Malicious PDF — malware analysis report

Static analysis result for SHA-256 95fdcc3b25db62e3…

MALICIOUS

PDF

22.5 KB Created: 2019-05-02 01:13:22 +01:00 Authoring application: mPDF 5.7
MD5: 5274866740a9c7a1ae548f25358a9e22 SHA-1: 54bfb83dca6dfbf45b6e5b718be6d3dbd0b32f46 SHA-256: 95fdcc3b25db62e32004df1cec213ca120650b7ac67b9e37900e7f976e5e024f
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file was identified as malicious due to a critical heuristic firing for a PDF SEO link farm. It contains numerous embedded links, with the first identified URL being http://loaminoo.linkpc.net/1090097097094097096/The-Road-to-New-Life-The-Way-of-Jesus-of-Nazareth-by-Phil-Rehberg.pdf. The document body was unreadable, but the presence of a large number of external links suggests a potential attempt to manipulate search results or distribute malicious content indirectly.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/1090097097094097096/The-Road-to-New-Life-The-Way-of-Jesus-of-Nazareth-by-Phil-Rehberg.pdf
    • http://loaminoo.linkpc.net/1090097097093094094/The-Light-of-the-World-The-Life-and-Teachings-of-Jesus-of-Nazareth-by-Tim-Spiess.pdf
    • http://loaminoo.linkpc.net/1090097097094091097/The-New-Jefferson-Bible-The-Life-and-Morals-of-Jesus-of-Nazareth-in-Modern-English-by-Dan-Marshall.pdf
    • http://loaminoo.linkpc.net/4092098099093096/The-New-Jefferson-Bible-The-Life-and-Morals-of-Jesus-of-Nazareth-in-Modern-English-by-Dan-Marshall.pdf
    • http://loaminoo.linkpc.net/1090097097093095090/Jesus-the-Liberator-A-Historical-Theological-Reading-of-Jesus-of-Nazareth-by-Jon-Sobrino.pdf
    • http://loaminoo.linkpc.net/2097090094092095/Searching-for-Jesus-New-Discoveries-in-the-Quest-for-Jesus-of-Nazareth-and-How-They-Confirm-the-Gospel-Accounts-by-Robert-J-Hutchinson.pdf
    • http://loaminoo.linkpc.net/3097090091090094/The-Jefferson-Bible-The-Life-and-Morals-of-Jesus-of-Nazareth-by-Thomas-Jefferson.pdf
    • http://loaminoo.linkpc.net/1090097097093093099/Jesus-of-Nazareth-by-G-nther-Bornkamm.pdf
    • http://loaminoo.linkpc.net/1090097097094096097/Jesus-of-Nazareth-and-Other-Writings-by-Richard-Wagner.pdf
    • http://loaminoo.linkpc.net/1090097097094097094/The-Resurrection-Of-Jesus-Of-Nazareth-by-Willi-Marxsen.pdf
    • http://loaminoo.linkpc.net/1090097097094091096/Jesus-of-Nazareth-by-Harry-Emerson-Fosdick.pdf
    • http://loaminoo.linkpc.net/1090097097094097097/Living-in-the-Time-of-Jesus-of-Nazareth-by-Peter-Connolly.pdf
    • http://loaminoo.linkpc.net/1090097097094092094/The-Myth-Of-Nazareth-The-Invented-Town-Of-Jesus-by-Rene-Salm.pdf
    • http://loaminoo.linkpc.net/1090095097090095093/The-Jesus-Mystery-Astonishing-Clues-to-the-True-Identities-of-Jesus-and-Paul-by-Lena-Einhorn.pdf
    • http://loaminoo.linkpc.net/6091094098091094/El-Verdadero-Jesus-True-One-Jesus-by-Neyland-Bayon.pdf
    • http://loaminoo.linkpc.net/1091095095096090095/Raising-Jesus-Lore-and-tradition-cloak-her-in-mystique-Now-experience-her-life-From-the-bliss-of-youth-to-the-foot-of-the-cross-see-the-birth-of-salvation-through-the-eyes-of-Mary-mother-of-Jesus-by-Angela-Schans.pdf
    • http://loaminoo.linkpc.net/7090097091094097/The-Gifts-of-Jesus-The-Alleluia-Victory-by-Alexander-A-Boddy.pdf
    • http://loaminoo.linkpc.net/9094099099096094/Marriage-Ministry-A-Guidebook-Smyth-amp-Helwys-Help-Books-by-Bo-Prosser.pdf
    • http://loaminoo.linkpc.net/3092090097099096/The-War-That-Killed-Achilles-The-True-Story-of-Homer-s-Iliad-and-the-Trojan-War-by-Caroline-Alexander.pdf
    • http://loaminoo.linkpc.net/3098094092097098/To-The-Last-Man-The-Incredible-True-Story-of-US-Army-Sergeant-William-T-Miles-by-Alexander-Cohen.pdf