Malicious PDF — malware analysis report

Static analysis result for SHA-256 06bb66c8137c46a9…

MALICIOUS

PDF

14.9 KB Created: 2019-04-15 09:15:02 +01:00 Authoring application: mPDF 5.7
MD5: 08985b8fefc1f60a1339988e940faaa4 SHA-1: f90ce66aab4564f3d02c3903d358692bea21511c SHA-256: 06bb66c8137c46a94bc099b078bc0ff41065b36ee284f45a241c2faa0e40202b
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links, many of which point to external PDF files hosted on the same domain. This behavior is indicative of a link farm or SEO spam tactic, potentially used to distribute malicious content or drive traffic. The ML classifier also flagged this document as malicious.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9891

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/5099093092099092/Giuseppe-and-Me-by-Robin-Reardon.pdf
    • http://loaminoo.linkpc.net/3090093096099098/A-Question-of-Manhood-by-Robin-Reardon.pdf
    • http://loaminoo.linkpc.net/5093099095091/The-Evolution-of-Ethan-Poe-by-Robin-Reardon.pdf
    • http://loaminoo.linkpc.net/4099098091094/Sullivan-s-Secret-by-Robin-Murphy.pdf
    • http://loaminoo.linkpc.net/8099091090098/Gloria-s-Secret-Cat-Island-2-by-Robin-Alexander.pdf
    • http://loaminoo.linkpc.net/3092097091094091/Her-Secret-Lover-What-Happens-In-Vegas-11-by-Robin-Covington.pdf
    • http://loaminoo.linkpc.net/3090090099091099/Secret-Santa-Baby-by-Robin-Covington.pdf
    • http://loaminoo.linkpc.net/1094090092090099/Inside-Edge-A-Revealing-Journey-into-the-Secret-World-of-Figure-Skating-by-Christine-Brennan.pdf
    • http://loaminoo.linkpc.net/4094098093092090/Kissing-the-Maid-of-Honor-Secret-Wishes-1-by-Robin-Bielman.pdf
    • http://loaminoo.linkpc.net/6094092092091090/The-Secret-Letters-of-the-Monk-Who-Sold-His-Ferrari-by-Robin-S-Sharma.pdf
    • http://loaminoo.linkpc.net/1096092099094098/Secret-of-the-Big-Easy-Marie-Bartek-and-the-SIPS-Team-2-by-Robin-Murphy.pdf
    • http://loaminoo.linkpc.net/1096092099094094/Federal-City-s-Secret-Marie-Bartek-and-the-SIPS-Team-3-by-Robin-Murphy.pdf
    • http://loaminoo.linkpc.net/2094095092095095/Mistress-Ruby-Ties-It-Together-A-Dominatrix-Takes-On-Sex-Power-and-the-Secret-Lives-of-Upstanding-Citizens-by-Robin-Shamburg.pdf
    • http://loaminoo.linkpc.net/5093097091091/Time-s-Secret-Time-s-Edge-2-by-J-M-Dattilo.pdf
    • http://loaminoo.linkpc.net/3094092094099098/Silver-Edge-Straight-Edge-1-by-Ciara-Knight.pdf
    • http://loaminoo.linkpc.net/3091092098098094/Finding-Jake-by-Bryan-Reardon.pdf
    • http://loaminoo.linkpc.net/2095095097096099/The-Deep-Enders-by-Dave-Reardon.pdf
    • http://loaminoo.linkpc.net/9097092090095/Love-of-Chocolate-by-Nicholas-Reardon.pdf
    • http://loaminoo.linkpc.net/9094095094092093/Redbud-Corner-by-JoHannah-Reardon.pdf
    • http://loaminoo.linkpc.net/2099095091098093/The-Rescue-by-Carolyn-Reardon-Neuman.pdf