Malicious PDF — malware analysis report

Static analysis result for SHA-256 b5daa1cfa9c96239…

MALICIOUS

PDF

23.2 KB Created: 2019-04-30 18:06:53 +01:00 Authoring application: mPDF 5.7
MD5: d3fe0fd4c46d17fd9b9907bbfba2649c SHA-1: 980b2d4657ddb24a79d7ec4d3138129e978a9b16 SHA-256: b5daa1cfa9c962390ec47f3fede67055253249c918c4f16d07f243fbb5295df8
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF was flagged by an ML classifier as malicious. The primary heuristic indicates a link farm, with 28 external links embedded in the document. These links predominantly point to the 'loaminoo.linkpc.net' domain, suggesting a coordinated effort to direct users to potentially harmful content. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9901

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/3091098094093094/Cats-24-7-Extraordinary-Photographs-of-Wonderful-Cats-by-Rick-Smolan.pdf
    • http://loaminoo.linkpc.net/1090096096090092097/The-Cats-Came-Back-A-Magical-Cats-Mystery-10-by-Sofie-Kelly.pdf
    • http://loaminoo.linkpc.net/2098094091093091/Two-Cats-and-the-Woman-They-Own-or-Lessons-I-Learned-from-My-Cats-by-Patti-Davis.pdf
    • http://loaminoo.linkpc.net/4094095093099092/Particularly-Cats-and-More-Cats-by-Doris-Lessing.pdf
    • http://loaminoo.linkpc.net/5098091095097094/Cats-as-Cats-Can-by-Tomi-Ungerer.pdf
    • http://loaminoo.linkpc.net/4096091090090094/ESSENTIAL-OILS-FOR-CATS-Uncommon-Ways-To-Safely-Use-Cat-Essential-Oils-With-Natural-Cat-Remedies-For-Optimal-Health-Aromatherapy-For-Cats-by-Tonny-M-Ford.pdf
    • http://loaminoo.linkpc.net/8098099093098091/Living-in-DC-An-Insider-s-Guide-How-to-Get-a-Job-and-Make-the-Most-of-Living-in-the-Nation-s-Capital-by-Kate-McFadyen.pdf
    • http://loaminoo.linkpc.net/6090096097098/Four-Quadrant-Living-Making-Healthy-Living-Your-New-Way-of-Life-by-Dina-Colman.pdf
    • http://loaminoo.linkpc.net/9092094093099093/Intentional-Living-How-To-NOT-Die-With-Regrets-By-Living-A-Life-That-Matters-by-Simeon-Lindstrom.pdf
    • http://loaminoo.linkpc.net/1098092099092092/Debt-Proof-Living-The-Complete-Guide-to-Living-Financially-Free-by-Mary-Hunt.pdf
    • http://loaminoo.linkpc.net/2095099090090096/The-Everything-Guide-to-Living-Off-the-Grid-A-back-to-basics-manual-for-independent-living-by-Terri-Reid.pdf
    • http://loaminoo.linkpc.net/3094096095097091/Living-in-Process-Basic-Truths-for-Living-the-Path-of-the-Soul-by-Anne-Wilson-Schaef.pdf
    • http://loaminoo.linkpc.net/4098095099090095/Living-In-Living-Out-African-American-Domestics-in-Washington-D-C-1910-1940-by-Elizabeth-Clark-Lewis.pdf
    • http://loaminoo.linkpc.net/3096094093097090/Living-For-Higher-Purpose-Story-of-a-City-Boy-Who-Survived-the-Vietnam-War-by-Living-for-Jesus-and-Others-by-Reverend-Peter-G-Vu.pdf
    • http://loaminoo.linkpc.net/9099093097093/Mindfulness-Living-in-the-Moment---Living-in-the-Breath-by-Amit-Ray.pdf
    • http://loaminoo.linkpc.net/4098095098097097/Southern-Living-Fix-It-and-Freeze-It-Heat-It-and-Eat-It-A-quick-cook-guide-to-over-200-make-ahead-dishes-by-Southern-Living-Inc-.pdf
    • http://loaminoo.linkpc.net/1091097098097097095/Off-Grid-Living-15-Amazing-Lessons-on-the-Advantages-That-Living-Off-the-Grid-in-a-Community-Brings-by-Mach-Bush.pdf
    • http://loaminoo.linkpc.net/7090092097093097/Tuscany-an-Art-of-Living-An-Art-of-Living-by-Jo-Pauwels.pdf
    • http://loaminoo.linkpc.net/1090094098094090091/Living-Apart-Together-Living-Apart-Together-1-by-Elise-Darcy.pdf
    • http://loaminoo.linkpc.net/2098092097093098/Living-Really-Living-by-Grover-on-Second-Wind.pdf
    • http://loaminoo.linkpc.net/8098099093098091/Living-in-DC-An-Insider-s-Guide-How-to-Get-a-Job-and-Make-the-Most-of-Living-in-the-Nation-s-Capit