Malicious PDF — malware analysis report

Static analysis result for SHA-256 60c81adbe0b5d7a5…

MALICIOUS

PDF

20.7 KB Created: 2019-04-30 04:17:53 +01:00 Authoring application: mPDF 5.7
MD5: ef05aebbf0219d532ef4232f1165d154 SHA-1: 1e0ee1e7d6ad929bf4405c83f8dad76a14b3a2ee SHA-256: 60c81adbe0b5d7a5ddb90679625645700354a8b66debd182779346ac2651c20f
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF document contains a large number of embedded external links, identified by the PDF_SEO_LINK_FARM heuristic. While many of these URLs are marked as benign, the sheer volume and the nature of the heuristic suggest a malicious intent, possibly for SEO manipulation or to redirect users to malicious content. No scripts were extracted, but the presence of embedded URLs within the document body is a strong indicator of a phishing or redirection attempt.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9942

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/3095098095098091/Find-the-Good-Unexpected-Life-Lessons-from-a-Small-Town-Obituary-Writer-by-Heather-Lende.pdf
    • http://loaminoo.linkpc.net/3099099092094098/Take-Good-Care-of-the-Garden-and-the-Dogs-Family-Friendships-and-Faith-in-Small-Town-Alaska-by-Heather-Lende.pdf
    • http://loaminoo.linkpc.net/1091096095092094094/Small-Town-Vbs-Three-Vbs-Programs-with-Small-Town-Heart-and-Big-Time-Ideas-by-Gennifer-Anderson.pdf
    • http://loaminoo.linkpc.net/4092096095094093/Six-Good-Innings-How-One-Small-Town-Became-a-Little-League-Giant-by-Mark-Kreidler.pdf
    • http://loaminoo.linkpc.net/2092098093098095/How-to-Save-Your-Own-Life-15-Lessons-on-Finding-Hope-in-Unexpected-Places-by-Michael-Gates-Gill.pdf
    • http://loaminoo.linkpc.net/3090095092092094/One-Year-to-a-Writing-Life-Twelve-Lessons-to-Deepen-Every-Writer-s-Art-and-Craft-by-Susan-M-Tiberghien.pdf
    • http://loaminoo.linkpc.net/1094090097091095/Methland-The-Death-and-Life-of-an-American-Small-Town-by-Nick-Reding.pdf
    • http://loaminoo.linkpc.net/4099098093091097/Writing-God-s-Obituary-How-a-Good-Methodist-Became-a-Better-Atheist-by-Anthony-B-Pinn.pdf
    • http://loaminoo.linkpc.net/3090092095097097/And-to-All-a-Good-Night-Life-Lessons-1-5-by-Kaje-Harper.pdf
    • http://loaminoo.linkpc.net/2092096092099/The-News-in-Small-Towns-Small-Town-Series-Book-1-by-Iza-Moreau.pdf
    • http://loaminoo.linkpc.net/5090094097092098/How-to-Make-Big-Money-in-Your-Own-Small-Business-Unexpected-Rules-Every-Small-Business-Owner-Needs-to-Know-by-Jeffrey-J-Fox.pdf
    • http://loaminoo.linkpc.net/2091095098098093/Winesburg-Ohio-a-group-of-tales-of-Ohio-small-town-life-by-Sherwood-Anderson.pdf
    • http://loaminoo.linkpc.net/3094099091091090/Live-Right-and-Find-Happiness-Although-Beer-is-Much-Faster-Life-Lessons-and-Other-Ravings-from-Dave-Barry-by-Dave-Barry.pdf
    • http://loaminoo.linkpc.net/3094092090095094/I-Promise-I-ll-Find-You-by-Heather-Patricia-Ward.pdf
    • http://loaminoo.linkpc.net/5091093096095097/A-Small-Town-Called-Hibiscus-by-Gu-Hua.pdf
    • http://loaminoo.linkpc.net/1095094096094097/After-Life-Lessons-Book-One-After-Life-Lessons-1-by-L-C-Spoering.pdf
    • http://loaminoo.linkpc.net/8094099092093092/Small-Town-Punk-by-John-Sheppard.pdf
    • http://loaminoo.linkpc.net/9097097098096098/Small-Town-Treasure-by-Dora-Hiers.pdf
    • http://loaminoo.linkpc.net/4092096091092093/Famous-in-a-Small-Town-by-Emma-Mills.pdf
    • http://loaminoo.linkpc.net/2091092096099091/Small-Town-Ghosts-by-Shannon-Celebi.pdf