Malicious PDF — malware analysis report

Static analysis result for SHA-256 56a3e9f4f0a55cac…

MALICIOUS

PDF

20.9 KB Created: 2019-05-02 01:13:43 +01:00 Authoring application: mPDF 5.7
MD5: b357d166212f893122d17ff82e649d8b SHA-1: 2b1f536d0ab8f4d7fed56280c286afaea29a2dcc SHA-256: 56a3e9f4f0a55cac4e3b9320bc1e6cb4d4c5afcb7cc16dfbd3e57a14d56b733e
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1204.002 Malicious Link

The PDF file was flagged by a machine learning classifier as malicious. Static analysis revealed a large number of embedded links, many of which point to external PDF files hosted on the same domain. This suggests a link farm or a distribution mechanism for further malicious content, potentially related to SEO manipulation or phishing lures. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9942

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/2097092091098098/Blink-The-Power-of-Thinking-Without-Thinking-by-Malcolm-Gladwell.pdf
    • http://loaminoo.linkpc.net/3099099097091092/Blink-The-Power-of-Thinking-Without-Thinking-by-Malcolm-Gladwell.pdf
    • http://loaminoo.linkpc.net/2098094091098096/Remove-Negative-Thinking-How-to-Instantly-Harness-Mindfulness-and-The-Power-of-Positive-Thinking-The-GirlBizMind-Series-Book-1-by-Helga-Klopcic.pdf
    • http://loaminoo.linkpc.net/9099099094092099/Predatory-Thinking-A-Masterclass-in-Out-Thinking-the-Competition-by-Dave-Trott.pdf
    • http://loaminoo.linkpc.net/2097093092090092/Positive-thinking-Eliminate-negative-thinking-and-become-optimistic-Achieve-happiness-amp-success-by-improving-your-mind-set-and-building-confidence-by-George-Ripley.pdf
    • http://loaminoo.linkpc.net/2090098092093096/How-Not-to-Be-Wrong-The-Power-of-Mathematical-Thinking-by-Jordan-Ellenberg.pdf
    • http://loaminoo.linkpc.net/2096095094097094/The-Power-Of-Positive-Thinking-by-Norman-Vincent-Peale.pdf
    • http://loaminoo.linkpc.net/4097096099095/The-Power-of-Positive-Thinking-by-Norman-Vincent-Peale.pdf
    • http://loaminoo.linkpc.net/9092091093096092/A-Joosr-Guide-to-The-Art-of-Thinking-Clearly-by-Rolf-Dobelli-Better-Thinking-Better-Decisions-by-Joosr.pdf
    • http://loaminoo.linkpc.net/6092094091096096/The-Power-of-Positive-Thinking-10-Traits-for-Maximum-Results-by-Norman-Vincent-Peale.pdf
    • http://loaminoo.linkpc.net/9093094090096096/God-s-Salesman-Norman-Vincent-Peale-amp-the-Power-of-Positive-Thinking-by-Carol-V-R-George.pdf
    • http://loaminoo.linkpc.net/9093094090096093/The-Power-Of-Positive-Thinking-by-Norman-Vincent-Peale-Quickie-Book-Summary-by-Brian-Matthew.pdf
    • http://loaminoo.linkpc.net/8098097099097094/The-Power-Of-Positive-Thinking-A-Practical-Guide-To-Mastering-The-Problems-Of-Everyday-Living-by-Norman-Vincent-Peale.pdf
    • http://loaminoo.linkpc.net/3095091095091096/What-the-Dog-Saw-and-Other-Adventures-by-Malcolm-Gladwell.pdf
    • http://loaminoo.linkpc.net/7091095095090097/The-Story-of-Success-by-Malcolm-Gladwell.pdf
    • http://loaminoo.linkpc.net/3091090090094/David-and-Goliath-by-Malcolm-Gladwell.pdf
    • http://loaminoo.linkpc.net/6095090099092095/Outliers-a-hist-ria-do-sucesso-by-Malcolm-Gladwell.pdf
    • http://loaminoo.linkpc.net/4099098091097093/Outliers-The-Story-of-Success-by-Malcolm-Gladwell.pdf
    • http://loaminoo.linkpc.net/5097094095097094/Davide-e-Golia-Perch-i-piccoli-sono-pi-forti-dei-grandi-by-Malcolm-Gladwell.pdf
    • http://loaminoo.linkpc.net/5097095092098097/David-and-Goliath-Cu-c-i-u-kinh-i-n-v-ngh-thu-t-n-ng-nh-ng-g-kh-ng-l-by-Malcolm-Gladwell.pdf
    • http://loaminoo.linkpc.net/2097093092090092/Positive-think