Malicious PDF — malware analysis report

Static analysis result for SHA-256 f5a8a107c6b0adb6…

MALICIOUS

PDF

32.2 KB Created: 2019-05-26 12:01:51 +01:00 Authoring application: mPDF 5.7
MD5: 9a84adfb79b5964478883924b019dbef SHA-1: ed436378ba564e53732b733f3f738600d3075c1e SHA-256: f5a8a107c6b0adb61d4471327654c90cf907e5ff83358ee1abf4bc8d8f2a4b14
90 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The PDF contains a large number of embedded links to external PDF files, identified by the PDF_SEO_LINK_FARM heuristic. The document body, though heavily obfuscated, contains URLs that appear to be part of a link farm. The ML_NYX_PDF_MALICIOUS heuristic also flagged the document. The primary attack pattern involves directing users to a large collection of external PDFs, likely for SEO manipulation or to host malicious content.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9651

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://leakscaioiobook.4dq.com/3d0c1d0c3d0c7d0c2d0c1/Easy-Readers-For-Kids-Collection-4-3-Short-Stories-in-1-Ebook-Books-about-Santa-Rudolph-animals-planets-kittens-Perfect-for-kids-under-10-learning-to-read-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c3d0c2d0c8d0c2/Short-Elementary-Level-Stories-Bundle-5-3-Short-Stories-in-1-Ebook-Books-about-love-signing-baby-animals-school-planets-family-Perfect-for-kids-under-10-learning-to-read-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c2d0c8d0c4d0c5/Short-amp-Sweet-Kids-Stories-11-other-relaxing-easy-to-read-books-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c2d0c7d0c0d0c3/Great-Stories-for-Young-Kids-13-Easy-to-Read-Short-Stories-That-Parents-and-Kids-can-Read-Together-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c3d0c5d0c6d0c0/Stories-to-Read-on-Thanksgiving-Short-Story-Collection-for-Kids-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c3d0c6d0c5d0c6/Short-Stories-for-Early-Readers-Happy-storybook-for-children-holiday-thanksgiving-family-kids-books-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c3d0c5d0c6d0c3/Stories-for-Early-Readers-16-Stories-with-Lessons-For-Growing-Kids-Childrens-Books-Collection-Series-Bedtime-Lovable-Animal-Characters-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c2d0c3d0c1d0c7/Books-for-Kids-Tommy-Tiger-Visits-Veggie-World-Illustration-Book-Ages-3-8-Short-Stories-for-Kids-Kids-Books-Bedtime-Stories-For-Kids-Children-Books-Early-Readers-by-Tommy-Tiger.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c3d0c3d0c2d0c3/Cool-Kid-s-Short-Story-Collection-Including-11-more-Easy-to-Read-Books-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c1d0c9d0c1d0c9/Books-for-Kids-Tommy-Tiger-Camp-Adventure-Illustration-Book-Ages-3-8-Short-Stories-for-Kids-Kids-Books-Bedtime-Stories-For-Kids-Children-Books-Early-Readers-by-Tommy-Tiger.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c2d0c7d0c5d0c5/Easy-Reading-Kids-Can-Learn-With-13-Short-Stories-To-Build-Character-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c2d0c3d0c8d0c2/Books-for-Kids-Tommy-Tiger-Becomes-a-Firefighter-Illustration-Book-Ages-3-8-Short-Stories-for-Kids-Kids-Books-Bedtime-Stories-For-Kids-Children-Books-Early-Readers-by-Tommy-Tiger.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c3d0c0d0c1d0c2/Short-Stories-for-Adventurous-Kids-Giant-Bundle-of-Short-Stories-that-Kids-Love-13-Stories-Included-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c3d0c7d0c1d0c5/Short-Stories-for-Early-Readers-17-Stories-in-1-Fairy-Tales-Kids-Story-Bundle-Childrens-ebooks-Short-Story-Series-Diaries-of-Simple-Reading-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c3d0c6d0c8d0c4/Stunning-Short-Stories-for-Kids-19-Intense-Short-Stories-Kids-Love-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c3d0c3d0c7d0c2/Halloween-Stories-for-Kids-amp-More-17-Assorted-Stories-to-Read-with-Kids-at-Halloween-Bonus-Halloween-Party-Story-Kids-Story-Bundle-Children-s-Series-Spooky-Scary-Funny-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c3d0c0d0c2d0c7/Short-Stories-for-Girls-and-Young-Women-4-Collection-Includes-an-Assortment-of-15-Short-Stories-Kids-Storybooks-Series-Diaries-Space-Halloween-Adventure-Science-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c3d0c0d0c3d0c8/Short-Funny-Stories-For-Kids-Happy-Tales-for-Happy-Kids-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c3d0c4d0c6d0c6/Kids-and-Teens-Story-Collection-4-HUGE-COLLECTION-OF-15-STORIES-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c3d0c3d0c6d0c3/Thanksgiving-Short-Story-Bundle-18-Hilarious-Stories-that-Kids-Love-by-Betty-J-Byers.pdf
    • http://leakscaioiobook.4dq.com/3d0c1d0c2d0c7d0c0d0c3/Great-Stories-for-Young-Kids-13-Easy-to-Read-Short-Stories-That-Parents-and-Kids-can-Read-Tog