Malicious PDF — malware analysis report

Static analysis result for SHA-256 43e617f7ab223b34…

MALICIOUS

PDF

23.6 KB Created: 2019-04-30 02:22:19 +01:00 Authoring application: mPDF 5.7
MD5: ba20fbed3971b2e20e17c471231bdd42 SHA-1: c1a269842d50b7772ee06ecabe83d17939df7953 SHA-256: 43e617f7ab223b3488c14e5e9a00a899f24cd045386cc17a5ff4f7aa6d2cdaad
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic, which is indicative of a link farm attack pattern. The primary goal appears to be directing users to a multitude of external websites, likely for SEO manipulation or to host further malicious content. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9901

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/1091095093091093/Goodbye-Sarajevo-A-True-Story-of-Courage-Love-and-Survival-by-Atka-Reid.pdf
    • http://loaminoo.linkpc.net/2096092091099098/By-Chance-Alone-A-Remarkable-True-Story-of-Courage-and-Survival-at-Auschwitz-by-Max-Eisen.pdf
    • http://loaminoo.linkpc.net/2095091091095098/Unbroken-An-Extraordinary-True-Story-of-Courage-and-Survival-by-Laura-Hillenbrand.pdf
    • http://loaminoo.linkpc.net/4095092095090093/Until-We-Meet-Again-A-True-Story-of-Love-and-Survival-in-the-Holocaust-by-Michael-Korenblit.pdf
    • http://loaminoo.linkpc.net/1098095094093091/Out-of-the-Depths-An-Unforgettable-WWII-Story-of-Survival-Courage-and-the-Sinking-of-the-USS-Indianapolis-by-Edgar-Harrell.pdf
    • http://loaminoo.linkpc.net/5092099097094/Forty-Autumns-A-Family-s-Story-of-Courage-and-Survival-on-Both-Sides-of-the-Berlin-Wall-by-Nina-Willner.pdf
    • http://loaminoo.linkpc.net/2091094099091096/Simple-Courage-A-True-Story-of-Peril-on-the-Sea-by-Frank-Delaney.pdf
    • http://loaminoo.linkpc.net/2096099093099097/438-Days-An-Extraordinary-True-Story-of-Survival-at-Sea-by-Jonathan-Franklin.pdf
    • http://loaminoo.linkpc.net/3095091091094090/The-Tiger-A-True-Story-Of-Vengeance-And-Survival-by-John-Vaillant.pdf
    • http://loaminoo.linkpc.net/3098098095098/Touching-the-Void-The-True-Story-of-One-Man-s-Miraculous-Survival-by-Joe-Simpson.pdf
    • http://loaminoo.linkpc.net/1091097090091099095/Brave-Bess-and-the-ANZAC-Horses-A-True-Story-of-Courage-and-Loyalty-by-Susan-Brocker.pdf
    • http://loaminoo.linkpc.net/1098095094095094/Last-Man-Off-A-True-Story-of-Disaster-and-Survival-on-the-Antarctic-Seas-by-Matt-Lewis.pdf
    • http://loaminoo.linkpc.net/1096091093097096/When-I-Fell-from-the-Sky-The-True-Story-of-One-Woman-s-Miraculous-Survival-by-Juliane-Koepcke.pdf
    • http://loaminoo.linkpc.net/1096099092090090/Blue-Helmets-and-Black-Markets-The-Business-of-Survival-in-the-Siege-of-Sarajevo-by-Peter-Andreas.pdf
    • http://loaminoo.linkpc.net/1098095095096090/Bound-by-Ice-A-True-North-Pole-Survival-Story-by-Sandra-Neil-Wallace.pdf
    • http://loaminoo.linkpc.net/3094097094090094/The-Cloud-Garden-A-True-Story-of-Adventure-Survival-and-Extreme-Horticulture-by-Tom-Hart-Dyke.pdf
    • http://loaminoo.linkpc.net/1098095095096092/The-Shattered-Lens-A-War-Photographer-s-True-Story-of-Captivity-and-Survival-in-Syria-by-Jonathan-Alpeyrie.pdf
    • http://loaminoo.linkpc.net/1098095094090091/The-Pianist-The-Extraordinary-True-Story-of-One-Man-s-Survival-in-Warsaw-1939-1945-by-W-adys-aw-Szpilman.pdf
    • http://loaminoo.linkpc.net/3093096095093090/We-Are-All-the-Same-A-Story-of-a-Boy-s-Courage-and-a-Mother-s-Love-by-Jim-Wooten.pdf
    • http://loaminoo.linkpc.net/1098095093098090/Sufferings-in-Africa-The-Incredible-True-Story-of-a-Shipwreck-Enslavement-and-Survival-on-the-Sahara-by-James-Riley.pdf
    • http://loaminoo.linkpc.net/5092099097094/Forty-Autumns-A-Family-s-Story-of-Courage-and-Survival-on-Both-Sides-of-the-B