Malicious PDF — malware analysis report

Static analysis result for SHA-256 8a7bfb8fa6ae9b8f…

MALICIOUS

PDF

20.7 KB Created: 2019-05-06 16:49:53 +01:00 Authoring application: mPDF 5.7
MD5: 4934f64f255c1317c7c657f8c19e4e6b SHA-1: 5ef71d49370ac546432a1332d3a5a742d6a03fb3 SHA-256: 8a7bfb8fa6ae9b8ffe302444a8b50bf2b46d732f2502caaee4281cb6b30a7ad1
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious File

The PDF file contains a large number of embedded URLs, identified by the PDF_SEO_LINK_FARM heuristic. These URLs point to various PDF documents hosted on the 'loaminoo.linkpc.net' domain. While the extracted URLs themselves are marked as benign, the sheer volume and structure suggest a malicious intent, possibly for SEO poisoning or to distribute further malicious content. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/3096094093095091/Arise-and-Walk-How-does-your-Christian-faith-fit-in-a-confused-world-by-Henry-Bocala.pdf
    • http://loaminoo.linkpc.net/7090098098091099/The-Christian-Remembrancer-Or-Short-Reflections-Upon-the-Faith-Life-and-Conduct-of-a-Real-Christian-by-Ambrose-Serle.pdf
    • http://loaminoo.linkpc.net/7090098097099099/The-Christian-Remembrancer-Or-Short-Reflections-Upon-the-Faith-Life-and-Conduct-of-a-Real-Christian-by-Ambrose-Serle.pdf
    • http://loaminoo.linkpc.net/7090098098092095/The-Christian-Remembrancer-Or-Short-Reflections-Upon-the-Faith-Life-and-Conduct-of-a-Real-Christian-by-Ambrose-Serle.pdf
    • http://loaminoo.linkpc.net/4096094090091/Born-Confused-Born-Confused-1-by-Tanuja-Desai-Hidier.pdf
    • http://loaminoo.linkpc.net/1093095097093099/A-Step-of-Faith-The-Walk-4-by-Richard-Paul-Evans.pdf
    • http://loaminoo.linkpc.net/5093091099093/Christian-Warrior-Women-A-Guide-to-Taking-Back-Your-Faith-Family-amp-Future-Christian-Warrior-Women-Series-Book-1-by-Lisa-Hawkins.pdf
    • http://loaminoo.linkpc.net/7099092092092/Mormon-Scientist-The-Life-and-Faith-of-Henry-Eyring-by-Henry-J-Eyring.pdf
    • http://loaminoo.linkpc.net/3096097095094093/When-Anything-Goes-Being-Christian-in-a-Post-Christian-World-by-Leslie-Winfield-Williams.pdf
    • http://loaminoo.linkpc.net/2092091097099093/Food-and-Faith-in-Christian-Culture-by-Ken-Albala.pdf
    • http://loaminoo.linkpc.net/2097091098098096/God-amp-Caesar-Christian-Faith-amp-Political-Action-by-John-Eidsmoe.pdf
    • http://loaminoo.linkpc.net/6097094099091097/Why-I-Am-Not-a-Christian-Four-Conclusive-Reasons-to-Reject-the-Faith-by-Richard-C-Carrier.pdf
    • http://loaminoo.linkpc.net/1091092093098094092/God-of-My-Father-A-Son-s-Reflections-on-His-Father-s-Walk-of-Faith-by-Larry-Crabb.pdf
    • http://loaminoo.linkpc.net/9096093092095/The-Creator-of-the-Universe-A-Scientific-Approach-to-Christian-Faith-by-Corrado-Ghinamo.pdf
    • http://loaminoo.linkpc.net/2093094097095093/The-Passionate-Intellect-Christian-Faith-and-the-Discipleship-of-the-Mind-by-Alister-E-McGrath.pdf
    • http://loaminoo.linkpc.net/2093094097094095/Almost-Christian-What-the-Faith-of-Our-Teenagers-Is-Telling-the-American-Church-by-Kenda-Creasy-Dean.pdf
    • http://loaminoo.linkpc.net/2095097095096091/The-Ever-Loving-Truth-Can-Faith-Thrive-in-a-Post-Christian-Culture-by-Voddie-T-Baucham-Jr-.pdf
    • http://loaminoo.linkpc.net/5093095098095093/Proper-Confidence-Faith-Doubt-and-Certainty-in-Christian-Discipleship-by-Lesslie-Newbigin.pdf
    • http://loaminoo.linkpc.net/3090098097093091/A-Walk-Out-of-the-World-by-Ruth-Nichols.pdf
    • http://loaminoo.linkpc.net/7093094096096092/Stepping-My-World-Walk-by-yoshida-takuji.pdf
    • http://loaminoo.linkpc.net/7090098098092095/The-Christian-Remembrancer