Malicious PDF — malware analysis report

Static analysis result for SHA-256 8115d56b1bd24402…

MALICIOUS

PDF

26.3 KB Created: 2019-05-03 23:16:31 +01:00 Authoring application: mPDF 5.7
MD5: 81c5cba7a0cb97d742c9e816637db248 SHA-1: 5752cf97aaaea5b9efd7645409f92b64bf7a008b SHA-256: 8115d56b1bd24402a63eec30076f88bca5908f2ff6a60f8e7168aa0cd4856bc6
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The PDF file contains a large number of embedded external links, as indicated by the PDF_SEO_LINK_FARM heuristic. These links point to various book titles, but the sheer volume and the domain suggest a link farm or SEO manipulation tactic. The embedded URLs are likely intended to direct users to external sites, potentially for malicious purposes such as phishing or distributing further malware. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/7736737731733738/Scoping-the-Social-An-Introduction-to-the-Practice-of-Social-Theory-by-Anthony-Woodiwiss.pdf
    • http://cefasfese.4pu.com/1739737731733737/Social-Media-Marketing-Risk-Management-for-Safety-amp-Profit-How-to-Make-More-Money-Cut-Costs-amp-Mitigate-Your-Social-Media-Marketing-Risks-Now-Before-It-s-Too-Late-Shocking-Social-Media-Marketing-Safety-Security-Privacy-amp-Reputation-Threats-on-Soci-by-Anthony-D-Col-n.pdf
    • http://cefasfese.4pu.com/4735734733731735/Nolo-s-Guide-to-Social-Security-Disability-by-David-A-Morton-III.pdf
    • http://cefasfese.4pu.com/5731730732737730/The-Real-Deal-The-History-and-Future-of-Social-Security-by-Sylvester-J-Schieber.pdf
    • http://cefasfese.4pu.com/7737733736739737/Understanding-Social-Work-Preparing-for-Practice-by-Neil-Thompson.pdf
    • http://cefasfese.4pu.com/1731732730736734730/How-Does-Social-Science-Work-Reflections-on-Practice-by-Paul-Diesing.pdf
    • http://cefasfese.4pu.com/5734731734733/Social-Security-Medicare-Food-Stamps-Minimum-Wage-and-MORE-by-Byron-Goines.pdf
    • http://cefasfese.4pu.com/1731735734738730730/The-European-Face-of-Social-Security-Essays-in-Honour-of-Heran-Deleeck-by-Jos-Berghman.pdf
    • http://cefasfese.4pu.com/3736736732732738/The-Gentle-Art-of-Blessing-A-Simple-Practice-That-Will-Transform-You-and-Your-World-by-Pierre-Pradervand.pdf
    • http://cefasfese.4pu.com/1731734734739738734/Essays-on-Social-Security-and-Taxation-Gustav-Von-Schmoller-and-Adolph-Wagner-Reconsidered-by-J-rgen-G-Backhaus.pdf
    • http://cefasfese.4pu.com/1733738730732734/Distinction-A-Social-Critique-of-the-Judgement-of-Taste-by-Pierre-Bourdieu.pdf
    • http://cefasfese.4pu.com/6739731732733737/Social-security-in-a-changing-society-An-introduction-to-programs-concepts-and-issues-McCahan-Foundation-book-series-by-Yung-Ping-Chen.pdf
    • http://cefasfese.4pu.com/2732738735738736/The-Raw-Deal-How-the-Bush-Republicans-Plan-to-Destroy-Social-Security-and-the-Legacy-of-the-New-Deal-by-Joe-Conason.pdf
    • http://cefasfese.4pu.com/7736737738732735/Embedded-Java-Security-Security-for-Mobile-Devices-by-Mourad-Debbabi.pdf
    • http://cefasfese.4pu.com/7734735737732731/Smart-Materials-for-Energy-Communications-and-Security-NATO-Science-for-Peace-and-Security-Series-by-Daoud-Mezzane.pdf
    • http://cefasfese.4pu.com/7739738731736733/Information-Security-Policies-Procedures-and-Standards-Guidelines-for-Effective-Information-Security-Management-by-Thomas-R-Peltier.pdf
    • http://cefasfese.4pu.com/7736735738732730/The-Truth-about-Trudeau-by-Bob-Plamondon.pdf
    • http://cefasfese.4pu.com/7736735738737733/Have-You-Ever-Been-Screwed-by-Dick-Plamondon.pdf
    • http://cefasfese.4pu.com/7736735739736737/Of-Women-and-Men-by-Barry-Plamondon.pdf
    • http://cefasfese.4pu.com/7736735739737738/Run-Between-the-Raindrops-by-Barry-Plamondon.pdf
    • http://cefasfese.4pu.com/1731732730736734730/How-Does-Social-Science-Wor