Malicious PDF — malware analysis report

Static analysis result for SHA-256 8fb7b4594d8e8115…

MALICIOUS

PDF

15.7 KB Created: 2019-05-02 01:12:56 +01:00 Authoring application: mPDF 5.7
MD5: 1bce3ebefae5e65899e920c125df5e20 SHA-1: 8ea09d9e08974ffb7d8b4ae0d11f14008fd676ab SHA-256: 8fb7b4594d8e811568c391a87adedee321b862cb637d2c12f7ed84a12f6ffb31
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file contains a large number of embedded links to external PDF documents, primarily hosted on the domain 'loaminoo.linkpc.net'. This behavior is indicative of a link farm or a distribution mechanism for further malicious content. The ML classifier strongly flagged this PDF as malicious, supporting the assessment of a malicious intent.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9880

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/9090098096099092/Nightfall-Heart-of-the-Alpha-Book-1-by-Evelyn-Glass.pdf
    • http://loaminoo.linkpc.net/2092092097098097/An-Alpha-s-Kiss-Untamed-1-by-Evelyn-Glass.pdf
    • http://loaminoo.linkpc.net/9090098096098099/By-Nightfall-Nightfall-Series-Book-1-by-Ellen-Waite.pdf
    • http://loaminoo.linkpc.net/3096096093095095/Club-Girl-Hell-Brigade-Motorcycle-Club-Book-1-by-Evelyn-Glass.pdf
    • http://loaminoo.linkpc.net/9090098097097099/Nightfall-in-a-Glass-House-Syntax-2-by-Julio-Alexi-Genao.pdf
    • http://loaminoo.linkpc.net/1091091098096090091/Ladylust-4-Alpha-Males-The-Big-Bundle-of-Hetero-Erotica-About-Macho-Alpha-Studs-Alpha-Male-Hetero-Big-Bundles-Book-6-by-B-R-Eastman.pdf
    • http://loaminoo.linkpc.net/1092095091098093/Heart-of-Glass-Cross-My-Heart-2-by-Sasha-Gould.pdf
    • http://loaminoo.linkpc.net/2092095096096097/Heart-of-Glass-Cross-My-Heart-2-by-Sasha-Gould.pdf
    • http://loaminoo.linkpc.net/1093090096099092/The-Legend-of-Nightfall-Nightfall-1-by-Mickey-Zucker-Reichert.pdf
    • http://loaminoo.linkpc.net/1094096093099093/Hexing-The-Alpha-Hex-My-Heart-1-by-Talina-Perkins.pdf
    • http://loaminoo.linkpc.net/6096092091095/Hunter-s-Heart-Alpha-Pack-4-by-J-D-Tyler.pdf
    • http://loaminoo.linkpc.net/1095091098/Hard-to-Fight-Alpha-s-Heart-1-by-Bella-Jewel.pdf
    • http://loaminoo.linkpc.net/2099099099095091/The-Alpha-s-Heart-Lost-Omegas-5-by-Claire-Cullen.pdf
    • http://loaminoo.linkpc.net/3093092098095095/Tea-and-Green-Ribbons-Evelyn-s-Story-by-Evelyn-Doyle.pdf
    • http://loaminoo.linkpc.net/1095095098091094/Potato-Vengeance-Evelyn-s-Book-by-Geoffrey-Porter.pdf
    • http://loaminoo.linkpc.net/5090093092097099/Heart-of-Glass-A-Second-Chances-Novella-by-L-J-Harris.pdf
    • http://loaminoo.linkpc.net/1099099097097/The-Black-Women-s-Health-Book-Speaking-for-Ourselves-by-Evelyn-C-White.pdf
    • http://loaminoo.linkpc.net/2096097093099094/Heart-of-Glass-Fostering-Love-3-by-Nicole-Jacquelyn.pdf
    • http://loaminoo.linkpc.net/1090099093091095090/A-Fynn-Young-Series-Absolving-Evil-Heart-of-a-Wolf-and-Alpha-by-Tracie-Ann-Riley-Lester.pdf
    • http://loaminoo.linkpc.net/1090098091095094/Nightfall-Gardens-Nightfall-Gardens-1-by-Allen-Houston.pdf
    • http://loaminoo.linkpc.net/1094096093099093/Hexing-The-Alpha-Hex-My-Heart-1-by-Talina-Perkins