top title background image
flash

SecuriteInfo.com.Trojan.Packed.140.26833.exe

Status: finished
Submission Time: 2020-08-01 21:40:30 +02:00
Malicious
Trojan
Evader
Trickbot

Comments

Tags

Details

  • Analysis ID:
    255751
  • API (Web) ID:
    407042
  • Analysis Started:
    2020-08-02 00:57:33 +02:00
  • Analysis Finished:
    2020-08-02 01:04:06 +02:00
  • MD5:
    63d88f1f0dcd2a99283310928b8f38a5
  • SHA1:
    0c586d070a0789c10c48faf27049f31fd8d8ee21
  • SHA256:
    e0199eb70e39fafd86c8ae012ddcdd9f49efce41ef3f05779b4edffcbb3152c1
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
malicious
Score: 84
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

IPs

IP Country Detection
78.108.216.47
Germany
185.99.2.65
Bosnia and Herzegowina
194.5.250.121
Romania
Click to see the 2 hidden entries
85.204.116.100
Romania
85.204.116.216
Romania

URLs

Name Detection
https://78.108.216.47/ono57/936905_W10017134.72A5B5F3FBA7FF3928477B5BCBB74A8F/5/spk/
https://85.204.116.100:443/ono57/936905_W10017134.72A5B5F3FBA7FF3928477B5BCBB74A8F/5/spk/
https://185.99.2.65/ono57/936905_W10017134.72A5B5F3FBA7FF3928477B5BCBB74))
Click to see the 13 hidden entries
https://sectigo.com/CPS0
https://194.5.250.121/ono57/936905_W10017134.72A5B5F3FBA7FF3928477B5BCBB74A8F/5/spk/tC
https://194.5.250.121/ono57/936905_W10017134.72A5B5F3FBA7FF3928477B5BCBB74A8F/5/spk/
https://85.204.116.100/
https://85.204.116.100/ono57/936905_W10017134.72A5B5F3FBA7FF3928477B5BCBB74A8F/5/spk/$CO
https://85.204.116.216/
http://ctldl.windowsup85.204.116.100/
https://185.99.2.65/ono57/936905_W10017134.72A5B5F3FBA7FF3928477B5BCBB74A8F/5/spk/
https://185.99.2.65/ono57/936905_W10017134.72A5B5F3FBA7FF3928477B5BCBB74A8F/5/spk/5f
http://ctl5.99.2.6&P
https://194.5.250.121/
https://194.5.250.121:443/ono57/936905_W10017134.72A5B5F3FBA7FF3928477B5BCBB74A8F/5/spk/z
https://85.204.116.100/ono57/936905_W10017134.72A5B5F3FBA7FF3928477B5BCBB74A8F/5/spk/

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Temp\log2DDB.tmp
Non-ISO extended-ASCII text, with CRLF line terminators
#