Malicious PDF — malware analysis report

Static analysis result for SHA-256 9cfad3d00eec0f3d…

MALICIOUS

PDF

23.5 KB Created: 2019-04-30 04:22:39 +01:00 Authoring application: mPDF 5.7
MD5: 4b414b5e9c6eb91f621f5cad9996a7e8 SHA-1: 7f468e393c1b115da9b69e8d3614af0779d3ec5b SHA-256: 9cfad3d00eec0f3d65daa2c26d74b9fc4725d64f4b89a925cf44ac774a46e57f
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file contains a large number of embedded links to external PDF documents, hosted on the domain 'loaminoo.linkpc.net'. This heuristic firing indicates a potential link farm or redirection mechanism. The document body is heavily obfuscated and does not provide clear textual lures, but the sheer volume of links suggests an attempt to drive traffic to potentially malicious or deceptive content. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/3095099093097094/The-John-Franklin-Bardin-Omnibus-by-John-Franklin-Bardin.pdf
    • http://loaminoo.linkpc.net/9091097096091/Mirror-to-America-by-John-Hope-Franklin.pdf
    • http://loaminoo.linkpc.net/1098096092099093/Living-With-The-Tight-End-Banter-Boys-Book-1-by-Ken-Mooney.pdf
    • http://loaminoo.linkpc.net/1090094093091091099/Historical-summary-of-the-search-for-Sir-John-Franklin-microform-by-A-Petermann.pdf
    • http://loaminoo.linkpc.net/2093096092095/George-Washington-Williams-A-Biography-by-John-Hope-Franklin.pdf
    • http://loaminoo.linkpc.net/8090097095092098/The-Militant-South-1800-1861-by-John-Hope-Franklin.pdf
    • http://loaminoo.linkpc.net/3095095094097/Grit-The-Banter-and-Brutality-of-the-Late-Night-Cab-by-Karl-Wiggins.pdf
    • http://loaminoo.linkpc.net/1091093098094093098/The-Franklin-Cover-Up-Child-Abuse-Satanism-and-Murder-in-Nebraska-by-John-W-DeCamp.pdf
    • http://loaminoo.linkpc.net/9091098094090097/The-Autobiography-of-Benjamin-Franklin---Original-amp-Unabridged-University-Of-Chicago-Press-ANNOTATED-by-Benjamin-Franklin.pdf
    • http://loaminoo.linkpc.net/8090097091090091/Benjamin-Franklin-My-Autobiography-The-Editions-Artisan-Devereaux-Classic-Literature-Series-by-Benjamin-Franklin.pdf
    • http://loaminoo.linkpc.net/4091094096099091/Memoirs-of-Benjamin-Franklin-Written-by-Himself-Vol-1-of-2-With-His-Most-Interesting-Essays-Letters-and-Miscellaneous-Writings-Familiar-Moral-Political-Economical-and-Philosophical-by-Benjamin-Franklin.pdf
    • http://loaminoo.linkpc.net/4092098090097090/Waiting-for-Pops-A-Journey-from-Boy-to-Man-by-John-Philip-Riffice.pdf
    • http://loaminoo.linkpc.net/4095093093091093/Benjamin-Franklin-and-a-Case-of-Christmas-Murder-Benjamin-Franklin-2-by-Robert-Lee-Hall.pdf
    • http://loaminoo.linkpc.net/7093097090096099/Franklin-Simon-Fashion-Catalog-for-1923-by-Franklin-Simon-amp-Co-.pdf
    • http://loaminoo.linkpc.net/6094092091091097/Autobiography-of-Benjamin-Franklin-with-an-introduction-by-Verner-W-by-Benjamin-Franklin.pdf
    • http://loaminoo.linkpc.net/1091091099094091091/The-Penguin-Book-of-the-British-Short-Story-Volume-2-From-John-Buchan-to-Zadie-Smith-by-Philip-Hensher.pdf
    • http://loaminoo.linkpc.net/1091098099098097096/The-Autobiography-of-Benjamin-Franklin-1896-by-Benjamin-Franklin.pdf
    • http://loaminoo.linkpc.net/6091094093097099/His-Dark-Materials-The-Golden-Compass-The-Subtle-Knife-The-Amber-Spyglass-by-Philip-Pullman-Dec-6-2011-by-Philip-Pullman.pdf
    • http://loaminoo.linkpc.net/1090097097099099092/Philip-Ardagh-s-Book-of-Kings-Queens-Emperors-and-Rotten-Wart-Nosed-Commoners-by-Philip-Ardagh.pdf
    • http://loaminoo.linkpc.net/3094097098099090/The-Collected-Stories-of-Philip-K-Dick-1-The-Short-Happy-Life-of-the-Brown-Oxford-by-Philip-K-Dick.pdf
    • http://loaminoo.linkpc.net/9091098094090097/The-Autobiography-of-Benjamin-Franklin---Original-amp-Unabridged-Un