Malicious PDF — malware analysis report

Static analysis result for SHA-256 19d86c7411841481…

MALICIOUS

PDF

15.5 KB Created: 2019-05-07 06:08:29 +01:00 Authoring application: mPDF 5.7
MD5: 33c79b9b07f1141051b488f85d030b42 SHA-1: afd00bae6cb206bbf71f602cd4072e3d35e4be89 SHA-256: 19d86c741184148134134b4791bed02b6f055073af019b0f560c9397e30f1f6f
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF file was flagged by a machine learning classifier with high confidence and contains a large number of embedded links. The heuristic 'PDF_SEO_LINK_FARM' indicates that these links are likely part of a scheme to drive traffic to external sites, potentially for phishing or malware distribution. While the specific intent of the links is unclear due to their 'confirmed_benign' reputation, the sheer volume and the ML classification suggest malicious intent.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9880

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/3090098093095094/The-Dinner-Doctor-by-Anne-Byrn.pdf
    • http://loaminoo.linkpc.net/2099097090093094/If-Morning-Ever-Comes-by-Anne-Tyler.pdf
    • http://loaminoo.linkpc.net/2095099099096095/The-Accidental-Tourist-by-Anne-Tyler.pdf
    • http://loaminoo.linkpc.net/4092098094092091/Breathing-Lessons-by-Anne-Tyler.pdf
    • http://loaminoo.linkpc.net/3095093092099093/Earthly-Possessions-by-Anne-Tyler.pdf
    • http://loaminoo.linkpc.net/6097097094090/The-Amateur-Marriage-by-Anne-Tyler.pdf
    • http://loaminoo.linkpc.net/4095099094096/Digging-to-America-by-Anne-Tyler.pdf
    • http://loaminoo.linkpc.net/4092090091095096/A-Patchwork-Planet-by-Anne-Tyler.pdf
    • http://loaminoo.linkpc.net/3098098096097/Ladder-of-Years-by-Anne-Tyler.pdf
    • http://loaminoo.linkpc.net/1091092091094098096/Start-Up-Your-Restaurant-The-Definitive-Guide-for-Anyone-Who-Dreams-ofRunning-Their-Own-Restaurant-by-Priya-Bala.pdf
    • http://loaminoo.linkpc.net/1097093094090098/A-Spool-of-Blue-Thread-by-Anne-Tyler.pdf
    • http://loaminoo.linkpc.net/3096096097091093/A-Spool-of-Blue-Thread-by-Anne-Tyler.pdf
    • http://loaminoo.linkpc.net/2097092092093090/A-Spool-of-Blue-Thread-by-Anne-Tyler.pdf
    • http://loaminoo.linkpc.net/2094097093098095/A-Spool-of-Blue-Thread-by-Anne-Tyler.pdf
    • http://loaminoo.linkpc.net/3091097094097/A-Spool-of-Blue-Thread-by-Anne-Tyler.pdf
    • http://loaminoo.linkpc.net/1090091097096095091/Top-Secret-Restaurant-Recipes-2-More-Amazing-Clones-of-Famous-Dishes-from-America-s-Favorite-Restaurant-Chains-by-Todd-Wilbur.pdf
    • http://loaminoo.linkpc.net/6093091097099094/Watched-Tough-Justice-1-2-by-Tyler-Anne-Snell.pdf
    • http://loaminoo.linkpc.net/3090097095097090/Tyler-s-Ultimate-Brilliant-Simple-Food-to-Make-Any-Time-by-Tyler-Florence.pdf
    • http://loaminoo.linkpc.net/4094090099097097/Dream-on-Livin-on-the-Edge-With-Steven-Tyler-and-Aerosmith-by-Cyrinda-Foxe-Tyler.pdf
    • http://loaminoo.linkpc.net/1090091092094097/Homesick-by-Eshkol-Nevo.pdf