Malicious PDF — malware analysis report

Static analysis result for SHA-256 840f9ab7e425cf61…

MALICIOUS

PDF

21.0 KB Created: 2019-04-30 04:12:47 +01:00 Authoring application: mPDF 5.7
MD5: 969f3256cf2676d7399854b132fc2045 SHA-1: 1fb0a3d4a8a12783a73bacac1880a42c0044c279 SHA-256: 840f9ab7e425cf61258311e879736724bf79d3d42dae619aca7378b14de6ac3c
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic, which are disguised as book titles. While the URLs themselves are currently flagged as benign, the sheer volume and deceptive nature suggest a malicious intent to redirect users to potentially harmful content. The ML_NYX_PDF_MALICIOUS classifier also strongly indicated maliciousness. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9904

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://xiixmcuin.linkpc.net/2205208205204205/The-Private-Life-Of-Plants-A-Natural-History-Of-Plant-Behaviour-by-David-Attenborough.pdf
    • http://xiixmcuin.linkpc.net/2205208204208201/The-Trials-of-Life-A-Natural-History-of-Animal-Behaviour-by-David-Attenborough.pdf
    • http://xiixmcuin.linkpc.net/2205208204209202/David-Attenborough-Life-Stories-by-David-Attenborough.pdf
    • http://xiixmcuin.linkpc.net/2205208205202209/Life-in-Cold-Blood-by-David-Attenborough.pdf
    • http://xiixmcuin.linkpc.net/3204200207202204/The-Emerald-Planet-How-Plants-Changed-Earth-s-History-by-David-Beerling.pdf
    • http://xiixmcuin.linkpc.net/2206208201206201/The-Emerald-Planet-How-Plants-Changed-Earth-s-History-by-David-Beerling.pdf
    • http://xiixmcuin.linkpc.net/7207205200203208/Plant-Biotechnology-The-Genetic-Manipulation-Of-Plants-by-Adrian-Slater.pdf
    • http://xiixmcuin.linkpc.net/4209204206203203/Threads-from-the-Web-of-Life-Stories-in-Natural-History-by-Stephen-Daubert.pdf
    • http://xiixmcuin.linkpc.net/9201202204204203/The-Living-Planet-by-David-Attenborough.pdf
    • http://xiixmcuin.linkpc.net/8200205204203201/British-Plant-Galls-Identification-Of-Galls-On-Plants-And-Fungi-by-Margaret-Redfern.pdf
    • http://xiixmcuin.linkpc.net/5203202206209206/St-lfelt-s-Plant-Ecology-Plants-The-Soil-And-Man-by-Martin-Gottfried-Stalfelt.pdf
    • http://xiixmcuin.linkpc.net/2205208206203202/The-Living-Planet-A-Portrait-of-the-Earth-by-David-Attenborough.pdf
    • http://xiixmcuin.linkpc.net/5201202204203209/Which-Coastal-Plant-A-Simple-Guide-to-the-Identification-of-New-Zealand-s-Common-Coastal-Plants-by-Andrew-Crowe.pdf
    • http://xiixmcuin.linkpc.net/4208202202206/The-Social-Origins-of-Private-Life-A-History-of-American-Families-1600-1900-by-Stephanie-Coontz.pdf
    • http://xiixmcuin.linkpc.net/5207204202203203/On-the-Cultivation-of-the-Plants-Belonging-to-the-Natural-Order-of-Protee-by-Joseph-Knight.pdf
    • http://xiixmcuin.linkpc.net/7205203208206/Prehistoric-Life-The-Definitive-Visual-History-of-Life-on-Earth-by-David-Burnie.pdf
    • http://xiixmcuin.linkpc.net/6200207208201207/Sweet-s-Hortus-Britannicus-Or-a-Catalogue-of-Plants-Indigenous-or-Cultivated-in-the-Gardens-of-Great-Britain-Arranged-According-to-the-Natural-System-by-Robert-Sweet.pdf
    • http://xiixmcuin.linkpc.net/6200207208201205/Sweet-s-Hortus-Britannicus-Or-a-Catalogue-of-Plants-Cultivated-in-the-Gardens-of-Great-Britain-Arranged-in-Natural-Orders-Volume-PT-12-by-Robert-Sweet.pdf
    • http://xiixmcuin.linkpc.net/6200207208202208/Sweet-s-Hortus-Britannicus-Or-a-Catalogue-of-Plants-Cultivated-in-the-Gardens-of-Great-Britain-Arranged-in-Natural-Orders-Volume-PT-1-Bot-H-C-1826-by-Robert-Sweet.pdf
    • http://xiixmcuin.linkpc.net/4204208203207200/Big-History-The-Big-Bang-Life-On-Earth-And-The-Rise-Of-Humanity-by-David-Christian.pdf