Malicious PDF — malware analysis report

Static analysis result for SHA-256 8ae7e9e4372310c3…

MALICIOUS

PDF

26.9 KB Created: 2020-03-18 22:45:00 +00:00 Authoring application: mPDF 5.7
MD5: 83cd53ad7bd605071cd7539a54c90f99 SHA-1: 395f801760cc052eac76246059d7f9f595ee8e3c SHA-256: 8ae7e9e4372310c34d8d2c016c13a5cb083475c4c2aa0c51ff3f326a5d693584
120 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF file contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic. These links point to external PDF files hosted on the same domain, suggesting a link farm or SEO poisoning tactic. The ClamAV detection further confirms the malicious nature of the file. No scripts were extracted from this sample.

Heuristics 3

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • ClamAV: Pdf.Malware.Agent-9909942-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Pdf.Malware.Agent-9909942-0
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://ieuicufioao.myhome.cx/1550555556558551553/American-Amnesia-Business-Government-and-the-Forgotten-Roots-of-Our-Prosperity-by-Jacob-S-Hacker.pdf
    • http://ieuicufioao.myhome.cx/1550551550554558552/The-effectiveness-of-a-government-high-technology-small-business-program-within-a-small-business-incubator-A-case-study-in-government-university-and-business-collaboration-by-Anila-Nandkishore-Strahan.pdf
    • http://ieuicufioao.myhome.cx/1551550555551550559/The-Heart-of-Business-Integrating-Prosperity-and-Values-for-Real-Change-by-Liz-Mohn.pdf
    • http://ieuicufioao.myhome.cx/1558559552554557/Winner-Take-All-Politics-How-Washington-Made-the-Rich-Richer--and-Turned-Its-Back-on-the-Middle-Class-by-Jacob-S-Hacker.pdf
    • http://ieuicufioao.myhome.cx/1559551556554554/Winner-Take-All-Politics-How-Washington-Made-the-Rich-Richer--and-Turned-Its-Back-on-the-Middle-Class-by-Jacob-S-Hacker.pdf
    • http://ieuicufioao.myhome.cx/4552552550554553/The-Divided-Welfare-State-The-Battle-Over-Public-and-Private-Social-Benefits-in-the-United-States-by-Jacob-S-Hacker.pdf
    • http://ieuicufioao.myhome.cx/4550559552552556/Position-Yourself-For-Prosperity-Secrets-to-Financial-Business-and-Personal-Success-by-Daniel-Calvinson-Ashley.pdf
    • http://ieuicufioao.myhome.cx/9558557554555556/Forgotten-Roots-by-Richard-Whitten-Barnes.pdf
    • http://ieuicufioao.myhome.cx/5556552559/The-Color-of-Law-A-Forgotten-History-of-How-Our-Government-Segregated-America-by-Richard-Rothstein.pdf
    • http://ieuicufioao.myhome.cx/2556557550556551/Embracing-Prosperity-By-Changing-Your-Mind-Tap-Into-Prosperity-By-Tapping-Into-You-by-Max-Patrick.pdf
    • http://ieuicufioao.myhome.cx/1556551557552/Alexander-Hamilton-in-the-American-Tradition-by-Louis-Morton-Hacker.pdf
    • http://ieuicufioao.myhome.cx/1550555556558556555/--5-Tasogare-Otome-Amnesia-5-Dusk-Maiden-of-Amnesia-5-by-Maybe.pdf
    • http://ieuicufioao.myhome.cx/1551555556558556554/Gao-05-459-Department-of-Energy-Improved-Oversight-Could-Better-Ensure-Opportunities-for-Small-Business-Subcontracting-by-U-S-Government-Accountability-Office.pdf
    • http://ieuicufioao.myhome.cx/9552550557558550/Manners-Custom-And-Dress-During-The-Middle-Ages-And-During-The-Renaissance-Period-Forgotten-Books-by-P-L-Jacob.pdf
    • http://ieuicufioao.myhome.cx/1550553554552550/The-Roots-Of-American-Order-by-Russell-Kirk.pdf
    • http://ieuicufioao.myhome.cx/9558557554555553/Roots-Of-American-Order-by-Russell-Kirk.pdf
    • http://ieuicufioao.myhome.cx/2557555551556550/Basic-American-Government-by-Clarence-B-Carson.pdf
    • http://ieuicufioao.myhome.cx/4554553551551558/Roots-The-Saga-of-an-American-Family-by-Alex-Haley.pdf
    • http://ieuicufioao.myhome.cx/2552550557557/Roots-The-Saga-of-an-American-Family-by-Alex-Haley.pdf
    • http://ieuicufioao.myhome.cx/3559551555552551/American-Government-Institutions-and-Policies-by-James-Q-Wilson.pdf
    • http://ieuicufioao.myhome.cx/1558559552554557/Winner-Take-All-Politics-How-Washington-Made-the-Rich-Richer--and-Turned-Its-B