Malicious PDF — malware analysis report

Static analysis result for SHA-256 553676708d59f871…

MALICIOUS

PDF

21.4 KB Created: 2019-05-03 05:05:32 +01:00 Authoring application: mPDF 5.7
MD5: 77bb3bf3eb39a6f84458acbbea8c0a58 SHA-1: 03a20bcab2bccd4edb3a272a900f10906e82744b SHA-256: 553676708d59f871353513a5bce346eae49e6bd45d23a8a3c7a1739af7d6cf43
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file contains a large number of embedded external links, identified by the PDF_SEO_LINK_FARM heuristic. These links point to various book titles hosted on the 'loaminoo.linkpc.net' domain. The purpose appears to be to direct users to a large collection of external resources, potentially as a form of SEO manipulation or to distribute malicious content disguised as legitimate links. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/3090093092099098/Becoming-Queen-Victoria-The-Tragic-Death-of-Princess-Charlotte-and-the-Unexpected-Rise-of-Britain-s-Greatest-Monarch-by-Kate-Williams.pdf
    • http://loaminoo.linkpc.net/4097097095099092/The-Last-Princess-The-Devoted-Life-of-Queen-Victoria-s-Youngest-Daughter-by-Matthew-Dennison.pdf
    • http://loaminoo.linkpc.net/6092098093091090/Japan-s-Greatest-Victory-Britain-s-Greatest-Defeat-by-Masanobu-Tsuji.pdf
    • http://loaminoo.linkpc.net/9096090099/Elizabeth-the-Queen-The-Life-of-a-Modern-Monarch-by-Sally-Bedell-Smith.pdf
    • http://loaminoo.linkpc.net/4090093095095093/Five-Gold-Rings-A-Royal-Wedding-Souvenir-Album-from-Queen-Victoria-to-Queen-Elizabeth-II-by-Jane-Roberts.pdf
    • http://loaminoo.linkpc.net/6096091091091098/Novels-1886-1890-The-Princess-Casamassima-The-Reverberator-The-Tragic-Muse-by-Henry-James.pdf
    • http://loaminoo.linkpc.net/4095095096091098/Unexpected-Treasures-by-Victoria-Osteen.pdf
    • http://loaminoo.linkpc.net/6094092099092095/Katharine-of-Aragon-The-Tragic-Story-of-Henry-VIII-s-First-Unfortunate-Wife-by-Patrick-Williams.pdf
    • http://loaminoo.linkpc.net/1091091097093091097/Kate-Kate-and-the-Bizzy-Girls-The-Queen-by-Deborah-Kanafani.pdf
    • http://loaminoo.linkpc.net/2098093090094098/Red-Queen-Red-Queen-1-by-Victoria-Aveyard.pdf
    • http://loaminoo.linkpc.net/7093094099091094/Red-Queen-Red-Queen-1-by-Victoria-Aveyard.pdf
    • http://loaminoo.linkpc.net/2090092/Red-Queen-Red-Queen-1-by-Victoria-Aveyard.pdf
    • http://loaminoo.linkpc.net/1093091099090096/Red-Queen-Red-Queen-1-by-Victoria-Aveyard.pdf
    • http://loaminoo.linkpc.net/5090096092097/Tread-of-Death-Tragic-End-to-Divine-Favor-by-Dorothy-Kardas.pdf
    • http://loaminoo.linkpc.net/1090090092093095090/Season-Finale-The-Unexpected-Rise-and-Fall-of-the-WB-and-UPN-by-Susanne-Daniels.pdf
    • http://loaminoo.linkpc.net/1098095094092092/Wreck-of-the-Medusa-The-Tragic-Story-of-the-Death-Raft-by-Alexander-McKee.pdf
    • http://loaminoo.linkpc.net/2095090098098091/Running-for-Their-Lives-The-Extraordinary-Story-of-Britain-s-Greatest-Ever-Distance-Runners-by-Mark-Whitaker.pdf
    • http://loaminoo.linkpc.net/3099094092098091/The-Unexpected-Heiress-A-Nick-Williams-Mystery-1-by-Frank-W-Butterfield.pdf
    • http://loaminoo.linkpc.net/4091095095099096/Windrush-The-Irresistible-Rise-of-Multiracial-Britain-by-Mike-Phillips.pdf
    • http://loaminoo.linkpc.net/1091090097094097099/Death-Comes-to-Happy-Valley-Penn-State-and-the-Tragic-Legacy-of-Joe-Paterno-by-Jonathan-Mahler.pdf
    • http://loaminoo.linkpc.net/4090093095095093/Five-Gold-Rings-A-Royal-Wedding-Souvenir-Album-from-Quee