top title background image
flash

server.exe

Status: finished
Submission Time: 2023-03-14 12:25:08 +01:00
Malicious
Trojan
Evader
Ursnif, CryptOne

Comments

Tags

  • agenziaentrate
  • exe
  • gozi
  • isfb
  • ITA
  • mef
  • mise
  • ursnif

Details

  • Analysis ID:
    826138
  • API (Web) ID:
    1193237
  • Analysis Started:
    2023-03-14 12:25:09 +01:00
  • Analysis Finished:
    2023-03-14 12:31:38 +01:00
  • MD5:
    43cfce2e126b1bf5230e51edd205f6bd
  • SHA1:
    9ca60bfc3cb13b40f02810869ce9531cb0ab76d4
  • SHA256:
    47d288233a39a68396567e35a77a500e296218df3a4bc9daca797e75b4b03d4b
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 100
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious
Score: 5/39

IPs

IP Country Detection
62.173.142.51
Russian Federation
94.103.183.153
Russian Federation

Domains

Name IP Detection
checklist.skype.com
0.0.0.0

URLs

Name Detection
http://62.173.142.51/drew/HAyCvnAuEOt2F7C/qtqWyxm4JAodLmr2fA/5rIXi6c7a/A8VZuoBaw9m9tdhD88nR/7GG7oRWMVub4oY7_2BO/OtqOu0B56I1LS_2FdHx85_/2FJqjErmgnBnc/fR5wyLVd/zR03KdsDmrJhOpNTELG8Ap7/tRbeA0rm1D/Ahqeb_2B_2Fx66NAH/sAJz2fkfv30m/_2B2yXv1C0u/OTAlb_2Bjz3Xu9/n7nMr5QIveWoLOKJgWpZZ/FZTPBpvOXNqs9vrA/ayBpSg1Jbp3hq/vUJdeVU7/u.jlk
http://94.103