Malicious PDF — malware analysis report

Static analysis result for SHA-256 24abd3c4ff0df5e7…

MALICIOUS

PDF

20.1 KB Created: 2019-05-02 05:21:04 +01:00 Authoring application: mPDF 5.7
MD5: 403e7b90f820f77aa6e329ace731b91b SHA-1: 672e2108f51c72316a37146ac51e3a3675361767 SHA-256: 24abd3c4ff0df5e734dbe6400ae9d5cf4a5bdb1e7061b50b5803fcb0f749446c
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file contains a heuristic firing for a large number of embedded external links, suggesting a link farm or SEO manipulation tactic. While the URLs themselves are marked as benign, the sheer volume and the nature of the heuristic indicate a potentially malicious intent to distribute or redirect users. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/1094097095095094/Daniel-s-Journal-Fallen-Shorts-3-8-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/1094097098096096/Daniel-on-Trial-Fallen-Shorts-3-4-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/1094097095090090/Daniel-and-Gabbe-s-Fight-Fallen-Shorts-0-6-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/2092091099099092/The-Fallen-Series-Trilogy-Fallen-1-3-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/2098094097094096/Fallen-in-Love-Fallen-3-5-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/3095093096093092/Fallen-Fallen-1-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/3092092097094/Fallen-Fallen-1-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/3097098094093095/Fallen-Fallen-1-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/6095093090090090/Torment-Fallen-2-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/8094097097094/Rapture-Fallen-4-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/3092099098097/Rapture-Fallen-4-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/5099098099093095/Fallen---Capa-do-Filme-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/1099099095091092/Exclusive-Chapters-Outtakes-Lauren-Kate-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/1090097098097092097/Seventeen-Shorts-Kurze-amp-quot-The-Art-of-Writing-Shorts-quot---A-Dual-Language-Reader-English---German-by-Jutta-Mahlke-M-a.pdf
    • http://loaminoo.linkpc.net/1093093098097098/A-Journal-of-the-Plague-Year-by-Daniel-Defoe.pdf
    • http://loaminoo.linkpc.net/2099097091091/Passion-by-Lauren-Kate.pdf
    • http://loaminoo.linkpc.net/2091099093095095/The-Glow-of-Fallen-Stars-Ventura-Saga-2-by-Kate-Ling.pdf
    • http://loaminoo.linkpc.net/7098093098093091/Once-Upon-a-Fairytale-6x9-Notebook-Journal-Diary-Keepsake-Book-Sketchbook-Travel-Journal-Meditation-Journal-Yoga-Journal-Planner-Organizer-Calligraphy-Book-Composition-Book-100-Lined-Pages-with-Dates-by-Judy-Sery-Barski.pdf
    • http://loaminoo.linkpc.net/7098094090099095/Love-Journal-Valentine-s-Day-Love-Journal-Diary-Memory-Notebook-Keepsake-Journal-Sketchbook-Blank-Book-Bullet-Journal-Notebook-Planner-Size-6x9-150-Dot-Grid-Pages-by-Night-Fairy.pdf
    • http://loaminoo.linkpc.net/7098094090099090/Love-Journal-Valentine-s-Day-Love-Journal-Diary-Memory-Notebook-Keepsake-Journal-Sketchbook-Blank-Book-Bullet-Journal-Notebook-Planner-Size-6x9-150-Dot-Grid-Pages-by-Night-Fairy.pdf
    • http://loaminoo.linkpc.net/1090097098097092097/Seventeen-Shorts-Kurze-amp-quot-The-Art-of-Writing