Malicious PDF — malware analysis report

Static analysis result for SHA-256 71946b45dfe4fef7…

MALICIOUS

PDF

15.3 KB Created: 2019-11-07 11:21:41 +00:00 Authoring application: mPDF 5.7
MD5: 66f75485be9ec8f6ab9d15313511f329 SHA-1: 7179ef2b8e9f472deb7206cd1bb229a3e3ac6e5d SHA-256: 71946b45dfe4fef7878b4df0d2a7982f447783928bc5c8f075aff9825c0c4565
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF document contains a large number of embedded links, forming a link farm. The primary heuristic indicates this is a SEO-based link farm, likely intended to drive traffic to other sites. The ML classifier also flagged this PDF as malicious, supporting the suspicious nature of the link farm.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9778

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/1737739737732736/A-Night-with-the-Rock-Star-Taking-Stage-2-by-Emma-Rose.pdf
    • http://cefasfese.4pu.com/1737739737733736/A-Night-with-the-Rock-Star-Taking-Stage-4-by-Emma-Rose.pdf
    • http://cefasfese.4pu.com/1737739737732731/A-Night-with-the-Rock-Star-Taking-Stage-1-by-Emma-Rose.pdf
    • http://cefasfese.4pu.com/1733735732732734/Backstage-Paradise-Novella-2-A-Rock-Star-Erotic-Romance-by-Emma-Rose.pdf
    • http://cefasfese.4pu.com/3734736735734730/Taking-the-Lead-Secrets-of-a-Rock-Star-1-by-Cecilia-Tan.pdf
    • http://cefasfese.4pu.com/1733730731734738/One-Night-With-a-Rock-Star-Complete-Series-Books-One-amp-Part-Deux-by-Chana-Keefer.pdf
    • http://cefasfese.4pu.com/4732737737735735/Taking-the-Stage-Soulgirl-2-by-Heather-Long.pdf
    • http://cefasfese.4pu.com/4731735733737730/My-Rock-5-The-Rock-Star-Romance-5-by-Alycia-Taylor.pdf
    • http://cefasfese.4pu.com/3734732735730731/The-Biggest-Stage-Willow-Son-1-Brothers-Of-Rock-16-by-Karolyn-James.pdf
    • http://cefasfese.4pu.com/2736733731735732/From-Cradle-to-Stage-Stories-from-the-Mothers-Who-Rocked-and-Raised-Rock-Stars-by-Virginia-Hanlon-Grohl.pdf
    • http://cefasfese.4pu.com/2735737736731739/Another-Rock-Star-by-Paula-Coots.pdf
    • http://cefasfese.4pu.com/7730731730730/Rock-Star-by-Jackie-Collins.pdf
    • http://cefasfese.4pu.com/1731738733738739/The-Rock-Star-by-Rick-Soper.pdf
    • http://cefasfese.4pu.com/1730733733732730739/Acht-Sekunden--Falling-for-you-Big-Rock-Creek--Reihe-Band-2-by-Emma-Cole.pdf
    • http://cefasfese.4pu.com/1730736735736736736/Nachricht-ins-Gl-ck-by-Emma-S-Rose.pdf
    • http://cefasfese.4pu.com/3738731738736733/Pumpkin-Faces-by-Emma-Rose.pdf
    • http://cefasfese.4pu.com/4730731737733739/Rock-You-Fallen-Star-1-by-Candy-J-Starr.pdf
    • http://cefasfese.4pu.com/3735731738737732/The-Rock-Star-Next-Door-by-Lily-Silver.pdf
    • http://cefasfese.4pu.com/3733734735734733/How-to-Kill-a-Rock-Star-by-Tiffanie-DeBartolo.pdf
    • http://cefasfese.4pu.com/4733736732737/Sorta-Like-a-Rock-Star-by-Matthew-Quick.pdf