Malicious PDF — malware analysis report

Static analysis result for SHA-256 61c8c9040cbe90c9…

MALICIOUS

PDF

21.3 KB Created: 2019-05-02 08:22:06 +01:00 Authoring application: mPDF 5.7
MD5: 83616b931c9552f0c8d3daef7edff3a3 SHA-1: a8a28c0e6e3f156ca525c1e6fa1db9838f39016c SHA-256: 61c8c9040cbe90c9a6024a67302f19a8b2ff4c2a050750de5e64a8dfb5bddab8
100 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic. While the URLs themselves are currently flagged as benign, the sheer volume and the nature of the heuristic suggest a malicious intent, possibly for SEO poisoning or to direct users to malicious content. The ML_NYX_PDF_MALICIOUS classifier also strongly indicated maliciousness. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 3

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Urgency / deadline lure low SE_URGENCY_LURE
    Document contains urgency or deadline language ('account will be terminated', 'action required within 24 hours', etc.) — useful context, but low-signal without other findings
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/9093097095098094/Oysters-Macaroni-and-Beer-Thurber-Texas-and-the-Company-Store-by-Gene-Rhea-Tucker.pdf
    • http://loaminoo.linkpc.net/4090099098090090/I-Hope-They-Serve-Beer-in-Hell-Tucker-Max-1-by-Tucker-Max.pdf
    • http://loaminoo.linkpc.net/9093097093093091/Thurber-and-Company-by-James-Thurber.pdf
    • http://loaminoo.linkpc.net/3091090095090091/Forever-and-a-Day-The-Company-Store-2-by-Ann-Gimpel.pdf
    • http://loaminoo.linkpc.net/4093095096091090/Miranda-s-Mate-The-Company-Store-1-by-Ann-Gimpel.pdf
    • http://loaminoo.linkpc.net/9093097094099090/The-Spies-of-Thurber-Hall-Bod-Squad-17-Non-Company-Business-by-Emm-Oh.pdf
    • http://loaminoo.linkpc.net/9093097094094097/Vintage-Thurber-A-Collection-In-Two-Volumes-Of-The-Best-Writings-And-Drawings-Of-James-Thurber-by-James-Thurber.pdf
    • http://loaminoo.linkpc.net/4097099091099099/The-Pony-That-Hates-Macaroni-The-rhyming-story-of-Peyton-the-pony-that-hates-macaroni-by-Tim-Zak.pdf
    • http://loaminoo.linkpc.net/9093097094094094/The-James-Thurber-Audio-Collection-Fables-and-Selected-Stories-by-James-Thurber-by-James-Thurber.pdf
    • http://loaminoo.linkpc.net/2095095095098091/Texas-Destiny-Texas-Glory-Texas-Splendor-Leigh-Brothers-Texas-Trilogy-1-3-by-Lorraine-Heath.pdf
    • http://loaminoo.linkpc.net/9093097094094098/Cream-of-Thurber-by-James-Thurber.pdf
    • http://loaminoo.linkpc.net/9093097093092095/A-Thurber-Carnival-by-James-Thurber.pdf
    • http://loaminoo.linkpc.net/9093097094094093/Secret-Lives-of-Walter-Mitty-and-of-James-Thurber-by-James-Thurber.pdf
    • http://loaminoo.linkpc.net/9098097094099/Beer-Brewing-At-Home-Easy-Ways-of-Brewing-Homemade-Beer-by-Cheryl-Barnhart.pdf
    • http://loaminoo.linkpc.net/3092092098099095/Phelix-A-Time-Store-Novel-The-Time-Store-2-by-Andrew-Clark.pdf
    • http://loaminoo.linkpc.net/3091090092099/The-Oysters-of-Locmariaquer-by-Eleanor-Clark.pdf
    • http://loaminoo.linkpc.net/4099090095095099/Last-Chance-Reunion-Texas-Cold-Case-Texas-Lost-and-Found-Chance-Texas-4-by-Linda-Conrad.pdf
    • http://loaminoo.linkpc.net/4099093096091/The-Perfect-Gene-Diet-Use-Your-Body-s-Own-APO-E-Gene-to-Treat-High-Cholesterol-Weight-Problems-Heart-Disease-Alzheimer-s-and-More-by-Pamela-McDonald.pdf
    • http://loaminoo.linkpc.net/4097095099096098/Oysters-to-Angus-Three-Generations-of-the-St-Louis-Faust-Family-by-Elizabeth-Terry.pdf
    • http://loaminoo.linkpc.net/2090090093094098/Heart-of-Texas-Vol-1-Lonesome-Cowboy-Texas-Two-Step-Heart-of-Texas-1-2-by-Debbie-Macomber.pdf