Malicious PDF — malware analysis report

Static analysis result for SHA-256 d78aef443c043eea…

MALICIOUS

PDF

21.7 KB Created: 2019-05-01 18:43:39 +01:00 Authoring application: mPDF 5.7
MD5: 4868205ace84df818ac7dc6918616f99 SHA-1: f853b53e10c252e91671ef558299b7021db9684f SHA-256: d78aef443c043eeac681ae3980a459648fde55213a4d903b4669330b0c49a897
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file contains a large number of embedded URLs, identified by the PDF_SEO_LINK_FARM heuristic. These URLs point to various book titles, suggesting a potential link farm or distribution mechanism. While the URLs themselves are currently marked as benign, the sheer volume and the nature of the heuristic indicate a malicious intent to manipulate search engine results or redirect users to potentially harmful content. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://xiixmcuin.linkpc.net/4202204202206206/A-Journey-to-the-Center-of-the-Earth-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/8200203200204203/A-Journey-to-the-Center-of-the-Earth-Color-Illustrated-Formatted-for-E-Readers-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/9202201209209207/Journey-to-the-Center-of-the-Earth-1000-Copy-Limited-Illustrated-Edition-SF-Classic-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/1206201200202203/Extraordinary-Voyages-Around-the-World-in-Eighty-Days-Journey-to-the-Center-of-the-Earth-Twenty-Thousand-Leagues-Under-the-Seas-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/6203205207209206/Journey-to-the-Center-of-the-Earth-Sci-fi-Action-Aventure-Illustrated-and-Annotated-the-Author-s-bibliography-with-his-selected-work-plus-the-story-adapted-in-film-in-2008-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/5206205203207208/A-Journey-to-the-Interior-of-the-Earth-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/6201205201204200/Journey-to-the-Centre-of-the-Earth-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/2201204207202209/Journey-to-the-Centre-of-the-Earth-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/9202204208206208/Journey-to-the-Centre-of-the-Earth-With-CD-Audio-and-Free-Web-Access-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/7203201206201/Twenty-Thousand-Leagues-Under-the-Sea-The-Mysterious-Island-Journey-to-the-Centre-of-the-Earth-Around-the-World-in-Eighty-Days-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/1200205206202206207/A-Journey-to-the-Centre-of-the-Earth-quot-Science-my-lad-is-made-up-of-mistakes-but-they-are-mistakes-which-it-is-useful-to-make-because-they-lead-little-by-little-to-the-truth-quot-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/9207203206203204/F-nf-Wochen-im-Ballon-von-Jules-Verne---M-dchenausgabe-Annas-Reise-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/6207202206200205/Voyage-au-Centre-de-la-Terre-Journey-to-the-Centre-of-the-Earth-French-English-Rafael-Estrella-s-Dual-Language-Library-French-English-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/5205201201201209/Twenty-Thousand-Leagues-Under-The-Sea-By-Jules-Verne-Illustrated-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/3207200206208206/A-Journey-To-The-Center-Of-The-Earth-Great-Illustrated-Classics-by-Howard-J-Schwach.pdf
    • http://xiixmcuin.linkpc.net/5204208202203207/The-Works-of-Jules-Verne-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/5209203201203204/Invasion-of-the-Sea-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/1200201208202204206/20-000-Leagues-Under-the-Sea-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/4207208205203/A-Fantasy-of-Dr-Ox-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/7209206203203201/Da-Terra-Lua-by-Jules-Verne.pdf
    • http://xiixmcuin.linkpc.net/6203205207209206/Journey-to-the-Center-of-the-Earth-Sci-fi-Action-Aventure-Illustrated-and-Annotated-the-Author-s-bibliography-with-his-selected-work-plus-the-story-adapted-in-film-in-2008-by-Jules-