Malicious PDF — malware analysis report

Static analysis result for SHA-256 d4b4c73232232978…

MALICIOUS

PDF

22.7 KB Created: 2019-05-03 05:09:55 +01:00 Authoring application: mPDF 5.7
MD5: 3ea3e63b26225d24bbac03a2cf7ce36e SHA-1: 51670b5f4511fd7dc207031150c664cc11c4ca3f SHA-256: d4b4c73232232978fe6bb4b01dbee2d73a1ef01888b5557a366b1cd4ac350b9f
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1204.002 Malicious Link

The PDF contains a large number of embedded links to external PDF files, hosted on the dynamic DNS domain loaminoo.linkpc.net. This heuristic firing suggests a link farm or SEO manipulation tactic. While the specific intent of these linked PDFs is unclear, the sheer volume and the use of a dynamic DNS domain indicate a potentially malicious distribution or redirection scheme. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/2099096095091093/Emilie-Heart-and-Mind-by-J-D-Reid.pdf
    • http://loaminoo.linkpc.net/3096098095092/Beard-in-Mind-by-Penny-Reid.pdf
    • http://loaminoo.linkpc.net/6096093095092097/Effortless-Mind-Meditate-with-Ease-Calm-Your-Mind-Connect-with-Your-Heart-and-Revitalize-Your-Life-by-Ajayan-Borys.pdf
    • http://loaminoo.linkpc.net/6091091090/Beard-in-Mind-Winston-Brothers-4-by-Penny-Reid.pdf
    • http://loaminoo.linkpc.net/9095090096095/Heart-of-the-Patriot-by-Stuart-Reid.pdf
    • http://loaminoo.linkpc.net/7094092093096092/Emilie-Barnes-15-Minute-Home-and-Family-Organizer-by-Emilie-Barnes.pdf
    • http://loaminoo.linkpc.net/3097097090091096/The-Shadow-of-the-Mind-s-Heart-by-Cheryllynn-Dyess.pdf
    • http://loaminoo.linkpc.net/9095098098097/Voices-of-the-Heart-Mind-and-Soul-by-Alex-Cuoco.pdf
    • http://loaminoo.linkpc.net/7094092093095091/Complete-Works-of-H-Emilie-Cady-by-H-Emilie-Cady.pdf
    • http://loaminoo.linkpc.net/4091096099090091/Touching-Moments-60-Second-Readings-That-Touch-the-Mind-and-the-Heart-by-Steve-Goodier.pdf
    • http://loaminoo.linkpc.net/5091095092091093/Neo-Confucian-Orthodoxy-and-the-Learning-of-the-Mind-And-Heart-by-William-Theodore-de-Bary.pdf
    • http://loaminoo.linkpc.net/1090094095096090095/Ask-the-Oracle-Predicting-Answers-to-Questions-of-Mind-Heart-and-Soul-by-Priya-Hemenway.pdf
    • http://loaminoo.linkpc.net/4099098093091098/Atheist-Mind-Humanist-Heart-Rewriting-the-Ten-Commandments-for-the-Twenty-First-Century-by-Lex-Bayer.pdf
    • http://loaminoo.linkpc.net/8094099096092090/My-Heart-and-My-Mind-An-American-Muslim-Patriot-Speaks-by-Bajram-Angelo-Koljenovic.pdf
    • http://loaminoo.linkpc.net/2098090096098093/Making-Judgments-Without-Being-Judgmental-Nurturing-a-Clear-Mind-and-a-Generous-Heart-by-Terry-D-Cooper.pdf
    • http://loaminoo.linkpc.net/6090097090099092/My-Hungry-Heart-31-Day-Scripture-Based-Devotional---Body-Mind-and-Spirit-by-Tammy-Compere.pdf
    • http://loaminoo.linkpc.net/2093097098096093/The-Boy-Who-Loved-Windows-Opening-The-Heart-And-Mind-Of-A-Child-Threatened-With-Autism-by-Patricia-Stacey.pdf
    • http://loaminoo.linkpc.net/6097093091099099/The-Sexually-Confident-Wife-Connecting-with-Your-Husband-Mind-Body-Heart-Spirit-by-Shannon-Ethridge.pdf
    • http://loaminoo.linkpc.net/3096096092095092/Every-Single-Woman-s-Battle-Guarding-Your-Heart-and-Mind-Against-Sexual-and-Emotional-Compromise-by-Shannon-Ethridge.pdf
    • http://loaminoo.linkpc.net/8094097098095096/Catherine-Inside-the-Heart-and-Mind-of-a-Great-Monarch-The-Volga-Flows-Forever-by-Sigrid-Weidenweber.pdf
    • http://loaminoo.linkpc.net/5091095092091093/Neo-Confucian-Orthodoxy-and-the-Learning-of-the-M