Malicious PDF — malware analysis report

Static analysis result for SHA-256 f02b66933922ad12…

MALICIOUS

PDF

21.6 KB Created: 2019-05-02 18:46:54 +01:00 Authoring application: mPDF 5.7
MD5: 55e44a9a0ae6cdb0175f37ed6b6ee17f SHA-1: 4370b375de922a10255ebead99d15315734cb56a SHA-256: f02b66933922ad12e1b7228934333c8a34e1c78d53f4c4a45a9c1479fcfc0981
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.002 Spearphishing Attachment T1059.001 PowerShell

The PDF file contains a large number of embedded links to external PDF documents, a technique often used for SEO manipulation or to distribute malicious content. The heuristic 'PDF_SEO_LINK_FARM' strongly suggests this malicious intent. While no scripts were extracted, the sheer volume of links and the critical heuristic firing indicate a high likelihood of a malicious distribution or redirection scheme. The document body itself is heavily obfuscated and does not provide clear textual clues beyond the embedded URLs.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/8099093097091094/Drafting-Opinion-Letters-by-Brooke-Wunnicke.pdf
    • http://loaminoo.linkpc.net/8099095093096099/Islamic-Business-Ethics-by-Rafik-Issa-Beekun.pdf
    • http://loaminoo.linkpc.net/7096098093098098/International-Trade-and-Business-Law-Policy-and-Ethics-by-Gabriel-Moens.pdf
    • http://loaminoo.linkpc.net/9092090094090097/The-Moral-Background-An-Inquiry-Into-the-History-of-Business-Ethics-by-Gabriel-Abend.pdf
    • http://loaminoo.linkpc.net/5094099093095096/Business-Ethics-Decision-Making-for-Personal-Integrity-and-Social-Responsibility-by-Joseph-R-DesJardins.pdf
    • http://loaminoo.linkpc.net/3097093097095093/Missouri-by-Christine-Wunnicke.pdf
    • http://loaminoo.linkpc.net/4098096099098093/Evolution-and-Ethics-T-H-Huxley-s-Evolution-and-Ethics-with-New-Essays-on-Its-Victorian-and-Sociobiological-Context-by-James-Paradis.pdf
    • http://loaminoo.linkpc.net/4092091098097097/Entrepreneurship-The-Online-Money-Factory---Online-Business-Home-Business-amp-Business-Startup-by-Brian-Windley.pdf
    • http://loaminoo.linkpc.net/8099093097091093/Ucp-500-And-Standby-Letters-Of-Credit-Special-Report-by-B-Wunnicke.pdf
    • http://loaminoo.linkpc.net/1090091090094098092/The-effectiveness-of-a-government-high-technology-small-business-program-within-a-small-business-incubator-A-case-study-in-government-university-and-business-collaboration-by-Anila-Nandkishore-Strahan.pdf
    • http://loaminoo.linkpc.net/6095096092090092/Beyond-Discipline-From-Compliance-to-Community-by-Alfie-Kohn.pdf
    • http://loaminoo.linkpc.net/2090096093090091/Compliance-Heart-of-Fame---Stage-Right-2-by-Lexxie-Couper.pdf
    • http://loaminoo.linkpc.net/6099092098097091/We-Are-All-Weird-The-Myth-of-Mass-and-The-End-of-Compliance-by-Seth-Godin.pdf
    • http://loaminoo.linkpc.net/9091092092095098/Quick-Reference-to-Hipaa-Compliance-2014-2015e-by-Sande.pdf
    • http://loaminoo.linkpc.net/9091092092095099/Quick-Reference-to-Cobra-Compliance-2014-2015-Edition-by-Sande.pdf
    • http://loaminoo.linkpc.net/9091092092095097/Quick-Reference-to-Hipaa-Compliance-2016-2017-Edition-by-Sande.pdf
    • http://loaminoo.linkpc.net/4099093092095098/Gettin-It-On-Lawyers-in-Love-4-by-Ann-Jacobs.pdf
    • http://loaminoo.linkpc.net/1091091094095098094/Small-Talk-for-Big-Business-Business-Conversation-f-r-bessere-Kontakte-by-Rene-Bosewitz.pdf
    • http://loaminoo.linkpc.net/8097097092096094/Business-is-Business-Reality-Checks-for-Family-Owned-Companies-by-Kathy-Kolbe.pdf
    • http://loaminoo.linkpc.net/3093090097094098/MBA-2-0-Things-You-Won-t-Learn-in-Business-School-Best-Business-Books-Book-1-by-Can-Akdeniz.pdf
    • http://loaminoo.linkpc.net/4098096099098093/Evolution-and-Ethics-T-H-Huxley-s-Evolution-and-Ethics-with-New-Essays-on-Its-Victorian-and-Sociobiologic