Malicious PDF — malware analysis report

Static analysis result for SHA-256 7450b0d50136d39c…

MALICIOUS

PDF

25.5 KB Created: 2019-04-30 05:48:30 +01:00 Authoring application: mPDF 5.7
MD5: 7db26a30abf74dbf25d5c9b637000c6e SHA-1: 874c3eb91c4113952b6cf9ed318c3409905db95a SHA-256: 7450b0d50136d39cc4e8332167e661687caf29897d90edb1441e0b81806a337f
92 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF contains a large number of embedded links to external PDF files, as indicated by the PDF_SEO_LINK_FARM heuristic. While many of these links were labeled as confirmed benign, the sheer volume and the nature of the heuristic suggest a malicious intent, possibly for SEO manipulation or to host further malicious content. The ML classifier also strongly flagged this PDF as malicious.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9910

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/9097094098094092/Nick-and-Tesla-s-Solar-Powered-Showdown-A-Mystery-with-Sun-Powered-Gadgets-You-Can-Build-Yourself-by-Bob-Pflugfelder.pdf
    • http://loaminoo.linkpc.net/9097094098093095/Nick-and-Tesla-s-Secret-Agent-Gadget-Battle-A-Mystery-with-Spy-Cameras-Code-Wheels-and-Other-Gadgets-You-Can-Build-Yourself-by-Bob-Pflugfelder.pdf
    • http://loaminoo.linkpc.net/9097094098098095/Nick-and-Tecla-s-High-Voltage-Danger-Lab-A-Mystery-with-Electromagnets-Burglar-Alarms-and-Other-Gadgets-You-Can-Build-Yourself-by-Pflugfelder.pdf
    • http://loaminoo.linkpc.net/9097094098093096/Nick-and-Tesla-s-Special-Effects-Spectacular-A-Mystery-with-Animatronics-Alien-Makeup-Camera-Gear-and-Other-Movie-Magic-You-Can-Make-Yourself-Nick-and-Tesla-5-by-Bob-Pflugfelder.pdf
    • http://loaminoo.linkpc.net/2090093095096096/Faith-Powered-Profession-by-Elizabeth-Knox.pdf
    • http://loaminoo.linkpc.net/6095096098098/Pedaling-to-Hawaii-A-Human-Powered-Odyssey-by-Stevie-Smith.pdf
    • http://loaminoo.linkpc.net/4097094090090094/Beyond-the-Horizon-The-Great-Race-to-Finish-the-First-Human-Powered-Circumnavigation-of-the-Planet-by-Colin-Angus.pdf
    • http://loaminoo.linkpc.net/1090093093090098090/Building-a-Vibrant-Community-How-Citizen-Powered-Change-Is-Reshaping-America-by-Quint-Studer.pdf
    • http://loaminoo.linkpc.net/1098099093091095/Crashing-the-Gate-Netroots-Grassroots-and-the-Rise-of-People-Powered-Politics-by-Jerome-Armstrong.pdf
    • http://loaminoo.linkpc.net/4093097092094096/Batting-on-the-Bosphorus-A-Skoda-Powered-Cricket-Tour-Through-Eastern-Europe-by-Angus-Bell.pdf
    • http://loaminoo.linkpc.net/1097099095094090/TEACH-YOURSELF-MIND-POWERED-ZERO-DIET-WEIGHT-LOSS-the-mental-magic-series-by-James-F-Coyle.pdf
    • http://loaminoo.linkpc.net/8098097094092093/Powered-by-Hope-The-Teri-Griege-Story-by-Teri-Griege.pdf
    • http://loaminoo.linkpc.net/3093097095095092/Men-of-Mystery-Nikola-Tesla-and-Otis-T-Carr-by-Timothy-Green-Beckley.pdf
    • http://loaminoo.linkpc.net/5094097097095/How-To-Build-a-Pallet-and-Plastic-Bottle-Greenhouse-from-Junk-A-Self-Build-Project-by-Eco-T-.pdf
    • http://loaminoo.linkpc.net/9098094095093095/Smart-People-Should-Build-Things-How-to-Restore-Our-Culture-of-Achievement-Build-a-Path-for-Entrepreneurs-and-Create-New-Jobs-in-America-by-Andrew-Yang.pdf
    • http://loaminoo.linkpc.net/1090094095098091/One-More-A-Solar-Maximum-Novel-The-Solar-Maximum-Novels-1-by-Lance-Haynes.pdf
    • http://loaminoo.linkpc.net/3094090096099094/The-Excluded-Exile-A-Nick-Williams-Mystery-12-by-Frank-W-Butterfield.pdf
    • http://loaminoo.linkpc.net/7099091093092091/Mindfulness-and-Murder-A-Father-Ananda-Mystery-by-Nick-Wilgus.pdf
    • http://loaminoo.linkpc.net/4097099090095094/The-Leaping-Lord-A-Nick-Williams-Mystery-19-by-Frank-W-Butterfield.pdf
    • http://loaminoo.linkpc.net/4097099090095096/The-Mangled-Mobster-A-Nick-Williams-Mystery-7-by-Frank-W-Butterfield.pdf