top title background image
flash

server.exe

Status: finished
Submission Time: 2023-03-15 14:38:10 +01:00
Malicious
Trojan
Evader
Ursnif

Comments

Tags

  • agenziaentrate
  • exe
  • gozi
  • isfb
  • ITA
  • mef
  • mise
  • ursnif

Details

  • Analysis ID:
    827054
  • API (Web) ID:
    1194153
  • Analysis Started:
    2023-03-15 14:38:10 +01:00
  • Analysis Finished:
    2023-03-15 14:46:00 +01:00
  • MD5:
    768928d17e8d3489407b540dbad4a770
  • SHA1:
    8ce488487dc133ef92dec536608b0c1056a3e16a
  • SHA256:
    5d0be9aaad980137d68677d7ef3758d9ce7a4e2d170df0abee803f64b14dcd67
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
malicious
Score: 100
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious
Score: 38/69

IPs

IP Country Detection
5.44.43.17
Russian Federation
31.41.44.108
Russian Federation

Domains

Name IP Detection
checklist.skype.com
0.0.0.0

URLs

Name Detection
http://5.44.43.17/drew/4g9Pq9f8yl_2BqLNg_2F/GsF66vmh2Tpicwg37xs/IeFtLuJ4Vgq9WwijsD2n0d/Bquuj0kLXj_2B/g9_2Bh6q/18_2Bd4Y19mjSIvebXNvx4u/IKPQjubsH_/2BffqZNZA6lqyycQo/1wN43eb54EKC/UkUZJXRrn4j/R3115Fw4Czb8SK/xar7XimyyrkEE9m9c0UP0/1KSNpQlordpxo1Ws/_2B6QH8tLTSTNrP/6dO_2BuUeu5EmaGfZI/wcja66YPQ/Z_2B4nfOuMl7_2BnQaBq/8KUwwwam.jlk
http://5.44.43.17/drew/4g9Pq9f8yl_2BqLNg_2F/GsF66vmh2Tpicwg37xs/IeFtLuJ4Vgq9WwijsD2n0d/Bquuj0kLXj_2B
http://5.44.43.17/
Click to see the 7 hidden entries
http://5.44.43.17/-A1ED-B2838757AE1B
http://31.41.44.108/drew/FJTU0wze8Hjvm_2BHka/T78K158O_2Fv5farATygbE/7uQJsjJeUPlO2/LBUhKSJa/o4FD53ecF
http://5.44.43.17/98D0-4585-A1ED-B2838757AE1B
http://31.41.44.108/
http://31.41.44.108/32
http://31.41.
http://checklist.skype.com/drew/RCiQyn59/Gow2vU3BObfVI7A8uLXOgnm/720Rvxrh27/9sCisgCQ1dbhwi3H4/XmYN2I