Malicious PDF — malware analysis report

Static analysis result for SHA-256 51e47e50fe65c56b…

MALICIOUS

PDF

13.6 KB Created: 2019-05-07 04:50:20 +01:00 Authoring application: mPDF 5.7
MD5: d594d26abd4bee53cdc0317f6b3b5c4a SHA-1: 3e75f5f2e17323e87a2711a3ae88dddaca50c024 SHA-256: 51e47e50fe65c56b8a4ff6d24e77ec7a3dbd93fbe450e1b92e115981d7db787e
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1059.001 PowerShell

The PDF file was flagged by a machine learning classifier as malicious. It contains a large number of embedded URLs pointing to external PDF files, a technique often used for SEO manipulation or to distribute further malicious content. While no scripts were extracted, the sheer volume of links and the ML classification suggest a malicious intent, possibly related to phishing or malware distribution.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9102

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/8093098097093091/Someone-Else-s-Garden-by-Dipika-Rai.pdf
    • http://loaminoo.linkpc.net/4095095091099092/Humility-Garden-Garden-of-Salt-1-by-Felicity-Savage.pdf
    • http://loaminoo.linkpc.net/7091098099093098/The-Edible-Garden-How-to-Have-Your-Garden-and-Eat-It-Too-by-Alys-Fowler.pdf
    • http://loaminoo.linkpc.net/1098098091098/Garden-Butterflies-of-North-America-A-Gallery-of-Garden-Butterflies-amp-How-to-Attract-Them-by-Rick-Mikula.pdf
    • http://loaminoo.linkpc.net/9095095097095/Garden-of-Lies-Garden-of-Lies-1-by-Eileen-Goudge.pdf
    • http://loaminoo.linkpc.net/8094096094091/Winter-Garden-Winter-Garden-2-by-Adele-Ashworth.pdf
    • http://loaminoo.linkpc.net/2099091094091093/Winter-Garden-Winter-Garden-2-by-Adele-Ashworth.pdf
    • http://loaminoo.linkpc.net/9095094099092095/The-Last-Garden-by-Eva-Hornung.pdf
    • http://loaminoo.linkpc.net/2093093096090098/Joy-In-Your-Garden-by-Joy-Bossi.pdf
    • http://loaminoo.linkpc.net/9099098096091/Into-the-Garden-Wildflowers-5-by-V-C-Andrews.pdf
    • http://loaminoo.linkpc.net/3099098094092095/My-Garden-by-Kevin-Henkes.pdf
    • http://loaminoo.linkpc.net/3090091095099/Satan-s-Garden-by-Kit-Lyman.pdf
    • http://loaminoo.linkpc.net/1093094092094090/Devil-s-Garden-by-Ace-Atkins.pdf
    • http://loaminoo.linkpc.net/2094094092097093/The-Garden-of-My-Imaan-by-Farhana-Zia.pdf
    • http://loaminoo.linkpc.net/1091099095095099090/The-Magic-Garden-by-Micki-Jo.pdf
    • http://loaminoo.linkpc.net/2090096090098090/Eden-s-Garden-by-Xondra-Day.pdf
    • http://loaminoo.linkpc.net/2091091094099097/Endgame-by-Nancy-Garden.pdf
    • http://loaminoo.linkpc.net/8096092096098/In-the-Garden-of-Thoughts-by-Dodinsky.pdf
    • http://loaminoo.linkpc.net/4093099099099091/The-Cement-Garden-by-Ian-McEwan.pdf
    • http://loaminoo.linkpc.net/2090094091093098/The-Girl-of-the-Wish-Garden-by-Uma-Krishnaswami.pdf
    • http://loaminoo.linkpc.net/3