Malicious PDF — malware analysis report

Static analysis result for SHA-256 da6625c03f4f2853…

MALICIOUS

PDF

15.4 KB Created: 2019-04-30 05:12:02 +01:00 Authoring application: mPDF 5.7
MD5: 9a894e4bf08afe279cde2152d7796867 SHA-1: 3d3ecd579c2d34bef7e76049e172ba7c3ab44e90 SHA-256: da6625c03f4f2853720845b9313757f41a71b6aec99fd8b3b752ca3904f8d76e
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1059.001 PowerShell

The PDF contains a large number of embedded links to external websites, identified by the PDF_SEO_LINK_FARM heuristic. While the document body is unreadable, the sheer volume of links suggests a malicious intent, likely SEO spam or a gateway to further malicious content. The ML classifier also flagged this PDF as malicious with high confidence. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9880

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/4094098093098095/Decisions-of-the-Heart-A-Forever-Family-1-by-Kiernan-Kelly.pdf
    • http://loaminoo.linkpc.net/4094098096091096/A-Forever-Family-A-Forever-Family-2-by-Kiernan-Kelly.pdf
    • http://loaminoo.linkpc.net/3090092098091093/Fionn-o-the-Fae-by-Kiernan-Kelly.pdf
    • http://loaminoo.linkpc.net/3095095092090096/In-Bear-Country-by-Kiernan-Kelly.pdf
    • http://loaminoo.linkpc.net/1091091097098098091/Sci-Fi-Rent-Boy-Tales-From-Dreg-City-1-by-Kiernan-Kelly.pdf
    • http://loaminoo.linkpc.net/1091097091095091091/A-Forever-Family-for-the-Army-Doc-The-Halliday-Family-1-by-Meredith-Webber.pdf
    • http://loaminoo.linkpc.net/3091095098095098/Conscious-Decisions-of-the-Heart-by-John-Wiltshire.pdf
    • http://loaminoo.linkpc.net/2099097094092099/Conscious-Decisions-of-the-Heart-More-Heat-Than-The-Sun-2-by-John-Wiltshire.pdf
    • http://loaminoo.linkpc.net/7092091098093098/The-Ambition-Decisions-What-Women-Know-about-Work-Family-and-the-Path-to-Building-a-Life-by-Hana-Schank.pdf
    • http://loaminoo.linkpc.net/3097099090095098/The-Heart-of-the-Family-Campion-family-3-by-Annie-Groves.pdf
    • http://loaminoo.linkpc.net/1090093099090099097/Sacrifice-Book-One-of-the-Last-Forever-by-Kelly-Komm.pdf
    • http://loaminoo.linkpc.net/3097096094097095/Harsh-Decisions-Decisions-2-by-Casey-Harvell.pdf
    • http://loaminoo.linkpc.net/3097097096091094/Forever-Family-Men-of-Steel-4-5-by-M-J-Fields.pdf
    • http://loaminoo.linkpc.net/4091090097096098/The-Smoking-Gun-A-Kelly-Family-Novel-by-Lashell-Collins.pdf
    • http://loaminoo.linkpc.net/4094094095090093/Heart-in-a-Box-by-Kelly-Thompson.pdf
    • http://loaminoo.linkpc.net/4091094092096096/Going-Backwards-The-Baptiste-Family-Book-2-by-Jacki-Kelly.pdf
    • http://loaminoo.linkpc.net/7094091090098095/Catch-Me-The-Winters-Family-Series-1-by-Terra-Kelly.pdf
    • http://loaminoo.linkpc.net/2091097092098099/Wife-For-a-Week-Bennett-Family-1-by-Kelly-Hunter.pdf
    • http://loaminoo.linkpc.net/2098096098090098/Mastering-the-Marquess-The-Stanton-Family-1-by-Vanessa-Kelly.pdf
    • http://loaminoo.linkpc.net/2099091097091091/Forever-In-My-Heart-by-Deborah-McClatchey.pdf
    • http://loaminoo.linkpc.net/7092091098093098/The-Ambition-Decisions-What-Women-Know-about-Work