Malicious PDF — malware analysis report

Static analysis result for SHA-256 bfe9dec163fe4c76…

MALICIOUS

PDF

23.0 KB Created: 2019-05-03 06:48:24 +01:00 Authoring application: mPDF 5.7
MD5: cfd1272821e2e35c1d0df5d946ddbbc5 SHA-1: d98f178555c7c06cbb2da70eee8f4238d8bb21d7 SHA-256: bfe9dec163fe4c7679d17aaa3a36474e95dc7198b01b6ed0f3e068a270db1253
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Phishing: Spearphishing Attachment T1204.002 Malicious File: Malicious Link

The PDF contains a large number of embedded external links, a technique often used for SEO manipulation or to redirect users to malicious sites. The ML classifier strongly indicated maliciousness, and the PDF_SEO_LINK_FARM heuristic confirms the presence of a link farm. While the document body is heavily obfuscated, the presence of numerous URLs suggests a distribution or redirection mechanism.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9726

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/3735732733730/A-Book-of-Five-Rings-The-Classic-Guide-to-Strategy-by-Miyamoto-Musashi.pdf
    • http://cefasfese.4pu.com/6733734737730737/The-Art-of-War-by-Sun-Tzu-amp-the-Book-of-Five-Rings-by-Miyamoto-Musashi-by-Sun-Tzu.pdf
    • http://cefasfese.4pu.com/6731736730737731/The-Art-of-War-The-Definitive-Interpretation-of-Sun-Tzu-s-Classic-Book-of-Strategy-by-Sun-Tzu.pdf
    • http://cefasfese.4pu.com/4732738738730/How-to-Read-a-Book-The-Classic-Guide-to-Intelligent-Reading-by-Mortimer-J-Adler.pdf
    • http://cefasfese.4pu.com/1730738735739732737/Whither-America-A-Strategy-for-Repairing-America-s-Political-Culture-Atlantic-Council-Strategy-Papers-Book-13-by-John-Raidt.pdf
    • http://cefasfese.4pu.com/5731733733735/The-90-Day-Plan-to-Marketing-Your-Book-A-Powerful-Day-to-Day-Proven-Strategy-to-Implement-Maximize-Exposure-and-Explode-Sales-of-Your-Book-by-Melissa-Se.pdf
    • http://cefasfese.4pu.com/6730731738737731/The-Last-Guardian---Walkthrough-Strategy-Guide-by-burqa-wiz.pdf
    • http://cefasfese.4pu.com/3733736730730730/SSN-A-Strategy-Guide-to-Submarine-Warfare-by-Tom-Clancy.pdf
    • http://cefasfese.4pu.com/8734733730734734/XIII-Official-Strategy-Guide-by-Philip-Hansen.pdf
    • http://cefasfese.4pu.com/8734738734730735/Valkyria-Chronicles-Official-Strategy-Guide-by-Casey-Loe.pdf
    • http://cefasfese.4pu.com/1733739733736735/The-End-of-the-Third-Age-The-Lord-of-the-Rings-Book-6-by-J-R-R-Tolkien.pdf
    • http://cefasfese.4pu.com/3737739732731731/Pwning-N00bs-The-PC-Gamer-s-Guide-to-Hardware-Strategy-and-Tactics-by-John-David.pdf
    • http://cefasfese.4pu.com/1730732732734738735/The-Employer-s-Guide-to-Interviewing-Strategy-and-Tactics-for-Picking-a-Winner-by-Robert-L-Genua.pdf
    • http://cefasfese.4pu.com/5739738734736735/Your-Strategy-Needs-a-Strategy-How-to-Choose-and-Execute-the-Right-Approach-by-Martin-Reeves.pdf
    • http://cefasfese.4pu.com/1733739735730739/The-Ring-Goes-South-The-Lord-of-the-Rings-Book-2-by-J-R-R-Tolkien.pdf
    • http://cefasfese.4pu.com/8731732735732732/Pok-mon-X-amp-Pok-mon-Y-The-Official-Kalos-Region-Pok-dex-amp-Postgame-Adventure-Guide-The-Official-Pok-mon-Strategy-Guide-by-Pok-mon-Company-International.pdf
    • http://cefasfese.4pu.com/8732732737735734/The-Ultimate-Guide-To-Customer-Value-Optimization-The-Only-SEO-Strategy-Needed-to-Beat-Your-Competition-and-Stay-Ahead-by-Vladislav-Vagner.pdf
    • http://cefasfese.4pu.com/2739737734738733/The-Rough-Guide-to-Classic-Novels-by-Simon-Mason.pdf
    • http://cefasfese.4pu.com/1735737733737735/Musashi-The-Way-of-the-Samurai-by-Eiji-Yoshikawa.pdf
    • http://cefasfese.4pu.com/9734731737739732/The-Best-of-Samaithu-Paar-The-Classic-Guide-to-Tamil-Cuisine-by-S-Meenakshi-Ammal.pdf
    • http://cefasfese.4pu.com/5731733733735/The-90-Day-Plan-to-Marketing-Your-Book-A-Powerful-Day-to-Day-Proven-Strategy-to-Implement-Maximize-Exposure-and-