Malicious PDF — malware analysis report

Static analysis result for SHA-256 e4ba251d3b82e023…

MALICIOUS

PDF

29.5 KB Created: 2020-03-19 23:32:19 +00:00 Authoring application: mPDF 5.7
MD5: 4c5aded20bd2a3d20214aef7c677d6a3 SHA-1: 43c3b77d17dc5a66b986b9e0ddca7c3141320962 SHA-256: e4ba251d3b82e023284d2cabda1ef428cb64fcda4147ffa363736e37a8aef69d
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The PDF file contains a large number of embedded URLs, as indicated by the PDF_SEO_LINK_FARM heuristic. These URLs point to external resources, suggesting a link-farming or content-distribution scheme. No scripts were extracted from this sample. The primary attack pattern involves directing users to a multitude of external sites, likely to manipulate search engine rankings or serve further malicious content.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://kitasdyu.myhome.cx/2877872871872877/Out-Of-Control-And-Loving-It-Giving-God-Complete-Control-of-Your-Life-by-Lisa-Bevere.pdf
    • http://kitasdyu.myhome.cx/3873876871875877/Loving-Control-Club-Rio-Brava-1-by-Ann-Jacobs.pdf
    • http://kitasdyu.myhome.cx/1870872875876870872/Production-Control-in-Construction-Different-Approaches-to-Control-Use-of-Information-amp-Automated-Data-Processing-by-B-Melles.pdf
    • http://kitasdyu.myhome.cx/2875876879873877/Levers-of-Control-How-Managers-Use-Innovative-Control-Systems-to-Drive-Strategic-Renewal-by-Robert-Simons.pdf
    • http://kitasdyu.myhome.cx/7873876875872876/Loving-Someone-with-Borderline-Personality-Disorder-How-to-Keep-Out-of-Control-Emotions-from-Destroying-Your-Relationship-by-Shari-Y-Manning.pdf
    • http://kitasdyu.myhome.cx/8878879871879879/Motor-Starting-and-Control-Primer-An-introduction-to-the-starting-techniques-and-control-of-electric-motors-by-Steven-McFadyen.pdf
    • http://kitasdyu.myhome.cx/4876876870872/Control-Control-1-by-Lydia-Kang.pdf
    • http://kitasdyu.myhome.cx/4878876879874871/Control-Me-Control-1-by-Shanora-Williams.pdf
    • http://kitasdyu.myhome.cx/1877870871875873/My-Control-Inside-Out-4-5-by-Lisa-Renee-Jones.pdf
    • http://kitasdyu.myhome.cx/5871875871/Damage-Control-Dirty-Money-2-by-Lisa-Renee-Jones.pdf
    • http://kitasdyu.myhome.cx/6879879877879873/Boundaries-When-to-Say-Yes-How-to-Say-No-to-Take-Control-of-Your-Life-by-Henry-Cloud.pdf
    • http://kitasdyu.myhome.cx/1871876875874878877/Be-Yourself-How-to-relax-and-take-control-of-your-life-by-Lynda-Field.pdf
    • http://kitasdyu.myhome.cx/1878874877874871/Take-Control-Of-Your-Life-A-2-hour-plan-to-help-you-set-and-reach-your-goals-by-Rachel-Rofe.pdf
    • http://kitasdyu.myhome.cx/9874871879/Calm-the-F-ck-Down-How-to-Control-What-You-Can-and-Accept-What-You-Can-t-So-You-Can-Stop-Freaking-Out-and-Get-On-With-Your-Life-by-Sarah-Knight.pdf
    • http://kitasdyu.myhome.cx/1870877879873873871/The-Organic-Gardener-s-Handbook-of-Natural-Pest-and-Disease-Control-A-Complete-Guide-to-Maintaining-a-Healthy-Garden-and-Yard-the-Earth-Friendly-Way-by-Fern-Marshall-Bradley.pdf
    • http://kitasdyu.myhome.cx/3879871875871/Passion-and-Purity-Learning-to-Bring-Your-Love-Life-Under-Christ-s-Control-by-Elisabeth-Elliot.pdf
    • http://kitasdyu.myhome.cx/7870870872870875/Kill-Time-Wasters-Regain-the-Control-Over-Your-Life-by-Eliminating-All-Irrelevant-Things-by-Can-Akdeniz.pdf
    • http://kitasdyu.myhome.cx/4872874871876879/Passion-and-Purity-Learning-to-Bring-Your-Love-Life-Under-Christ-s-Control-by-Elisabeth-Elliot.pdf
    • http://kitasdyu.myhome.cx/8871874873876878/Control-Engineering-and-Information-Systems-Proceedings-of-the-2014-International-Conference-on-Control-Engineering-and-Information-Systems-Icceis-2014-Yueyang-Hunan-China-20-22-June-2014-by-Xiaolong-Li.pdf
    • http://kitasdyu.myhome.cx/7874875875875870/FDA-Failure-Deception-Abuse-The-Story-of-an-Out-of-Control-Government-Agency-and-What-It-Means-for-Your-Health-by-Life-Extension.pdf
    • http://kitasdyu.myh