Malicious PDF — malware analysis report

Static analysis result for SHA-256 cefb717d93f5ecbf…

MALICIOUS

PDF

21.7 KB Created: 2019-05-02 05:26:38 +01:00 Authoring application: mPDF 5.7
MD5: 35f17499494dc2f16b9899f1e56bc3f5 SHA-1: b89078f95dd218dbf750c93145015367b4f2db5f SHA-256: cefb717d93f5ecbf912a3883f1dcf4216d0741253140256dad2deb1f05a13150
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF file was flagged by a machine learning classifier as malicious. Static analysis revealed a large number of embedded URLs, forming a link farm. These URLs likely lead to malicious content or phishing pages, a common tactic for distributing malware or harvesting credentials. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9925

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://kiteeearpdf.myhome.cx/7f213f211f216f216f210/25-Toughest-Sales-Objections-And-How-to-Overcome-Them-by-Stephan-Schiffman.pdf
    • http://kiteeearpdf.myhome.cx/3f218f216f215f211f212/Cognitive-Therapy-Techniques-First-Edition-A-Practitioner-s-Guide-by-Robert-L-Leahy.pdf
    • http://kiteeearpdf.myhome.cx/1f210f218f211f212f210/The-Adventures-of-Jack-Varty-Smith-Book-One---The-Calling-The-Calling-by-R-S-Marlow.pdf
    • http://kiteeearpdf.myhome.cx/5f218f213f211f212f211/NLP-Techniques-NLP-Techniques-For-Beginners-NLP-hypnosis-richard-bandler-tony-robbins-nlp-techniques-nlp-how-to-Volume-1-by-Scott-Bandler.pdf
    • http://kiteeearpdf.myhome.cx/3f212f216f217f216f211/Game-of-the-Gods-by-Jay-Schiffman.pdf
    • http://kiteeearpdf.myhome.cx/7f213f219f219f214f218/Josip-Broz-Tito-by-Ruth-Schiffman.pdf
    • http://kiteeearpdf.myhome.cx/5f212f217f218f216f213/Japanese-Candlestick-Charting-Techniques-A-Contemporary-Guide-to-the-Ancient-Investment-Techniques-of-the-Far-East-by-Steve-Nison.pdf
    • http://kiteeearpdf.myhome.cx/1f210f219f219f214f218f213/The-New-Encyclopedia-of-Jewelry-Making-Techniques-A-Comprehensive-Visual-Guide-to-Traditional-and-Contemporary-Techniques-by-Jinks-McGrath.pdf
    • http://kiteeearpdf.myhome.cx/3f211f215f212f210f216/Dark-Calling-Dark-Calling-1-by-Cheryl-McIntyre.pdf
    • http://kiteeearpdf.myhome.cx/7f210f216f210f217/True-Calling-true-calling-1-by-Siobhan-Davis.pdf
    • http://kiteeearpdf.myhome.cx/1f211f210f218f216f216f218/Dark-Calling-Dark-Calling-1-by-Cheryl-McIntyre.pdf
    • http://kiteeearpdf.myhome.cx/1f210f218f212f213f218f218/Stephan-Wurth-Ghost-Town-by-Stephan-Wurth.pdf
    • http://kiteeearpdf.myhome.cx/1f212f211f218f216f210/A-Cold-Day-in-Hell-Cold-Case-Investigation-1-by-Lissa-Marie-Redmond.pdf
    • http://kiteeearpdf.myhome.cx/2f219f214f215f216f218/Cold-Blooded-Cold-Justice-9-by-Toni-Anderson.pdf
    • http://kiteeearpdf.myhome.cx/3f211f218f219f213f214/Cold-Fear-Cold-Justice-4-by-Toni-Anderson.pdf
    • http://kiteeearpdf.myhome.cx/4f218f216f211f216f214/Cold-Secrets-Cold-Justice-7-by-Toni-Anderson.pdf
    • http://kiteeearpdf.myhome.cx/3f211f218f219f213f210/Cold-Pursuit-Cold-Justice-2-by-Toni-Anderson.pdf
    • http://kiteeearpdf.myhome.cx/1f210f215f215f215f213f216/Bistum-Passau-Bischof-Von-Passau-Kirchengebaude-Im-Bistum-Passau-Weihbischof-in-Passau-Orgeln-Des-Domes-St-Stephan-Liste-Der-Bischofe-Von-Passau-Dom-St-Stephan-Liste-Der-Weihbischofe-in-Passau-Ernst-Von-Bayern-Hochstift-Passau-by-Source-Wikipedia.pdf
    • http://kiteeearpdf.myhome.cx/4f211f214f217f217f216/In-From-the-Cold-Cold-Country-1-by-Mercy-Celeste.pdf
    • http://kiteeearpdf.myhome.cx/5f219/Cold-Cold-Heart-by-Tami-Hoag.pdf
    • http://kiteeearpdf.myhome.cx/5f212f217f218f216f213/Japanese-Candlestick-Charting-Techniques-A-Contemporary-Guide-to-the-Ancient-Investment-Techniques-of-the-Far-Ea