Malicious PDF — malware analysis report

Static analysis result for SHA-256 6b29079f14b803b1…

MALICIOUS

PDF

21.7 KB Created: 2019-05-03 05:08:30 +01:00 Authoring application: mPDF 5.7
MD5: 79b1d98d49d4950845f0c30bc7fb9a76 SHA-1: 6e75d45ee13551d25ace10e3abdbb79c6a5e6b91 SHA-256: 6b29079f14b803b16288517c0e07f46bd57a6d68d9117816d1397a236829831e
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF document contains a large number of embedded URLs, identified by the PDF_SEO_LINK_FARM heuristic. While many of these URLs point to benign-looking PDFs, the sheer volume and the nature of the heuristic suggest a malicious intent, possibly for SEO manipulation or to host further malicious content. The ML classifier also flagged this PDF as malicious with high confidence.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://seasasac.lflinkup.com/4da3da2da4da6da7/Fall-of-Poppies-Stories-of-Love-and-the-Great-War-by-Heather-Webb.pdf
    • http://seasasac.lflinkup.com/2da7da7da5da1da9/Becoming-Josephine-A-Novel-by-Heather-Webb.pdf
    • http://seasasac.lflinkup.com/1da5da4da0da5da2/Becoming-Josephine-by-Heather-Webb.pdf
    • http://seasasac.lflinkup.com/1da0da7da8da9da8da2/Ivan-s-Great-Fall-Poetry-for-Summer-and-Autumn-from-Great-Poets-and-Writers-of-the-Past-by-Vanita-Oelschlager.pdf
    • http://seasasac.lflinkup.com/2da4da2da9da3da4/Fall-For-You-Fallen-Angels-2-by-Heather-Choate.pdf
    • http://seasasac.lflinkup.com/1da4da3da8da7da0/Adaptations-From-Short-Story-to-Big-Screen-35-Great-Stories-That-Have-Inspired-Great-Films-by-Stephanie-Harrison.pdf
    • http://seasasac.lflinkup.com/2da5da7da1da7da1/Love-on-a-Wing-and-a-Prayer-by-T-A-Webb.pdf
    • http://seasasac.lflinkup.com/6da8da8da4da4da3/Love-Charleston-by-Beth-Webb-Hart.pdf
    • http://seasasac.lflinkup.com/4da5da3da5da8da7/A-Treasury-of-Titanic-Tales-Stories-of-Life-and-Death-from-a-Night-to-Remember-by-Webb-Garrison.pdf
    • http://seasasac.lflinkup.com/3da6da6da5da2da1/Love-exe-A-Sweet-Romantic-Comedy-Making-You-Fall-in-Love-by-Manju-Nambiar.pdf
    • http://seasasac.lflinkup.com/4da6da3da7da7da8/Chicken-Soup-for-the-Soul-Love-Stories-Stories-of-First-Dates-Soul-Mates-and-Everlasting-Love-by-Jack-Canfield.pdf
    • http://seasasac.lflinkup.com/4da4da5da1da8da0/Great-Short-Short-Stories-Quick-Reads-by-Great-Writers-by-Paul-Negri.pdf
    • http://seasasac.lflinkup.com/3da5da6da1da6da2/Data-A-Love-Story-How-I-Gamed-Online-Dating-to-Meet-My-Match-by-Amy-Webb.pdf
    • http://seasasac.lflinkup.com/1da8da8da7da9da1/Mad-for-Love-Even-Gods-Fall-in-Love-2-by-Lynne-Connolly.pdf
    • http://seasasac.lflinkup.com/3da6da5da1da1da3/How-to-Fall-in-Love-with-the-Holy-Spirit-by-Mother-Love.pdf
    • http://seasasac.lflinkup.com/3da1da2da7da7da3/Great-Lesson-Teaching-Stories-Wonderful-Stories-for-Kids-ages-3-10-Animal-Characters-Lessons-amp-Morals-Books-for-Early-amp-Beginner-Readers-by-Betty-J-Byers.pdf
    • http://seasasac.lflinkup.com/5da3da5da9da9da1/The-Alpha-s-Fall-Great-Wolves-of-Passion-Alaska-2-by-Kiera-West.pdf
    • http://seasasac.lflinkup.com/1da8da9da3da2da1/The-Great-Warming-Climate-Change-and-the-Rise-and-Fall-of-Civilizations-by-Brian-M-Fagan.pdf
    • http://seasasac.lflinkup.com/1da2da7da2da9da1/Love-Maybe-by-Heather-Hepler.pdf
    • http://seasasac.lflinkup.com/9da2da3da6da8da6/The-Great-Tales-of-Middle-earth-Children-of-H-rin-Beren-and-L-thien-and-The-Fall-of-Gondolin-by-J-R-R-Tolkien.pdf