Malicious PDF — malware analysis report

Static analysis result for SHA-256 a5aba811d81e7e2c…

MALICIOUS

PDF

25.3 KB Created: 2020-01-04 08:57:42 +00:00 Authoring application: mPDF 5.7
MD5: 9dd62cc2fe16e3ba0662b53817a6faf3 SHA-1: e8601a049e24266c03b94562b15c2a5aed5b437d SHA-256: a5aba811d81e7e2ce463b784b0eaded5f7c8c1080907fd101f74f1782b96c6bb
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious File

The PDF contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic, suggesting a tactic to manipulate search results or distribute malicious content. The ML classifier also flagged this PDF as malicious with high confidence. While the specific URLs themselves are marked as benign, the sheer volume and the heuristic firing indicate a likely malicious intent behind the document's creation, possibly as a lure or a distribution vector.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9695

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/2734731737730730/There-Is-a-Country-New-Fiction-from-the-New-Nation-of-South-Sudan-by-Nyuol-Lueth-Tong.pdf
    • http://cefasfese.4pu.com/5731734734738736/The-Flour-Peddler-A-Global-Journey-into-Local-Food-from-Canada-to-South-Sudan-by-Chris-Hergesheimer.pdf
    • http://cefasfese.4pu.com/3734734737732731/Black-Power-The-Politics-of-Liberation-by-Stokely-Carmichael.pdf
    • http://cefasfese.4pu.com/3736736732738/Animal-Liberation-by-Peter-Singer.pdf
    • http://cefasfese.4pu.com/1734732730731737/The-Silent-Majority-Suburban-Politics-in-the-Sunbelt-South-by-Matthew-D-Lassiter.pdf
    • http://cefasfese.4pu.com/4739739734731731/Unruly-Women-The-Politics-of-Social-and-Sexual-Control-in-the-Old-South-by-Victoria-E-Bynum.pdf
    • http://cefasfese.4pu.com/8733737736739732/The-Politics-Of-Evil-Magic-State-Power-And-The-Political-Imagination-In-South-Africa-by-Clifton-Crais.pdf
    • http://cefasfese.4pu.com/9739731738733735/This-Is-South-Africa-by-Peter-Borchert.pdf
    • http://cefasfese.4pu.com/2732734735732736/The-Volunteer-Army-and-the-Allied-Intervention-in-South-Russia-1917-1921-A-Study-in-the-Politics-and-Diplomacy-of-the-Russian-Civil-War-by-George-A-Brinkley.pdf
    • http://cefasfese.4pu.com/3737731735735738/The-Cloud-Forest-A-Chronicle-of-the-South-American-Wilderness-by-Peter-Matthiessen.pdf
    • http://cefasfese.4pu.com/5731735735739735/Reconstructing-the-Household-Families-Sex-and-the-Law-in-the-Nineteenth-Century-South-by-Peter-W-Bardaglio.pdf
    • http://cefasfese.4pu.com/1731733733739730733/World-Politics-Since-1945-by-Peter-Calvocoressi.pdf
    • http://cefasfese.4pu.com/3739734734735731/A-Darwinian-Left-Politics-Evolution-and-Cooperation-by-Peter-Singer.pdf
    • http://cefasfese.4pu.com/1736738732736738/Black-Majority-Negroes-in-Colonial-South-Carolina-from-1670-through-the-Stono-Rebellion-by-Peter-H-Wood.pdf
    • http://cefasfese.4pu.com/5730739733732736/Triumph-of-the-South-A-Regional-Economic-History-of-Early-Twentieth-Century-Britain-by-Peter-Scott.pdf
    • http://cefasfese.4pu.com/7734734738730736/Damming-the-Flood-Haiti-Aristide-and-the-Politics-of-Containment-by-Peter-Hallward.pdf
    • http://cefasfese.4pu.com/9736739735734732/Politics-and-People-in-Ethology-Personal-Reflections-on-the-Study-of-Animal-Behavior-by-Peter-H-Klopfer.pdf
    • http://cefasfese.4pu.com/8736732733731738/The-Feeling-Child-Affect-and-Politics-in-Latin-American-Literature-and-Film-by-Peter-Baker.pdf
    • http://cefasfese.4pu.com/5732730732734732/Old-South-New-South-Revolutions-in-the-Southern-Economy-Since-the-Civil-War-by-Gavin-Wright.pdf
    • http://cefasfese.4pu.com/4735731739730736/Guns-Drugs-and-Coconuts-South-Pacific-and-South-East-Asia-by-John-Frederick-Dixon.pdf
    • http://cefasfese.4pu.com/4739739734731731/Unruly-Women-The-Politics-of-Social-and-Sexual-Control-in-the-Old-South-by-Victoria-