Malicious PDF — malware analysis report

Static analysis result for SHA-256 676c2c73dddb5003…

MALICIOUS

PDF

46.5 KB Created: 2019-05-03 00:00:09 +01:00 Authoring application: mPDF 5.7
MD5: 6b9d25ab76ff4bd65d7a26aa0220071a SHA-1: 9ab2c3a7c3b93081ec4b2b534541dd828a4820d2 SHA-256: 676c2c73dddb500302b14f2eaac234842f628e1364189f412862c1a5986fd620
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links to external PDFs, a technique often used for SEO spam or to distribute malicious content. The ML classifier also flagged this PDF as malicious. While no scripts were extracted, the embedded URLs suggest a phishing or content-distribution lure, potentially leading to further malicious downloads.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9540

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/4092092090094093/The-Divided-Welfare-State-The-Battle-Over-Public-and-Private-Social-Benefits-in-the-United-States-by-Jacob-S-Hacker.pdf
    • http://loaminoo.linkpc.net/5091097096091090/For-All-These-Rights-Business-Labor-and-the-Shaping-of-America-s-Public-Private-Welfare-State-by-Jennifer-Klein.pdf
    • http://loaminoo.linkpc.net/1091096093093096091/Economics-and-the-Public-Welfare-A-Financial-and-Economic-History-of-the-United-States-1914-1946-by-Benjamin-McAlester-Anderson.pdf
    • http://loaminoo.linkpc.net/5091096090092092/Welfare-Warriors-The-Welfare-Rights-Movement-in-the-United-States-by-Premilla-Nadasen.pdf
    • http://loaminoo.linkpc.net/8095092098091096/In-the-United-States-Circuit-Court-of-Appeals-for-the-Ninth-Circuit-United-States-of-America-Appellant-vs-Emery-J-Lesher-Appelle-Transcript-of-Record-Upon-Appeal-from-the-United-States-District-Court-for-the-District-of-Oregon-by-United-States-Court-of-Appeals.pdf
    • http://loaminoo.linkpc.net/2095095093098093/From-Mutual-Aid-to-the-Welfare-State-Fraternal-Societies-and-Social-Services-1890-1967-by-David-T-Beito.pdf
    • http://loaminoo.linkpc.net/5091099098093099/The-Litigation-State-Public-Regulation-and-Private-Lawsuits-in-the-U-S-by-Sean-Farhang.pdf
    • http://loaminoo.linkpc.net/6099091092093092/State-Insurance-in-the-United-States-by-David-McCahan.pdf
    • http://loaminoo.linkpc.net/8090093099099097/Left-Out-In-America-The-State-Of-Homelessness-In-The-United-States-by-Pat-LaMarche.pdf
    • http://loaminoo.linkpc.net/1090091094093093091/United-States-Circuit-Court-of-Appeals-for-the-Ninth-Circuit-1912-Vol-5-of-6-Transcript-of-Record-William-F-Kettenbach-and-George-H-Kester-Plaintiffs-in-Error-Vs-The-United-States-of-America-Defendant-in-Error-Pages-1521-to-1916-Inclusive-by-United-States-Court-of-Appeals.pdf
    • http://loaminoo.linkpc.net/2095096099097097/Social-Stratification-in-the-United-States-The-American-Profile-Poster-by-Stephen-J-Rose.pdf
    • http://loaminoo.linkpc.net/5091095090096092/Policing-America-s-Empire-The-United-States-the-Philippines-amp-the-Rise-of-the-Surveillance-State-by-Alfred-W-McCoy.pdf
    • http://loaminoo.linkpc.net/1090091094093094090/United-States-Circuit-Court-of-Appeals-for-the-Ninth-Circuit-Vol-3-of-6-Transcript-of-Record-William-F-Kettenbach-Geo-H-Kester-and-William-Dwyer-Plaintiffs-in-Error-vs-the-United-States-of-America-Defendant-in-Error-Pages-817-to-1232-Inclusi-by-United-States-Circuit-Court-of-Appeals.pdf
    • http://loaminoo.linkpc.net/1090096092096093090/Social-Citizenship-for-Whom-Young-Turks-in-Germany-and-Mexican-Americans-in-the-United-States-by-Thomas-Faist.pdf
    • http://loaminoo.linkpc.net/8095092098091093/United-States-Circuit-Court-of-Appeals-Fo-the-Ninth-Circuit-The-United-States-of-America-Appellant-vs-Komada-and-Co-Appelle-Condensed-Transcript-of-Record-Upon-Appeal-from-the-United-States-Circuit-Court-for-Northern-District-of-California-by-U-S-Court-of-Appeals-Ninth-Circuit.pdf
    • http://loaminoo.linkpc.net/8090090091094092/The-Collection-of-United-States-Cents-of-Dr-S-T-Millard-Together-with-the-Collections-of-United-States-and-Pioneer-Gold-and-Silver-Coins-of-Mr-Edward-Heissler-Chicago-and-Other-Properties-To-Be-Sold-at-Auction-Thursday-March-18th-1915-by-B-Max-Mehl.pdf
    • http://loaminoo.linkpc.net/1090092094096090093/United-States-Court-of-Appeals-for-the-Ninth-Circuit-Connell-Brothers-Company-a-Corporation-Plaintiff-in-Error-vs-H-Diederichsen-and-Company-Defendant-in-Error-Transcript-of-Record-Upon-Writ-of-Error-to-the-United-States-Court-for-China-by-United-States-Circuit-Court-of-Appeals.pdf
    • http://loaminoo.linkpc.net/1090090095090090096/Integrating-Social-Welfare-Policy-and-Social-Work-Practice-by-Kathleen-McInnis-Dittrich.pdf
    • http://loaminoo.linkpc.net/8095092097099098/United-States-Circuit-Court-of-Appeals-for-the-Ninth-Circuit-Ngai-Kwan-Ying-Appellant-vs-John-D-Nagle-Commissioner-of-Immigration-Port-of-San-Francisco-California-Appelle-Transcript-of-Record-by-United-States-Circuit-Court-of-Appeals.pdf
    • http://loaminoo.linkpc.net/8095092098091098/United-States-Court-of-Appeals-for-the-Ninth-Circuit-Vol-1-of-3-Greene-Process-Metal-Company-a-Corporation-Appellant-vs-Washington-Iron-Works-a-Corporation-Appelle-Transcript-of-Record-Pages-1-522-Upon-Appeal-from-the-District-Court-of-the-Uni-by-United-States-Circuit-Court-of-Appeals.pdf