top title background image
flash

server.exe

Status: finished
Submission Time: 2023-03-14 18:58:12 +01:00
Malicious
Trojan
Evader
Ursnif

Comments

Tags

  • agenziaentrate
  • exe
  • gozi
  • isfb
  • ITA
  • mef
  • mise
  • ursnif

Details

  • Analysis ID:
    826454
  • API (Web) ID:
    1193553
  • Analysis Started:
    2023-03-14 18:58:14 +01:00
  • Analysis Finished:
    2023-03-14 19:04:21 +01:00
  • MD5:
    17ebf60197356eb8f2996abc026907e6
  • SHA1:
    38033b18d33436b5302ac50a3ba1c8114a23af81
  • SHA256:
    c9f213f89ae4eb4e3ef4ec3cd71d3440adfdb9aee07841da844e4c176ff53869
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
malicious
Score: 100
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious
Score: 22/69
malicious
Score: 14/39

IPs

IP Country Detection
62.173.142.51
Russian Federation

Domains

Name IP Detection
checklist.skype.com
0.0.0.0

URLs

Name Detection
http://62.173.142.51/drew/uzFqBPgZCIqO6jg1c5K/Xjd9gdsAubWMmY_2FDAd8e/U4Ap1PqTIR2WQ/a0CAd0nU/ThrgRPS1U5uEI3kIT3QYk4V/9d6bFT0hxT/5DxxrYQlR4IV_2Fei/ZJj6rXzL8HY8/xQEVwjD3Ur1/F3MhUjI5IvSaS_/2BdrMle6CgPaU6_2BOFFJ/FAcptoJYalDMhiD8/zK9g2iPFhAmXVAs/NjAIlnCY_2B_2FS4qz/z8NkwINX2/bN1cceH77_2BrxV4WYdI/F0hZV08Kh1Pm3jwzz9R/ILM_2FNGfAIX1b0GrBrRbH/64NI6.jlk
http://62.173