Malicious PDF — malware analysis report

Static analysis result for SHA-256 9aa41b50867bf36d…

MALICIOUS

PDF

19.1 KB Created: 2019-05-02 07:16:59 +01:00 Authoring application: mPDF 5.7
MD5: 50464cc64ee83b7bb6fca1ac83e3e7d4 SHA-1: 6868a84983dc519951266750d2ca8b97aeab3ca0 SHA-256: 9aa41b50867bf36d9fe6d4d69345b8ba67f1c4e45d6a6cd728c87b77a69a1f4f
68 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The PDF file contains a large number of embedded links, identified by the PDF_SEO_LINK_FARM heuristic. While many of these links point to benign content, the sheer volume and the use of a dynamic DNS hostname suggest a potential for abuse, such as SEO manipulation or distributing malicious payloads. The SE_URGENCY_LURE heuristic indicates the document may contain deceptive text, though the actual content is heavily obfuscated and unreadable.

Heuristics 3

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Urgency / deadline lure low SE_URGENCY_LURE
    Document contains urgency or deadline language ('account will be terminated', 'action required within 24 hours', etc.) — useful context, but low-signal without other findings
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/4097096097094097/Leaving-Liberty-Texas-Hearts-5-by-Lisa-Mondello.pdf
    • http://loaminoo.linkpc.net/4095098093096099/The-More-I-See-Texas-Hearts-3-by-Lisa-Mondello.pdf
    • http://loaminoo.linkpc.net/2099092095098098/His-Dakota-Heart-Dakota-Hearts-7-by-Lisa-Mondello.pdf
    • http://loaminoo.linkpc.net/7098090091097093/Leaving-Liberty-by-Virginia-Carmichael.pdf
    • http://loaminoo.linkpc.net/3097094091092096/Leaving-Oxford-Southern-Hearts-1-by-Janet-W-Ferguson.pdf
    • http://loaminoo.linkpc.net/1092094093097099/Plastic-Hearts-Hearts-1-by-Lisa-De-Jong.pdf
    • http://loaminoo.linkpc.net/7098091093098095/Leaving-You-The-Cultural-Meaning-of-Suicide-by-Lisa-Lieberman.pdf
    • http://loaminoo.linkpc.net/2095095095098091/Texas-Destiny-Texas-Glory-Texas-Splendor-Leigh-Brothers-Texas-Trilogy-1-3-by-Lorraine-Heath.pdf
    • http://loaminoo.linkpc.net/1090093098098093099/The-Statue-of-Liberty-by-Lisa-M-Herrington.pdf
    • http://loaminoo.linkpc.net/4090098093099091/Two-Texas-Hearts-by-Jodi-Thomas.pdf
    • http://loaminoo.linkpc.net/2090092098094/Two-Texas-Hearts-McQuillen-2-by-Jodi-Thomas.pdf
    • http://loaminoo.linkpc.net/1098098090098095/Word-Gets-Around-Daily-Texas-2-by-Lisa-Wingate.pdf
    • http://loaminoo.linkpc.net/1095094091091096/Roadmap-to-Liberty-The-Liberty-Approach-to-Every-Economic-Political-and-Social-Topic-by-Lucas-Vincent.pdf
    • http://loaminoo.linkpc.net/4094096097093094/Chasing-Liberty-Book-One-in-the-Liberty-Trilogy-by-Theresa-Linden.pdf
    • http://loaminoo.linkpc.net/4099090095095099/Last-Chance-Reunion-Texas-Cold-Case-Texas-Lost-and-Found-Chance-Texas-4-by-Linda-Conrad.pdf
    • http://loaminoo.linkpc.net/2092099092099094/Liberty-Begins-The-Liberty-Series-1-by-Leigh-James.pdf
    • http://loaminoo.linkpc.net/2090090093094098/Heart-of-Texas-Vol-1-Lonesome-Cowboy-Texas-Two-Step-Heart-of-Texas-1-2-by-Debbie-Macomber.pdf
    • http://loaminoo.linkpc.net/4093091096095093/Heart-of-Texas-Vol-2-Caroline-s-Child-Dr-Texas-Heart-of-Texas-3-4-by-Debbie-Macomber.pdf
    • http://loaminoo.linkpc.net/1091097093090095093/Ehlers-Danlos-Syndrome-with-Liberty-the-Dog-Liberty-the-Ehlers-Danlos-Dog-Liberty-an-Emotional-Support-Dog-Helps-You-Explain-Ehlers-Danlos-Syndrome-to-Others-by-Amy-Dee-Hosp.pdf
    • http://loaminoo.linkpc.net/2093090094097090/Texas-Glory-Leigh-Brothers-Texas-Trilogy-2-by-Lorraine-Heath.pdf
    • http://loaminoo.linkpc.net/4090098093099091/Two-Texas-Hearts-by