Malicious PDF — malware analysis report

Static analysis result for SHA-256 db091ec85e020261…

MALICIOUS

PDF

21.4 KB Created: 2019-04-30 04:46:31 +01:00 Authoring application: mPDF 5.7
MD5: 6fa0b4879fef54c6326961f0636b80c4 SHA-1: 9c03cf651b3d88307038a50cd45c52c31009fda7 SHA-256: db091ec85e020261ddd6415a32a289d44dfb26197df6982a3ea9e5f2fd738315
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1059.001 PowerShell

The PDF file contains a large number of embedded URLs pointing to external PDF documents. This behavior is indicative of a link farm, often used for SEO manipulation or to distribute malicious content. While the URLs themselves are currently marked as benign, the sheer volume and the PDF_SEO_LINK_FARM heuristic firing suggest a malicious intent to redirect users to potentially harmful resources. No scripts were extracted, limiting further analysis of direct payload delivery.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/9095097098095098/Fluid-Mechanics-Advanced-Applications-by-Roger-Kinsky.pdf
    • http://loaminoo.linkpc.net/9095098090092091/Thermodynamics-and-Fluid-Mechanics-An-Introduction-by-Roger-Kinsky.pdf
    • http://loaminoo.linkpc.net/1091092096099095097/Advanced-Engineering-Materials-Selected-Papers-3v-Int-l-Conference-on-Manufacturing-Science-and-Engineering-2011-Guilin-China-by-Jianmin-Zeng.pdf
    • http://loaminoo.linkpc.net/1091092096099097090/New-and-Advanced-Materials-Selected-Papers-2v-International-Conference-on-Manufacturing-Science-and-Engineering-2011-Guilin-China-Advanced-Materials-Research-V-197-8-by-Huaiying-Zhou.pdf
    • http://loaminoo.linkpc.net/6093099092091097/Mechanics-of-Materials-by-Ferdinand-P-Beer.pdf
    • http://loaminoo.linkpc.net/5099096099093091/Mechanics-of-Solid-Materials-by-Jean-Lemaitre.pdf
    • http://loaminoo.linkpc.net/9094091099097093/Proceedings-of-the-1st-International-Conference-on-Numerical-Modelling-in-Engineering-Vol-2-Numerical-Modelling-in-Mechanical-and-Materials-Engineering-by-Magd-Abdel-Wahab.pdf
    • http://loaminoo.linkpc.net/9095097099093093/Teach-Yourself-About-Shares-A-Self-Help-Guide-to-Success-on-the-Sharemarket-by-Roger-Kinsky.pdf
    • http://loaminoo.linkpc.net/7097095097094099/Engineering-Mechanics-Statics-by-Robert-Soutas-Little.pdf
    • http://loaminoo.linkpc.net/1093098094094090/Engineering-Mechanics-Dynamics-by-Russell-C-Hibbeler.pdf
    • http://loaminoo.linkpc.net/1091091097097097094/Engineering-Mechanics-Dynamics-Volume-2-by-J-L-Meriam.pdf
    • http://loaminoo.linkpc.net/9095097098096098/Shares-Made-Simple-A-Beginner-s-Guide-to-Sharemarket-Success-by-Roger-Kinsky.pdf
    • http://loaminoo.linkpc.net/9095097099095091/Shares-Made-Simple-A-Beginner-s-Guide-to-Sharemarket-Success-by-Roger-Kinsky.pdf
    • http://loaminoo.linkpc.net/9095097099094096/Charting-Made-Simple-A-Beginner-s-Guide-to-Technical-Analysis-by-Roger-Kinsky.pdf
    • http://loaminoo.linkpc.net/9095098090095094/Shares-Made-Simple-A-Beginner-s-Guide-to-Sharemarket-Success-by-Roger-Kinsky.pdf
    • http://loaminoo.linkpc.net/5098094092096099/Materials-Science-and-Engineering-A-First-Course-by-V-Raghavan.pdf
    • http://loaminoo.linkpc.net/7097095096094094/Engineering-Mechanics-Statics---Computational-Edition---Si-Version-by-Robert-W-Soutas-Little.pdf
    • http://loaminoo.linkpc.net/8096092090099091/Engineering-Materials-and-Their-Applications-by-Richard-A-Flinn.pdf
    • http://loaminoo.linkpc.net/7097095097099090/A-MATLAB-Manual-for-Engineering-Mechanics-Statics---Computational-Edition-by-Robert-W-Soutas-Little.pdf
    • http://loaminoo.linkpc.net/7097095097097099/A-MATLAB-Manual-for-Engineering-Mechanics-Dynamics---Computational-Ed---Si-Version-by-Robert-W-Soutas-Little.pdf
    • http://loaminoo.linkpc.net/5099096099093091/Me