Malicious PDF — malware analysis report

Static analysis result for SHA-256 5081dff551f02651…

MALICIOUS

PDF

21.9 KB Created: 2020-03-15 22:20:47 +00:00 Authoring application: mPDF 5.7
MD5: 4ee076319a230f92a65526de85621adf SHA-1: 91467628c21e672239084ee70cb19695ac45b701 SHA-256: 5081dff551f026516c6950c073e73aeaaf5f2ffb76054b0914218c7f154e1561
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF file contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic. These links point to various PDF documents hosted on the 'myhome.cx' domain. The primary purpose appears to be SEO manipulation or hosting a link farm, which is a common tactic for distributing malicious content or phishing lures. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://owlaokopdf.myhome.cx/281608169816081698169/Common-Prayer-A-Liturgy-for-Ordinary-Radicals-by-Shane-Claiborne.pdf
    • http://owlaokopdf.myhome.cx/98168816281668169/The-Irresistible-Revolution-Updated-and-Expanded-Living-as-an-Ordinary-Radical-by-Shane-Claiborne.pdf
    • http://owlaokopdf.myhome.cx/881618168816981628161/Iraq-Journal-2003-by-Shane-Claiborne.pdf
    • http://owlaokopdf.myhome.cx/881618168816881608165/Economy-of-Love-Creating-a-Community-of-Enough-by-Shane-Claiborne.pdf
    • http://owlaokopdf.myhome.cx/781668164816881658164/Ich-Muss-Verr-ckt-Sein-So-Zu-Leben-by-Shane-Claiborne.pdf
    • http://owlaokopdf.myhome.cx/381668164816181618167/Beating-Guns-Hope-for-People-Who-Are-Weary-of-Violence-by-Shane-Claiborne.pdf
    • http://owlaokopdf.myhome.cx/881618168816981618164/Red-Letter-Christianity-Living-the-Words-of-Jesus-No-Matter-the-Cost-by-Shane-Claiborne.pdf
    • http://owlaokopdf.myhome.cx/881618169816181628160/Jesus-Bombs-and-Ice-Cream-Study-Guide-Building-a-More-Peaceful-World-by-Shane-Claiborne.pdf
    • http://owlaokopdf.myhome.cx/981608165816381608165/Discovering-The-Book-Of-Common-Prayer-by-Sue-Careless.pdf
    • http://owlaokopdf.myhome.cx/481658160816981618168/The-1979-Book-of-Common-Prayer-by-Church-of-England.pdf
    • http://owlaokopdf.myhome.cx/1816181668163816281688165/The-Beauty-of-Holiness-in-the-Common-Prayer-by-Thomas-Bisse.pdf
    • http://owlaokopdf.myhome.cx/98165816481688165/The-Book-of-Extremely-Common-Prayer-by-Nathaniel-Whitten.pdf
    • http://owlaokopdf.myhome.cx/381698161816781658166/Ordinary-Mind-Exploring-the-Common-Ground-of-Zen-and-Psychoanalysis-by-Barry-Magid.pdf
    • http://owlaokopdf.myhome.cx/1816181668163816281628161/The-Beauty-of-Holiness-in-the-Common-Prayer-As-Set-Forth-in-Four-Sermons-Preached-at-the-Rolls-by-Thomas-Bisse.pdf
    • http://owlaokopdf.myhome.cx/1816181668161816981698168/Atoms-Inorganic-Radicals-and-Radicals-in-Metal-Complexes-Atome-Anorganische-Radikale-Und-Radikale-in-Metallkomplexen-by-C-Daul.pdf
    • http://owlaokopdf.myhome.cx/881618169816181628167/Best-of-Craig-Claiborne-1-000-Recipes-from-His-New-York-Times-Food-Columns-and-Four-of-His-Classic-Cookbooks-by-Craig-Claiborne.pdf
    • http://owlaokopdf.myhome.cx/881618169816181628166/Craig-Claiborne-s-New-York-Times-Food-Encyclopedia-by-Craig-Claiborne.pdf
    • http://owlaokopdf.myhome.cx/881618169816381648169/Lake-Claiborne-Fun-Book-A-Fun-and-Educational-Book-about-Lake-Claiborne-by-Jobe-Leonard.pdf
    • http://owlaokopdf.myhome.cx/481688164816281678166/United-Thoughts-on-Finding-Common-Ground-and-Advancing-the-Common-Good-by-Cory-Booker.pdf
    • http://owlaokopdf.myhome.cx/381608162816781678166/Common-Sons-Common-Threads-in-the-Life-1-by-Ronald-L-Donaghe.pdf
    • http://owlaokopdf.myhome.cx/88161816981618162816