Malicious PDF — malware analysis report

Static analysis result for SHA-256 a75346d4a2e4ef26…

MALICIOUS

PDF

12.0 KB Created: 2019-05-02 01:00:41 +01:00 Authoring application: mPDF 5.7
MD5: 7711e6f1545c2f48cc2cb80d08a1f57a SHA-1: 53bc4a2b85806b2fd38d6f937c2020f2224916b6 SHA-256: a75346d4a2e4ef26933d9c972aa486d63cd6e624891ee349accd3f4dc59df59c
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1204.002 Malicious Link

The PDF file contains a large number of embedded links pointing to external PDF files hosted on the domain 'loaminoo.linkpc.net'. This pattern is indicative of SEO spam or a distribution mechanism for further malicious content. No scripts were extracted, and the document body was unreadable, limiting the analysis.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/3098097097098092/Letting-Go-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/3090095092093095/All-Fall-Down-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/4094097099092/Broken-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/2096097097097092/Tempted-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/2091094099090099/Broken-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/1091095094099093092/Switch-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/2099095094098095/Collide-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/2093092094092098/Dirty-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/1097090091093099/Stranger-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/2095093090094094/Opening-the-Door-Always-You-2-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/3098098097097093/Crossing-the-Line-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/4094092095093/Dirty-Dan-and-Elle-1-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/3098099099097091/Dirty-Dan-and-Elle-1-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/8097092099096099/An-Exaltation-of-Larks-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/7094097091094096/L-ange-qui-pleure-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/3098098097097096/Reawakened-Passions-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/1097091095098093/12-Shades-of-Surrender-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/6096092096090/Tempted-Alex-Kennedy-1-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/2093094094095092/Pleasure-and-Purpose-Order-of-Solace-1-by-Megan-Hart.pdf
    • http://loaminoo.linkpc.net/2093096094093097/Selfish-is-the-Heart-Order-of-Solace-3-by-Megan-Hart.pdf