media-Marketing-Safety-Security-Privacy-amp-Reputation-Threats-on-Soci-by-Anthony-D-Col-n.pdf
    • http://seasasac.lflinkup.com/1da7da0da6da1da6/From-Hate-From-Hate-1-by-Lily-Simon.pdf
    • http://seasasac.lflinkup.com/5da1da4da0da0da8/Mercado-media-em-Portugal-no-per-odo-marcelista-os-media-no-cruzamento-de-interesses-pol-ticos-e-neg-cios-privados-by-Suzana-Cavaco.pdf
    • http://seasasac.lflinkup.com/4da7da5da3da9da6/Beautiful-Americans-Beautiful-Americans-1-by-Lucy-Silag.pdf
    • http://seasasac.lflinkup.com/1da1da3da8da6da7da4/Social-Media-Marketing-Dominating-Strategies-for-your-Business-with-Social-Media-Facebook-Snapchat-Instagram-Twitter-LinkedIn-YouTube-by-Micha-l-Russel.pdf
    • http://seasasac.lflinkup.com/5da7da3da9da6da2/Social-Media-Roi-Managing-and-Measuring-Social-Media-Efforts-in-Your-Organization-by-Olivier-A-Blanchard.pdf
    • http://seasasac.lflinkup.com/9da3da7da7da5/Unleash-the-Power-of-Social-Media-Marketing-Explosive-Proven-Strategies-to-Boost-Your-Social-Media-Marketing-Campaign-by-Joe-Praveen-Sequeira.pdf
    • http://seasasac.lflinkup.com/1da1da3da4da1da2da8/Bode-Well-by-Garland-Ladd.pdf
    • http://seasasac.lflinkup.com/3da3da8da7da1da9/Oscar-Down-Under-Part-One-by-Jack-Ladd.pdf
    • http://seasasac.lflinkup.com/3da5da4da6da4da9/Castle-in-Time-The-Anywhere-Ring-2-by-Louise-Ladd.pdf
    • http://seasasac.lflinkup.com/3da5da4da6da5da2/Lost-Valley-The-Anywhere-Ring-3-by-Louise-Ladd.pdf
    • http://seasasac.lflinkup.com/3da5da4da6da5da7/Cherry-Blossom-Moon-The-Anywhere-Ring-4-by-Louise-Ladd.pdf