Malicious PDF — malware analysis report

Static analysis result for SHA-256 8f04ce612fef5ccd…

MALICIOUS

PDF

23.6 KB Created: 2019-05-07 03:20:51 +01:00 Authoring application: mPDF 5.7
MD5: 2c313cb3619a7ebc382e113ca28885b7 SHA-1: acc8e75371de4ff4573b6c48d2f0024690e33b9f SHA-256: 8f04ce612fef5ccd0208bedbfe781f5f5f31af9d01f30b281d7b6787a12c67ed
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious File

The PDF contains a large number of embedded URLs, identified by the PDF_SEO_LINK_FARM heuristic, which suggests a malicious intent to manipulate search engine results or distribute content. The ML classifier also flagged this PDF with high confidence. While the specific URLs extracted were labeled as confirmed_benign, the sheer volume and structure indicate a likely malicious purpose, possibly as a lure or a distribution point for other threats. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9901

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/2097095099094094/Dialogue-Tips-amp-Traps-A-Guide-for-Fiction-Writers-by-Brent-Spencer.pdf
    • http://loaminoo.linkpc.net/5095096096090091/Hotel-Contract-Negotiation-Tips-Tricks-and-Traps-by-Stephen-Guth.pdf
    • http://loaminoo.linkpc.net/2097095095092090/The-Essential-Guide-to-Writing-a-Novel-A-Complete-and-Concise-Manual-for-Fiction-Writers-by-James-Stewart-Thayer.pdf
    • http://loaminoo.linkpc.net/6092094092092092/Gotham-Writers-Workshop-Writing-Fiction-The-Practical-Guide-from-New-York-s-Acclaimed-Creative-Writing-School-by-Alexander-Steele.pdf
    • http://loaminoo.linkpc.net/2097094098095090/Gotham-Writers-Workshop-Writing-Fiction-The-Practical-Guide-From-New-York-s-Acclaimed-Creative-Writing-School-by-Alexander-Steele.pdf
    • http://loaminoo.linkpc.net/2097095093092096/Fiction-Writing-Tips-From-Hollywood-How-to-Write-Explosive-Fiction-by-Mimicing-Hollywood-Blockbusters-by-Jennifer-Arnett.pdf
    • http://loaminoo.linkpc.net/3092093093095092/Fantasy-Writers-Phrase-Book-Essential-Reference-for-All-Authors-of-Fantasy-Adventure-and-Medieval-Historical-Fiction-Writers-Phrase-Books-Book-4-by-Jackson-Dean-Chase.pdf
    • http://loaminoo.linkpc.net/1099098093098/His-Brilliant-New-Fiction-by-Gay-Writers-by-Robert-Drake.pdf
    • http://loaminoo.linkpc.net/1099091097097/His-2-Brilliant-New-Fiction-by-Gay-Writers-by-Robert-Drake.pdf
    • http://loaminoo.linkpc.net/2097096090091093/What-If-Writing-Exercises-for-Fiction-Writers-by-Anne-Bernays.pdf
    • http://loaminoo.linkpc.net/9098091099097/Meanwhile-Elsewhere-Science-Fiction-and-Fantasy-from-Transgender-Writers-by-Cat-Fitzpatrick.pdf
    • http://loaminoo.linkpc.net/2095096092092092/The-Art-of-Fiction-Notes-on-Craft-for-Young-Writers-by-John-Gardner.pdf
    • http://loaminoo.linkpc.net/4091093092099097/American-Fiction-Volume-13-The-Best-Unpublished-Stories-by-Emerging-Writers-by-Bruce-Pratt.pdf
    • http://loaminoo.linkpc.net/4092097096094096/A-People-s-Future-of-the-United-States-Speculative-Fiction-from-25-Extraordinary-Writers-by-Victor-LaValle.pdf
    • http://loaminoo.linkpc.net/1099097099096/Go-the-Way-Your-Blood-Beats-An-Anthology-of-Lesbian-and-Gay-Literary-Fiction-by-African-American-Writers-by-Shawn-Stewart-Ruff.pdf
    • http://loaminoo.linkpc.net/8093095098094093/Writers-of-Fiction-Set-in-Prehistoric-Times-Jean-M-Auel-William-Thomas-Quick-Kathleen-O-Neal-Gear-by-Books-LLC.pdf
    • http://loaminoo.linkpc.net/4099097090092095/This-Will-End-in-Tears-The-Miserablist-Guide-to-Music-by-Adam-Brent-Houghtaling.pdf
    • http://loaminoo.linkpc.net/1091095096096099099/The-ultimate-MacOS-guide-459-unmissable-Mac-tips-by-Edward-Rose.pdf
    • http://loaminoo.linkpc.net/6097099099095093/The-Complete-Infidel-s-Guide-to-the-Koran-by-Robert-Spencer.pdf
    • http://loaminoo.linkpc.net/2097094091096093/The-Politically-Incorrect-Guide-to-Islam-by-Robert-Spencer.pdf
    • http://loaminoo.linkpc.net/209709409