Malicious PDF — malware analysis report

Static analysis result for SHA-256 7a8f9f636f30a4bd…

MALICIOUS

PDF

16.3 KB Created: 2019-04-30 02:41:54 +01:00 Authoring application: mPDF 5.7
MD5: 63d4ce6222c665f71332349130b2e9e3 SHA-1: 3271a10ee1b6e10c645a8c5a53cf1b2c8cc62897 SHA-256: 7a8f9f636f30a4bd560c03acf768ff0077c768dd7bbcb3538b2ee9cbceacb4e3
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The PDF file contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic. These links point to various PDF documents hosted on loaminoo.linkpc.net. While the URLs themselves are currently flagged as benign, the sheer volume and structure suggest a potential SEO manipulation or a lure to download further malicious content. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc
    • http://loaminoo.linkpc.net/1091097094091097/Vanity-Drive-The-Vagaries-of-One-Woman-s-Vanity-by-Yvonne-Lee.pdf
    • http://loaminoo.linkpc.net/3090092090090091/Vanity-Fierce-by-Graeme-Aitken.pdf
    • http://loaminoo.linkpc.net/5091093091095099/Vanity-Bagh-by-Anees-Salim.pdf
    • http://loaminoo.linkpc.net/1096094096091090/Golden-Vanity-by-Rachel-Pollack.pdf
    • http://loaminoo.linkpc.net/3092093095099099/Ecclesiastes-Vanity-of-Vanities-by-Anonymous.pdf
    • http://loaminoo.linkpc.net/2097098095091092/Vanity-Fierce-by-Graeme-Aitken.pdf
    • http://loaminoo.linkpc.net/4097097091097093/Vanity-Fair-by-William-Makepeace-Thackeray.pdf
    • http://loaminoo.linkpc.net/8090093090092097/Vanity-Fair-by-William-Makepeace-Thackeray.pdf
    • http://loaminoo.linkpc.net/3097091095096098/Vanity-Dies-Hard-by-Ruth-Rendell.pdf
    • http://loaminoo.linkpc.net/4096094099091092/Vanity-Fair-by-William-Makepeace-Thackeray.pdf
    • http://loaminoo.linkpc.net/2095090098090090/Vanity-Fair-by-William-Makepeace-Thackeray.pdf
    • http://loaminoo.linkpc.net/4095099091095092/The-Vanity-of-Human-Wishes-by-Samuel-Johnson.pdf
    • http://loaminoo.linkpc.net/4096098096099097/Vanity-Fair-by-William-Makepeace-Thackeray.pdf
    • http://loaminoo.linkpc.net/3093091090097098/Roommates-amp-Lovers-The-Tales-of-Vanity-Bench-1-by-D-D-Story.pdf
    • http://loaminoo.linkpc.net/5095096091096096/Vanity-Fair-Jahrmarkt-der-Eitelkeit-by-William-Makepeace-Thackeray.pdf
    • http://loaminoo.linkpc.net/6094094095099092/Runnning-and-Walking-for-Women-Over-40-The-Road-to-Sanity-and-Vanity-by-Kathrine-Switzer.pdf
    • http://loaminoo.linkpc.net/1090098094096092098/Vanity-Fair-Audiobook-With-5-Other-Standards-of-English-Literature-by-William-Makepeace-Thackeray.pdf
    • http://loaminoo.linkpc.net/1091094096096092090/Little-Box-of-Movie-Star-Magic-With-Movie-Star-Magic-Book-and-Glitter-Stickers-and-Vanity-Mirror-and-Makeup-and-Jewlery-and-Pictu-by-Nicci-Talbot.pdf
    • http://loaminoo.linkpc.net/7095090096095099/Vanity-Fair-By-William-Makepeace-Thackeray---Illustrated-by-William-Makepeace-Thackeray.pdf
    • http://loaminoo.linkpc.net/5098091092/Daring-to-Drive-A-Saudi-Woman-s-Awakening-by-Manal-Al-Sharif.pdf