MALICIOUS
90
Risk Score
Malware Insights
MITRE ATT&CK
T1059.001 PowerShell
The PDF contains a large number of embedded URLs pointing to external PDF files, a technique often used for SEO poisoning or to redirect users to malicious content. The ML classifier strongly indicated maliciousness. The embedded URLs are the primary IOCs, and the heuristic suggests a link farm attack pattern.
Machine Learning
- Nyx PDF Classifier malicious score 0.9904
Heuristics 2
-
Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARMSmall PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
-
Embedded URL info EMBEDDED_URLOne or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.URL http://loaminoo.linkpc.net/6099098092095092/Alarm-in-mei-40-Dossier-1940-1945-by-Jan-Bauwens.pdf
- http://loaminoo.linkpc.net/6099098092096091/G-ring---noem-me-herr-Meyer-Dossier-1940-1945-by-Jan-Bauwens.pdf
- http://loaminoo.linkpc.net/2097093093098090/Berlin-Diaries-1940-1945-by-Marie-Vassiltchikov.pdf
- http://loaminoo.linkpc.net/1091093091098099099/Der-Lorbass-Jugendjahre-in-Masuren-1940-1945-by-Sergey-Bandilla.pdf
- http://loaminoo.linkpc.net/2093091095093/Roosevelt-The-Soldier-of-Freedom-1940-1945-by-James-MacGregor-Burns.pdf
- http://loaminoo.linkpc.net/2093098099098095/A-Blessing-in-Disguise-War-and-Town-Planning-in-Europe-1940-1945-by-J-rn-D-wel.pdf
- http://loaminoo.linkpc.net/1091093091092096095/Hilversum-Unter-Dem-Hakenkreuz-Die-Rundfunkpolitik-Der-Nationalsozialisten-In-Den-Besetzten-Niederlanden-1940-1945-by-Michael-Crone.pdf
- http://loaminoo.linkpc.net/7098096093098099/Pretres-Religieux-Et-Religieuses-Dans-La-Resistance-Au-Nazisme-1940-1945-Essai-de-Typologie-by-Charles-Molette.pdf
- http://loaminoo.linkpc.net/4098097090093098/Living-With-The-Enemy-An-Outline-Of-The-German-Occupation-Of-The-Channel-Islands-With-First-Hand-Accounts-By-People-Who-Remember-The-Years-1940-To-1945-by-Roy-McLoughlin.pdf
- http://loaminoo.linkpc.net/1091094093093098099/Der-HAPAG-Passagier-Dampfer-quot-Hansa-quot-Die-Schiffe-der-Albert-Ballin-Klasse-bei-der-Kriegsmarine-in-Gotenhafen-1940-1945-Ihr-Schicksal-by-Ulf-Normann-Neitzel.pdf
- http://loaminoo.linkpc.net/1092099091095093/Cause-for-Alarm-by-Erica-Spindler.pdf
- http://loaminoo.linkpc.net/6099098092090099/Moestuin-in-pot-by-Peter-Bauwens.pdf
- http://loaminoo.linkpc.net/2098099090092096/Alarm-in-Sk-ldgatan-Martin-Beck-5-by-Maj-Sj-wall.pdf
- http://loaminoo.linkpc.net/1091096092098090097/Alarm-Call-Oz-Blackstone-8-by-Quintin-Jardine.pdf
- http://loaminoo.linkpc.net/2091096098097092/Ring-the-Alarm-Clique-of-Misfits-1-by-Tara-Ann-Bradley.pdf
- http://loaminoo.linkpc.net/6099098092095097/Bayesian-Inference-in-Dynamic-Econometric-Models-by-Luc-Bauwens.pdf
- http://loaminoo.linkpc.net/6099098093090097/Small-States-and-the-Security-Challenge-in-the-New-Europe-by-Werner-Bauwens.pdf
- http://loaminoo.linkpc.net/6099098093091097/Vijgen-in-de-lage-landen-een-rijke-oogst-in-een-noordelijk-klimaat-by-Peter-Bauwens.pdf
- http://loaminoo.linkpc.net/6099098092096094/High-Frequency-Financial-Econometrics-Recent-Developments-Studies-in-Empirical-Economics-by-Luc-Bauwens.pdf
- http://loaminoo.linkpc.net/6097097097099093/The-Tumbleweed-Dossier-by-Sugar-Ray-Dodge.pdf
- http://loaminoo.linkpc.net/7098096093098099/Pretres-Religieux-Et-Religieuses-Dans-La-Resistance-Au-Nazisme-1940-1945-Essai-de-Typologie-by-Charles-Molette
Open this report in the interactive analyzer, or submit your own file for analysis.