Malicious PDF — malware analysis report

Static analysis result for SHA-256 6c88c6828e2c219d…

MALICIOUS

PDF

18.7 KB Created: 2019-04-30 18:12:03 +01:00 Authoring application: mPDF 5.7
MD5: 3538e84f7de5b95723a7e9369cca4264 SHA-1: 08654c1a78dcf17e271d38e4b5bdf2896f424e41 SHA-256: 6c88c6828e2c219d5a00a857558d3298a104017d2b5554e6b7cbce9716eadf24
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

This PDF file contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic. While the URLs themselves are currently marked as benign, the sheer volume and the ML_NYX_PDF_MALICIOUS classification indicate a malicious intent. The embedded links likely serve as a lure to redirect users to malicious sites or download further payloads, aligning with a spearphishing attachment attack pattern.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/9094090098099099/Panzer-Operations-Germany-s-Panzer-Group-3-During-the-Invasion-of-Russia-1941-by-Hermann-Hoth.pdf
    • http://loaminoo.linkpc.net/9094090098095096/Panzer-Gunner-From-My-Native-Canada-to-the-German-Osfront-and-Back-In-Action-with-25th-Panzer-Regiment-7th-Panzer-Division-1944-45-by-Bruno-Friesen.pdf
    • http://loaminoo.linkpc.net/8099099091092092/Panzer-Wedge-Volume-Two-The-German-3rd-Panzer-Division-and-Barbarossa-s-Failure-at-the-Gates-of-Moscow-by-Fritz-Lucke.pdf
    • http://loaminoo.linkpc.net/9094091091098092/Germany-s-Panzer-Arm-in-World-War-II-by-Richard-L-DiNardo.pdf
    • http://loaminoo.linkpc.net/8099095096092091/Heinz-Guderian-The-Life-and-Legacy-of-Nazi-Germany-s-Famous-Panzer-Commander-by-Charles-River-Editors.pdf
    • http://loaminoo.linkpc.net/9094090098095092/Girls-Und-Panzer-vol-1-by-Girls-und-Panzer-Projekt.pdf
    • http://loaminoo.linkpc.net/9094090099090096/Girls-Und-Panzer-Vol-4-by-Girls-und-Panzer-Projekt.pdf
    • http://loaminoo.linkpc.net/9094090099091093/Panzer-38-by-Steven-J-Zaloga.pdf
    • http://loaminoo.linkpc.net/9094091090098093/Mathew-Brady-by-Mary-Panzer.pdf
    • http://loaminoo.linkpc.net/9094091091097097/Panzer-Pzkpfw-III-by-Terry-Gander.pdf
    • http://loaminoo.linkpc.net/9094091090097092/Panzer-Modelling-by-Tony-Greenland.pdf
    • http://loaminoo.linkpc.net/8098094093094092/SS-Panzer-Aufklarungs-Abteilung-11-by-Herbert-Westberg.pdf
    • http://loaminoo.linkpc.net/9098097093099094/Panzer-Divisions-of-the-Waffen-SS-by-Rolf-Michaelis.pdf
    • http://loaminoo.linkpc.net/9094090099097090/Panzer-Crewman-1939-45-by-Gordon-Williamson.pdf
    • http://loaminoo.linkpc.net/8099095096091095/Guderian-Panzer-General-by-Kenneth-John-Macksey.pdf
    • http://loaminoo.linkpc.net/8098090097092094/Panzer-Lehr-Division-1944-45-by-Fred-Steinhardt.pdf
    • http://loaminoo.linkpc.net/8099095097096092/Panzer-Lightning-Heinz-Guderian-Hitler-s-Sword-by-James-Smithson.pdf
    • http://loaminoo.linkpc.net/8096090096095099/The-Devil-s-Adjutant-Jochen-Peiper-Panzer-Leader-by-Michael-Reynolds.pdf
    • http://loaminoo.linkpc.net/3098094097093091/Panzer-Bait-With-the-Third-Royal-Tank-Regiment-1939-1945-by-William-Moore.pdf
    • http://loaminoo.linkpc.net/8098090098098098/The-Western-Front-1944-Memoirs-Of-A-Panzer-Lehr-Officer-by-Ritgen-Helmut.pdf