Malicious PDF — malware analysis report

Static analysis result for SHA-256 a94b8ca1ee6b6bf7…

MALICIOUS

PDF

27.4 KB Created: 2019-05-02 18:50:03 +01:00 Authoring application: mPDF 5.7
MD5: eb95432d7a63781fe4689ece167ee574 SHA-1: e25eb590389ceb490dbacbd23fad24a99014a9a6 SHA-256: a94b8ca1ee6b6bf7638f883152e43cc4d2773ce287ea20956b844ca53166436b
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF contains a large number of embedded URLs, identified by the PDF_SEO_LINK_FARM heuristic. While most of these URLs were classified as benign, the sheer volume and the nature of the heuristic suggest a malicious intent, possibly for SEO spam or to host malicious content. The ML_NYX_PDF_MALICIOUS classifier also strongly indicated maliciousness. No scripts were extracted, and the document body was heavily obfuscated, making it difficult to determine the exact payload or user-facing lure.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9908

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://unieoooq.linkpc.net/64e64e44e74e74e5/A-Simple-Guide-To-Lumbago-Low-Back-Pain-Diagnosis-Treatment-And-Related-Conditions-by-Kenneth-Kee.pdf
    • http://unieoooq.linkpc.net/74e34e24e24e14e6/Palpitations-Fast-Heart-Beats-A-Simple-Guide-To-The-Condition-Diagnosis-Treatment-And-Related-Conditions-by-Kenneth-Kee.pdf
    • http://unieoooq.linkpc.net/44e34e74e84e04e3/The-Migraine-Solution-A-Complete-Guide-to-Diagnosis-Treatment-and-Pain-Management-by-Liz-Neporent.pdf
    • http://unieoooq.linkpc.net/74e24e14e94e9/Defeat-Chronic-Pain-Now-Groundbreaking-Strategies-for-Eliminating-the-Pain-of-Arthritis-Back-and-Neck-Conditions-Migraines-Diabetic-Neuropathy-and-Chronic-Illness-by-Bradley-S-Galer.pdf
    • http://unieoooq.linkpc.net/64e74e24e24e84e2/8-Steps-to-a-Pain-Free-Back-Natural-Posture-Solutions-for-Pain-in-the-Back-Neck-Shoulder-Hip-Knee-and-Foot-by-Esther-Gokhale.pdf
    • http://unieoooq.linkpc.net/14e04e54e54e34e44e2/The-Complete-Idiot-s-Guide-to-Back-Pain-by-Jason-Highsmith.pdf
    • http://unieoooq.linkpc.net/94e84e24e64e94e6/Current-Diagnosis-amp-Treatment-in-Neurology-by-John-C-M-Brust.pdf
    • http://unieoooq.linkpc.net/14e04e44e44e44e04e6/Diagnosis-and-Treatment-of-Surgical-Diseases-of-the-Spinal-Cord-and-Its-Membranes-by-Charles-Albert-Elsberg.pdf
    • http://unieoooq.linkpc.net/84e44e64e34e2/Live-Strong-Inspirational-Stories-from-Cancer-Survivors-from-Diagnosis-to-Treatment-and-Beyond-by-The-Lance-Armstrong-Foundation.pdf
    • http://unieoooq.linkpc.net/84e14e84e64e54e3/Textbook-of-Radiographic-Positioning-and-Related-Anatomy-by-Kenneth-L-Bontrager.pdf
    • http://unieoooq.linkpc.net/34e44e44e94e84e8/Allergies-Fight-them-with-the-Blood-Type-Diet-The-Individualized-Plan-for-Treating-Environmental-and-Food-Allergies-Chronic-Sinus-Infections-Asthma-and-Related-Conditions-by-Peter-J-D-39-Adamo.pdf
    • http://unieoooq.linkpc.net/64e54e74e64e44e8/Discover-everything-that-you-must-know-about-cancer-Cancer-Diagnosis-Cancer-Treatment-Cancer-Prevention-by-Kossi-Afedo.pdf
    • http://unieoooq.linkpc.net/24e64e04e74e44e4/Back-Pain-How-to-Get-Rid-of-It-Forever-by-John-Perrier.pdf
    • http://unieoooq.linkpc.net/74e24e04e84e84e7/Back-And-Neck-Pain-The-Facts-by-Lo-c-Burn.pdf
    • http://unieoooq.linkpc.net/74e24e04e74e94e3/Treating-Your-Back-amp-Neck-Pain-For-Dummies-by-Lo-c-Burn.pdf
    • http://unieoooq.linkpc.net/24e94e14e54e44e2/Suboxone-Take-Back-Your-Life-From-Pain-Medications-by-James-L-Schaller.pdf
    • http://unieoooq.linkpc.net/84e34e04e74e5/The-Gifts-Of-Imperfection-A-Complete-Guide-to-Live-Life-on-Your-Own-Conditions-by-Megan-Coulter.pdf
    • http://unieoooq.linkpc.net/24e04e94e14e14e5/I-Think-I-Might-Be-Autistic-A-Guide-to-Autism-Spectrum-Disorder-Diagnosis-and-Self-Discovery-for-Adults-by-Cynthia-Kim.pdf
    • http://unieoooq.linkpc.net/94e84e44e44e74e4/A-Guide-to-the-Aseptic-Treatment-of-Wounds-by-C-Schimmelbusch.pdf
    • http://unieoooq.linkpc.net/34e74e54e34e14e7/Autism---What-Do-You-Need-To-Know-A-Parent-s-Guide-To-Autism-Causes-Diagnosis-and-Treatments-DSM-5-Ready-by-Raymond-Le-Blanc.pdf
    • http://unieoooq.linkpc.net/74e24e14e94e9/Defeat-Chronic-Pain-Now-Groundbreaking-Strategies-for-Eliminating-the-Pain-of-Arthritis-Back-and-Neck-Conditions-Migraines-Diabetic-Neuropathy-and-Chronic-Ill