top title background image
flash

pko_trans_details_20240909_105339·pdf.vbs

Status: finished
Submission Time: 2024-09-09 08:54:06 +02:00
Malicious
Trojan
Exploiter
Evader
Remcos, GuLoader

Comments

Tags

  • vbs

Details

  • Analysis ID:
    1507755
  • API (Web) ID:
    1507755
  • Analysis Started:
    2024-09-09 08:54:07 +02:00
  • Analysis Finished:
    2024-09-09 09:02:27 +02:00
  • MD5:
    f47be72a96dd07190c9636231654dfe5
  • SHA1:
    b0f23fa8a4669111d04e442e81888330f76b5689
  • SHA256:
    8317fc4b7eb8d40478a79de9fc539469ab5b2904822894ac6eee27f7cf9e6ce9
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 100
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

IPs

IP Country Detection
142.250.181.225
United States
142.250.185.238
United States

Domains

Name IP Detection
bg.microsoft.map.fastly.net
199.232.214.172
drive.google.com
142.250.185.238
drive.usercontent.google.com
142.250.181.225

URLs

Name Detection
https://nuget.org/nuget.exe
https://github.com/Pester/Pester
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name
Click to see the 21 hidden entries
https://apis.google.com
https://aka.ms/pscore68
http://drive.google.com
https://drive.usercontent.google.com/
https://drive.usercontent.google.com
https://drive.usercontent.googh
https://drive.google.com
https://contoso.com/Icon
https://contoso.com/License
https://www.google.com
https://contoso.com/
https://drive.usercontent.google.com/c
https://go.micro
http://www.apache.org/licenses/LICENSE-2.0.html
http://crl.microsoft
https://aka.ms/pscore6lB
http://pesterbdd.com/images/Pester.png
http://crl.micro
http://drive.usercontent.google.com
https://drive.googPR
http://nuget.org/NuGet.exe

Dropped files

No malicious files found. See full and IOC report for all dropped files.