top title background image
flash

Server.exe

Status: finished
Submission Time: 2023-03-20 12:59:22 +01:00
Malicious
Trojan
Evader
Ursnif

Comments

Tags

  • 250255
  • 7715
  • exe
  • geo
  • Gozi
  • ITA
  • Ursnif

Details

  • Analysis ID:
    830522
  • API (Web) ID:
    1197616
  • Analysis Started:
    2023-03-20 13:12:45 +01:00
  • Analysis Finished:
    2023-03-20 13:20:28 +01:00
  • MD5:
    9565b4a15a8593ea3ec1f3c9d0a2e11a
  • SHA1:
    0954c5387395f0552fa56f5b06b3bb159f0d430b
  • SHA256:
    3aa75da2773573786f07530f5a09b8e0aacd0402fd11e14d8067b5f4607bbd6a
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
malicious
Score: 100
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious
Score: 32/69
malicious
Score: 14/39

IPs

IP Country Detection
62.173.142.81
Russian Federation
193.233.175.113
Russian Federation

Domains

Name IP Detection
checklist.skype.com
0.0.0.0

URLs

Name Detection
http://62.173.142.81/drew/vtZ_2FDIi/MRLim5q_2FPOOIVwJV5p/mDG55l02bkwr36hqtHV/_2BXyU_2BkyUgVl9WIyeMc/2k07Y9nJ9nLtT/PcL77Drj/unLXMitiTeAgURShweMUOiB/jO6Gh6u4qj/R0YL8nr8_2Fe_2F8S/NmYC2zbFo_2F/_2F9OVp7R5L/glgHLP7bYaSidB/FZsufB1rfZCbhP2GWCC1X/tQ2Xe4zo9AyYJ7HA/jNvemogj1MfecHx/YKLEAqQON4Cy4b59f3/zq6LmLb43/Vud6lYhHL1LCLqJWQEpj/MZMy2z9wXkXjHl/Y_2BX.jlk
http://193.233.175.113/drew/qHKukbBQWu/Xw77sqXTqtrxRWpPD/yl9MR0Y2eNmn/GbsfhYjdl8H/5GaIgAKgHB90sh/aMn4M6bKKJciYELDTreaM/i8dqMbDS0rDZpO_2/F2s0PNMupq8bNg2/sWxA9_2FGI7DvJntWq/sJDzxIUTO/r8bT3UibSNEQXXaTJdFi/yG6uB8JAsWc6GRKrJig/fWv9nw4MT1weBq8HJPcdl7/ZF86bHFVi_2FJ/yinUV20K/IPPC4VuFn7ORSOMnH_2FY6_/2FwmfjECDI/_2B41PRFw9jRfkH5W/0EbKz9E3ebE/0M10.jlk
http://193.23