Malicious PDF — malware analysis report

Static analysis result for SHA-256 e3850a75169d4717…

MALICIOUS

PDF

19.7 KB Created: 2019-07-29 07:09:29 +01:00 Authoring application: mPDF 5.7
MD5: d9c68f6aba6e8da3aa83c256646fe87a SHA-1: 00b670266b4f0149db2bb0de856b122bcc402dfb SHA-256: e3850a75169d47178f8880749b2a804085c8db3210de2bb185c9f6652a85f7e8
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Phishing: Spearphishing Attachment T1204.002 Malicious File: Malicious File

The PDF file was flagged by a machine learning classifier as malicious. Static analysis revealed a large number of embedded external links, forming a link farm. While the URLs themselves are currently marked as benign, the sheer volume and structure suggest a malicious intent, likely to direct users to potentially harmful content or phishing sites. No scripts were extracted, and the document body was unreadable.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9780

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/1735737737739739/Farm-City-The-Education-of-an-Urban-Farmer-by-Novella-Carpenter.pdf
    • http://cefasfese.4pu.com/3739734734738736/Gone-Feral-Tracking-My-Dad-Through-the-Wild-by-Novella-Carpenter.pdf
    • http://cefasfese.4pu.com/3736738733739733/Strife-A-Mirage-Novella-by-Kevin-J-J-Carpenter.pdf
    • http://cefasfese.4pu.com/4738730732734738/Elizabeth-s-Education-Elizabeth-s-Education-1-by-Maggie-Carpenter.pdf
    • http://cefasfese.4pu.com/1732735731730730/Harm-One-Urban-Farm-Mystery-2-by-Yvonne-Loveday.pdf
    • http://cefasfese.4pu.com/4734733733736733/The-One-Best-System-A-History-of-American-Urban-Education-by-David-Tyack.pdf
    • http://cefasfese.4pu.com/3739738733735737/Winterberry-Spark-A-Silver-Foxes-of-Westminster-Novella-Winterberry-Park-1-by-Merry-Farmer.pdf
    • http://cefasfese.4pu.com/1730738730736737/Flesh-Code-Vol-I-Book-One-of-the-Dead-Education-s-Army-Novella-series-by-Alan-Dale.pdf
    • http://cefasfese.4pu.com/9737736737731732/City-A-Guidebook-for-the-Urban-Age-by-P-D-Smith.pdf
    • http://cefasfese.4pu.com/2738733739734737/Motor-City-Fae-Urban-Arcana-1-by-Cindy-Spencer-Pape.pdf
    • http://cefasfese.4pu.com/1733736734731735/The-Feel-of-the-City-Experiences-of-Urban-Transformation-by-Nicolas-Kenny.pdf
    • http://cefasfese.4pu.com/7737735736736735/The-Creative-City-A-Toolkit-for-Urban-Innovators-by-Charles-Landry.pdf
    • http://cefasfese.4pu.com/8736733732739731/Mini-Farming-BOX-SET-2-IN-1-A-Pictured-Guide-For-Beginners-On-How-To-Build-Your-Own-Backyard-Farm-And-Harvest-the-Best-Quality-Vegetables-On-Your-Mini-Homesteading-and-Urban-Gardening-Book-6-by-Batya-Nielson.pdf
    • http://cefasfese.4pu.com/7734735736738734/City-Walls-The-Urban-Enceinte-in-Global-Perspective-by-James-D-Tracy.pdf
    • http://cefasfese.4pu.com/1739731730731738/Picturing-the-City-Urban-Vision-and-the-Ashcan-School-by-Rebecca-Zurier.pdf
    • http://cefasfese.4pu.com/8737737733735732/Motor-City-Witch-Urban-Arcana-2-by-Cindy-Spencer-Pape.pdf
    • http://cefasfese.4pu.com/8737737733735735/Motor-City-Wolf-Urban-Arcana-3-by-Cindy-Spencer-Pape.pdf
    • http://cefasfese.4pu.com/9736737735738738/The-Informational-City-Economic-Restructuring-and-Urban-Development-by-Manuel-Castells.pdf
    • http://cefasfese.4pu.com/3732738736732730/A-Viking-on-the-Subway-A-New-York-City-Urban-Fantasy-by-William-J-Torgerson.pdf
    • http://cefasfese.4pu.com/3736736737737732/Seeking-a-City-with-Foundations-Theology-for-an-Urban-World-by-David-W-Smith.pdf
    • http://cefasfese.4pu.com/2738733739734737/Motor-City-Fae-Urban-Arcana-1-by-Cind