Malicious PDF — malware analysis report

Static analysis result for SHA-256 570233659e5d31aa…

MALICIOUS

PDF

21.4 KB Created: 2019-04-30 02:01:59 +01:00 Authoring application: mPDF 5.7
MD5: 467106602d6f47c9c366e21ebda97c8a SHA-1: d9ebe0ccf0a92424a995363f6041eab353dbcfc8 SHA-256: 570233659e5d31aa730656bc3baa6a9a9ac96b3eda85071ed4fc76d7212099aa
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1204.002 Malicious Link

The PDF file contains a large number of embedded URLs, identified by the PDF_SEO_LINK_FARM heuristic. These links are presented as recipe books, a common lure to encourage users to click. The embedded URLs are the primary indicators of malicious activity, suggesting a phishing or redirection attempt. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/8091092094094096/Eat-Recipe-Book-Local-Food-and-Culture-by-Vesco-Inc.pdf
    • http://loaminoo.linkpc.net/8091092094093094/Food-and-Drink-Best-Health-Recipe-Book-by-Vesco-Inc.pdf
    • http://loaminoo.linkpc.net/8091092093090099/Food-and-Home-Recipe-Book-Pimp-Your-Easter-by-Vesco-Inc.pdf
    • http://loaminoo.linkpc.net/8091092093092098/Breakfast-Recipe-Book-Easy-to-Cook-Recipe-by-Vesco-Inc.pdf
    • http://loaminoo.linkpc.net/8091092093091099/Nourish-Recipe-Book-The-Breakfast-and-Brunch-by-Vesco-Inc.pdf
    • http://loaminoo.linkpc.net/8091092095090097/Diabetic-Living-Recipe-Book-40-New-Recipes-by-Vesco-Inc.pdf
    • http://loaminoo.linkpc.net/8091092093095099/30-Meals-in-30-Minutes-Recipe-Book-Fast-Dinner-for-Today-s-Family-by-Vesco-Inc.pdf
    • http://loaminoo.linkpc.net/7091098091093/PAIRED-Champagne-amp-Sparkling-Wines-The-Food-amp-Wine-Matching-Recipe-Book-for-Everyone-by-David-Stevens-Castro.pdf
    • http://loaminoo.linkpc.net/8091092095091095/What-s-on-Dubai-The-City-s-Best-Food-Delivery-by-Vesco-Inc.pdf
    • http://loaminoo.linkpc.net/8091092094094091/Food-and-Travel-Arabia-Artisan-Coffee-by-Vesco-Inc.pdf
    • http://loaminoo.linkpc.net/8091092093091097/Real-Food-Fall-Taste-of-India-by-Vesco-Inc.pdf
    • http://loaminoo.linkpc.net/8091092095090098/Food-New-Zealand-70-Delicious-and-Easy-Recipes-Inside-by-Vesco-Inc.pdf
    • http://loaminoo.linkpc.net/8092094099090090/Balinese-Food-The-Traditional-Cuisine-amp-Food-Culture-of-Bali-by-Vivienne-Kruger.pdf
    • http://loaminoo.linkpc.net/2092098096094091/The-Recipe-Club-A-Tale-of-Food-and-Friendship-by-Andrea-Israel.pdf
    • http://loaminoo.linkpc.net/5091099095094099/Jura-Wine-With-Local-Food-and-Travel-Tips-by-Wink-Lorch.pdf
    • http://loaminoo.linkpc.net/3090097092097099/Cook-Food-A-Manualfesto-for-Easy-Healthy-Local-Eating-by-Lisa-Jervis.pdf
    • http://loaminoo.linkpc.net/7090095094098091/Frankenstein-Or-the-Modern-Prometheus-original-uncensored-1818-version-Food-in-Literature-and-Culture-Edition-annotated-amp-unabridged-The-Story-at-the-End-of-the-Fork-Series-Book-2-by-Mary-Wollstonecraft-Shelley.pdf
    • http://loaminoo.linkpc.net/2096099097092098/Gaining-Ground-A-Story-of-Farmers-Markets-Local-Food-and-Saving-the-Family-Farm-by-Forrest-Pritchard.pdf
    • http://loaminoo.linkpc.net/5097094091095096/World-Heritage-Craze-in-China-Universal-Discourse-National-Culture-and-Local-Memory-by-Haiming-Yan.pdf
    • http://loaminoo.linkpc.net/5090098098091095/Food-Lovers-Guide-to-Colorado-Best-Local-Specialties-Shops-Recipes-Restaurants-Events-Lore-and-More-by-Eliza-Cross-Castaneda.pdf