Malicious PDF — malware analysis report

Static analysis result for SHA-256 f054508c27d42d1f…

MALICIOUS

PDF

25.8 KB Created: 2019-09-27 13:33:08 +01:00 Authoring application: mPDF 5.7
MD5: 3a3a8d7ff7214f9e153c8919af19a548 SHA-1: 07f86528ddff6fa3bc7a007ff5632e1e0d7e1de1 SHA-256: f054508c27d42d1f5ec8c2a4a6347315ae2464172a6338fac50af71aab1eaea6
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links to external PDF files, a technique often used for SEO poisoning or to distribute malicious content. The heuristic 'PDF_SEO_LINK_FARM' indicates this behavior, pointing to a collection of book-related titles. While the document body is unreadable, the presence of numerous links suggests a lure to external resources, potentially for phishing or malware distribution. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://cefasfese.4pu.com/4732733733739734/As-I-Crossed-a-Bridge-of-Dreams-Recollections-of-a-Woman-in-Eleventh-Century-Japan-by-Lady-Sarashina.pdf
    • http://cefasfese.4pu.com/4730739737733734/The-Memoirs-of-Lady-Hyegy-ng-The-Autobiographical-Writings-of-a-Crown-Princess-of-Eighteenth-Century-Korea-by-Lady-Hyegyeong.pdf
    • http://cefasfese.4pu.com/4736739738731738/Bridge-of-Dreams-Ephemera-3-by-Anne-Bishop.pdf
    • http://cefasfese.4pu.com/2734733737737739/Across-a-Bridge-of-Dreams-The-Shogun-Quartet-4-by-Lesley-Downer.pdf
    • http://cefasfese.4pu.com/3737738731735736/The-Draycott-Legacy-Bridge-of-Dreams-amp-Enchantment-by-Christina-Skye.pdf
    • http://cefasfese.4pu.com/3735734738730735/Knights-Bridge-The-Robbery-of-the-Century-by-Valerio-Viccei.pdf
    • http://cefasfese.4pu.com/3731730732730735/The-Complete-Best-of-Bridge-Cookbooks-Volume-1-All-350-Recipes-from-the-Best-of-Bridge-and-Enjoy-by-Best-of-Bridge.pdf
    • http://cefasfese.4pu.com/1734731731735736/Bridge-Called-Hope-Stories-of-Triumph-from-the-Ranch-of-Rescued-Dreams-by-Kim-Meeder.pdf
    • http://cefasfese.4pu.com/5730738735737735/Manufacturing-Ideology-Scientific-Management-in-Twentieth-Century-Japan-by-William-M-Tsutsui.pdf
    • http://cefasfese.4pu.com/5730738735736733/Painting-of-the-Realm-The-Kano-House-of-Painters-in-Seventeenth-Century-Japan-by-Yukio-Lippit.pdf
    • http://cefasfese.4pu.com/1738738733730731/Woman-Who-Brings-the-Rain-A-memoir-of-Hokkaido-Japan-by-Eluned-Gramich.pdf
    • http://cefasfese.4pu.com/1731732732736730734/Transpacific-Field-of-Dreams-How-Baseball-Linked-the-United-States-and-Japan-in-Peace-and-War-by-Sayuri-Guthrie-Shimizu.pdf
    • http://cefasfese.4pu.com/2732732734730731/The-Workshop-Seven-Decades-of-the-Iowa-Writers-Workshop---43-Stories-Recollections-amp-Essays-on-Iowa-s-Place-in-Twentieth-Century-American-Literature-by-Tom-Grimes.pdf
    • http://cefasfese.4pu.com/4730730739736730/House-of-Dreams-Lady-of-the-Reeds-1-by-Pauline-Gedge.pdf
    • http://cefasfese.4pu.com/3733731735735735/The-Woman-Who-Painted-Her-Dreams-by-Isla-Dewar.pdf
    • http://cefasfese.4pu.com/3737738733735735/The-Pillow-Book-of-Sei-Shonagon-The-Diary-of-a-Courtesan-in-Tenth-Century-Japan-by-Sei-Sh-nagon.pdf
    • http://cefasfese.4pu.com/4730736737731739/A-Man-And-A-Woman-The-Lady-s-Tutor-1-5-by-Robin-Schone.pdf
    • http://cefasfese.4pu.com/4732730739737731/Never-in-My-Wildest-Dreams-A-Black-Woman-s-Life-in-Journalism-by-Belva-Davis.pdf
    • http://cefasfese.4pu.com/2735731736731734/Dating-Communication-Tips-for-Men-Win-the-Heart-of-a-Woman-of-Your-Dreams-2-by-Sahara-Sanders.pdf
    • http://cefasfese.4pu.com/1736732733734734/Dating-Communication-Tips-for-Men-Win-the-Heart-of-a-Woman-of-Your-Dreams-2-by-Sahara-Sanders.pdf
    • http://cefasfese.4pu.com/3731730732730735/The-Complete-Best-of-Bridge