Malicious PDF — malware analysis report

Static analysis result for SHA-256 c7c768d04969e0ab…

MALICIOUS

PDF

20.9 KB Created: 2019-05-02 05:06:45 +01:00 Authoring application: mPDF 5.7
MD5: 8db040fed8dae803c5ca9fbea9df202b SHA-1: e6090a6066b24c59242b5897fd87b98b72864508 SHA-256: c7c768d04969e0ab381f746fb53ec0f0ea1a2a70cbcbad36c173f5b985e7b65b
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1059.001 PowerShell

The PDF file contains a large number of embedded URLs, identified by the PDF_SEO_LINK_FARM heuristic. While many of these URLs are marked as benign, the sheer volume and the nature of the heuristic suggest a potential attempt to manipulate search engine results or redirect users to malicious sites. No scripts were extracted from this sample. The primary attack pattern observed is the creation of a link farm within the PDF document.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/1090090090091097099/The-Lost-Gospel-of-Barabbas-Exodus-The-Lost-Gospel-of-Barabbas-Trilogy-Book-2-by-Kevin-L-Brooks.pdf
    • http://loaminoo.linkpc.net/1090090090091098096/Gospel-According-to-Barabbas-by-Salvatore-Grillo.pdf
    • http://loaminoo.linkpc.net/1090090090091093094/Barabbas-amp-other-One-Act-Plays-Barabbas-by-Getachew-Tarekegn.pdf
    • http://loaminoo.linkpc.net/3099097097097091/The-Lost-Gospel-Q-The-Original-Sayings-of-Jesus-by-Marcus-J-Borg.pdf
    • http://loaminoo.linkpc.net/2097091095093091/The-Gospel-According-to-Job-An-Honest-Look-at-Pain-and-Doubt-from-the-Life-of-One-Who-Lost-Everything-by-Mike-Mason.pdf
    • http://loaminoo.linkpc.net/7098090094094097/The-Gospel-of-the-Beloved-Companion-The-Complete-Gospel-of-Mary-Magdalene-by-Jehanne-de-Quillan.pdf
    • http://loaminoo.linkpc.net/1091098092096090099/GOSPEL-CENTERED-MARRIAGE---Applying-the-Gospel-of-Jesus-to-the-major-areas-of-your-married-life-by-John-Stange.pdf
    • http://loaminoo.linkpc.net/9092099091094094/The-Rest-of-the-Gospel-When-the-Partial-Gospel-Has-Worn-You-Out-by-Dan-Stone.pdf
    • http://loaminoo.linkpc.net/1090090090094091090/Dead-End-Plight-of-Rudy-Barabbas-Citadel7-Book-4-by-Yuan-Jur.pdf
    • http://loaminoo.linkpc.net/1090090090092098094/The-Book-of-Barabbas-Part-Two-Finding-Salvation-by-Deborah-Ann-Wilson.pdf
    • http://loaminoo.linkpc.net/1091096095092094098/Good-News-Preaching-Offering-the-Gospel-in-Every-Sermon-by-Gennifer-Benjamin-Brooks.pdf
    • http://loaminoo.linkpc.net/1099095092092092/Lost-Souls-The-Lost-Souls-Trilogy-Book-1-by-Katie-Jaros.pdf
    • http://loaminoo.linkpc.net/1090090090094092092/Reasoning-With-The-Unreasonable-A-Biblical-Case-For-Presuppositional-Apologetics-Barabbas-Books-Book-2-by-Matt-Smith.pdf
    • http://loaminoo.linkpc.net/3096097095090099/The-Good-News-We-Almost-Forgot-Rediscovering-the-Gospel-in-a-16th-Century-Catechism-by-Kevin-DeYoung.pdf
    • http://loaminoo.linkpc.net/3092096090096090/Star-Carrier-Lost-Colonies-Trilogy-Book-3-by-B-V-Larson.pdf
    • http://loaminoo.linkpc.net/5096095092096096/The-Essene-Gospel-of-Peace-Book-1-by-Edmond-Bordeaux-Szekely.pdf
    • http://loaminoo.linkpc.net/1090090090091093093/Julie-Dundon-and-Barabbas-by-J-D-Lynn.pdf
    • http://loaminoo.linkpc.net/1090090090091098095/Barabbas-Son-of-a-Father-by-Basil-B-Clark.pdf
    • http://loaminoo.linkpc.net/1090090090091094094/Barabbas-or-Jesus-by-Neville-Goddard.pdf
    • http://loaminoo.linkpc.net/8092090091091098/Jesus-the-Evangelist-Learning-to-Share-the-Gospel-from-the-Book-of-John-by-Richard-D-Phillips.pdf
    • http://loaminoo.linkpc.net/1091098092096090099/GOSPEL-CENTERED-MARRIAGE---Applying-the-Gospel-of-Jesus-to-the-major-areas-