Malicious PDF — malware analysis report

Static analysis result for SHA-256 7327a6c9e56c80ff…

MALICIOUS

PDF

17.6 KB Created: 2019-04-30 03:25:22 +01:00 Authoring application: mPDF 5.7
MD5: bacb5e68beb6667e7e7d957200051960 SHA-1: d1e8baf6015b5f50cbd2e881ff1c18c82f263fd1 SHA-256: 7327a6c9e56c80ff736270c2f222ba93c84904dedf60248bbb082d6b16d4e949
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic, suggesting a link farm or content distribution tactic. While the URLs themselves are marked as benign, the sheer volume and the ML classifier's high confidence indicate a malicious intent, likely related to SEO manipulation or distributing further malicious content. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9925

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/2097092097097/Murder-Is-Academic-Maggie-Ryan-1968-Maggie-Ryan-and-Nick-O-Connor-2-by-P-M-Carlson.pdf
    • http://loaminoo.linkpc.net/8094094090096092/Audition-for-Murder-Maggie-Ryan-1967-Maggie-Ryan-and-Nick-O-Connor-1-by-P-M-Carlson.pdf
    • http://loaminoo.linkpc.net/1097090097092094/Rosie-s-Resolutions-by-Maggie-Ryan.pdf
    • http://loaminoo.linkpc.net/9095096096096094/Vintage-Values-Corbin-s-Bend-Season-Four-5-by-Maggie-Ryan.pdf
    • http://loaminoo.linkpc.net/2091099090099095/Maggie-Goes-to-Hollywood-Maggie-MacKay-Magical-Tracker-6-by-Kate-Danley.pdf
    • http://loaminoo.linkpc.net/2091099090098090/Maggie-Get-Your-Gun-Maggie-MacKay-Magical-Tracker-2-by-Kate-Danley.pdf
    • http://loaminoo.linkpc.net/2090096098096095/Find-Me-Maggie-The-Misadventures-of-Maggie-Mae-3-by-Beth-Yarnall.pdf
    • http://loaminoo.linkpc.net/2090096095094092/You-re-Mine-Maggie-The-Misadventures-of-Maggie-Mae-2-by-Beth-Yarnall.pdf
    • http://loaminoo.linkpc.net/6090091096099096/Murder-In-the-Buff-by-Maggie-Toussaint.pdf
    • http://loaminoo.linkpc.net/2099095093099098/Tip-It-The-World-According-to-Maggie-by-Maggie-Griffin.pdf
    • http://loaminoo.linkpc.net/2096096094095095/Quick-Study-A-Murder-101-Mystery-3-by-Maggie-Barbieri.pdf
    • http://loaminoo.linkpc.net/7093093095094098/Hong-Kong-Black-Nick-Foley-2-by-Alex-Ryan.pdf
    • http://loaminoo.linkpc.net/4090094095091097/Murder-la-Carte-Maggie-Newberry-Mysteries-2-by-Susan-Kiernan-Lewis.pdf
    • http://loaminoo.linkpc.net/5094095091093096/Murder-la-Carte-Maggie-Newberry-Mysteries-2-by-Susan-Kiernan-Lewis.pdf
    • http://loaminoo.linkpc.net/4096090092095094/Murder-in-Provence-Maggie-Newberry-Mysteries-3-by-Susan-Kiernan-Lewis.pdf
    • http://loaminoo.linkpc.net/1096093097090095/Murder-in-a-Mill-Town-Nell-Sweeney-Mysteries-2-by-P-B-Ryan.pdf
    • http://loaminoo.linkpc.net/8093098090094094/The-Devaney-Brothers-Ryan-and-Sean-Ryan-s-Place-Sean-s-Reckoning-by-Sherryl-Woods.pdf
    • http://loaminoo.linkpc.net/2098090091090090/The-Rising-Murder-Heartbreak-and-the-Power-of-Human-Resilience-in-an-American-Town-by-Ryan-D-39-Agostino.pdf
    • http://loaminoo.linkpc.net/2092092091091092/Patriot-Games-Jack-Ryan-1-Jack-Ryan-Universe-2-by-Tom-Clancy.pdf
    • http://loaminoo.linkpc.net/4092097092097092/Miracle-Man-Nolan-Ryan-The-Autobiography-by-Nolan-Ryan.pdf