Malicious PDF — malware analysis report

Static analysis result for SHA-256 ddf33408f9bd5312…

MALICIOUS

PDF

22.9 KB Created: 2019-04-30 02:39:03 +01:00 Authoring application: mPDF 5.7
MD5: 3e404ef3f0b489cb414f6cf388b323df SHA-1: 51f8553b98baa3cab3b0ed56adb78e3c23c9a256 SHA-256: ddf33408f9bd5312ae69780fa5db040f75feeb66a192359364c176dd32d6f2a3
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1059.001 PowerShell

The PDF contains a large number of embedded links to external PDF files, a technique often used for SEO manipulation or to distribute further malicious content. While the specific intent is unclear due to the lack of script content, the PDF_SEO_LINK_FARM heuristic indicates a high volume of links pointing to a single domain, suggesting a coordinated effort to drive traffic or host malicious payloads. The embedded URLs themselves are not directly malicious but are part of a larger suspicious pattern.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/4098098097/Kindred-A-Graphic-Novel-Adaptation-by-Damian-Duffy.pdf
    • http://loaminoo.linkpc.net/5092098096099093/The-Little-Prince-A-Graphic-Novel-Adaptation-by-Joann-Sfar.pdf
    • http://loaminoo.linkpc.net/4094093097099096/The-Gettysburg-Address-A-Graphic-Adaptation-by-Jonathan-Hennessey.pdf
    • http://loaminoo.linkpc.net/9095090091092094/Shirley-Jackson-s-quot-The-Lottery-quot-The-Authorized-Graphic-Adaptation-by-Miles-Hyman.pdf
    • http://loaminoo.linkpc.net/3098097090095095/Ray-Bradbury-s-Fahrenheit-451-The-Authorized-Graphic-Novel-The-Authorized-Adaptation-by-Tim-Hamilton.pdf
    • http://loaminoo.linkpc.net/3093094098099094/Poe-Stories-and-Poems-A-Graphic-Novel-Adaptation-by-Gareth-Hinds-by-Gareth-Hinds.pdf
    • http://loaminoo.linkpc.net/2099097090095094/Kindred-of-the-Fallen-Kindred-Chronicles-1-by-Iris-i.pdf
    • http://loaminoo.linkpc.net/1098091098092095/Kindred-Kindred-1-by-Nicola-Claire.pdf
    • http://loaminoo.linkpc.net/1092098099096099/Kindred-Kindred-1-by-Nicola-Claire.pdf
    • http://loaminoo.linkpc.net/4097096091091096/Ocean-Fever-The-Damian-Foxall-Story-by-Damian-Foxall.pdf
    • http://loaminoo.linkpc.net/4092091093093095/The-Lost-Hero-The-Graphic-Novel-The-Heroes-of-Olympus-The-Graphic-Novels-1-by-Robert-Venditti.pdf
    • http://loaminoo.linkpc.net/7091090097099/The-Arctic-Incident-The-Graphic-Novel-Artemis-Fowl-The-Graphic-Novels-2-by-Eoin-Colfer.pdf
    • http://loaminoo.linkpc.net/3092091095096093/The-Throne-of-Fire-The-Graphic-Novel-The-Kane-Chronicles-The-Graphic-Novels-2-by-Orpheus-Collar.pdf
    • http://loaminoo.linkpc.net/3092091095096091/The-Son-of-Neptune-The-Graphic-Novel-The-Heroes-of-Olympus-The-Graphic-Novels-2-by-Robert-Venditti.pdf
    • http://loaminoo.linkpc.net/3097099094093099/Stormbreaker-The-Graphic-Novel-Alex-Rider-The-Graphic-Novels-1-by-Antony-Johnston.pdf
    • http://loaminoo.linkpc.net/4096092096093090/Streams-of-Silver-The-Graphic-Novel-Legend-of-Drizzt-The-Graphic-Novel-5-by-R-A-Salvatore.pdf
    • http://loaminoo.linkpc.net/6090090099094095/Creative-Motion-Graphic-Titling-for-Film-Video-and-the-Web-Dynamic-Motion-Graphic-Title-Design-by-Yael-Braha.pdf
    • http://loaminoo.linkpc.net/2099098094092091/The-Graphic-Canon-of-Children-s-Literature-The-World-s-Great-Kids-Lit-as-Comics-and-Visuals-The-Graphic-Canon-by-Russ-Kick.pdf
    • http://loaminoo.linkpc.net/7093090092090092/Graphic-Design-New-York-2-The-Work-of-Thirty-Six-Firms-from-the-City-That-Put-Graphic-Design-on-the-Map-by-Veronique-Vienne.pdf
    • http://loaminoo.linkpc.net/7095090093090095/Classic-Literary-Adaptation-Le-Bossu-de-Notre-Dame-Classic-Literary-Adaptation-Le-Bossu-de-Notre-Dame-by-Paulette-Collet.pdf
    • http://loaminoo.linkpc.net/4097096091091096/Ocean-Fever-The-Damian-Foxall-Story-by-Damian-Fox