Malicious PDF — malware analysis report

Static analysis result for SHA-256 1808b58b16475078…

MALICIOUS

PDF

13.9 KB Created: 2019-05-02 01:31:35 +01:00 Authoring application: mPDF 5.7
MD5: d920775f8516b214891efff94de3d100 SHA-1: 3d67b45131e50f719269c11760538b382ca040d0 SHA-256: 1808b58b16475078a37ca9dfb5907dd63791d7c5e218abb975d19d5a90f3de59
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links, many of which point to URLs with numeric slugs, suggesting a link farm or SEO manipulation tactic. While the specific intent of these links is unclear due to the 'confirmed_benign' labels on many, the sheer volume and structure indicate a potential attempt to drive traffic or distribute further malicious content. The ML classifier also flagged this PDF as malicious.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9891

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/4090099091093/A-Woman-After-God-s-Own-Heart-by-Elizabeth-George.pdf
    • http://loaminoo.linkpc.net/1094092099099099/A-Young-Woman-s-Walk-with-God-Growing-More-Like-Jesus-by-Elizabeth-George.pdf
    • http://loaminoo.linkpc.net/4096091097096098/Wonder-Woman-by-George-Perez-Omnibus-Vol-1-by-George-P-rez.pdf
    • http://loaminoo.linkpc.net/7096093092096/The-Wise-Woman-and-Other-Stories-by-George-MacDonald.pdf
    • http://loaminoo.linkpc.net/3091096097098096/Amorous-Woman-by-Donna-George-Storey.pdf
    • http://loaminoo.linkpc.net/1099093097091098/Wonder-Woman-Vol-3-Beauty-and-the-Beasts-by-George-P-rez.pdf
    • http://loaminoo.linkpc.net/1099093097092099/Wonder-Woman-Vol-4-Destiny-Calling-by-George-P-rez.pdf
    • http://loaminoo.linkpc.net/1098096096099098/I-Richard-by-Elizabeth-George.pdf
    • http://loaminoo.linkpc.net/1094099092094099/Elizabeth-I-by-Margaret-George.pdf
    • http://loaminoo.linkpc.net/2096097098093096/Mistresses-A-History-of-the-Other-Woman-by-Elizabeth-Abbott.pdf
    • http://loaminoo.linkpc.net/1092092091098098/Woman-of-His-Heart-by-Jill-Odom.pdf
    • http://loaminoo.linkpc.net/1099093090091091/The-Heart-of-a-Woman-by-Maya-Angelou.pdf
    • http://loaminoo.linkpc.net/5090090095093098/Zand-over-Elena-by-Elizabeth-George.pdf
    • http://loaminoo.linkpc.net/6097092096099/Loving-God-with-All-Your-Mind-by-Elizabeth-George.pdf
    • http://loaminoo.linkpc.net/3094097090098/The-Bronze-Bow-by-Elizabeth-George-Speare.pdf
    • http://loaminoo.linkpc.net/7095098095098094/Zand-over-Elena-by-Elizabeth-George.pdf
    • http://loaminoo.linkpc.net/4098093099099096/A-Woman-of-Independent-Means-by-Elizabeth-Forsythe-Hailey.pdf
    • http://loaminoo.linkpc.net/4093096098096098/George-Sand-A-Woman-s-Life-Writ-Large-by-Belinda-Jack.pdf
    • http://loaminoo.linkpc.net/1096092093093097/Win-the-Heart-of-A-Woman-of-Your-Dreams-by-Sahara-Sanders.pdf
    • http://loaminoo.linkpc.net/1094097092098/Calico-Captive-by-Elizabeth-George-Speare.pdf