MALICIOUS
90
Risk Score
Malware Insights
MITRE ATT&CK
T1059.001 PowerShell
The PDF contains a large number of embedded external links, identified by the PDF_SEO_LINK_FARM heuristic. While many of these links point to what appear to be benign Shakespearean texts, the sheer volume and the use of a dynamic DNS hostname suggest a potential for abuse. The ML_NYX_PDF_MALICIOUS heuristic further supports the malicious classification. No scripts were extracted, and the document body was unreadable, limiting further analysis of the specific intent beyond link farming.
Machine Learning
- Nyx PDF Classifier malicious score 0.9919
Heuristics 2
-
Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARMSmall PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
-
Embedded URL info EMBEDDED_URLOne or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.URL http://loaminoo.linkpc.net/6099098093097097/A-New-Variorum-Edition-of-Shakespeare-The-Merchant-of-Venice-1888-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/8098095098093091/The-Merchant-of-Venice-Junior-Certificate-English-A-Romantic-Comedy-by-William-Shakespeare-Folens-Shakespeare-Series-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/5095097091098096/The-Merchant-of-Venice-Digital-Age-Edition-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/7093093090096090/Shakespeare-s-the-Merchant-of-Venice-For-Use-in-Public-and-High-Schools-With-Annotations-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/5093098097090095/A-New-Variorum-Edition-of-Shakespeare-Midsummer-Night-s-Dream-1895-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/6099098093097098/A-New-Variorum-Edition-of-Shakespeare-Twelfe-Night-Or-What-You-Will-1901-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/1091098099097094095/A-New-Variorum-Edition-of-Shakespeare-The-Tragedie-of-Cymbeline-1913-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/6099098094090093/A-New-Variorum-Edition-of-Shakespeare-The-Tragedy-of-Richard-the-Third-With-the-Landing-of-Earle-Richmond-and-the-Battell-at-Bosworth-Field-1908-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/7093096097096097/Shakespeare-s-play-of-the-Merchant-of-Venice-Arranged-for-Representation-at-the-Princess-s-Theatre-with-Historical-and-Explanatory-Notes-by-Charles-Kean-F-S-A-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/1090095099094099099/Shakespeare-s-The-Merchant-of-Venice-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/8096093095097090/The-Merchant-of-Venice-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/5098093091096/The-Merchant-of-Venice-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/5094091098090091/The-Merchant-of-Venice-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/9094092099090090/The-Merchant-of-Venice-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/5093094098096093/The-Merchant-of-Venice-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/5094091097096091/The-Merchant-of-Venice-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/5097098094097092/The-Merchant-of-Venice-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/6093099092090093/The-Merchant-of-Venice-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/8096093097092090/The-Merchant-of-Venice-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/5090095094096095/The-Merchant-of-Venice-by-William-Shakespeare.pdf
- http://loaminoo.linkpc.net/7093093090096090/Shakespeare-s-the-M
Open this report in the interactive analyzer, or submit your own file for analysis.