Malicious PDF — malware analysis report

Static analysis result for SHA-256 5065eb0a3fb3c1ed…

MALICIOUS

PDF

19.8 KB Created: 2019-05-02 06:15:53 +01:00 Authoring application: mPDF 5.7
MD5: b178f5114e1be62060bcd8ab27de700a SHA-1: b47fead6a05ffdd69f9b3c0361454b23a9e889a6 SHA-256: 5065eb0a3fb3c1ed4dccf4f9fb2ad1a3837174cb2ab42bb48c682758a26bcf36
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded external links, identified by the PDF_SEO_LINK_FARM heuristic. While the specific content of the document body is heavily obfuscated, the presence of numerous links suggests a malicious intent, likely for SEO manipulation or to distribute further malware. The ML classifier also strongly indicated maliciousness.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9942

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/8093091092090090/Jesse-The-Boys-of-Brighton-4-by-M-Tasia.pdf
    • http://loaminoo.linkpc.net/4094098093099090/Sam-s-Soldiers-Boys-of-Brighton-2-by-M-Tasia.pdf
    • http://loaminoo.linkpc.net/1091099091098098096/Real-Boys-Boys-Will-Do-Boys-6-by-Nica-Berry.pdf
    • http://loaminoo.linkpc.net/1090096094092096096/The-Jesse-Eisenberg-Handbook---Everything-You-Need-to-Know-about-Jesse-Eisenberg-by-Victoria-Moses.pdf
    • http://loaminoo.linkpc.net/1090096094093098099/The-Jesse-Eisenberg-Handbook---Everything-You-Need-to-Know-about-Jesse-Eisenberg-by-Ricardo-Parrish.pdf
    • http://loaminoo.linkpc.net/1090096094093093097/The-Jesse-Eisenberg-Handbook---Everything-You-Need-to-Know-about-Jesse-Eisenberg-by-Emily-Smith.pdf
    • http://loaminoo.linkpc.net/6099093090099098/Boys-Will-Be-Boys-Breaking-the-Link-Between-Masculinity-and-Violence-by-Myriam-Miedzian.pdf
    • http://loaminoo.linkpc.net/1099092091097096/The-Way-of-Boys-Raising-Healthy-Boys-in-a-Challenging-and-Complex-World-by-Anthony-Rao.pdf
    • http://loaminoo.linkpc.net/2096097099091090/Boys-Adrift-The-Five-Factors-Driving-the-Growing-Epidemic-of-Unmotivated-Boys-and-Underachieving-Young-Men-by-Leonard-Sax.pdf
    • http://loaminoo.linkpc.net/1094090097097091/Boys-Will-Be-Boys-The-Glory-Days-and-Party-Nights-of-the-Dallas-Cowboys-Dynasty-by-Jeff-Pearlman.pdf
    • http://loaminoo.linkpc.net/3099099096091091/Raising-Boys-Why-Boys-Are-Different-and-How-to-Help-Them-Become-Happy-and-Well-Balanced-Men-by-Steve-Biddulph.pdf
    • http://loaminoo.linkpc.net/6097096098091095/The-Boys-Tomo-1-El-nombre-del-juego-The-Boys-1-by-Garth-Ennis.pdf
    • http://loaminoo.linkpc.net/1099092098090090/Game-Boys-Boys-in-Love-1-by-Rochelle-H-Ragnarok.pdf
    • http://loaminoo.linkpc.net/2090096091098092/The-Bad-Boys-Reluctant-Woman-The-Law-Castle-Bad-Boys-2-by-Sam-Crescent.pdf
    • http://loaminoo.linkpc.net/1092090097092/Who-Needs-Boys-The-Girlfriend-s-Guide-to-Boys-3-by-Stephie-Davis.pdf
    • http://loaminoo.linkpc.net/8093091091096092/Brighton-MC-8-by-L-Ann-Marie.pdf
    • http://loaminoo.linkpc.net/4096099097092094/Real-Boys-Kiss-Boys-by-Joe-Filippone.pdf
    • http://loaminoo.linkpc.net/8093091093096097/Thin-Ice-by-Brighton-Walsh.pdf
    • http://loaminoo.linkpc.net/2096092093095096/In-the-dark-by-Jack-Brighton.pdf
    • http://loaminoo.linkpc.net/4095097090099098/The-Boy-From-Brighton-by-Geoffrey-Knight.pdf
    • http://loaminoo.linkpc.net/1090096094093093097/The-Jesse-Eisenberg-Handbook---Everything-You-Need-to-