Malicious PDF — malware analysis report

Static analysis result for SHA-256 a79f7cfa4f57f842…

MALICIOUS

PDF

15.3 KB Created: 2019-05-02 01:31:35 +01:00 Authoring application: mPDF 5.7
MD5: 6e4a606b85eb936e031704b200e6158b SHA-1: 2b31229d424d30963e55410e7de5860a35ec22e6 SHA-256: a79f7cfa4f57f842dc21bf81471908b82d696c54bc3f4552e81acd3876056a53
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1059.001 PowerShell

The PDF document contains a large number of embedded URLs, identified by the PDF_SEO_LINK_FARM heuristic. These URLs point to various book titles, suggesting a potential lure or distraction. While the URLs themselves are currently marked as benign, the sheer volume and the nature of the heuristic indicate a malicious intent, likely to drive traffic or host further malicious content. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://xiixmcuin.linkpc.net/3201201200207205/Secrets-of-Betrayal-Secrets-4-by-L-K-Shaw.pdf
    • http://xiixmcuin.linkpc.net/2201206208209202/Secrets-of-Redemption-Secrets-3-by-L-K-Shaw.pdf
    • http://xiixmcuin.linkpc.net/5205206209205/SECRETS-A-BEST-FRIEND-BETRAYAL-by-Phillis-T-Forrest.pdf
    • http://xiixmcuin.linkpc.net/7201204200205202/Sabotaged-Love-2-Secrets-amp-Betrayal-by-Lucy-Dee.pdf
    • http://xiixmcuin.linkpc.net/3204201206205209/Tied-to-His-Betrayal-Dirty-Little-Secrets-2-by-Stacey-Kennedy.pdf
    • http://xiixmcuin.linkpc.net/2209207202201200/The-Pink-Rose-Secrets-Love-and-Betrayal-The-Wilsons-1-by-Alicia-Roberts.pdf
    • http://xiixmcuin.linkpc.net/2204203205206204/The-Darker-Side-of-Love-A-gripping-novel-of-secrets-lies-and-betrayal-by-Jessica-Ruston.pdf
    • http://xiixmcuin.linkpc.net/9203204200208/The-Secrets-of-Albion-Falls-The-Secrets-Series-Volume-1-by-Sass-Cadeaux.pdf
    • http://xiixmcuin.linkpc.net/3206206204207200/Secrets-Of-The-Lighthouse-A-Dual-Series-of-Secrets-1-by-D-Raye-Spencer.pdf
    • http://xiixmcuin.linkpc.net/3208204206205200/When-Secrets-Strike-House-of-Secrets-2-by-Marta-Perry.pdf
    • http://xiixmcuin.linkpc.net/2200205207207208/Cursed-Secrets-Legacy-of-Secrets-1-by-Lisa-Logue.pdf
    • http://xiixmcuin.linkpc.net/6207205209205200/Seductive-Secrets-Secrets-of-the-Heart-2-by-Elizabeth-Rose.pdf
    • http://xiixmcuin.linkpc.net/7207207201201208/Alluring-Secrets-Secrets-2-by-Lynne-Connolly.pdf
    • http://xiixmcuin.linkpc.net/9203201204200203/Minecraft-Ultimate-Secrets-Guide-for-Beginners-Over-100-Secrets-Minecraft-Tips-and-Tricks-to-Make-You-a-Pro-by-Todd-Bronstein.pdf
    • http://xiixmcuin.linkpc.net/4208208207204203/Secrets-in-the-Shadows-Secrets-2-by-V-C-Andrews.pdf
    • http://xiixmcuin.linkpc.net/1208202201202208/Secrets-of-the-Mind-Secrets-1-by-E-J-Bennett.pdf
    • http://xiixmcuin.linkpc.net/1206209208204205/Secrets-Secrets-1-by-Ella-Steele.pdf
    • http://xiixmcuin.linkpc.net/1207200200202203/Secrets-Vol-3-Secrets-3-by-Ella-Steele.pdf
    • http://xiixmcuin.linkpc.net/4201206201206201/Secrets-in-the-Attic-Secrets-1-by-V-C-Andrews.pdf
    • http://xiixmcuin.linkpc.net/4200207209203206/Secrets-Secrets-1-by-Ella-Steele.pdf
    • http://xiixmcuin.linkpc.net/6207205209205200/Seductive-Secrets-Secrets-of-the-Heart-2-by-Elizabeth-R