Malicious PDF — malware analysis report

Static analysis result for SHA-256 a342d544430e6dbb…

MALICIOUS

PDF

17.8 KB Created: 2019-04-30 01:55:41 +01:00 Authoring application: mPDF 5.7
MD5: e739ca73cca265a9ab7dc2f100e3d5f4 SHA-1: 4df002926f90b221408b0d6954000d149bf65a28 SHA-256: a342d544430e6dbbe26945326bdb8903c8c6667854f6e4752643ac61a7dcbb64
150 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of external links, identified by the PDF_SEO_LINK_FARM heuristic. ClamAV also detected this file as Pdf.Dropper.Agent-7184093-0, indicating it is a known dropper. The embedded URLs, while many are marked as benign, are part of a link farm strategy, suggesting the PDF's primary purpose is to redirect users to potentially malicious content or for SEO manipulation.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9925

Heuristics 3

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • ClamAV: Pdf.Dropper.Agent-7184093-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Pdf.Dropper.Agent-7184093-0
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/1091098094096095092/100-Cigarettes-and-a-Bottle-of-Vodka-A-Memoir-by-Arthur-Schaller.pdf
    • http://loaminoo.linkpc.net/1091098094097091090/Vodkas-Vodka-Absolut-Vodka-Smirnoff-Bacon-Vodka-Stolichnaya-Nalewka-List-of-Vodkas-Vodka-War-Koskenkorva-Viina-Bong-Spirit-Vodka-by-Books-LLC.pdf
    • http://loaminoo.linkpc.net/1091098094095094096/Vodka-Distilled-The-Modern-Mixologist-on-Vodka-and-Vodka-Cocktails-by-Tony-Abou-Ganim.pdf
    • http://loaminoo.linkpc.net/9099095092095/A-Backpack-a-Bear-and-Eight-Crates-of-Vodka-A-Memoir-by-Lev-Golinkin.pdf
    • http://loaminoo.linkpc.net/1091098094097096090/The-Vodka-1000-The-Ultimate-Collection-of-Vodka-Cocktails-Recipes-Facts-and-Resources-by-Ray-Foley.pdf
    • http://loaminoo.linkpc.net/1091098094097096091/Vodka-The-Discerning-Vodka-Drinker-s-Companion-by-Nicholas-Faith.pdf
    • http://loaminoo.linkpc.net/1091098094096094093/Vodka-Classified-A-Vodka-Lover-s-Companion-by-Stuart-Walton.pdf
    • http://loaminoo.linkpc.net/4093098094090096/The-Message-in-a-Bottle-Romance-Collection-Hope-Reaches-Across-the-Centuries-Through-One-Single-Bottle-Inspiring-Five-Romances-by-Joanne-Bischof.pdf
    • http://loaminoo.linkpc.net/3098093090096092/Lover-in-a-Bottle-In-a-Bottle-3-by-Shona-Husk.pdf
    • http://loaminoo.linkpc.net/8094093094098/Days-of-Grace-A-Memoir-by-Arthur-Ashe.pdf
    • http://loaminoo.linkpc.net/3093097096099093/The-Taste-of-Cigarettes-by-Jon-Vreeland.pdf
    • http://loaminoo.linkpc.net/3096098096095098/How-to-Beg-for-Cigarettes-by-Matt-Ponticello.pdf
    • http://loaminoo.linkpc.net/1099094092098099/Books-v-Cigarettes-by-George-Orwell.pdf
    • http://loaminoo.linkpc.net/1099098093095096/Buying-Cigarettes-for-the-Dog-Stories-by-Stuart-Ross.pdf
    • http://loaminoo.linkpc.net/6099098090090094/Coffee-and-Cigarettes-by-Sade-Andria-Zabala.pdf
    • http://loaminoo.linkpc.net/9098099090092096/Tod-dem-Halbblut-by-Anton-Schaller.pdf
    • http://loaminoo.linkpc.net/5099090099090098/Ronald-Reagan-by-Michael-Schaller.pdf
    • http://loaminoo.linkpc.net/1091090097094095095/G-nsehaut-5-Kinder-Gruselgeschichten-by-Anton-Schaller.pdf
    • http://loaminoo.linkpc.net/1090097091093092094/Der-Tod-wartet-an-der-Schliere-Thriller-by-Bruno-Schaller.pdf
    • http://loaminoo.linkpc.net/5096094091095095/Par-del-la-ligne-pourpre-by-Francine-Schaller.pdf
    • http://loaminoo.linkpc.net/1091098094097096090/The-Vodka-1000-The-Ultimate-Collection-of-Vodka-Cocktails-Recipes