Malicious PDF — malware analysis report

Static analysis result for SHA-256 d94393977b43f52d…

MALICIOUS

PDF

19.2 KB Created: 2019-05-02 01:29:29 +01:00 Authoring application: mPDF 5.7
MD5: 24570d67f1dd160f4f76d28967ff67c4 SHA-1: 5a7d28ef7a4be9edb986a7ee8207436078680852 SHA-256: d94393977b43f52d4a7d03eac7fb7552b59c452fbd847eb4ce98211652b4671e
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1059.001 PowerShell

The PDF file was flagged by an ML classifier as malicious. It contains a large number of embedded links, identified as a PDF_SEO_LINK_FARM heuristic, pointing to external PDF documents. While the specific URLs themselves are currently marked as confirmed_benign, the sheer volume and structure suggest a malicious intent, possibly for SEO poisoning or to distribute further malicious content. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9920

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/2093093096097091/The-Prophetess-Deborah-s-Story-Daughters-of-the-Promised-Land-2-by-Jill-Eileen-Smith.pdf
    • http://loaminoo.linkpc.net/1095092093094099/Redeeming-Grace-Ruth-s-Story-Daughters-of-the-Promised-Land-3-by-Jill-Eileen-Smith.pdf
    • http://loaminoo.linkpc.net/4094094096094091/Katy-s-New-World-Katy-Lambright-Series-1-by-Kim-Vogel-Sawyer.pdf
    • http://loaminoo.linkpc.net/8099091097099091/Katy-and-the-Crew-A-Very-Rough-Student-Reluctant-Gangbang-Erotica-Story-by-Emilie-Corrine.pdf
    • http://loaminoo.linkpc.net/3098098095098/Touching-the-Void-The-True-Story-of-One-Man-s-Miraculous-Survival-by-Joe-Simpson.pdf
    • http://loaminoo.linkpc.net/3093094099099092/Evidence-Dismissed-The-Inside-Story-of-the-Police-Investigation-of-O-J-Simpson-by-Tom-Lange.pdf
    • http://loaminoo.linkpc.net/6093091092099/Dancing-Leaves-The-Story-of-New-Zealand-s-Cabbage-Tree-Ti-Kouka-by-Philip-Simpson.pdf
    • http://loaminoo.linkpc.net/1092098098096092/Land-of-the-Beautiful-Dead-by-R-Lee-Smith.pdf
    • http://loaminoo.linkpc.net/2099093096093/Bound-for-the-Promise-Land-by-Troy-D-Smith.pdf
    • http://loaminoo.linkpc.net/1091090092091091/Virgin-Land-The-American-West-as-Symbol-and-Myth-by-Henry-Nash-Smith.pdf
    • http://loaminoo.linkpc.net/6092098098091/Buying-the-Land-Selling-the-Land-Govts-Maori-Land-in-the-North-Island-1865-1921-by-Richard-Boast.pdf
    • http://loaminoo.linkpc.net/3090093099093090/Bald-in-the-Land-of-Big-Hair-A-True-Story-by-Joni-Rodgers.pdf
    • http://loaminoo.linkpc.net/7096097096094097/The-Story-Handbook-A-Primer-on-Language-and-Storytelling-for-Land-Conservationists-by-Helen-Whybrow.pdf
    • http://loaminoo.linkpc.net/1098099091090092/The-Land-Where-Lemons-Grow-The-Story-of-Italy-and-its-Citrus-Fruit-by-Helena-Attlee.pdf
    • http://loaminoo.linkpc.net/4090098091096093/In-the-Land-of-Magic-Soldiers-A-Story-of-White-and-Black-in-West-Africa-by-Daniel-Bergner.pdf
    • http://loaminoo.linkpc.net/2098099094094098/The-Broad-Arrow-Being-The-Story-Of-Maida-Gwynnham-A-Lifer-In-Van-Diemen-s-Land-by-Olin-Keese.pdf
    • http://loaminoo.linkpc.net/3093091096092090/The-Collected-Short-Stories-of-Harriette-Simpson-Arnow-by-Harriette-Simpson-Arnow.pdf
    • http://loaminoo.linkpc.net/4098096092097095/The-End-of-the-Story-by-Clark-Ashton-Smith.pdf
    • http://loaminoo.linkpc.net/4090090090097095/Land-of-the-Burnt-Thigh-A-Lively-Story-of-Women-Homesteaders-on-the-South-Dakota-Frontier-by-Edith-Eudora-Kohl.pdf
    • http://loaminoo.linkpc.net/4092097090090095/The-Voice-Mel-Allen-s-Untold-Story-by-Curt-Smith.pdf