Malicious PDF — malware analysis report

Static analysis result for SHA-256 e4bf439ea28b231c…

MALICIOUS

PDF

23.1 KB Created: 2019-05-01 19:21:23 +01:00 Authoring application: mPDF 5.7
MD5: d8712844a67c2a8d6ba2b89aeb3a072f SHA-1: e36b6f88dcad2a733de4c039996fe80293fb6dc4 SHA-256: e4bf439ea28b231c2869d33ad92598aa53f8f446ca82746076b588a2cb079808
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF contains a large number of embedded links to external PDF files, identified by the PDF_SEO_LINK_FARM heuristic. While the document body is unreadable, the structure suggests a link farm designed to drive traffic to other documents. The ML classifier also flagged this PDF as malicious with high confidence. The primary attack pattern involves directing users to a large collection of external links.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9901

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://seasasac.lflinkup.com/3da9da1da2da1da3/Anne-Frank-Remembered-The-Story-of-the-Woman-Who-Helped-to-Hide-the-Frank-Family-by-Miep-Gies.pdf
    • http://seasasac.lflinkup.com/2da2da9da6da6da2/Study-Guide-For-Anne-Frank-Remembered-The-Story-Of-The-Woman-Who-Helped-To-Hide-The-Frank-Family-With-Related-Readings-by-Miep-Gies.pdf
    • http://seasasac.lflinkup.com/6da4da8da4da4da7/Anne-Frank-The-Story-of-a-Young-Girl-Simplified-Characters-by-Anne-Frank.pdf
    • http://seasasac.lflinkup.com/8da9da5da9da1da1/Treasures-from-the-Attic-the-Extraordinary-Story-of-Anne-Frank-s-Family-by-Mirjam-Pressler.pdf
    • http://seasasac.lflinkup.com/2da2da9da6da5da1/The-Story-Of-Anne-Frank-by-Anne-Frank-House.pdf
    • http://seasasac.lflinkup.com/1da7da8da9da1da8/Anne-Frank-s-Family-The-Extraordinary-Story-of-Where-She-Came-From-Based-on-More-Than-6-000-Newly-Discovered-Letters-Documents-and-Photos-by-Mirjam-Pressler.pdf
    • http://seasasac.lflinkup.com/2da2da9da2da1da8/Reader-s-Companion-to-the-Diary-of-a-Young-Girl-Anne-Frank-New-Translation-Edited-by-Otto-H-Frank-and-Mirjam-Pressler-The-Definitive-Edition-by-Otto-H-Frank.pdf
    • http://seasasac.lflinkup.com/2da2da9da0da5da4/Anne-Frank-Her-life-in-words-and-pictures-from-the-archives-of-The-Anne-Frank-House-by-Menno-Metselaar.pdf
    • http://seasasac.lflinkup.com/1da9da1da3da7da9/Anne-Frank-The-Diary-of-a-Young-Girl-by-Anne-Frank.pdf
    • http://seasasac.lflinkup.com/7da3da4da7da6da7/Anne-Frank-The-Diary-of-a-Young-Girl-by-Anne-Frank.pdf
    • http://seasasac.lflinkup.com/2da2da3da1da4da4/Inside-Anne-Frank-s-House-An-Illustrated-Journey-Through-Anne-s-World-by-Anne-Frank-House.pdf
    • http://seasasac.lflinkup.com/2da2da9da3da1da3/Shadow-Life-A-Portrait-of-Anne-Frank-and-Her-Family-by-Barry-Denenberg.pdf
    • http://seasasac.lflinkup.com/2da2da9da5da9da2/Anne-Frank-House-A-Museum-With-A-Story-by-Hansje-Galesloot.pdf
    • http://seasasac.lflinkup.com/9da0da3da9da1da7/El-diario-de-Ana-Frank-by-Anne-Frank.pdf
    • http://seasasac.lflinkup.com/8da3da3da6da6da2/Another-Unbelievable-Story-from-Frank-by-Frank-Humain.pdf
    • http://seasasac.lflinkup.com/5da4da1da5da8da8/The-Diary-of-Anne-Frank-by-Anne-Frank.pdf
    • http://seasasac.lflinkup.com/1da0da1da6da6da8da6/Frank-and-the-Princess-A-Frank-Brannon-Adventure-From-The-Author-of-quot-Frank-Brannon---Reluctant-Marshal-quot-A-Frank-Brannon-Western-Adventure-Book-3-by-C-Wayne-Winkle.pdf
    • http://seasasac.lflinkup.com/2da2da9da2da3da1/My-Name-Is-Anne-She-Said-Anne-Frank-by-Jacqueline-van-Maarsen.pdf
    • http://seasasac.lflinkup.com/2da0da0da6da5da2/Frank-A-Life-in-Politics-from-the-Great-Society-to-Same-Sex-Marriage-by-Barney-Frank.pdf
    • http://seasasac.lflinkup.com/2da2da3da3da3da1/Who-Was-Anne-Frank-by-Ann-Abramson.pdf