Malicious PDF — malware analysis report

Static analysis result for SHA-256 72606b574960708e…

MALICIOUS

PDF

28.1 KB Created: 2019-05-02 17:07:22 +01:00 Authoring application: mPDF 5.7
MD5: 67d9b4f1ecdc38675b9aa5ee0458d360 SHA-1: c6e7a4d12e49ff11af32afbc6c8811b86af538d7 SHA-256: 72606b574960708eac27995c168f1a80b2321fffc59e0104301f54b88586f17b
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic, suggesting a malicious intent to manipulate search engine results or distribute unwanted content. While the document body is heavily obfuscated, the presence of numerous URLs points towards a link farm or redirection scheme. No scripts were extracted, but the overall structure and heuristic firings indicate a malicious PDF.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9908

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/9097090096097095/Primal-Blueprint-21-Day-Total-Body-Transformation-A-Step-by-Step-Gene-Reprogramming-Action-Plan-by-Mark-Sisson.pdf
    • http://loaminoo.linkpc.net/7097098092091090/Primal-Blueprint-Quick-and-Easy-Meals-Delicious-Primal-Approved-Meals-You-Can-Make-in-Under-30-Minutes-by-Mark-Sisson.pdf
    • http://loaminoo.linkpc.net/9097090095099091/The-Primal-Connection-Follow-Your-Genetic-Blueprint-to-Health-and-Happiness-by-Mark-Sisson.pdf
    • http://loaminoo.linkpc.net/8099090092098096/The-Complete-Ketogenic-Diet-for-Beginners-The-Step-by-Step-Guide-to-Total-Health-by-Natalie-Kordon.pdf
    • http://loaminoo.linkpc.net/9097091092095/THE-HEALING-POINT-A-step-by-step-plan-for-a-less-stressed-more-energized-healthier-version-of-YOU-by-James-Lilley.pdf
    • http://loaminoo.linkpc.net/1091099096098093096/The-Ultimate-New-York-Body-Plan-Just-2-weeks-to-a-total-transformation-by-David-Kirsch.pdf
    • http://loaminoo.linkpc.net/1090098095092097094/Offline-To-Online-Business-Manifesto-The-Step-By-Step-Blueprint-for-Strategically-Positioning-Your-Business-on-the-Internet-for-Mega-Profits-by-Ope-Banwo.pdf
    • http://loaminoo.linkpc.net/9095095093091098/The-Chakra-Workbook-A-Step-by-Step-Guide-to-Chakra-Healing-by-Experience-and-Realigning-Your-Body-s-Vital-Energies-by-Anna-Voigt.pdf
    • http://loaminoo.linkpc.net/7090090094094098/Twelve-Hours-Sleep-by-Twelve-Weeks-Old-A-Step-By-Step-Plan-for-Baby-Sleep-Success-by-Suzy-Giordano.pdf
    • http://loaminoo.linkpc.net/5097097099094093/ketogenic-cookbook-A-step-by-step-beginners-diet-plan-to-reset-your-metabolism-with-these-easy-healthy-and-delicious-low-carb-meals-Ketogenic-Cookbook-ketogenic-for-weight-loss-series-Book-1-by-Francesca-Bonheur.pdf
    • http://loaminoo.linkpc.net/8096090097094093/Gesundheitsgeheimnisse-aus-der-Steinzeit-Das-revolution-re-Primal-Health-Konzept-by-Mark-Sisson.pdf
    • http://loaminoo.linkpc.net/3093090090097090/Buying-A-Business-And-Making-It-Work-A-Step-By-Step-Guide-To-Purchasing-A-Business-And-Making-It-Successful-by-Mark-Blayney.pdf
    • http://loaminoo.linkpc.net/9095090099091096/Weber-s-Way-to-Grill-The-Step-by-Step-Guide-to-Expert-Grilling-by-Jamie-Purviance.pdf
    • http://loaminoo.linkpc.net/8093099098097094/How-To-Hack-Like-a-Pornstar-A-Step-By-Step-Process-For-Breaking-Into-A-Bank-by-Sparc-Flow.pdf
    • http://loaminoo.linkpc.net/8098095099098094/First-Time-Knitting-Step-by-Step-Basics-and-Easy-Projects-by-Carri-Hammett.pdf
    • http://loaminoo.linkpc.net/4097091093094095/Creature-Cookies-Step-by-Step-Instructions-and-80-Decorating-Ideas-You-Can-Do-by-Autumn-Carpenter.pdf
    • http://loaminoo.linkpc.net/6094099094090098/Python-Programming-Step-by-Step-Guide-from-Beginners-to-Expert-by-ADRIEN-AIDA.pdf
    • http://loaminoo.linkpc.net/1091094090094099098/The-True-Story-of-Pocahontas-Step-Into-Reading-Step-3-by-Lucille-Recht-Penner.pdf
    • http://loaminoo.linkpc.net/1090093096090096090/25-Best-Most-Versatile-Flies-Their-Histories-Stories-amp-Step-by-Step-Tying-Photos-by-Al-Ritt.pdf
    • http://loaminoo.linkpc.net/8099096097099090/First-Time-Stranded-Knitting-Step-by-step-Basics-Plus-2-Projects-by-Lori-Ihnen.pdf