Malicious PDF — malware analysis report

Static analysis result for SHA-256 56b9ff91d1e3dc5d…

MALICIOUS

PDF

18.8 KB Created: 2019-04-30 17:50:43 +01:00 Authoring application: mPDF 5.7
MD5: a5290eca2cd7dc319ea0ee50dea5cc47 SHA-1: 508058850de393c4b88c1014a287d757839eb044 SHA-256: 56b9ff91d1e3dc5d4847db1766f3d55e722c480cea977518485e73cf9adbc1af
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded links to external PDFs hosted on a dynamic DNS domain, identified by the PDF_SEO_LINK_FARM heuristic. While the URLs themselves are marked as benign, the sheer volume and the nature of the hosting domain suggest a malicious intent, likely for SEO spam or to redirect users to potentially harmful content. The ML classifier also strongly flagged this PDF as malicious.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9912

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/8099094099095091/-vgnfoodporn-Band-III-All-die-Rezepte-die-mein-Leben-ver-nderten-by-Stefano-Vicinoadio.pdf
    • http://loaminoo.linkpc.net/1091094092095097098/Mein-gel-schtes-Leben-Wie-ich-mein-Ged-chtnis-verlor-und-mich-selber-fand-by-Scott-Bolzan.pdf
    • http://loaminoo.linkpc.net/1090094096096091099/Mein-Lollim-dchen-Ich-Mein-Leben-mit-der-Magersucht-by-Kerstin-Dombrowski.pdf
    • http://loaminoo.linkpc.net/1091090093094097095/Leben-nach-dem-Tod-Der-Schlussige-Beweis-Mein-Leben-mit-den-physikalischen-Ph-nomenen-by-Tom-Harrison.pdf
    • http://loaminoo.linkpc.net/1091090091097090098/Ich-bin-ich-Mein-transsexuelles-Leben-by-Micha-Ela.pdf
    • http://loaminoo.linkpc.net/9096094098092099/Mein-Leben-als-Katze-by-Kate-L-wenherz.pdf
    • http://loaminoo.linkpc.net/9098096094096096/Mein-Leben-mit-Doppel-E-by-Kerstin-Christl.pdf
    • http://loaminoo.linkpc.net/1091091095098096099/Mein-traumhaftes-Leben-by-Chantalle-Cillner.pdf
    • http://loaminoo.linkpc.net/1090097098090097093/Reckless-Mein-Leben-by-Chrissie-Hynde.pdf
    • http://loaminoo.linkpc.net/9095092097091098/Mein-Leben-als-Stuntboy-by-Janet-Tashjian.pdf
    • http://loaminoo.linkpc.net/1091094094092091095/Unter-M-nnern-Mein-Leben-in-der-Politik-by-Heide-Simonis.pdf
    • http://loaminoo.linkpc.net/1091099090095091091/Kreativer-Gesellschaftsumbruch-Mein-Leben-als-Theaterst-ck-by-Daniela-Muthreich.pdf
    • http://loaminoo.linkpc.net/1091092096090099093/Selbstmord-auf-Raten-Mein-Leben-mit-der-Alkoholsucht-by-Nora-Ludwig.pdf
    • http://loaminoo.linkpc.net/1090090094097097099/Albtraum-Zeitarbeit-Mein-Leben-als-Personaldisponentin-by-Susanne-Nehring.pdf
    • http://loaminoo.linkpc.net/6094097094096090/Eigentlich-ist-mein-Leben-gar-nicht-so-bel-by-Chris-Nolde.pdf
    • http://loaminoo.linkpc.net/1090094098090090090/Dalamay-Mein-Leben-ging-einen-anderen-Weg-by-Samarkand.pdf
    • http://loaminoo.linkpc.net/8096099095092097/Westw-rts-mit-der-Nacht-mein-Leben-In-Afrika-by-Beryl-Markham.pdf
    • http://loaminoo.linkpc.net/1091090090093098097/Jean-Paul-S-mtliche-Romane-in-einem-Band-Die-unsichtbare-Loge-Flegeljahre-Hesperus-oder-45-Hundposttage-Siebenk-s-Titan-Leben-Fibels-Der-Komet-Leben-des-Quintus-Fixlein-by-Jean-Paul.pdf
    • http://loaminoo.linkpc.net/9090095096090094/Der-Elefantenfl-sterer-Mein-Leben-mit-den-sanften-Riesen-und-was-sie-mir-beibrachten-by-Anthony-Lawrence.pdf
    • http://loaminoo.linkpc.net/8096099093096091/Schau-mich-an-Mein-Leben-mit-Asperger-by-John-Elder-Robison.pdf
    • http://loaminoo.linkpc.net/9095092097091098/Mein-Leben-als-Stuntboy-by-Janet-Tashjian.pd