top title background image
flash

server_(3).exe

Status: finished
Submission Time: 2023-03-20 11:37:08 +01:00
Malicious
Trojan
Evader
Ursnif

Comments

Tags

  • agenziaentrate
  • exe
  • gozi
  • isfb
  • ITA
  • mef
  • mise
  • ursnif

Details

  • Analysis ID:
    830450
  • API (Web) ID:
    1197547
  • Analysis Started:
    2023-03-20 11:45:25 +01:00
  • Analysis Finished:
    2023-03-20 11:52:34 +01:00
  • MD5:
    aa37b36ea7ba39b6c00ae1b01bada3f7
  • SHA1:
    90545746e5b23fcdf7db1fa5c30588df2f4c31bf
  • SHA256:
    a6886a3566a1a98072d67f1aca4a04b5667f97f4df21b2f54d6108293d7c02b7
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
malicious
Score: 100
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious
Score: 26/69
malicious
Score: 15/39

IPs

IP Country Detection
62.173.142.81
Russian Federation

Domains

Name IP Detection
checklist.skype.com
0.0.0.0

URLs

Name Detection
http://62.173.142.81/drew/l9wdesHCBL/WcUH_2Fe6cEC19JMx/ojSec9BNMFM6/V8tDDFde77O/U9i1cqxDkO368R/9gNBIEzgy6mBOfdpOkxLi/yTSQzU5LkHeJ3ST8/wg2AtPFgVdoBaEt/6J4T7kNNoupXFHQTJc/6wx_2FfTi/ip9uaIqtLaRaENmKe5lk/gWcrKu3HuxIt5fBBNoX/csBNoK1ie3PBW5Bt5sLiYK/wkK58GrNqzGj0/jf15aQpx/17gepP_2BoXbW_2FEP_2BQC/qQ5KGV_2Fv/ErJyFWv8XjZRosjau/Q6z6usxdqA4/_2FeDY.jlk
http://62.173