Malicious PDF — malware analysis report

Static analysis result for SHA-256 55fa532d548e6872…

MALICIOUS

PDF

19.3 KB Created: 2019-04-30 17:45:56 +01:00 Authoring application: mPDF 5.7
MD5: bf2f7381d7decbf53b0b6926b9aa25ce SHA-1: a65953a5146e7f70d07a56e3106dae1e3f5a4f5d SHA-256: 55fa532d548e6872176ad8291dd146e1b6cc817b8ef2eb178fd8716f9537e504
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic. While many of these links resolve to benign academic papers, the sheer volume and the nature of the heuristic suggest a malicious intent, possibly for SEO manipulation or to distribute malware. The ML classifier also strongly indicated maliciousness. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/6091098090091096/Homer-Economicus-or-Homer-Sapiens-Behavioral-Economics-in-The-Simpsons-by-Jodi-Beggs.pdf
    • http://loaminoo.linkpc.net/9095093098098097/Handbook-on-the-Economics-of-Sport-by-Wladimir-Andreff.pdf
    • http://loaminoo.linkpc.net/1091095096099094092/The-Oxford-Handbook-of-Propaganda-Studies-by-Jonathan-Auerbach.pdf
    • http://loaminoo.linkpc.net/7096093099092094/The-Oxford-Handbook-of-the-History-of-International-Law-by-Bardo-Fassbender.pdf
    • http://loaminoo.linkpc.net/6092095099098094/Oxford-Handbook-of-Reproductive-Medicine-and-Family-Planning-by-Enda-McVeigh.pdf
    • http://loaminoo.linkpc.net/1091091095096095096/Child-Health-and-Behavioral-Medicine-A-Special-Issue-of-the-International-Journal-of-Behavioral-Medicine-by-Jan-Wallander.pdf
    • http://loaminoo.linkpc.net/1091095096092094094/Oxford-Handbook-of-Psychiatry-With-Emergencies-in-Psychiatry-by-David-Semple.pdf
    • http://loaminoo.linkpc.net/9093096098093096/Three-Social-Science-Disciplines-in-Central-and-Eastern-Europe-Handbook-on-Economics-Political-Science-and-Sociology-1989-2001-by-Max-Kaase.pdf
    • http://loaminoo.linkpc.net/4090093093095093/Economics-in-One-Lesson-The-Shortest-and-Surest-Way-to-Understand-Basic-Economics-by-Henry-Hazlitt.pdf
    • http://loaminoo.linkpc.net/4092096099090090/That-Oxford-Girl-A-Real-Student-s-Guide-to-Oxford-University-by-Tilly-Rose.pdf
    • http://loaminoo.linkpc.net/4092095096094098/Oxford-Whispers-The-Oxford-Saga-1-by-Marion-Croslydon.pdf
    • http://loaminoo.linkpc.net/9092094091093093/Hooked-How-to-Build-Habit-Forming-Products-by-Nir-Eyal.pdf
    • http://loaminoo.linkpc.net/2092096095098099/Feeling-Smart-Why-Our-Emotions-Are-More-Rational-Than-We-Think-by-Eyal-Winter.pdf
    • http://loaminoo.linkpc.net/2098099097095092/The-New-Oxford-Book-of-American-Verse-Oxford-Books-of-Verse-by-Richard-Ellmann.pdf
    • http://loaminoo.linkpc.net/2092099095090093/Cognitive-Behavioral-Therapy-by-Tao-Lin.pdf
    • http://loaminoo.linkpc.net/1091092098097096098/Declaratory-Judgment-by-I-Zamir.pdf
    • http://loaminoo.linkpc.net/1091092098094094096/750-French-Verbs-and-Their-Uses-by-Zamir.pdf
    • http://loaminoo.linkpc.net/7090099097092097/Covenant-Discipleship-Parents-Handbook-The-Handbook-for-a-New-Sort-of-Communicants-Class-by-Richard-L-Burguet.pdf
    • http://loaminoo.linkpc.net/1091092098097097098/The-Physics-of-Pulsatile-Flow-by-M-Zamir.pdf
    • http://loaminoo.linkpc.net/9092096092091098/Psychological-And-Behavioral-Aspects-Of-Diving-by-Baruch-Nevo.pdf
    • http://loaminoo.linkpc.net/9093096098093096/Three-Social-Science-Disciplines-