Malicious PDF — malware analysis report

Static analysis result for SHA-256 7454bde8e90c6207…

MALICIOUS

PDF

26.7 KB Created: 2019-05-04 14:11:28 +01:00 Authoring application: mPDF 5.7
MD5: b422e0fe0eb955ee283adc6a3cb96155 SHA-1: 8bd949ff913b6bbbbde5aa9155dba7c6c10095ea SHA-256: 7454bde8e90c6207276b5705f11d1fec69f73ccaaf90444504c5384c297bd016
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded URLs pointing to external PDF files, as indicated by the PDF_SEO_LINK_FARM heuristic. While the ML classifier also flagged the document as malicious, the specific intent appears to be the distribution of a link farm rather than direct execution of a payload. The URLs themselves are classified as benign, suggesting the primary purpose is SEO manipulation or potentially a content distribution network for other malicious activities.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9695

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://seasasac.lflinkup.com/1da0da7da0da0da7da7/Lost-With-You-Clean-Gay-Werewolf-Shifter-Romance-by-Free-Coman.pdf
    • http://seasasac.lflinkup.com/9da7da4da7da0da4/Bear-Essentials-Bundle-Werebear-amp-Werewolf-Shifter-Romance-3-In-1-Box-Set-by-Zooey-Moon.pdf
    • http://seasasac.lflinkup.com/4da8da4da2da3da0/ROMANCE-SHIFTER-ROMANCE-Knocked-Up-By-The-Navy-Shifter-Navy-Seal-Pregnancy-Alpha-Male-Romance-Paranormal-Fantasy-Protector-Short-Stories-by-Silvia-Pierce.pdf
    • http://seasasac.lflinkup.com/1da0da6da9da9da0da3/Til-Death-FF-Experimenting-Woman-and-Lesbian-by-Free-Coman.pdf
    • http://seasasac.lflinkup.com/3da0da4da1da3da3/Gay-Bayou-Shifter-Werewolf-Mating-1-by-Tabatha-Austin.pdf
    • http://seasasac.lflinkup.com/1da8da3da1da9da5/Eat-to-live-Tip-guide-on-selecting-healthy-food-Clean-eating-clean-eating-diet-clean-eating-cookbook-clean-eating-recipes-clean-eating-easy-clean-D-healthy-food-for-everyday-Book-1-by-Anna-Scott.pdf
    • http://seasasac.lflinkup.com/4da4da3da8da7da5/I-m-a-What-Peaches---A-Paranormal-Shifter-Romance-Book-4-by-Rosi-S-Philips.pdf
    • http://seasasac.lflinkup.com/6da4da2da5da9da1/What-the-Heart-Wants-A-Clean-Western-Culture-Romance-Story-by-Aqua-Allsopp.pdf
    • http://seasasac.lflinkup.com/5da3da9da7da1da3/No-Claws-Attached-One-A-BBW-Polar-Bear-Shifter-Romance-by-Sofi-Lauren.pdf
    • http://seasasac.lflinkup.com/5da0da3da2da0da5/Alone-In-My-Memories-Sweet-Clean-Inspirational-Romance-Story-Twin-Series-by-Dallacey-E-Green.pdf
    • http://seasasac.lflinkup.com/2da5da2da7/The-Lost-Slipper-Fairytale-Shifter-3-by-Alexa-Riley.pdf
    • http://seasasac.lflinkup.com/4da9da7da7da4da0/Fangs-of-Anarchy---Forbidden-Alpha-Bundle-A-Werewolf-Vampire-Romance-by-Dakota-Cassidy.pdf
    • http://seasasac.lflinkup.com/4da4da0da7da0da4/The-Billionaire-s-Marriage-Con-A-Clean-Billionaire-Romance-The-Kinlans-Trilogy-Book-3-by-Alicia-Eve.pdf
    • http://seasasac.lflinkup.com/4da4da0da8da1da8/The-Billionaire-s-Marriage-Spy-A-Clean-Billionaire-Romance-The-Kinlans-Trilogy-Book-2-by-Alicia-Eve.pdf
    • http://seasasac.lflinkup.com/4da4da0da3da0da1/Falling-for-the-Billionaire-A-Clean-Billionaire-Romance-4-by-Anne-Marie-Meyer.pdf
    • http://seasasac.lflinkup.com/9da5da6da0da0da4/Low-Sugar-So-Simple-100-Delicious-Low-Sugar-Low-Carb-Gluten-Free-Recipes-for-Eating-Clean-and-Living-Healthy-by-Elviira-Krebber.pdf
    • http://seasasac.lflinkup.com/9da0da9da2da3/The-Secret-of-the-Long-Lost-Cousin-Free-Sample-Story-Can-You-Solve-the-Mystery-1-Free-Sample-Story-by-M-Masters.pdf
    • http://seasasac.lflinkup.com/6da0da3da1da7da1/Howl-And-Growl-Wolf-And-Cat-Shifter-Paranormal-Romance-Howl-And-Growl-Series-Book-1-by-Cloe-Cullen.pdf
    • http://seasasac.lflinkup.com/7da2da2da4da4/Wicked-Werewolf-Passion-Werewolf-Society-3-by-Lisa-Renee-Jones.pdf
    • http://seasasac.lflinkup.com/8da4da2da3da6da6/Bestial-Desires-Werewolf-Erotica-The-Werewolf-In-The-Nightclub-by-Moxie-Grey.pdf