Malicious PDF — malware analysis report

Static analysis result for SHA-256 09f68433987bde9b…

MALICIOUS

PDF

19.3 KB Created: 2019-05-02 06:20:45 +01:00 Authoring application: mPDF 5.7
MD5: d3e9858c0d3a9542680bbfc5148dc81a SHA-1: 7543c738049e1570edb8fd282df3b069c1810983 SHA-256: 09f68433987bde9b276ac9873b9cbc66ec56c482a7f5c965a80cd1faeab8ba71
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded URLs, identified as a link farm, that point to external PDF documents. These external documents are presented with titles suggesting leadership-related content, likely as a lure. The ML classifier strongly indicated maliciousness, and the heuristic firing confirms the suspicious nature of the link farm.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/4096093091092092/Leadership-Reflections-on-Biblical-Leadership-Today-by-Philip-Greenslade.pdf
    • http://loaminoo.linkpc.net/7099091098096093/Servants-of-the-Servant-A-Biblical-Theology-of-Leadership-by-Don-N-Howell-Jr-.pdf
    • http://loaminoo.linkpc.net/4099098090099090/Leadership-and-the-One-Minute-Manager-Increasing-Effectiveness-Through-Situational-Leadership-by-Kenneth-H-Blanchard.pdf
    • http://loaminoo.linkpc.net/1090091095093095/Leadership-Mosaic-5-Leadership-Principles-for-Ministry-and-Everyday-Life-by-Daniel-Montgomery.pdf
    • http://loaminoo.linkpc.net/1090093090092091/The-Toyota-Way-to-Lean-Leadership-Achieving-and-Sustaining-Excellence-Through-Leadership-Development-by-Jeffrey-K-Liker.pdf
    • http://loaminoo.linkpc.net/5098092099091090/The-Leadership-Pill-The-Missing-Ingredient-in-Motivating-People-Today-by-Kenneth-H-Blanchard.pdf
    • http://loaminoo.linkpc.net/9095094098097092/Character-Education-Curriculum-Module-I-of-III-Leadership-101-Traits-Characteristics-Perspectives-and-Personalizing-Your-Style-by-Dr-Philip-Willenbrock.pdf
    • http://loaminoo.linkpc.net/1091095092092090092/The-Big-Story-by-Philip-Greenslade.pdf
    • http://loaminoo.linkpc.net/1091095092092090095/Psalms-Songs-For-All-Seasons-by-Philip-Greenslade.pdf
    • http://loaminoo.linkpc.net/3096097098096099/Following-Jesus-Biblical-Reflections-on-Discipleship-by-N-T-Wright.pdf
    • http://loaminoo.linkpc.net/5094094097098/The-Principle-of-Leadership-by-Darussalam.pdf
    • http://loaminoo.linkpc.net/7094094098095091/Brief-Introduction-to-Leadership-by-Jan-Ketil-Arnulf.pdf
    • http://loaminoo.linkpc.net/8095094097095090/Excellence-in-Leadership-by-John-White.pdf
    • http://loaminoo.linkpc.net/4091097095090/Patton-on-Leadership-by-Alan-Axelrod.pdf
    • http://loaminoo.linkpc.net/5094099096090091/Extraordinary-Leadership-by-Robin-S-Sharma.pdf
    • http://loaminoo.linkpc.net/1090090097096092094/Women-Leadership-and-the-Church-by-Jim-Reiher.pdf
    • http://loaminoo.linkpc.net/8095093099092092/Leadership-and-Authority-by-Titre-Ande.pdf
    • http://loaminoo.linkpc.net/6097092097093/Habitudes-Book-1-The-Art-of-Self-Leadership-by-Tim-Elmore.pdf
    • http://loaminoo.linkpc.net/1093098096094099/Spiritual-Leadership-by-J-Oswald-Sanders.pdf
    • http://loaminoo.linkpc.net/7092097097098099/The-Leadership-Life-by-John-Merola.pdf