Malicious PDF — malware analysis report

Static analysis result for SHA-256 5298db632ada90b9…

MALICIOUS

PDF

22.1 KB Created: 2019-04-30 04:27:54 +01:00 Authoring application: mPDF 5.7
MD5: 7ef80751eb169f73cf8c1e9f7ab62523 SHA-1: ada862e0d6ab490c125e97ff5555309432431e4b SHA-256: 5298db632ada90b9724ae190550aeeebfbaf980f4c21080bdf33771c7a91c0af
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1059.001 PowerShell

The PDF file exhibits a critical heuristic firing for a link farm, containing numerous external links to PDF documents hosted on 'loaminoo.linkpc.net'. While the URLs themselves are labeled as benign, the sheer volume and structure suggest a malicious intent, possibly for SEO manipulation or to serve as a lure for further malicious activity. No scripts were extracted from this sample. The attack pattern is inferred from the PDF structure and embedded links.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/7093092098096092/La-vie-apr-s-la-mort-Le-livre-des-r-ponses-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/6099099092095/The-Return-of-Merlin-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/9095092094095092/Der-dritte-Jesus-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/2092099092094094/Peace-Is-the-Way-Bringing-War-and-Violence-to-an-End-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/6092090091092096/Muhammad-A-Story-of-the-Last-Prophet-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/2092093090099090/How-To-Know-God-The-Soul-s-Journey-Into-The-Mystery-Of-Mysteries-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/2092093090099096/Life-After-Death-The-Burden-of-Proof-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/4092099093092097/The-Ultimate-Happiness-Prescription-7-Keys-to-Joy-and-Enlightenment-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/9094095094096/The-Path-to-Love-Spiritual-Strategies-for-Healing-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/1091093096092096091/Der-dritte-Jesus-Auf-der-Suche-nach-dem-kosmischen-Christus-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/2092099096096097/The-Book-of-Secrets-Unlocking-the-Hidden-Dimensions-of-Your-Life-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/2092093095093094/The-Way-of-the-Wizard-Twenty-Spiritual-Lessons-for-Creating-the-Life-You-Want-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/3096097093091/The-Seven-Spiritual-Laws-of-Success-A-Practical-Guide-to-the-Fulfillment-of-Your-Dreams-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/1091091097091095096/Die-heilende-Kraft-Quantum-Healing-Ayurveda-das-altindische-Wissen-vom-Leben-und-die-modernen-Naturwissenschaften-by-Deepak-Chopra.pdf
    • http://loaminoo.linkpc.net/5096096091096097/Le-livre-tib-tain-de-la-vie-et-la-mort-Les-Chemins-de-la-Sagesse-by-Sogyal-Rinpoche.pdf
    • http://loaminoo.linkpc.net/6098098090096090/La-Trilogie-Diog-ne---Trois-enqu-tes-de-l-inspecteur-Pendergast-Le-Violon-du-diable-Danse-de-mort-Le-Livre-des-tr-pass-s-by-Douglas-Preston.pdf
    • http://loaminoo.linkpc.net/6090091092099098/Le-livre-de-la-jungle-suivie-de-Le-second-livre-de-la-jungle-dition-int-grale-by-Rudyard-Kipling.pdf
    • http://loaminoo.linkpc.net/5096094090091096/Significations-De-La-Mort-De-Dieu-Chez-Nietzsche-D-humain-Trop-Humain-A-Ainsi-Parlait-Zarathoustra-Significations-De-La-Mort-De-Dieu-Publications-Universitaires-Europeennes-Serie-20-Philosoph-by-Isabelle-Wienand.pdf
    • http://loaminoo.linkpc.net/6092091098097094/New-Spring-in-Kampuchea-by-V-D-Chopra.pdf
    • http://loaminoo.linkpc.net/3097091098099095/The-Vampires-Ange-De-La-Mort-The-Vampires-Ange-De-La-Mort-1-by-B-S-M-Stoneking.pdf
    • http://loaminoo.linkpc.net/2092099096096097/The-Book-of-Secrets-Unlocking-the-Hidden-Dimensions-of-Your-Life-by-Deepak-Chopra