Malicious PDF — malware analysis report

Static analysis result for SHA-256 3a1e0f95534797d2…

MALICIOUS

PDF

16.4 KB Created: 2019-04-30 05:36:47 +01:00 Authoring application: mPDF 5.7
MD5: 76e7bd129ac1d08eaae4b5892525c857 SHA-1: 87202e5fa526e8a38ba6e3e7f40f7327c5ddeb8d SHA-256: 3a1e0f95534797d2ff631b42277814026be216cacf3a4978cfa4a1d88ff9f6bf
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The PDF file contains a large number of embedded URLs, identified as a link farm. The primary heuristic indicates a critical finding related to this link farm, suggesting a potential SEO manipulation or content hosting strategy. While no scripts were extracted, the sheer volume of links points to a malicious intent, possibly to redirect users to malicious sites or to distribute further malware. The URLs themselves appear to be benign, but their aggregation in this manner is suspicious.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/3099090097091092/The-Wife-The-Professor-4-by-Josie-Leigh.pdf
    • http://loaminoo.linkpc.net/1097090091099097/The-Professor-The-Professor-1-by-Josie-Leigh.pdf
    • http://loaminoo.linkpc.net/2091091093099097/Love-but-Never-Never-1-by-Josie-Leigh.pdf
    • http://loaminoo.linkpc.net/1093095097095097/Temporary-Wife-by-Roberta-Leigh.pdf
    • http://loaminoo.linkpc.net/7099097090095092/Four-Josie-D-Josie-DuPuy-Book-2-by-H-Berkeley-Rourke.pdf
    • http://loaminoo.linkpc.net/8099091091097093/Professor-Cline-Redeemed-Professor-2-by-J-M-LaRocca.pdf
    • http://loaminoo.linkpc.net/9096095097090099/Professor-Layton-and-the-Phantom-Deity-Professor-Layton-2-by-Yanagihara-Hui.pdf
    • http://loaminoo.linkpc.net/1097092098098091/Accidental-Leigh-Literal-Leigh-Romance-Diaries-1-by-Melanie-James.pdf
    • http://loaminoo.linkpc.net/3099090098092098/Hopeful-Leigh-Literal-Leigh-Romance-Diaries-3-by-Melanie-James.pdf
    • http://loaminoo.linkpc.net/4095097093091092/The-Bed-Wife-The-Bed-Wife-Chronicles-1-by-Suzanna-Lynn.pdf
    • http://loaminoo.linkpc.net/1098092090098091/The-Bed-Wife-The-Bed-Wife-Chronicles-1-by-Suzanna-Lynn.pdf
    • http://loaminoo.linkpc.net/4098092090099093/The-Bed-Wife-The-Bed-Wife-Chronicles-1-by-Suzanna-Lynn.pdf
    • http://loaminoo.linkpc.net/1091091094090099093/My-Wife-The-Hotwife-cuckold-chastity-cheating-wife-housewife-taboo-humiliation-size-queen-stretching-loving-wives-open-marriage-by-Ronnie-Kinski.pdf
    • http://loaminoo.linkpc.net/5096097090099099/My-Wife-Is-My-Wife-1-by-Adam-Cuong.pdf
    • http://loaminoo.linkpc.net/8093099098094092/Sissy-Husband---Pornstar-Wife-Slurpy-cuckolding-and-female-domination-at-the-hands-of-my-pornstar-wife-The-Femdom-Trilogy-Book-1-by-Elle-Mesen.pdf
    • http://loaminoo.linkpc.net/7096098090097097/My-Wife-His-Fiance-His-Wife-My-Fiance-Book-1-by-Chaise-Gaines.pdf
    • http://loaminoo.linkpc.net/4099090099090/Forever-a-Hustler-s-Wife-A-Hustler-s-Wife-2-by-Nikki-Turner.pdf
    • http://loaminoo.linkpc.net/2099099096099095/Brought-Forth-by-Josie-Finch.pdf
    • http://loaminoo.linkpc.net/8099098096/One-Day-in-December-by-Josie-Silver.pdf
    • http://loaminoo.linkpc.net/8097098097091093/The-Cats-Abc-by-Josie-Firmin.pdf
    • http://loaminoo.linkpc.net/4098092090099093/The-Bed-Wife-The-Bed-Wife-Chronicles-1-by-Suzann