MALICIOUS
90
Risk Score
Malware Insights
MITRE ATT&CK
T1566.002 Spearphishing Attachment
T1204.002 Malicious File
The PDF contains a mass of external links, identified by the PDF_SEO_LINK_FARM heuristic. The ML classifier also flagged this PDF as malicious with high confidence. The embedded URLs point to a domain that appears to be hosting numerous book-related PDFs, suggesting a SEO spam or phishing campaign to drive traffic or distribute further malicious content.
Machine Learning
- Nyx PDF Classifier malicious score 0.9903
Heuristics 2
-
Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARMSmall PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
-
Embedded URL info EMBEDDED_URLOne or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.URL http://loaminoo.linkpc.net/3097094093095099/Temple-Hill-The-Cities-2-by-Drew-Karpyshyn.pdf
- http://loaminoo.linkpc.net/1095098094090092/Chaos-Unleashed-by-Drew-Karpyshyn.pdf
- http://loaminoo.linkpc.net/7095098095093/Annihilation-Star-Wars-The-Old-Republic-4-by-Drew-Karpyshyn.pdf
- http://loaminoo.linkpc.net/6097092090093091/Revan-Star-Wars-The-Old-Republic-3-by-Drew-Karpyshyn.pdf
- http://loaminoo.linkpc.net/6095097097097/Rule-of-Two-Star-Wars-Darth-Bane-2-by-Drew-Karpyshyn.pdf
- http://loaminoo.linkpc.net/6098091093095/Path-of-Destruction-Star-Wars-Darth-Bane-1-by-Drew-Karpyshyn.pdf
- http://loaminoo.linkpc.net/1098099092096099/Chaos-Unleashed-The-Chaos-Born-3-by-Drew-Karpyshyn.pdf
- http://loaminoo.linkpc.net/4095094091095/Mass-Effect-Retribution-Mass-Effect-3-by-Drew-Karpyshyn.pdf
- http://loaminoo.linkpc.net/1095092093099097/A-Light-on-the-Hill-Cities-of-Refuge-1-by-Connilyn-Cossette.pdf
- http://loaminoo.linkpc.net/8096095095097/The-Phantom-of-Pine-Hill-Nancy-Drew-Mystery-Stories-42-by-Carolyn-Keene.pdf
- http://loaminoo.linkpc.net/1090099092099093096/50-Cities-of-the-U-S-A-Explore-America-s-cities-with-50-fact-filled-maps-by-Gabrielle-Balkan.pdf
- http://loaminoo.linkpc.net/1099095094090094/The-Temple-of-Doubt-The-Temple-of-Doubt-1-by-Anne-Boles-Levy.pdf
- http://loaminoo.linkpc.net/4094092099098091/Drew-Bradley-s-Hero-Volume-1-1-Episodes-1-8-Story-Arc-1-The-Beginning-by-Drew-Bradley.pdf
- http://loaminoo.linkpc.net/5093093094094096/The-Temple-of-the-Blind-The-Temple-of-the-Blind-3-by-Brian-Harmon.pdf
- http://loaminoo.linkpc.net/4094096093/The-Innkeeper-of-Ivy-Hill-Tales-from-Ivy-Hill-1-by-Julie-Klassen.pdf
- http://loaminoo.linkpc.net/9099090099097098/Hill-s-Wilmington-New-Hanover-County-N-C-City-Directory-1956-Including-Audubon-Devon-Park-Edgewood-Foxtown-Garden-City-Hanover-Heights-Highwood-Park-Idlewild-Longleaf-Hill-Oak-Court-Oak-Crest-Piney-Woods-and-Winter-Park-by-Hill-Directory-Company.pdf
- http://loaminoo.linkpc.net/9099090099098090/Hill-s-Wilmington-New-Hanover-County-N-C-City-Directory-1958-Including-Audubon-Devon-Park-Edgewood-Foxtown-Garden-City-Hanover-Heights-Highwood-Park-Idlewild-Long-Leaf-Hill-Oak-Court-Oak-Crest-Piney-Woods-and-Winter-Park-by-Hill-Directory-Company.pdf
- http://loaminoo.linkpc.net/2097095093095/Keeper-of-the-Lost-Cities-Keeper-of-the-Lost-Cities-1-by-Shannon-Messenger.pdf
- http://loaminoo.linkpc.net/8098096094090090/The-Secret-Saturdays---Characters-Abbey-Grey-Agent-Epsilon-Arthur-Beeman-Baron-Finster-Chonos-Khan-Deadbolt-Doc-Monday-Doc-Saturday-Doyle-Blackwell-Dr-Lee-Drew-Monday-Drew-Saturday-Elija-Saturday-Eterno-Fisk-Robots-Fiskerton-Fisk-Satur-by-Source-Wikipedia.pdf
- http://loaminoo.linkpc.net/4097091093096094/Cooking-At-Harmony-Hill-Recipes-for-Hope-and-Healing-by-x-Harmony-Hill-Cancer-Retreat-Center.pdf
- http://loaminoo.linkpc.net/1090099092099093096/50-Cities-of-the-U-S-A-Explore-America-s-cities-with-50-fact-filled-maps-by-Gabrielle-Bal
Open this report in the interactive analyzer, or submit your own file for analysis.