Malicious PDF — malware analysis report

Static analysis result for SHA-256 9798907e2a6eb8fe…

MALICIOUS

PDF

17.8 KB Created: 2019-05-02 18:12:29 +01:00 Authoring application: mPDF 5.7 First seen: 2021-04-01
MD5: 7af68609d5af44703276ab070436af8a SHA-1: 2f84d785c530c4178e284b070e30fca28596a18a SHA-256: 9798907e2a6eb8fe6dd7d53f597972bbd529948f556a3eefaca3a5a0a04f000b
92 Risk Score

Machine Learning

  • Nyx PDF Classifier malicious score 0.9925

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/3099094096094090/Safe-Haven-An-Age-Play-Spanking-Romance-by-Alice-Liddell.pdf In PDF document text
    • http://loaminoo.linkpc.net/9097090093098099/Alice-Lewis-Carroll-Lewis-Carroll-Alice-Im-Wunderland-Vladimir-Nabokov-Das-Spiegellabyrinth-Alice-in-Wonderland-Humpty-Dumpty-Alice-Liddell-John-Tenniel-Cheshire-Cat-Der-Hutmacher-Christian-Enzensberger-by-Source-Wikipedia.pdfIn PDF document text
    • http://loaminoo.linkpc.net/2098092096098097/Play-Safe-Make-the-Play-1-by-Amber-Garza.pdfIn PDF document text
    • http://loaminoo.linkpc.net/2097094097092097/Safe-Haven-by-Nicholas-Sparks.pdfIn PDF document text
    • http://loaminoo.linkpc.net/7093097097096/Safe-Haven-by-Susan-Dugan.pdfIn PDF document text
    • http://loaminoo.linkpc.net/1090097090094/Safe-Haven-by-Nicholas-Sparks.pdfIn PDF document text
    • http://loaminoo.linkpc.net/7090095091094/Safe-Haven-by-Nicholas-Sparks.pdfIn PDF document text
    • http://loaminoo.linkpc.net/2099097098094090/Safe-Haven-Captain-s-Duet-1-by-Red-Phoenix.pdfIn PDF document text
    • http://loaminoo.linkpc.net/4091098094098096/The-Assassin-Safe-Haven-3-by-Charity-Parkerson.pdfIn PDF document text
    • http://loaminoo.linkpc.net/1094097099096098/Love-Me-for-Me-Safe-Haven-1-by-Kate-Laurens.pdfIn PDF document text
    • http://loaminoo.linkpc.net/3090091095097092/Safe-Haven-Life-After-War-3-by-Angela-White.pdfIn PDF document text
    • http://loaminoo.linkpc.net/3093095095091091/Guy-Liddell-Diaries-Vol-1-1939-1942-by-Guy-Liddell.pdfIn PDF document text
    • http://loaminoo.linkpc.net/1091097096098092097/Fourteen-Firsts-An-Anthology-of-Lesbian-Spanking-Romance-by-Stardawn-Cabot.pdfIn PDF document text
    • http://loaminoo.linkpc.net/2093092096093090/Play-It-Safe-by-Kristen-Ashley.pdfIn PDF document text
    • http://loaminoo.linkpc.net/2093094091093093/Play-It-Safe-Glasgow-Lads-2-5-by-Avery-Cockburn.pdfIn PDF document text
    • http://loaminoo.linkpc.net/1091098091096099092/Die-Erniedrigung-eines-Models-BDSM-Erniedrigung-F-F-Public-Disgrace-Pet-Play-Spanking-by-Milo-Arten.pdfIn PDF document text
    • http://loaminoo.linkpc.net/1091097093098099094/Blood-Romance-3---Bitters-e-Erinnerung-by-Alice-Moon.pdfIn PDF document text
    • http://loaminoo.linkpc.net/1091092092098090/The-Safe-Keeper-s-Secret-Safe-Keepers-1-by-Sharon-Shinn.pdfIn PDF document text
    • http://loaminoo.linkpc.net/2095095095090095/Safe-With-Him-The-Safe-Series-Book-2-by-Tina-Bass.pdfIn PDF document text
    • http://loaminoo.linkpc.net/8096098099092099/The-perfect-Play---Spiel-mit-der-Liebe-Play-by-Play-1-by-Jaci-Burton.pdfIn PDF document text