Malicious PDF — malware analysis report

Static analysis result for SHA-256 a2d0e62643c55776…

MALICIOUS

PDF

18.5 KB Created: 2019-05-05 14:11:33 +01:00 Authoring application: mPDF 5.7
MD5: 85e95fbd773c45190dd89e83f69c44c1 SHA-1: 97bcf9295edde5a03327ef6b7cc342666077c77e SHA-256: a2d0e62643c557760ba5a255e276a34a6e5750e7b169d677af0e0eda4b4bdab7
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded URLs pointing to external PDF files, a technique often used for SEO manipulation or to distribute malicious content. The heuristic 'PDF_SEO_LINK_FARM' indicates a mass external PDF link farm. While the URLs themselves are marked as benign, the sheer volume and the nature of the heuristic suggest a malicious intent to redirect users. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/4092093093096096/Guardian-Angel-My-Story-My-Britain-by-Melanie-Phillips.pdf
    • http://loaminoo.linkpc.net/3098095095090091/Another-Man-s-War-The-Story-of-a-Burma-Boy-in-Britain-s-Forgotten-African-Army-by-Barnaby-Phillips.pdf
    • http://loaminoo.linkpc.net/4095098099096092/Your-Guardian-Angel-Guardian-Angel-1-by-Skyla-Madi.pdf
    • http://loaminoo.linkpc.net/3095098091092093/Guardian-Angel-Angel-s-Halo-MC-3-by-Terri-Anne-Browning.pdf
    • http://loaminoo.linkpc.net/4091095095099096/Windrush-The-Irresistible-Rise-of-Multiracial-Britain-by-Mike-Phillips.pdf
    • http://loaminoo.linkpc.net/2090090099095093/The-Guardian-Angel-by-Bridget-Essex.pdf
    • http://loaminoo.linkpc.net/3092094092099093/Guardian-Angel-by-Lynette-Ferreira.pdf
    • http://loaminoo.linkpc.net/1092096099099097/The-Guardian-s-Angel-by-Lorrie-Farrelly.pdf
    • http://loaminoo.linkpc.net/4094095095090099/Guardian-Angel-by-Andrew-Neiderman.pdf
    • http://loaminoo.linkpc.net/4094098092090090/Angel-Kin-His-Guardian-Angels-3-by-Jana-Downs.pdf
    • http://loaminoo.linkpc.net/1092093099091097/Sun-Kissed-Guardian-Angel-2-by-Skyla-Madi.pdf
    • http://loaminoo.linkpc.net/3096098092092093/Kiss-an-Angel-by-Susan-Elizabeth-Phillips.pdf
    • http://loaminoo.linkpc.net/3099091099091099/Broken-Wings-Dark-Angel-Chronicles-2-by-Melanie-Nilles.pdf
    • http://loaminoo.linkpc.net/8098092097099091/Good-Tidings-The-Guardian-Trilogy-Christmas-Short-Story-Book-6-by-Liz-Schulte.pdf
    • http://loaminoo.linkpc.net/5091095096099092/Foxes-Unearthed-A-Story-of-Love-and-Loathing-in-Modern-Britain-by-Lucy-Jones.pdf
    • http://loaminoo.linkpc.net/6090097096090092/Homo-Britannicus-The-Incredible-Story-of-Human-Life-in-Britain-by-Chris-Stringer.pdf
    • http://loaminoo.linkpc.net/2095090098098091/Running-for-Their-Lives-The-Extraordinary-Story-of-Britain-s-Greatest-Ever-Distance-Runners-by-Mark-Whitaker.pdf
    • http://loaminoo.linkpc.net/2093092093098098/A-History-of-Britain-The-Key-Events-That-Have-Shaped-Britain-from-Neolithic-Times-to-the-21st-Century-by-Richard-Dargie.pdf
    • http://loaminoo.linkpc.net/1095091098097090/Dillie-the-Deer-A-True-Story-of-Love-Healing-and-Family-by-Melanie-Butera.pdf
    • http://loaminoo.linkpc.net/8090096096095098/California-Dreamin-The-True-Story-of-the-Mamas-and-the-Papas-The-Music-the-Madness-the-Magic-that-was-by-Michelle-Phillips.pdf
    • http://loaminoo.linkpc.net/1092096