Malicious PDF — malware analysis report

Static analysis result for SHA-256 55e24201385a4648…

MALICIOUS

PDF

22.0 KB Created: 2019-05-02 17:22:40 +01:00 Authoring application: mPDF 5.7
MD5: f362aa29b4c5303dd85999454726c133 SHA-1: a1c0a7916ffef9e763c5050bf4bc6275c916432c SHA-256: 55e24201385a46480486f7f68d50db08f41e89184fa2b3068c03145b86beae4e
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious File

The PDF was flagged by a critical heuristic for containing a mass external link farm, with 27 links pointing to the dominant host 'loaminoo.linkpc.net'. While the extracted URLs are currently marked as benign, the sheer volume and structure suggest a malicious intent, likely for SEO manipulation or to distribute further malware. The ML classifier also strongly indicated maliciousness.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9903

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/1093094094099092/The-Education-of-Alice-Wells-by-Sara-Wolf.pdf
    • http://loaminoo.linkpc.net/9097090093098099/Alice-Lewis-Carroll-Lewis-Carroll-Alice-Im-Wunderland-Vladimir-Nabokov-Das-Spiegellabyrinth-Alice-in-Wonderland-Humpty-Dumpty-Alice-Liddell-John-Tenniel-Cheshire-Cat-Der-Hutmacher-Christian-Enzensberger-by-Source-Wikipedia.pdf
    • http://loaminoo.linkpc.net/5091097094094092/Moss-Witch-and-Other-Stories-by-Sara-Maitland.pdf
    • http://loaminoo.linkpc.net/6093091098095/Alice-s-Adventures-in-Wonderland-amp-Other-Stories-by-Lewis-Carroll.pdf
    • http://loaminoo.linkpc.net/1090091094090092090/The-Best-American-Short-Stories-1991-by-Alice-Adams.pdf
    • http://loaminoo.linkpc.net/4091093095090093/East-of-Suez-Stories-of-Love-Betrayal-amp-Hauntings-from-the-Raj-by-Alice-Perrin.pdf
    • http://loaminoo.linkpc.net/3099098099099096/Meanwhile-In-Another-Part-Of-The-Forest-Gay-Stories-from-Alice-Munro-to-Yukio-Mishima-by-Alberto-Manguel.pdf
    • http://loaminoo.linkpc.net/7097095097099095/---Alice-in-Wonderland-Comic-Anthology-Kiwami---Fushigi-no-Kuni-no-Alice-Alice-in-Wonderland-Anthology-by-Jun-Mochizuki.pdf
    • http://loaminoo.linkpc.net/1091091093090099091/Sara-and-the-Mystery-of-the-Thoroughbred-Sara-1-by-Anna-Sellberg.pdf
    • http://loaminoo.linkpc.net/5098091094090095/Sara-s-Fear-Sara-Winthrop-3-by-Ernie-Lindsey.pdf
    • http://loaminoo.linkpc.net/2094095090095097/Clear-the-Hurdles-Sara-Sara-3-by-Anna-Sellberg.pdf
    • http://loaminoo.linkpc.net/3098099099091096/Sara-s-Game-Sara-Winthrop-1-by-Ernie-Lindsey.pdf
    • http://loaminoo.linkpc.net/5098091092093092/Sara-s-Game-Sara-Winthrop-1-by-Ernie-Lindsey.pdf
    • http://loaminoo.linkpc.net/1090097093092095093/Alice-in-Wonderland-Le-avventure-d-Alice-nel-Paese-delle-Meraviglie-by-Lewis-Carroll.pdf
    • http://loaminoo.linkpc.net/8092099094093098/Alice-no-Pa-s-das-Maravilhas-Alice-atrav-s-do-espelho-by-Lewis-Carroll.pdf
    • http://loaminoo.linkpc.net/7092096097093093/Alice-Au-Royaume-De-Coeur-Alice-In-The-Country-Of-Hearts-Vol-1-by-Soumei-Hoshino.pdf
    • http://loaminoo.linkpc.net/6090093098099099/Alice-s-Adventures-in-Wonderland-Through-the-Looking-Glass-and-What-Alice-Found-There-by-Lewis-Carroll.pdf
    • http://loaminoo.linkpc.net/6090097093092094/Alice-s-Adventures-in-Wonderland-Through-the-Looking-Glass-and-What-Alice-Found-There-by-Lewis-Carroll.pdf
    • http://loaminoo.linkpc.net/7097090099097095/Alice-s-Adventures-in-Wonderland-and-Through-the-Looking-Glass-and-What-Alice-Found-There-by-Lewis-Carroll.pdf
    • http://loaminoo.linkpc.net/1091094092099096094/Alice-i-Spegellandet-Alice-s-Adventures-in-Wonderland-2-by-Lewis-Carroll.pdf
    • http://loaminoo.linkpc.net/3099098099099096/Meanwhil