Malicious PDF — malware analysis report

Static analysis result for SHA-256 86308c15d94898da…

MALICIOUS

PDF

19.6 KB Created: 2019-05-02 17:49:01 +01:00 Authoring application: mPDF 5.7
MD5: b5dd58571d862e252f90be1bdb77b631 SHA-1: 81bed1261e061b980849b4e94dfb3cbc7d20ae08 SHA-256: 86308c15d94898dac0398ec2977e1b5333bb4bf3b0214f9edf38223e3c2d7ba4
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1059.001 PowerShell

The PDF contains a large number of embedded external links, as indicated by the PDF_SEO_LINK_FARM heuristic. While many of these links point to seemingly benign documents, the sheer volume and the ML_NYX_PDF_MALICIOUS classification suggest a malicious intent, likely for SEO manipulation or to serve as a lure for further malicious activity. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://xiixmcuin.linkpc.net/5205209209207200/The-World-We-Wish-to-See-Revolutionary-Objectives-in-the-Twenty-First-Century-by-Samir-Amin.pdf
    • http://xiixmcuin.linkpc.net/5205209208208201/The-Liberal-Virus-Permanent-War-And-The-Americanization-Of-The-World-by-Samir-Amin.pdf
    • http://xiixmcuin.linkpc.net/7209202203206205/Beyond-US-Hegemony-Assessing-the-Prospects-for-a-Multipolar-World-by-Samir-Amin.pdf
    • http://xiixmcuin.linkpc.net/5206200200209204/Accumulation-on-a-World-Scale-A-Critique-of-the-Theory-of-Underdevelopment-2-Volumes-by-Samir-Amin.pdf
    • http://xiixmcuin.linkpc.net/5206200201200201/The-Law-of-Worldwide-Value-by-Samir-Amin.pdf
    • http://xiixmcuin.linkpc.net/7209202203206203/The-Implosion-of-Contemporary-Capitalism-by-Samir-Amin.pdf
    • http://xiixmcuin.linkpc.net/5205209209206204/Capitalism-in-the-Age-of-Globalization-The-Management-of-Contemporary-Society-by-Samir-Amin.pdf
    • http://xiixmcuin.linkpc.net/7209202204204209/A-Life-Looking-Forward-Memoirs-of-an-Independent-Marxist-by-Samir-Amin.pdf
    • http://xiixmcuin.linkpc.net/7209202203208205/New-Perspectives-on-Racial-Identity-Development-A-Theoretical-and-Practical-Anthology-by-Samir-Amin.pdf
    • http://xiixmcuin.linkpc.net/2202204204205205/The-World-Is-Flat-A-Brief-History-of-the-Twenty-first-Century-by-Thomas-L-Friedman.pdf
    • http://xiixmcuin.linkpc.net/4209208202208205/A-New-Brand-World-Eight-Principles-for-Achieving-Brand-Leadership-in-the-Twenty-First-Century-by-Scott-Bedbury.pdf
    • http://xiixmcuin.linkpc.net/8206201200205/The-First-Century-After-Beatrice-by-Amin-Maalouf.pdf
    • http://xiixmcuin.linkpc.net/4202202200208203/A-Twenty-First-Century-Seeker-by-Pradhan-Balter.pdf
    • http://xiixmcuin.linkpc.net/1200204200200206201/Twenty-First-Century-Learning-by-Doing-by-Judith-M-Meloy.pdf
    • http://xiixmcuin.linkpc.net/1200201208207205/Ministering-to-Twenty-First-Century-Families-by-Dennis-Rainey.pdf
    • http://xiixmcuin.linkpc.net/4206207204206209/Are-We-Getting-Smarter-Rising-IQ-in-the-Twenty-First-Century-by-James-R-Flynn.pdf
    • http://xiixmcuin.linkpc.net/1200203205207202203/Maritime-Power-and-the-Twenty-First-Century-by-Harold-Kearsley.pdf
    • http://xiixmcuin.linkpc.net/4209209208205209/The-Mummy-A-Tale-of-the-Twenty-Second-Century-by-Jane-C-Webb-Loudon.pdf
    • http://xiixmcuin.linkpc.net/5201202206/On-Tyranny-Twenty-Lessons-from-the-Twentieth-Century-by-Timothy-Snyder.pdf
    • http://xiixmcuin.linkpc.net/1201204205200206207/AIDS-in-the-Twenty-First-Century-Disease-and-Globalization-by-Tony-Barnett.pdf
    • http://xiixmcuin.linkpc.net/5205209209206204/Capitalism-in-the-Age-of-Globalization-The-Management-of-Contempor