Malicious PDF — malware analysis report

Static analysis result for SHA-256 f2232deecd8538a2…

MALICIOUS

PDF

21.9 KB Created: 2019-05-02 01:20:43 +01:00 Authoring application: mPDF 5.7
MD5: 7f0c586484ed83ccd9e15fec05d46a96 SHA-1: 7653aa6cab74819cf44c1454229074afe677788a SHA-256: f2232deecd8538a2288fb51fed18d18b0ee7edbb41dc79631ab26580a3d41b8c
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1204.002 Malicious Link

The PDF file contains a large number of embedded links pointing to external PDF documents hosted on the domain 'loaminoo.linkpc.net'. This heuristic firing indicates a link farm, likely intended to drive traffic or distribute further malicious content. The document body itself is heavily obfuscated, but the presence of URLs suggests a social engineering tactic to trick users into visiting these links. No scripts were extracted from this sample.

Heuristics 2

  • Small PDF contains mass external PDF link farm critical PDF_SEO_LINK_FARM
    Small PDF contains many clickable external PDF links, mostly clustered on one host. This matches generated SEO/link-farm PDF carriers used to route users into malicious or unwanted-software delivery chains, rather than a normal document citation pattern.
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://loaminoo.linkpc.net/2094091092096/Spanish-Fever-Stories-by-the-New-Spanish-Cartoonists-by-Santiago-Garc-a.pdf
    • http://loaminoo.linkpc.net/1093099091099090/The-Spanish-Labyrinth-An-Account-of-the-Social-and-Political-Background-of-the-Spanish-Civil-War-by-Gerald-Brenan.pdf
    • http://loaminoo.linkpc.net/1090096098090099093/English-Grammar-for-Students-of-Spanish-The-Study-Guide-for-Those-Learning-Spanish-by-Emily-Spinelli.pdf
    • http://loaminoo.linkpc.net/1090095094096099097/Return-of-the-Spanish-Spanish-Bit-Saga-18-by-Don-Coldsmith.pdf
    • http://loaminoo.linkpc.net/4095092096091093/Trail-of-the-Spanish-Bit-Spanish-Bit-Saga-1-by-Don-Coldsmith.pdf
    • http://loaminoo.linkpc.net/1090098093097099099/Accelerated-Spanish-Learn-fluent-Spanish-with-a-proven-accelerated-learning-system-by-Timothy-Moser.pdf
    • http://loaminoo.linkpc.net/9091091099097095/Danny-Duck-Tames-the-Lion-Danny-Pato-doma-al-Le-n---Bilingual-Book-in-English-and-Spanish-Study-Spanish-for-Kids-1-by-Colin-Hann.pdf
    • http://loaminoo.linkpc.net/6096092099092090/Practical-Dictionary-of-Latin-American-Proverbs-with-Spanish-French-Quebec-French-and-English-Parallels-600-proverbial-sayings-of-Spanish-speaking-America-by-Pierre-DesRuisseaux.pdf
    • http://loaminoo.linkpc.net/1096096095097098/1000-Spanish-Verbs-in-Context-A-Self-Study-Guide-for-Spanish-Language-Learners-Extra-FREE-Bonus-Material-Included-1000-Verb-Lists-in-Context-by-Alex-Forero.pdf
    • http://loaminoo.linkpc.net/5094093091094099/Dictionary-of-Technical-Terms-English-to-Spanish-and-Spanish-to-English-Diccionario-Tecnico-Ingles-y-Espanol-y-Espanol-y-Ingles-by-Federico-Beigbeder-Atienza.pdf
    • http://loaminoo.linkpc.net/8097096091096/Spanish-Fly-by-Will-Ferguson.pdf
    • http://loaminoo.linkpc.net/2091090096093090/The-Spanish-Tragedy-by-Thomas-Kyd.pdf
    • http://loaminoo.linkpc.net/1091092094090093090/The-Spanish-Lake-by-O-H-K-Spate.pdf
    • http://loaminoo.linkpc.net/1094095094094093/Spanish-City-by-Sarah-May.pdf
    • http://loaminoo.linkpc.net/7091095092097093/Fof-Spanish-English-by-Corbeil.pdf
    • http://loaminoo.linkpc.net/9096094099098095/Spanish-is-Fun-Book-1-by-Heywood-Wald.pdf
    • http://loaminoo.linkpc.net/9093095092097/The-Spanish-Club-by-Danielle-Burnette.pdf
    • http://loaminoo.linkpc.net/1091097096099095095/Spanish-For-Beginners-by-Angela-Wilkes.pdf
    • http://loaminoo.linkpc.net/1090095094097090093/Medicine-Hat-Spanish-Bit-Saga-25-by-Don-Coldsmith.pdf
    • http://loaminoo.linkpc.net/4091098095093099/The-Best-of-Spanish-Steampunk-by-James-Womack.pdf
    • http://loaminoo.linkpc.net/1090098093097099099/Accelerated-Spanish-Learn-f