Malicious PDF — malware analysis report

Static analysis result for SHA-256 529f4909bf1d9782…

MALICIOUS

PDF

21.0 KB Created: 2019-05-01 17:23:59 +01:00 Authoring application: mPDF 5.7
MD5: df5a015beb0be7f1ca4ecb2f8df76d4b SHA-1: 9fb6c5306556b825348b35bf5cb6310e60f2dbd0 SHA-256: 529f4909bf1d9782c1a17106adc4d90a9d17a5a55a81905ee2d1627faeb9c3ef
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file contains a large number of embedded links to external documents, primarily hosted on the `loaminoo.linkpc.net` domain. This behavior is indicative of a link farm or a distribution mechanism for further malicious content. The ML classifier strongly flagged this PDF as malicious, supporting the assessment of a malicious intent behind the link farm.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9904

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/3098098095098090/Childhood-Shadows-The-Hidden-Story-of-the-Black-Dahlia-Murder-by-Mary-Pacios.pdf
    • http://loaminoo.linkpc.net/1096097097090099/Exquisite-Corpse-Surrealism-and-the-Black-Dahlia-Murder-by-Mark-Nelson.pdf
    • http://loaminoo.linkpc.net/2097099094092094/Black-Dahlia-Avenger-II-Presenting-the-Follow-Up-Investigation-and-Further-Evidence-Linking-Dr-George-Hill-Hodel-to-Los-Angeles-s-Black-Dahlia-and-Other-1940s-Lone-Woman-Murders-by-Steve-Hodel.pdf
    • http://loaminoo.linkpc.net/6097095090/Hidden-Figures-The-American-Dream-and-the-Untold-Story-of-the-Black-Women-Mathematicians-Who-Helped-Win-the-Space-Race-by-Margot-Lee-Shetterly.pdf
    • http://loaminoo.linkpc.net/2099092095096094/Hidden-Figures-The-American-Dream-and-the-Untold-Story-of-the-Black-Women-Mathematicians-Who-Helped-Win-the-Space-Race-by-Margot-Lee-Shetterly.pdf
    • http://loaminoo.linkpc.net/2097094092094092/Tell-No-One-Who-You-Are-The-Hidden-Childhood-of-Regine-Miller-by-Walter-Buchignani.pdf
    • http://loaminoo.linkpc.net/3094097093097/The-Black-Dahlia-L-A-Quartet-1-by-James-Ellroy.pdf
    • http://loaminoo.linkpc.net/1098099092093093/Persepolis-The-Story-of-a-Childhood-and-the-Story-of-a-Return-by-Marjane-Satrapi.pdf
    • http://loaminoo.linkpc.net/2097099099094094/Black-Dahlia-Red-Rose-America-s-Most-Notorious-Crime-Solved-For-the-First-Time-by-Piu-Marie-Eatwell.pdf
    • http://loaminoo.linkpc.net/1090096097095095098/A-Merry-Little-Murder-A-Rhodes-to-Murder-Mystery-Bk-1-by-Mary-Welk.pdf
    • http://loaminoo.linkpc.net/4092093093099095/The-Crystal-Cabinet-My-Childhood-At-Salterns-by-Mary-Butts.pdf
    • http://loaminoo.linkpc.net/7091090094096094/Novels-by-James-Ellroy-Study-Guide-American-Tabloid-White-Jazz-Blood-s-a-Rover-Killer-on-the-Road-the-Black-Dahlia-by-Books-LLC.pdf
    • http://loaminoo.linkpc.net/3092099099090091/Murder-at-Black-Dog-Springs-by-Sarah-Black.pdf
    • http://loaminoo.linkpc.net/4099099092098091/Murder-at-the-Courthouse-Hidden-Springs-Mysteries-1-by-A-H-Gabhart.pdf
    • http://loaminoo.linkpc.net/3096090092099092/Hidden-Victims-The-Other-Side-of-Murder-by-Violet-M-Franck.pdf
    • http://loaminoo.linkpc.net/2093093097099090/Murder-Comes-by-Mail-Hidden-Springs-Mystery-2-by-A-H-Gabhart.pdf
    • http://loaminoo.linkpc.net/1090095090099092/Murder-is-No-Accident-Hidden-Springs-Mystery-3-by-A-H-Gabhart.pdf
    • http://loaminoo.linkpc.net/8093096091096/Unbeaten-The-Story-of-my-Brutal-Childhood-by-Kim-Woodburn.pdf
    • http://loaminoo.linkpc.net/3096099098093097/The-Killing-of-Reverend-Kay-A-Hidden-Murder-in-Colonial-Virginia-by-Cynthia-Mattson.pdf
    • http://loaminoo.linkpc.net/6098092095094/Dance-of-Shadows-Dance-of-Shadows-1-by-Yelena-Black.pdf
    • http://loaminoo.linkpc.net/2099092095096094/Hidden-Figures-The-American-Dream-and-the-Untold-Story-of-the-Black-Women-Mathema