Malicious PDF — malware analysis report

Static analysis result for SHA-256 b25b91d644f1297d…

MALICIOUS

PDF

20.7 KB Created: 2019-04-30 05:32:12 +01:00 Authoring application: mPDF 5.7
MD5: 4af179afcce2055137cdf073c1069303 SHA-1: 2b673a29992f6d5b56f5f43a1e1190cf866bf133 SHA-256: b25b91d644f1297df13a2baad4afc7e574a33c62631dba38ac0f4e043d61a1e8
90 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The PDF was flagged by a machine learning classifier and contains a large number of embedded external links, a technique often used for SEO manipulation or to distribute further malicious content. While the document body is heavily obfuscated, the presence of numerous links to seemingly unrelated PDF files suggests a link farm or redirection scheme. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9942

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://seasasac.lflinkup.com/1da1da5da1da2da8da6/740-Park-The-Story-of-the-World-s-Richest-Apartment-Building-by-Michael-Gross.pdf
    • http://seasasac.lflinkup.com/9da6da4da1da9/Stand-For-Something-OR-Stand-For-Nothing-A-Story-Of-How-A-Mother-And-Daughter-Fought-One-Of-The-Richest-Men-In-The-World-by-Ebony-Jones-Kuye.pdf
    • http://seasasac.lflinkup.com/3da3da8da8da7/The-Lost-World-Jurassic-Park-2-by-Michael-Crichton.pdf
    • http://seasasac.lflinkup.com/5da4da1da2da1da8/Chasing-Excellence-A-Story-About-Building-the-World-s-Fittest-Athletes-by-Ben-Bergeron.pdf
    • http://seasasac.lflinkup.com/6da0da5da9da7da2/Inside-Coca-Cola-A-CEO-s-Life-Story-of-Building-the-World-s-Most-Popular-Brand-by-Neville-Isdell.pdf
    • http://seasasac.lflinkup.com/1da5da2da9da7da7/Jerry-Wolman-the-World-s-Richest-Man-by-Joseph-Bockol.pdf
    • http://seasasac.lflinkup.com/1da1da6da0da6da5/31-Months-in-Japan-The-Building-of-a-Theme-Park-by-Larry-K-Collins.pdf
    • http://seasasac.lflinkup.com/4da3da8da1da6da7/31-Months-in-Japan-The-Building-of-a-Theme-Park-by-Larry-K-Collins.pdf
    • http://seasasac.lflinkup.com/6da0da7da2da8da5/Copper-Camp-The-Lusty-Story-of-Butte-Montana-the-Richest-Hill-on-Earth-by-Workers-of-the-Writer-39-s-Program.pdf
    • http://seasasac.lflinkup.com/1da1da0da0da4da7/The-Minutemen-and-Their-World-by-Robert-A-Gross.pdf
    • http://seasasac.lflinkup.com/1da1da5da1da4da0da8/Starving-Jesus-Off-the-Pew-Into-the-World-by-Craig-Gross.pdf
    • http://seasasac.lflinkup.com/1da8da5da5da4da0/So-Close-to-Home-A-True-Story-of-an-American-Family-s-Fight-for-Survival-During-World-War-II-by-Michael-J-Tougias.pdf
    • http://seasasac.lflinkup.com/1da0da9da8da2da0da0/How-Iowa-Conquered-the-World-The-Story-of-a-Small-Farm-State-s-Journey-to-Global-Dominance-by-Michael-Rank.pdf
    • http://seasasac.lflinkup.com/3da6da0da4da0da5/Jurassic-Park-Jurassic-Park-1-by-Michael-Crichton.pdf
    • http://seasasac.lflinkup.com/4da4da1da7da5da8/Jurassic-Park-Jurassic-Park-1-by-Michael-Crichton.pdf
    • http://seasasac.lflinkup.com/4da3da3da8da4/Jurassic-Park-by-Michael-Crichton.pdf
    • http://seasasac.lflinkup.com/4da8da6da8da6da0/Elly-My-True-Story-Of-The-Holocaust-by-Elly-Berkovits-Gross.pdf
    • http://seasasac.lflinkup.com/1da0da6da6da7da5da3/FANTASY-WORLD-BUILDING-QUESTIONS-KANZEN-BAN-by-KAGURAZAKA-RASEN.pdf
    • http://seasasac.lflinkup.com/4da6da0da0da0da7/To-Swim-Across-the-World-by-Frances-Park.pdf
    • http://seasasac.lflinkup.com/8da2da2da5da4da9/Railsspace-Building-a-Social-Networking-Website-with-Ruby-on-Rails-by-Michael-Hartl.pdf
    • http://seasasac.lflinkup.com/6da0da5da9da7da2/Inside-Coca-Cola-A-CEO-s-Life-Story-of-Building-the-World-s-Most-Popu