Malicious PDF — malware analysis report

Static analysis result for SHA-256 910f4c42bb1defd1…

MALICIOUS

PDF

17.9 KB Created: 2019-05-03 06:27:05 +01:00 Authoring application: mPDF 5.7
MD5: a3cdeb77318066c7831cd3a3c2be0487 SHA-1: 89c36e3400ce5a7b4d8f436c5295eaa8d047a318 SHA-256: 910f4c42bb1defd1c90f556dde13fbcd9821d8e6b1ba830f82999d03457b7617
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file contains a large number of embedded links to external websites, as indicated by the PDF_SEO_LINK_FARM heuristic. While the document body is heavily corrupted, the presence of numerous links suggests a potential attempt to direct users to malicious or deceptive content. The ML classifier also flagged this PDF as malicious with a high probability. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9788

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/5738731736730734/eLexicography-in-the-21st-century-New-challenges-new-applications-by-Sylviane-Granger.pdf
    • http://cefasfese.4pu.com/1738735735737739/Surviving-the-21st-Century-Humanity-s-Ten-Great-Challenges-and-How-We-Can-Overcome-Them-by-Julian-Cribb.pdf
    • http://cefasfese.4pu.com/9737735739738736/Real-Memories-Audiovisual-Challenges-of-an-Archiving-Musicologist-in-the-21st-Century-by-Gisa-J-hnichen.pdf
    • http://cefasfese.4pu.com/1730731739732737738/Roget-s-21st-Century-Thesaurus-21st-Century-Reference-by-Barbara-Ann-Kipfer.pdf
    • http://cefasfese.4pu.com/5738731735731730/Electronic-Lexicography-by-Sylviane-Granger.pdf
    • http://cefasfese.4pu.com/5738731734737734/Taste-for-Corpora-A-in-Honour-of-Sylviane-Granger-by-Fanny-Meunier.pdf
    • http://cefasfese.4pu.com/5738731735731732/Corpus-Based-Approaches-to-Contrastive-Linguistics-and-Translation-Studies-by-Sylviane-Granger.pdf
    • http://cefasfese.4pu.com/1730731739734731736/21st-Century-Yokel-by-Tom-Cox.pdf
    • http://cefasfese.4pu.com/6736731731731/U-P-into-the-21st-Century-and-Other-Essays-by-Francisco-Nemenzo.pdf
    • http://cefasfese.4pu.com/1730731739733731739/How-to-Be-an-Indian-in-the-21st-Century-by-Louis-V-Clark.pdf
    • http://cefasfese.4pu.com/4738731736739733/21st-Century-Kids-by-Shannon-Vyff.pdf
    • http://cefasfese.4pu.com/6736730736731/21st-Century-American-by-Byron-Goines.pdf
    • http://cefasfese.4pu.com/8739731736739736/We-Have-Been-Invaded-by-the-21st-Century-by-David-McReynolds.pdf
    • http://cefasfese.4pu.com/5731730735734738/Who-Are-We-And-Should-It-Matter-In-The-21st-Century-by-Gary-Younge.pdf
    • http://cefasfese.4pu.com/4735731736735736/Introducing-Criticism-at-the-21st-Century-by-Julian-Wolfreys.pdf
    • http://cefasfese.4pu.com/6739734739739731/New-Clich-s-for-the-21st-Century-Zuckerisms-by-Stephen-Zuckerman.pdf
    • http://cefasfese.4pu.com/1730731739734731735/Sometime-in-the-21st-Century-a-book-for-strangers-by-James-Banks.pdf
    • http://cefasfese.4pu.com/6735737737737730/Eat-Real-Food-or-Else-A-Cookbook-for-the-21st-Century-by-Lien-Nguyen.pdf
    • http://cefasfese.4pu.com/1730739734738739/The-Ultimate-Guide-to-21st-Century-Careers-by-Richa-Dwivedi.pdf
    • http://cefasfese.4pu.com/1730735734735736732/Incarcerated-Visions-of-California-in-the-21st-Century-by-Sandow-Birk.pdf