Malicious PDF — malware analysis report

Static analysis result for SHA-256 f898f724ba45ae98…

MALICIOUS

PDF

22.4 KB Created: 2019-04-30 05:08:44 +01:00 Authoring application: mPDF 5.7
MD5: 98ddb8b46af0c1577fe9f340f78e8ed3 SHA-1: 9672c08fd6b537df215e9b0345009618708feda1 SHA-256: f898f724ba45ae983b9ee014709470e65c90985ec19370410b847623ccfb4912
90 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1059.001 PowerShell

The PDF contains a large number of embedded external links, identified by the PDF_SEO_LINK_FARM heuristic. While most of these links resolve to benign book titles, the sheer volume and the ML classifier's high confidence score suggest a malicious intent, likely for SEO manipulation or to distribute further malicious content. No scripts were extracted from this sample.

Machine Learning

  • Nyx PDF Classifier malicious score 0.9901

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/7095096091099/The-Woman-Who-Swallowed-a-Toothbrush-And-Other-Weird-Medical-Case-Histories-by-Rob-Myers.pdf
    • http://loaminoo.linkpc.net/4098092097091091/Mabel-Gray-and-the-Wizard-Who-Swallowed-the-Sun-The-Mabel-Gray-Adventures-1-by-Clayton-Smith.pdf
    • http://loaminoo.linkpc.net/5090093097098098/Making-Words-Real-or-Nonsense-by-Nikki-Smith.pdf
    • http://loaminoo.linkpc.net/7090091098099092/THIS-IS-GONNA-HURT-Musique-photographie-et-vie-vues-par-l-objectif-distordu-de-Nikki-Sixx-by-Nikki-Sixx.pdf
    • http://loaminoo.linkpc.net/8095092099096090/Nikki-and-Deja-Birthday-Blues-Nikki-and-Deja-Book-Two-by-Karen-English.pdf
    • http://loaminoo.linkpc.net/2098096097091094/Joey-Pigza-Swallowed-the-Key-by-Jack-Gantos.pdf
    • http://loaminoo.linkpc.net/3098094091094090/There-Was-an-Old-Lady-Who-Swallowed-a-Turkey-by-Lucille-Colandro.pdf
    • http://loaminoo.linkpc.net/1097099096097092/There-Was-an-Old-Lady-Who-Swallowed-a-Clover-by-Lucille-Colandro.pdf
    • http://loaminoo.linkpc.net/6099093095096093/There-Was-a-Wee-Lassie-Who-Swallowed-a-Midgie-by-Rebecca-Colby.pdf
    • http://loaminoo.linkpc.net/1095096097094096/Nikki-Giovanni-Poetry-Collection-by-Nikki-Giovanni.pdf
    • http://loaminoo.linkpc.net/3099096094098099/Woman-Defamed-and-Woman-Defended-An-Anthology-of-Medieval-Texts-by-Alcuin-Blamires.pdf
    • http://loaminoo.linkpc.net/1098099099094094/It-s-in-the-House-Lessons-from-a-Widow-Woman-for-Everyone-Pearlable-Woman-1-by-Michelle-Word-Hollis.pdf
    • http://loaminoo.linkpc.net/1091091098093092091/A-Woman-of-Worth-Talitha-Cumi-Woman-Arise-by-Jacquelyn-Brown-Hadnot.pdf
    • http://loaminoo.linkpc.net/2099098093099098/A-Woman-Trapped-in-a-Woman-s-Body-Tales-from-a-Life-of-Cringe-by-Lauren-Weedman.pdf
    • http://loaminoo.linkpc.net/9093096097092092/A-Woman-s-Place-Leader-Guide-A-Bible-Study-Exploring-Every-Woman-s-Call-to-Work-by-Katelyn-Beaty.pdf
    • http://loaminoo.linkpc.net/1094096098092093/The-Key-That-Swallowed-Joey-Pigza-Joey-Pigza-5-by-Jack-Gantos.pdf
    • http://loaminoo.linkpc.net/4097097094093094/Confessions-of-Mrs-Smith-Reckless-Recollections-True-amp-Otherwise-by-Elinor-Goulding-Smith.pdf
    • http://loaminoo.linkpc.net/7098095090095093/Woman-and-Puppet---Woman-and-Puppet-The-New-Pleasure-Byblis-Leda-Immortal-Love-The-Artist-Triumphant-The-Hill-of-Horsel-by-Pierre-Lou-s.pdf
    • http://loaminoo.linkpc.net/5091096098093097/The-Lesbian-S-M-Safety-Manual-Basic-Health-and-Safety-for-Woman-To-Woman-S-M-by-Patrick-Califia-Rice.pdf
    • http://loaminoo.linkpc.net/5098092097096093/Racism-is-caused-by-the-white-woman-The-beauty-of-the-white-woman-is-the-problem-by-Jerry-Henrie.pdf
    • http://loaminoo.linkpc.net/8095092099096090/Nikki-and-Deja-Birthday-Blues-Nikki-and-Deja-Book