Malicious PDF — malware analysis report

Static analysis result for SHA-256 3153d1523de08bb4…

MALICIOUS

PDF

18.9 KB Created: 2019-04-30 23:24:26 +01:00 Authoring application: mPDF 5.7
MD5: 833a7649223329285db931cc6d3dd874 SHA-1: d83cda9c2c2994f5e77522d7822863f4896c03f0 SHA-256: 3153d1523de08bb40e30290469703b10d38258efd48760c05b36ed135a3a8125
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The PDF file contains a large number of embedded URLs pointing to external PDF documents, a technique often used for SEO manipulation or to distribute malicious content. The heuristic 'PDF_SEO_LINK_FARM' indicates a mass external PDF link farm. While no scripts were extracted, the sheer volume of links suggests a malicious intent to drive traffic or potentially deliver further payloads. The URLs themselves appear to be benign, but the pattern of linking is suspicious.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/2095096092099095/Pack-Rules-City-Wolves-1-by-J-C-Holly.pdf
    • http://loaminoo.linkpc.net/8095099095094093/City-of-Light-City-of-Poison-Murder-Magic-and-the-First-Police-Chief-of-Paris-by-Holly-Tucker.pdf
    • http://loaminoo.linkpc.net/3097098098092096/The-Master-s-Beloved-Pack-Rules-13-by-B-A-Stretke.pdf
    • http://loaminoo.linkpc.net/3097098098092099/Jesse-s-Love-Pack-Rules-12-by-B-A-Stretke.pdf
    • http://loaminoo.linkpc.net/3097098098093096/The-Wolf-Doctor-s-Mate-Pack-Rules-7-by-B-A-Stretke.pdf
    • http://loaminoo.linkpc.net/1098098099094096/Jaxson-River-Pack-Wolves-1-by-Alisa-Woods.pdf
    • http://loaminoo.linkpc.net/1098099090097097/Jared-River-Pack-Wolves-3-by-Alisa-Woods.pdf
    • http://loaminoo.linkpc.net/2099099098099090/Prince-of-Wolves-Mountain-Pack-Chronicles-2-by-Preston-Walker.pdf
    • http://loaminoo.linkpc.net/1097097092091/Crystal-City-Lights-by-Holly-Moulder.pdf
    • http://loaminoo.linkpc.net/8097099091098094/The-Pack-Dogs-of-the-Drowned-City-2-by-Dayna-Lorentz.pdf
    • http://loaminoo.linkpc.net/4098093094096091/City-of-Bones-City-of-Ashes-City-of-Glass-City-of-Fallen-Angels-City-of-Lost-Souls-The-Mortal-Instruments-1-5-by-Cassandra-Clare.pdf
    • http://loaminoo.linkpc.net/3097096090091/City-of-Bones-City-of-Ashes-City-of-Glass-City-of-Fallen-Angels-City-of-Lost-Souls-The-Mortal-Instruments-1-5-by-Cassandra-Clare.pdf
    • http://loaminoo.linkpc.net/9096095094094099/Rules-of-Shanit-The-Divine-Rules-for-Followers-of-Shani-Sanatan-Dharma-Where-there-is-God--there-is-a-Way-by-Anurag-Kartik.pdf
    • http://loaminoo.linkpc.net/8097097090091095/If-Life-Is-a-Game-These-Are-the-Rules-Ten-Rules-for-Being-Human-as-Introduced-in-Chicken-Soup-for-the-Soul-by-Cherie-Carter-Scott.pdf
    • http://loaminoo.linkpc.net/3099094090097099/The-Rules-II-More-Rules-to-Live-and-Love-By-by-Ellen-Fein.pdf
    • http://loaminoo.linkpc.net/1098090090094096/The-Rules-for-Breaking-The-Rules-for-Disappearing-2-by-Ashley-Elston.pdf
    • http://loaminoo.linkpc.net/5090092092097090/The-Wolves-of-Willoughby-Chase-The-Wolves-Chronicles-1-by-Joan-Aiken.pdf
    • http://loaminoo.linkpc.net/4098090095098098/A-Cougar-Among-Wolves-Black-Hills-Wolves-45-by-Kali-Willows.pdf
    • http://loaminoo.linkpc.net/4091090091090/The-Wolves-of-Willoughby-Chase-The-Wolves-Chronicles-1-by-Joan-Aiken.pdf
    • http://loaminoo.linkpc.net/9096098097097090/Six-Pack-Abs-365---How-To-Get-And-Keep-Your-Six-Pack-Abs-All-Year-Long-by-Geoff-Neupert.pdf
    • http://loaminoo.linkpc.net/4098093094096091/City-of-Bones-City-of-Ashes-City-of-Glass-City-of-Fallen-Angels-City-of-Lost-Souls-The-Mortal-Instruments-1-5-by-