Malicious PDF — malware analysis report

Static analysis result for SHA-256 a5936b75f4355eba…

MALICIOUS

PDF

22.5 KB Created: 2019-04-30 04:52:30 +01:00 Authoring application: mPDF 5.7
MD5: 663cd8dcbfa61bb931e02181fa81756b SHA-1: 0bd725842fcd616efb0a4a2dd134afdc774fbe87 SHA-256: a5936b75f4355ebaae80e8f230e08188e961e665bf32bdbcc2a6feb7c7664bcf
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment

The PDF file contains a heuristic firing for a link farm, with 27 external links embedded within the document. The primary URL identified is http://loaminoo.linkpc.net/1090097097094097096/The-Road-to-New-Life-The-Way-of-Jesus-of-Nazareth-by-Phil-Rehberg.pdf. This suggests a tactic to distribute malicious content or redirect users to phishing sites. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/1090097097094097096/The-Road-to-New-Life-The-Way-of-Jesus-of-Nazareth-by-Phil-Rehberg.pdf
    • http://loaminoo.linkpc.net/1090097097093094094/The-Light-of-the-World-The-Life-and-Teachings-of-Jesus-of-Nazareth-by-Tim-Spiess.pdf
    • http://loaminoo.linkpc.net/1090097097094091097/The-New-Jefferson-Bible-The-Life-and-Morals-of-Jesus-of-Nazareth-in-Modern-English-by-Dan-Marshall.pdf
    • http://loaminoo.linkpc.net/4092098099093096/The-New-Jefferson-Bible-The-Life-and-Morals-of-Jesus-of-Nazareth-in-Modern-English-by-Dan-Marshall.pdf
    • http://loaminoo.linkpc.net/1090097097093095090/Jesus-the-Liberator-A-Historical-Theological-Reading-of-Jesus-of-Nazareth-by-Jon-Sobrino.pdf
    • http://loaminoo.linkpc.net/2097090094092095/Searching-for-Jesus-New-Discoveries-in-the-Quest-for-Jesus-of-Nazareth-and-How-They-Confirm-the-Gospel-Accounts-by-Robert-J-Hutchinson.pdf
    • http://loaminoo.linkpc.net/3097090091090094/The-Jefferson-Bible-The-Life-and-Morals-of-Jesus-of-Nazareth-by-Thomas-Jefferson.pdf
    • http://loaminoo.linkpc.net/1090097097093093099/Jesus-of-Nazareth-by-G-nther-Bornkamm.pdf
    • http://loaminoo.linkpc.net/1090097097094096097/Jesus-of-Nazareth-and-Other-Writings-by-Richard-Wagner.pdf
    • http://loaminoo.linkpc.net/1090097097094097094/The-Resurrection-Of-Jesus-Of-Nazareth-by-Willi-Marxsen.pdf
    • http://loaminoo.linkpc.net/1090097097094091096/Jesus-of-Nazareth-by-Harry-Emerson-Fosdick.pdf
    • http://loaminoo.linkpc.net/1090097097094097097/Living-in-the-Time-of-Jesus-of-Nazareth-by-Peter-Connolly.pdf
    • http://loaminoo.linkpc.net/1090097097094092094/The-Myth-Of-Nazareth-The-Invented-Town-Of-Jesus-by-Rene-Salm.pdf
    • http://loaminoo.linkpc.net/1090095097090095093/The-Jesus-Mystery-Astonishing-Clues-to-the-True-Identities-of-Jesus-and-Paul-by-Lena-Einhorn.pdf
    • http://loaminoo.linkpc.net/6091094098091094/El-Verdadero-Jesus-True-One-Jesus-by-Neyland-Bayon.pdf
    • http://loaminoo.linkpc.net/1091095095096090095/Raising-Jesus-Lore-and-tradition-cloak-her-in-mystique-Now-experience-her-life-From-the-bliss-of-youth-to-the-foot-of-the-cross-see-the-birth-of-salvation-through-the-eyes-of-Mary-mother-of-Jesus-by-Angela-Schans.pdf
    • http://loaminoo.linkpc.net/7090097091094097/The-Gifts-of-Jesus-The-Alleluia-Victory-by-Alexander-A-Boddy.pdf
    • http://loaminoo.linkpc.net/9094099099096094/Marriage-Ministry-A-Guidebook-Smyth-amp-Helwys-Help-Books-by-Bo-Prosser.pdf
    • http://loaminoo.linkpc.net/3092090097099096/The-War-That-Killed-Achilles-The-True-Story-of-Homer-s-Iliad-and-the-Trojan-War-by-Caroline-Alexander.pdf
    • http://loaminoo.linkpc.net/3098094092097098/To-The-Last-Man-The-Incredible-True-Story-of-US-Army-Sergeant-William-T-Miles-by-Alexander-Cohen.pdf