Malicious PDF — malware analysis report

Static analysis result for SHA-256 aaa3bb800cb50ebe…

MALICIOUS

PDF

21.4 KB Created: 2019-04-30 05:36:46 +01:00 Authoring application: mPDF 5.7
MD5: 089887534ced79648285cf1f9055a054 SHA-1: 3acc70176f09db3e3094e5449cf45c9fbff8f6d3 SHA-256: aaa3bb800cb50ebe672c8b82821d852c639c2ac062f51097253cf3217616d842
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious File

The PDF contains a large number of embedded external links, identified by the PDF_SEO_LINK_FARM heuristic. While the specific URLs themselves are currently marked as benign, the sheer volume and structure suggest a malicious intent, likely for SEO manipulation or to redirect users to malicious content. The ML_NYX_PDF_MALICIOUS classifier also strongly indicated maliciousness. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9925

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/9098095095094094/Flower-Drying-With-A-Microwave-Techniques-and-Projects-by-Titia-Joosten.pdf
    • http://loaminoo.linkpc.net/1091098092090091095/Scroll-Saw-Segmentation-Patterns-Projects-Techniques-by-Patrick-Spielman.pdf
    • http://loaminoo.linkpc.net/8096094098090098/Icelandic-Handknits-25-Heirloom-Techniques-and-Projects-by-Helene-Magnusson.pdf
    • http://loaminoo.linkpc.net/7092093096095096/Metal-Clay-Jewelry-Projects-Techniques-Inspirations-by-Louise-Duhamel.pdf
    • http://loaminoo.linkpc.net/6096097096092097/The-Art-of-Polymer-Clay-Millefiori-Techniques-Projects-and-Inspiration-for-Creative-Canework-by-Donna-Kato.pdf
    • http://loaminoo.linkpc.net/2097097092096090/The-Magic-of-Shetland-Lace-Knitting-Stitches-Techniques-and-Projects-for-Lighter-than-Air-Shawls-amp-More-by-Elizabeth-Lovick.pdf
    • http://loaminoo.linkpc.net/8096096099099092/Crochet-for-Kids-Basic-Techniques-amp-Great-Projects-That-Kids-Can-Make-Themselves-by-Franziska-Heidenreich.pdf
    • http://loaminoo.linkpc.net/6099099094098090/Creative-Marker-Art-and-Beyond-Inspiring-tips-techniques-and-projects-for-creating-vibrant-artwork-in-marker-by-Lee-May-Foster-Wilson.pdf
    • http://loaminoo.linkpc.net/7093092093099092/The-Knitter-s-Guide-to-Hand-Dyed-and-Variegated-Yarn-Techniques-and-Projects-for-Handpainted-and-Multicolored-Yarn-by-Lorna-Miser.pdf
    • http://loaminoo.linkpc.net/7096093099091090/Amazing-Math-Projects-Projects-You-Can-Build-Yourself-by-Laszlo-C-Bardos.pdf
    • http://loaminoo.linkpc.net/2094093098094/Hand-Drying-in-America-and-Other-Stories-by-Ben-Katchor.pdf
    • http://loaminoo.linkpc.net/1090099099094098093/The-New-Encyclopedia-of-Jewelry-Making-Techniques-A-Comprehensive-Visual-Guide-to-Traditional-and-Contemporary-Techniques-by-Jinks-McGrath.pdf
    • http://loaminoo.linkpc.net/2092094098094090/Time-s-Forbidden-Flower-Forbidden-Flower-2-by-Diane-Rinella.pdf
    • http://loaminoo.linkpc.net/9098095095094090/Gravity-Well-by-Melanie-Joosten.pdf
    • http://loaminoo.linkpc.net/6094097097091090/Microwave-Electron-Tube-Devices-by-Samuel-Y-Liao.pdf
    • http://loaminoo.linkpc.net/3091090097090097/Mug-Meals-Delicious-Microwave-Recipes-by-Dina-Cheney.pdf
    • http://loaminoo.linkpc.net/9095093098097091/Solutions-Manual-For-Microwave-Devices-And-Circuits-by-Samuel-Y-Liao.pdf
    • http://loaminoo.linkpc.net/9098095096097097/Find-your-strength-in-love-by-Bram-Joosten.pdf
    • http://loaminoo.linkpc.net/9098095095094092/A-Long-Time-Coming-by-Melanie-Joosten.pdf
    • http://loaminoo.linkpc.net/1091090098093092090/Microwave-assisted-Organic-Synthesis-One-Hundred-Reaction-Procedures-25-by-D-Bogdal.pdf
    • http://loaminoo.linkpc.net/8096096099099092/Crochet-for-Kids-Basic-Techniques-amp-Great-P