Malicious PDF — malware analysis report

Static analysis result for SHA-256 c456205791804731…

MALICIOUS

PDF

16.7 KB Created: 2019-05-07 04:50:29 +01:00 Authoring application: mPDF 5.7
MD5: fa0b86ea62634ea223a591e60d2098c5 SHA-1: e0f2d6c1156594a6828713cff64e5944de16b489 SHA-256: c45620579180473146e4e68cb7e226d09352c0689af02754af45ab4401c80c53
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF document contains a large number of embedded links pointing to external PDFs hosted on the domain 'loaminoo.linkpc.net'. This is indicative of a link farm or a phishing lure designed to direct users to potentially malicious content. The ML classifier also flagged this PDF with high confidence.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9913

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/4096090092094097/My-Life-My-Love-My-Legacy-by-Coretta-Scott-King.pdf
    • http://loaminoo.linkpc.net/8099099095099099/Defending-a-King-His-Life-amp-Legacy-by-Karen-Moriarty.pdf
    • http://loaminoo.linkpc.net/7096090099093091/BRACIE-Her-Life-Her-Love-Her-Legacy-by-Beulah-Neveu.pdf
    • http://loaminoo.linkpc.net/1098099091097/The-Wind-Is-Spirit-The-Life-Love-and-Legacy-of-Audre-Lorde-by-Gloria-I-Joseph.pdf
    • http://loaminoo.linkpc.net/4095094091093093/The-Ramen-King-and-I-How-the-Inventor-of-Instant-Noodles-Fixed-My-Love-Life-by-A-Ras.pdf
    • http://loaminoo.linkpc.net/5091090091091/Sunni-The-Life-and-Love-of-King-Tutankhamun-s-Wife-by-Julianna-Boyer.pdf
    • http://loaminoo.linkpc.net/1094095091094093/For-Love-or-Legacy-Legacy-Collection-2-by-Ruth-Cardello.pdf
    • http://loaminoo.linkpc.net/3093097091093095/Gabriel-Legacy-Ranch-2-by-R-J-Scott.pdf
    • http://loaminoo.linkpc.net/1098090093095093/Darkbound-Legacy-of-Moonset-2-by-Scott-Tracey.pdf
    • http://loaminoo.linkpc.net/1098094097099092/Living-Your-Legacy-Now-Inspiring-Life-Lessons-for-a-Successful-Healthy-and-Fulfilling-Life-by-Bill-Blalock.pdf
    • http://loaminoo.linkpc.net/2095092092093/The-Heiress-s-Homecoming-The-Everard-Legacy-4-by-Regina-Scott.pdf
    • http://loaminoo.linkpc.net/3098090090094090/Highland-Legacy-The-Fraser-Brothers-Trilogy-1-by-B-J-Scott.pdf
    • http://loaminoo.linkpc.net/2090092091098093/The-Rake-s-Redemption-The-Everard-Legacy-3-by-Regina-Scott.pdf
    • http://loaminoo.linkpc.net/4098097097098096/The-Captain-s-Courtship-The-Everard-Legacy-2-by-Regina-Scott.pdf
    • http://loaminoo.linkpc.net/9090097090091/The-Redemption-Legacy-of-the-King-s-Pirates-1-by-M-L-Tyndall.pdf
    • http://loaminoo.linkpc.net/9095099093094/Warrior-King-Legacy-by-Anthony-Hogger.pdf
    • http://loaminoo.linkpc.net/9096098091093/The-Swampling-King-The-Windwalker-Legacy-1-by-Ben-S-Dobson.pdf
    • http://loaminoo.linkpc.net/2097097098094094/The-Reckoning-Legacy-of-the-King-s-Pirates-5-by-MaryLu-Tyndall.pdf
    • http://loaminoo.linkpc.net/3098099091090096/The-Reckless-Legacy-of-the-King-s-Pirates-Book-6-by-MaryLu-Tyndall.pdf
    • http://loaminoo.linkpc.net/3094094099091097/I-Dred-Scott-A-Fictional-Slave-Narrative-Based-on-the-Life-and-Legal-Precedent-of-Dred-Scott-by-Shelia-P-Moses.pdf
    • http://loaminoo.linkpc.net/2095092092093/The-Heiress-s-Homecoming-The-Everard-Legacy-