Malicious PDF — malware analysis report

Static analysis result for SHA-256 ec6ad497bf759302…

MALICIOUS

PDF

22.6 KB Created: 2019-04-30 11:19:38 +01:00 Authoring application: mPDF 5.7
MD5: 0358b16cc61b9865f42671e82e8cf7a0 SHA-1: d3625f7445f5b0a0500cd285a7b6ed1c305440b1 SHA-256: ec6ad497bf75930203aace52ffc24ae4c15ec27ffc70e93260d88ea3756414b7
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1204.002 User Execution: Malicious File

The PDF file contains a large number of embedded external links, characteristic of a link farm. The ML classifier also flagged this PDF as malicious with high confidence. The primary attack pattern involves directing users to a multitude of external URLs, likely for malicious redirection or content delivery.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9903

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/1091095098098094090/Joyland-A-Children-s-Christmas-Musical-Teaching-the-Blessing-of-Giving-by-Pam-Andrews.pdf
    • http://loaminoo.linkpc.net/1091095098098093094/Joyland-Retro-Selections-from-Joyland-Magazine-by-Joyland-Magazine.pdf
    • http://loaminoo.linkpc.net/1097099095096/Healing-Images-for-Children-Teaching-Relaxation-and-Guided-Imagery-to-Children-Facing-Cancer-and-Other-Serious-Illnesses-by-Nancy-C-Klein.pdf
    • http://loaminoo.linkpc.net/3097094096093091/A-Christmas-Blessing-by-Sherryl-Woods.pdf
    • http://loaminoo.linkpc.net/1090091098090099/Blessing-Your-Children-How-You-Can-Love-the-Kids-In-Your-Life-by-Jack-W-Hayford.pdf
    • http://loaminoo.linkpc.net/1098099098090091/Teaching-Your-Children-Values-by-Linda-Eyre.pdf
    • http://loaminoo.linkpc.net/3091091098091099/Emma-the-Bumble-Bee-A-beautiful-story-designed-to-help-children-believe-and-trust-themselves-Giving-them-confidence-and-leadership-skills-by-Monica-Dumont.pdf
    • http://loaminoo.linkpc.net/5090094090099093/Reaching-and-Teaching-Children-Who-Hurt-by-Susan-Craig.pdf
    • http://loaminoo.linkpc.net/1090098092097094094/5-Children-s-Stories-Teaching-Virtuous-Principles-by-Diane-Elston.pdf
    • http://loaminoo.linkpc.net/9092096095092090/Rose-Where-Did-You-Get-That-Red-Teaching-Great-Poetry-to-Children-by-Kenneth-Koch.pdf
    • http://loaminoo.linkpc.net/2096092099097093/Science-For-Children-Developing-A-Personal-Approach-To-Teaching-by-Marilyn-Fleer.pdf
    • http://loaminoo.linkpc.net/8095094093095098/Teaching-with-Children-s-Books-Paths-to-Literature-Based-Instruction-by-Marilou-Sorensen.pdf
    • http://loaminoo.linkpc.net/9095096092096098/Teaching-Children-with-Pragmatic-Difficulties-of-Communication-Classroom-Approaches-by-Gilber-MacKay.pdf
    • http://loaminoo.linkpc.net/2091093099097091/The-Christmas-Violin-by-Buffy-Andrews.pdf
    • http://loaminoo.linkpc.net/5090092098095098/Socks-for-Christmas-by-Andy-Andrews.pdf
    • http://loaminoo.linkpc.net/5090094091096092/Teaching-Children-Compassionately-How-Students-and-Teachers-Can-Succeed-with-Mutual-Understanding-by-Marshall-B-Rosenberg.pdf
    • http://loaminoo.linkpc.net/9097091090098097/Teaching-Kids-about-God-An-Age-by-Age-Plan-for-Parents-of-Children-Brom-Birth-to-Age-Twelve-by-John-Trent.pdf
    • http://loaminoo.linkpc.net/1090090090096096099/Gift-of-the-Magi-A-Christmas-Musical-Based-on-O-Henry-s-Story-by-O-Henry.pdf
    • http://loaminoo.linkpc.net/5090094091096097/Teaching-Children-to-Care-Classroom-Management-for-Ethical-and-Academic-Growth-K-8-by-Ruth-Sidney-Charney.pdf
    • http://loaminoo.linkpc.net/6097093091095096/Teaching-Kids-to-Think-Raising-Confident-Independent-and-Thoughtful-Children-in-an-Age-of-Instant-Gratification-by-Darlene-Sweetland.pdf