Malicious PDF — malware analysis report

Static analysis result for SHA-256 6be666db9d140b7e…

MALICIOUS

PDF

26.1 KB Created: 2019-05-02 01:05:40 +01:00 Authoring application: mPDF 5.7
MD5: adf2e069b65fb8bb324397f52cb3da9d SHA-1: d2a2a3dcc179070b92cb77b075193f736dde51b9 SHA-256: 6be666db9d140b7eb1e784d53a3ba14918bdfdd580c24c08f25a860c498d4648
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links to external PDF files hosted on a dynamic DNS domain, identified by the PDF_SEO_LINK_FARM heuristic. While no scripts were explicitly extracted, the nature of the embedded links suggests a potential for SEO manipulation or the distribution of further malicious content. The ML classifier also flagged this PDF as malicious with high confidence.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9908

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/1090098094094096093/Studyguide-for-Sociology-A-Global-Perspective-by-Ferrante-ISBN-9780495005629-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/8094091094090094/Studyguide-for-Intro-STATS-by-Veaux-ISBN-9780321826275-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/8094091093091096/Studyguide-for-Intro-STATS-by-Veaux-ISBN-9780321826244-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/1090090097096095097/Studyguide-for-Educational-Psychology-by-Woolfolk-Anita-ISBN-9780137144549-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/9092097092090099/Studyguide-for-Beginning-Algebra-by-Schwitters-Kaufmann-amp-ISBN-9780840065896-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/1090090094098092099/Studyguide-for-the-Essential-World-History-by-Duiker-William-J-ISBN-9781305645363-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/1090090094098093095/Studyguide-for-the-Essential-World-History-by-Duiker-William-J-ISBN-9781305645356-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/1091097099091094096/Studyguide-for-Fundamentals-of-Chemical-Engineering-Thermodynamics-by-Matsoukas-Themis-ISBN-9780132693066-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/1090098094094096090/Practice-Tests-for-Ferrante-S-Sociology-A-Global-Perspective-by-Joan-Ferrante.pdf
    • http://loaminoo.linkpc.net/1091093092099092097/Outlines-amp-Highlights-for-Emergency-Care-by-Limmer-ISBN-0131593625-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/8099091097099096/e-Study-Guide-for-Becoming-Qualitative-Researchers-by-Corrine-Glesne-ISBN-9780137047970-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/7095094091093094/e-Study-Guide-for-Structure-amp-Function-of-the-Body-by-Gary-A-Thibodeau-ISBN-9780323049665-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/1090098094092092094/Sociology-A-Global-Perspective-by-Joan-Ferrante.pdf
    • http://loaminoo.linkpc.net/5098094093091099/Theories-of-Personality-by-Feist-Feist-amp-ISBN-9780073191812--Study-Guide-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/1090098094094095097/Test-Bank-for-Ferrantes-Sociology-A-Global-Perspective-by-Joan-Ferrante.pdf
    • http://loaminoo.linkpc.net/7095096098097097/Seidel-s-Guide-to-Physical-Examination-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/9093090091090099/Essentials-of-Meteorology-by-C-Donald-Ahrens-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/9096094091090091/The-Outlines-amp-Highlights-for-Atmosphere-An-Introduction-to-Meteorology-by-Frederick-K-Lutgens-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/1091090096099092090/Study-Resource-for-Foerster-s-Financial-Management-Concepts-and-Applications-by-Cram101-Textbook-Reviews.pdf
    • http://loaminoo.linkpc.net/1090098094094094099/Seeing-Sociology-Core-Modules-by-Joan-Ferrante.pdf