Malicious PDF — malware analysis report

Static analysis result for SHA-256 3c8ae4c74f56df13…

MALICIOUS

PDF

19.1 KB Created: 2019-05-02 14:20:26 +01:00 Authoring application: mPDF 5.7
MD5: 8d61483f73e657b0cbcc9c9191d74803 SHA-1: c3a00bed64a4729a5fc7273b62ffb8e09822af7b SHA-256: 3c8ae4c74f56df1369a1e0c620ad2f3d79bcd6bce4ede2d2c8351c10594bf1e5
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The PDF file contains a large number of embedded links to external PDF documents, a technique often used for SEO poisoning or to distribute malicious content. The heuristic 'PDF_SEO_LINK_FARM' indicates a mass external link farm, with the first URL being http://loaminoo.linkpc.net/7096097090099092/Keys-to-Uncomfortable-Living-An-Indulgence-of-My-Peculiarities-An-Indictment-of-Yours-by-Bob-Woodiwiss.pdf. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc
    • http://loaminoo.linkpc.net/7096097090099092/Keys-to-Uncomfortable-Living-An-Indulgence-of-My-Peculiarities-An-Indictment-of-Yours-by-Bob-Woodiwiss.pdf
    • http://loaminoo.linkpc.net/1098099098096090/It-s-a-Happy-Life-Keys-to-Successful-Enjoyable-Living-by-Evan-Edwards.pdf
    • http://loaminoo.linkpc.net/1090095095098092/Living-with-Joy-Keys-to-Personal-Power-and-Spiritual-Transformation-by-Sanaya-Roman.pdf
    • http://loaminoo.linkpc.net/7096097090094097/Kathleen-E-Woodiwiss-Collection-The-Elusive-Flame-A-Season-Beyond-a-Kiss-by-Kathleen-E-Woodiwiss.pdf
    • http://loaminoo.linkpc.net/3096094093090097/Keys-City-of-Keys-Book-1-by-Amber-Kell.pdf
    • http://loaminoo.linkpc.net/1099092097090095/Indulgence-by-Jack-Llawayllynn.pdf
    • http://loaminoo.linkpc.net/2094090094091093/The-Peculiarities-of-German-History-Bourgeois-Society-and-Politics-in-Nineteenth-Century-Germany-by-David-Blackbourn.pdf
    • http://loaminoo.linkpc.net/1097099091091092/Grave-Indulgence-by-William-Doonan.pdf
    • http://loaminoo.linkpc.net/1099098093094094/Zane-Alluring-Indulgence-2-by-Nicole-Edwards.pdf
    • http://loaminoo.linkpc.net/8090099093094091/The-Awkward-Human-Survival-Guide-How-to-Handle-Life-s-Most-Uncomfortable-Situations-by-Adam-Dachis.pdf
    • http://loaminoo.linkpc.net/9096093098092/Indulgence-A-Million-Words-of-Romance-by-Sharon-Hamilton.pdf
    • http://loaminoo.linkpc.net/4092091097094092/What-Took-So-Long-A-Group-Phobic-Uncomfortable-Competitor-s-Journey-to-Mahjong---A-Memoir-Essay-by-Meredith-Marple.pdf
    • http://loaminoo.linkpc.net/1095096095090091/The-Keys-to-Paradise-Keys-to-Paradise-1-3-by-Robert-E-Vardeman.pdf
    • http://loaminoo.linkpc.net/1094094095095090/Shanna-by-Kathleen-E-Woodiwiss.pdf
    • http://loaminoo.linkpc.net/4092096096099/Everlasting-by-Kathleen-E-Woodiwiss.pdf
    • http://loaminoo.linkpc.net/2095095099092092/The-Reluctant-Suitor-by-Kathleen-E-Woodiwiss.pdf
    • http://loaminoo.linkpc.net/1091090095090098099/Volk-in-golobica-by-Kathleen-E-Woodiwiss.pdf
    • http://loaminoo.linkpc.net/3098097090098099/Three-Weddings-and-a-Kiss-by-Kathleen-E-Woodiwiss.pdf
    • http://loaminoo.linkpc.net/4090097096099/The-Wolf-and-the-Dove-by-Kathleen-E-Woodiwiss.pdf
    • http://loaminoo.linkpc.net/7096097091094094/THE-ABCS-OF-LIFE-for-WOMEN-by-Carol-Woodiwiss.pdf