Malicious PDF — malware analysis report

Static analysis result for SHA-256 0c3d116decb12939…

MALICIOUS

PDF

20.8 KB Created: 2019-04-30 04:07:43 +01:00 Authoring application: mPDF 5.7
MD5: 9b16ca9658837c1954cdbbc3326a8404 SHA-1: f58e8f3e01ef2288ee8f81cbbe643d7c3853098e SHA-256: 0c3d116decb12939461d782424d42632fdc909789bf363763baae6f7107c7a66
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF document contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic, which likely serve to direct users to external content. The ML_NYX_PDF_MALICIOUS heuristic also flagged the document with high confidence. While the specific intent is unclear due to the lack of readable document body text, the pattern suggests a link-farming or redirection scheme, potentially for SEO manipulation or to host further malicious content.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9942

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/9095091098092/Changes-A-Love-Story-by-Ama-Ata-Aidoo.pdf
    • http://loaminoo.linkpc.net/4093096095092091/African-Love-Stories-An-Anthology-by-Ama-Ata-Aidoo.pdf
    • http://loaminoo.linkpc.net/7095094096092094/No-Sweetness-Here-by-Ama-Ata-Aidoo.pdf
    • http://loaminoo.linkpc.net/3095093096095098/Unexpected-Love-Story-Love-Story-2-by-Natasha-Madison.pdf
    • http://loaminoo.linkpc.net/2095095091097098/The-Heart-of-a-Soldier-A-True-Love-Story-of-Love-War-and-Sacrifice-by-Kate-Blaise.pdf
    • http://loaminoo.linkpc.net/1099098097096098/Young-Love-Part-1-A-School-Yard-Love-Story-by-Dean-Amory.pdf
    • http://loaminoo.linkpc.net/3091096093095098/Love-s-Wicked-Game-A-Provocative-Persuasive-Story-of-Love-Lust-and-Money-by-Eddie-Johnson.pdf
    • http://loaminoo.linkpc.net/7095093092099097/Love-Conquers-All-Briana-amp-Kingston-s-Love-Story-by-Bianca.pdf
    • http://loaminoo.linkpc.net/7090094094094092/Find-Her-Keep-Her-A-Martha-s-Vineyard-Love-Story-Love-in-the-USA-1-by-Z-L-Arkadie.pdf
    • http://loaminoo.linkpc.net/1090094092092094091/Dance-of-Divine-Love-India-s-Classic-Sacred-Love-Story-The-Rasa-Lila-of-Krishna-by-Graham-M-Schweig.pdf
    • http://loaminoo.linkpc.net/1090094092091096093/Dance-of-Divine-Love-India-s-Classic-Sacred-Love-Story-The-Rasa-Lila-of-Krishna-by-Graham-Schweig.pdf
    • http://loaminoo.linkpc.net/1090094092090090090/Dance-of-Divine-Love-The-Rasa-Lila-of-Krishna-from-the-Bhagavata-Purana-India-s-Classic-Sacred-Love-Story-by-Graham-M-Schweig.pdf
    • http://loaminoo.linkpc.net/4098090098097090/Sometimes-Love-Comes-Around-2-A-BBW-Love-Story-by-Christie-Murrell.pdf
    • http://loaminoo.linkpc.net/1097098094098099/One-Love-Vampire-Love-Story-5-by-H-T-Night.pdf
    • http://loaminoo.linkpc.net/1095090094098092/The-Greatest-Story-Ever-Told-A-Love-Story-Greatest-Story-Ever-Told-1-by-Rebe-James.pdf
    • http://loaminoo.linkpc.net/1097091090094095/Love-at-First-Slight-Aidan-and-Olivia-s-Story-Love-at-First-Slight-1-by-Tobi-Doyle.pdf
    • http://loaminoo.linkpc.net/7094090092095098/Gabriel-Garcia-Marquez-Collection-Love-in-the-Time-of-Cholera-One-Hundred-Years-of-Solitude-Chronicle-of-a-Death-Foretold-Of-Love-and-Other-Demons-The-Story-of-a-Shipwrecked-Sailor-by-Gabriel-Garc-a-M-rquez.pdf
    • http://loaminoo.linkpc.net/4091099096099091/A-Love-Story-by-mile-Zola.pdf
    • http://loaminoo.linkpc.net/4097091093091099/Hemingway-in-Love-His-Own-Story-by-A-E-Hotchner.pdf
    • http://loaminoo.linkpc.net/6092094097090098/Love-Story-by-Janine-Boissard.pdf