Malicious PDF — malware analysis report

Static analysis result for SHA-256 df5e8b79456ab9ce…

MALICIOUS

PDF

23.7 KB Created: 2019-05-01 06:13:10 +01:00 Authoring application: mPDF 5.7
MD5: 92dacb47d049b2736fc3a5b1917dd353 SHA-1: c3f967520be97b0b245632e7854eb43361bf46ec SHA-256: df5e8b79456ab9ce5e9fca7edb676529ea5aac420d710de9f83f93a495c7774a
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1204.002 User Execution: Malicious File

The PDF file contains a large number of embedded URLs pointing to external PDF documents on the domain 'loaminoo.linkpc.net'. This is indicative of a link farm or a distribution mechanism for potentially malicious content. No scripts were extracted, and the document body was heavily obfuscated, making it difficult to determine the exact user-facing lure. The primary attack pattern observed is the mass linking to external resources.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/9097095097093096/Liebe-mich-wenn-du-stirbst-by-Kathrin-Peters.pdf
    • http://loaminoo.linkpc.net/1090093095096094090/Wenn-die-Liebe-hinf-llt-Ein-Episodenroman-ber-Leben-und-Liebe-auf-dem-Friedhof-und-anderswo-by-Bernd-Kreuzer-El-Fantadu.pdf
    • http://loaminoo.linkpc.net/1090097097095099098/Wenn-Liebe-Schmerz-bedeutet-by-Jenna-Oellrich.pdf
    • http://loaminoo.linkpc.net/9098097093095095/Die-Liebe-in-Grenzen-by-Veronika-Peters.pdf
    • http://loaminoo.linkpc.net/1090096094095090092/Seelenpartner---wenn-Liebe-alle-Grenzen-sprengt-by-J-S-Wiech.pdf
    • http://loaminoo.linkpc.net/9091095099092091/Ein-Hauch-deiner-Liebe-Lass-mich-nicht-allein-zur-ck-by-L--J-Pyka.pdf
    • http://loaminoo.linkpc.net/1090097092097096090/Die-Liebe-kommt-aus-dem-Nichts-Wenn-sie-uns-ber-hrt-nehmen-wir-Gestalt-an-by-Christl-Lieben.pdf
    • http://loaminoo.linkpc.net/9095091091096097/Wenn-Liebe-so-einfach-w-re-Vollkommenes-Gl-ck-Band-3-by-Claudia-Elmenthaler.pdf
    • http://loaminoo.linkpc.net/1091095092099092095/Julia-Extra-Band-0322-Die-Hochzeit-des-Prinzen-Nur-bei-dir-f-hl-ich-mich-geborgen-Verzaubert-vom-Fest-der-Liebe-Und-immer-wieder-du-by-Penny-Jordan.pdf
    • http://loaminoo.linkpc.net/9095091096090095/EROTIK-Ber-hr-mich-dort---Die-Untergebene-des-Million-rs---Erotische-Kurzgeschichte-Unzensiert-Eifersucht-Leidenschaft-Liebe-Dreiecksbeziehung-Heisse-Eindringlinge-3-by-Tina-Torrence.pdf
    • http://loaminoo.linkpc.net/8098094092095096/Rough-Raw-and-Ready---Wenn-es-Liebe-ist-Rough-Riders-5-by-Lorelei-James.pdf
    • http://loaminoo.linkpc.net/1091097091096091092/Lass-uns-in-Frieden-auseinandergehen-Wenn-die-Liebe-endet---Die-5-Schritte-des-quot-Conscious-Uncoupling-quot-by-Katherine-Woodward-Thomas.pdf
    • http://loaminoo.linkpc.net/9095093097093090/Fickt-mich-Er-hat-mich-betrogen-Scharfe-Erotikgeschichte-by-Bernadette-Binkowski.pdf
    • http://loaminoo.linkpc.net/1090098099097096096/K-ss-mich-und-vergiss-mich-by-Halina-Grave.pdf
    • http://loaminoo.linkpc.net/1090091097095099094/Geh-mit-mir-und-find-die-wei-e-Feder-Unachtsamkeit-f-hrte-mich-in-die-soziale-Isolation-schenkte-mir-eine-Form-der-Solidarit-t-und-stellte-mich-an-den-Rand-der-Gesellschaft-by-Netta-Telge.pdf
    • http://loaminoo.linkpc.net/1091090091090090091/Sicher-anlegen-Was-Sie-wissen-sollten-wenn-Sie-Geld-investieren-Was-tun-wenn-etwas-schief-l-uft-Ausgabe-sterreich-by-Angelika-Ahrens.pdf
    • http://loaminoo.linkpc.net/1091092097098092092/Meinem-Stiefvater-zu-Diensten-Er-will-meine-Mutter-UND-mich-Mein-Stiefvater-will-Mama-UND-mich-1-by-Kira-Eisregen.pdf
    • http://loaminoo.linkpc.net/1090097098094096099/Schlag-mich-weiter-Der-Spanking-Geschichte-zweiter-Teil-Schlag-mich-2-by-Marc-Acht.pdf
    • http://loaminoo.linkpc.net/9097095097090094/Der-Tag-an-dem-du-stirbst-by-Lisa-Gardner.pdf
    • http://loaminoo.linkpc.net/9097095097094091/Du-stirbst-im-Regen-Serienm-rder-Thriller-by-Stefan-Krell.pdf