Malicious PDF — malware analysis report

Static analysis result for SHA-256 a0c2e1c934c5d7e6…

MALICIOUS

PDF

19.6 KB Created: 2019-05-07 02:54:03 +01:00 Authoring application: mPDF 5.7
MD5: 7f2215e0e4c8bda84075d85964200c20 SHA-1: ab38b265aa6f37ded13e04bf92fc530b8d86a9ee SHA-256: a0c2e1c934c5d7e6b640fed9690863f30a61fd8289b4432b42cdf534be88185f
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1204.002 Malicious Link

The PDF file contains a large number of embedded links to external PDF documents, identified as a 'PDF_SEO_LINK_FARM' heuristic. The document body, though heavily obfuscated, contains numerous URLs pointing to what appear to be book-related PDFs hosted on 'loaminoo.linkpc.net'. This suggests the primary purpose is to manipulate search engine results or to distribute a large volume of content, potentially as a lure for further malicious activity.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/2097099098090099/Life-The-Most-Notorious-Crimes-in-American-History-Fifty-Fascinating-Cases-from-the-Files-by-LIFE-Magazine.pdf
    • http://loaminoo.linkpc.net/6094093096099/What-Happened-to-Alex-Manning-The-Manning-Family-Series-1-by-Kim-Scott.pdf
    • http://loaminoo.linkpc.net/5092091092096092/Manning-Clark-A-Life-by-Brian-Matthews.pdf
    • http://loaminoo.linkpc.net/1094098094094/Malcolm-X-A-Life-of-Reinvention-by-Manning-Marable.pdf
    • http://loaminoo.linkpc.net/8098090097097097/Whitey-The-Life-of-America-s-Most-Notorious-Mob-Boss-by-Gerard-O-39-Neill.pdf
    • http://loaminoo.linkpc.net/2099099091094092/The-Notorious-Dr-August-His-Real-Life-and-Crimes-by-Christopher-Bram.pdf
    • http://loaminoo.linkpc.net/1090097096091095/An-Eye-for-Eternity-The-Life-of-Manning-Clark-by-Mark-McKenna.pdf
    • http://loaminoo.linkpc.net/2091099098091/Black-Apollo-of-Science-The-Life-of-Ernest-Everett-Just-by-Kenneth-R-Manning.pdf
    • http://loaminoo.linkpc.net/1090091090094099/Notorious-Victoria-The-Life-of-Victoria-Woodhull-Uncensored-by-Mary-Gabriel.pdf
    • http://loaminoo.linkpc.net/4090098096093/Life-After-Life-by-Kate-Atkinson.pdf
    • http://loaminoo.linkpc.net/1096096094/Fans-of-the-Impossible-Life-by-Kate-Scelsa.pdf
    • http://loaminoo.linkpc.net/5090094098098/The-Nazi-Hunters-How-a-Team-of-Spies-and-Survivors-Captured-the-World-s-Most-Notorious-Nazis-How-a-Team-of-Spies-and-Survivors-Captured-the-World-s-Most-Notorious-Nazi-by-Neal-Bascomb.pdf
    • http://loaminoo.linkpc.net/9090093091098090/Sarah-Morton-s-Day-A-Day-In-The-Life-Of-A-Pilgrim-Girl-by-Kate-Waters.pdf
    • http://loaminoo.linkpc.net/1091092099097099093/The-Life-And-Work-Of-Kate-Greenaway-by-Marion-Harry-Spielmann.pdf
    • http://loaminoo.linkpc.net/2091093094095094/England-s-Mistress-The-Infamous-Life-of-Emma-Hamilton-by-Kate-Williams.pdf
    • http://loaminoo.linkpc.net/8094091093091/Works-by-Kate-Chopin-Novels-by-Kate-Chopin-Short-Stories-by-Kate-Chopin-Desiree-s-Baby-the-Awakening-the-Storm-the-Story-of-an-Hour-by-Books-LLC.pdf
    • http://loaminoo.linkpc.net/4096099092091093/Cupid-Is-a-Procrastinator-Making-Sense-of-the-Unexpected-Single-Life-by-Kate-Hurley.pdf
    • http://loaminoo.linkpc.net/5091098096092091/From-Prairie-to-Prison-The-Life-of-Social-Activist-Kate-Richards-O-Hare-by-Sally-M-Miller.pdf
    • http://loaminoo.linkpc.net/2095098093096095/Money-A-Love-Story-Untangling-Your-Finances-Creating-the-Life-You-Really-Want-and-Living-Your-Purpose-by-Kate-Northrup.pdf
    • http://loaminoo.linkpc.net/4097094098095/Notorious-It-Girl-2-by-Cecily-von-Ziegesar.pdf
    • http://loaminoo.linkpc.net/2091099098091/Black-Apollo-of-Science-The-Life-of-Ernest-