Malicious PDF — malware analysis report

Static analysis result for SHA-256 51b1e700603e7aeb…

MALICIOUS

PDF

25.7 KB Created: 2019-05-04 13:31:05 +01:00 Authoring application: mPDF 5.7
MD5: 9a07bc859d4ec7d41d1540c74dbc0541 SHA-1: 519365c097bea4334d09fde1be6c63d6985171f3 SHA-256: 51b1e700603e7aeba0f658e72f56179ff5f9807a03deea949d06688883c89cb0
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file was flagged by a machine learning classifier as malicious. Static analysis revealed a large number of embedded links to external PDF files, a technique often used for SEO manipulation or to redirect users to malicious sites. The primary attack pattern observed is the creation of a link farm within the document.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9903

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.lin
    • http://loaminoo.linkpc.net/8099097090093092/From-War-to-War-The-Arab-Israeli-Confrontation-1948-1967-A-Study-of-the-Conflict-from-the-Perspective-of-Coercion-in-the-Context-of-Inter-Arab-and-by-Nadav-Safran.pdf
    • http://loaminoo.linkpc.net/5090092097091093/Six-Days-in-June-How-Israel-Won-the-1967-Arab-Israeli-War-by-Eric-Hammel.pdf
    • http://loaminoo.linkpc.net/1091095090098097/The-Balfour-Declaration-The-Origins-of-the-Arab-Israeli-Conflict-by-Jonathan-Schneer.pdf
    • http://loaminoo.linkpc.net/1092095094092091/The-View-From-the-Fence-The-Arab-Israeli-conflict-from-the-present-to-its-roots-by-Neill-Lochery.pdf
    • http://loaminoo.linkpc.net/3097095099099097/United-Nations-Resolutions-On-Palestine-And-The-Arab-Israeli-Conflict-by-George-J-Tomeh.pdf
    • http://loaminoo.linkpc.net/3097096090091091/From-Coexistence-to-Conquest-International-Law-and-the-Origins-of-the-Arab-Israeli-Conflict-1891-1949-by-Victor-Kattan.pdf
    • http://loaminoo.linkpc.net/1091096092094093098/The-Arab-in-Israeli-Drama-and-Theatre-by-Dan-Urian.pdf
    • http://loaminoo.linkpc.net/1090092095090094099/The-Arab-Awakening-The-Story-of-the-Arab-National-Movement-by-George-Antonius.pdf
    • http://loaminoo.linkpc.net/4094097094097092/From-Time-Immemorial-The-Origins-of-the-Arab-Jewish-Conflict-Over-Palestine-by-Joan-Peters.pdf
    • http://loaminoo.linkpc.net/3097095095091094/Righteous-Victims-A-History-of-the-Zionist-Arab-Conflict-1881-1998-by-Benny-Morris.pdf
    • http://loaminoo.linkpc.net/9096097091093096/Globalization-and-Business-Politics-in-Arab-North-Africa-A-Comparative-Perspective-by-Melani-Cammett.pdf
    • http://loaminoo.linkpc.net/1096096094099097/Homeland-Insecurity-The-Arab-American-and-Muslim-American-Experience-After-9-11-The-Arab-American-and-Muslim-American-Experience-After-9-11-by-Louise-A-Cainkar.pdf
    • http://loaminoo.linkpc.net/1090092092093092097/Multiple-Paths-to-Knowledge-in-International-Relations-Methodology-in-the-Study-of-Conflict-Management-and-Conflict-Resolution-Innovations-in-the-Study-of-World-Politics-by-Zeev-Maoz.pdf
    • http://loaminoo.linkpc.net/8090094097093092/Arabia-amp-Asia-A-Cookbook-With-Recipes-From-Egypt-Morocco-Persia-Pakistan-Arab-Recipes-Arab-Cookbook-Egyptian-Recipes-Egyptian-Cookbook-Moroccan-Recipes-Moroccan-Cookbook-Persian-Recipes-1-by-Umm-Maryam.pdf
    • http://loaminoo.linkpc.net/7099092092096091/Being-Arab-by-Samir-Kassir.pdf
    • http://loaminoo.linkpc.net/1091098093099099092/The-Arab-State-by-Giacomo-Luciani.pdf
    • http://loaminoo.linkpc.net/1091092093098094/Arab-in-America-by-Toufic-El-Rassi.pdf
    • http://loaminoo.linkpc.net/1096096095090092/The-Arab-Americans-by-Randa-A-Kayyali.pdf
    • http://loaminoo.linkpc.net/8091095099097090/Mariam-The-Little-Arab-by-Amedee-Brunot.pdf
    • http://loaminoo.linkpc.net/8099097091093096/Egypt-in-Search-of-Political-Community-An-Analysis-of-the-Intellectual-and-Political-Evolution-of-Egypt-1804-1952-by-Nadav-Safran.pdf