Malicious PDF — malware analysis report

Static analysis result for SHA-256 2081f42fa05d80b8…

MALICIOUS

PDF

23.4 KB Created: 2019-04-30 03:56:11 +01:00 Authoring application: mPDF 5.7
MD5: 9177f704bdbbfc0418755dc00ecd35f6 SHA-1: ce892413db0adc3d414a3f085d54a12e7f1bbcac SHA-256: 2081f42fa05d80b8d2a9e261629596c8be2fa1c9251022ba593de37e3d64d9ee
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF file contains a large number of embedded links pointing to external PDF documents, a technique often used for SEO poisoning or to distribute malicious content. While the extracted URLs themselves are currently marked as benign, the sheer volume and structure suggest a malicious intent to drive traffic or potentially host malicious content. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/6098093095099097/An-Accident-Waiting-to-Happen-A-Life-with-Ehlers-Danlos-Syndrome-by-Philip-Howard.pdf
    • http://loaminoo.linkpc.net/1091097093090095093/Ehlers-Danlos-Syndrome-with-Liberty-the-Dog-Liberty-the-Ehlers-Danlos-Dog-Liberty-an-Emotional-Support-Dog-Helps-You-Explain-Ehlers-Danlos-Syndrome-to-Others-by-Amy-Dee-Hosp.pdf
    • http://loaminoo.linkpc.net/1091097092099097099/The-Official-Patient-s-Sourcebook-on-Ehlers-Danlos-Syndrome-by-Philip-M-Parker.pdf
    • http://loaminoo.linkpc.net/1091097093091096091/Liberty-the-Ehlers-Danlos-Dog-Liberty-an-Emotional-Support-Dog-Helps-You-Explain-Ehlers-Danlos-Syndrome-to-Others-by-Amy-Dee-Hosp.pdf
    • http://loaminoo.linkpc.net/2093097096091094/Issues-and-Management-of-Joint-Hypermobility-A-Guide-for-the-Ehlers-Danlos-Syndrome-Hypermobility-Type-and-the-Hypermobility-Syndrome-by-Brad-T-Tinkle.pdf
    • http://loaminoo.linkpc.net/1091097093091094098/Our-Stories-of-Strength-Living-with-Ehlers-Danlos-Syndrome-by-Mysti-Reutlinger.pdf
    • http://loaminoo.linkpc.net/1091097092098098098/Our-Stories-of-Strength-Living-with-Ehlers-Danlos-Syndrome-by-Kendra-Neilsen-Myles.pdf
    • http://loaminoo.linkpc.net/1091097092098099092/Being-Built-Wrong-One-Woman-s-Struggle-with-Ehlers-Danlos-Syndrome-by-Alexa-Simmons.pdf
    • http://loaminoo.linkpc.net/1091097092099097090/My-Eds-Ehlers-Danlos-Syndrome-Journey-Medical-and-Personal-Journal-by-Brad-T-Tinkle.pdf
    • http://loaminoo.linkpc.net/1091097092099097097/Journey-to-Health-A-Holistic-Approach-to-Ehlers-Danlos-Syndrome-by-Mysti-Reutlinger.pdf
    • http://loaminoo.linkpc.net/1090093097098099091/An-Accident-Waiting-to-Happen-by-Vincent-Banville.pdf
    • http://loaminoo.linkpc.net/4092098090097090/Waiting-for-Pops-A-Journey-from-Boy-to-Man-by-John-Philip-Riffice.pdf
    • http://loaminoo.linkpc.net/9096097095094094/Castells-and-the-Media-by-Philip-N-Howard.pdf
    • http://loaminoo.linkpc.net/1090094096094097/The-Quantum-Universe-Everything-That-Can-Happen-Does-Happen-by-Brian-Cox.pdf
    • http://loaminoo.linkpc.net/3093098097097093/Walking-Papers-The-Accident-that-Changed-My-Life-and-the-Business-that-Got-Me-Back-on-My-Feet-by-Francesco-Clark.pdf
    • http://loaminoo.linkpc.net/3093098092090096/Make-It-Happen-Live-your-best-life-by-Michelle-Bridges.pdf
    • http://loaminoo.linkpc.net/2095098098093098/The-Death-of-Common-Sense-How-Law-Is-Suffocating-America-by-Philip-K-Howard.pdf
    • http://loaminoo.linkpc.net/3094097098099090/The-Collected-Stories-of-Philip-K-Dick-1-The-Short-Happy-Life-of-the-Brown-Oxford-by-Philip-K-Dick.pdf
    • http://loaminoo.linkpc.net/3093090090093098/Betrayal-by-the-Brain-The-Neurologic-Basis-of-Chronic-Fatigue-Syndrome-Fibromyalgia-Syndrome-and-Related-Neural-Network-by-Jay-A-Goldstein.pdf
    • http://loaminoo.linkpc.net/4090091091098097/Chemical-Sensitivity-A-Guide-to-Coping-with-Hypersensitivity-Syndrome-Sick-Building-Syndrome-and-Other-Environmental-Illnesses-by-Bonnye-L-Matthews.pdf
    • http://loaminoo.linkpc.net/2093097096091094/Issues-and-Management-of-Joint-Hypermobility-A-Guide-for-the-Ehlers-Danlos-Syndrome-Hypermobility-Type-and-the-Hypermobility-Syndrome-by-Brad-T-Tink