top title background image
flash

AWB_&_Shipping Doc.exe

Status: finished
Submission Time: 2020-10-14 15:27:16 +02:00
Malicious
Ransomware
Trojan
Spyware
Evader
FormBook GuLoader

Comments

Tags

Details

  • Analysis ID:
    297924
  • API (Web) ID:
    490954
  • Analysis Started:
    2020-10-14 15:27:16 +02:00
  • Analysis Finished:
    2020-10-14 15:36:44 +02:00
  • MD5:
    6386849f8a478fd08477053700ee3ea3
  • SHA1:
    1c8da40fedbdf778bdce0b580ad2dfb34c829ec7
  • SHA256:
    1c81f41c9117ff33b9ef73de5b6e429b571bae3393b8ce9bd4f3f28ba48b276b
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 100
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious
Score: 8/70

IPs

IP Country Detection
192.210.146.118
United States
23.227.38.64
Canada
34.102.136.180
United States

Domains

Name IP Detection
nacesiti.com
34.102.136.180
shops.myshopify.com
23.227.38.64
www.catearhelmet.com
0.0.0.0
Click to see the 3 hidden entries
www.nacesiti.com
0.0.0.0
www.2794moraga.com
0.0.0.0
ec2-34-195-178-137.compute-1.amazonaws.com
34.195.178.137

URLs

Name Detection
http://192.210.146.118/bin_SQZyzLkAMl175.bin
http://www.nacesiti.com/u2e/?J6A=fOOvFeCRGZilV5FD1+mHhwrLgezxAS8nC209VBcY21t/5KoEoUJzgkM0WV81yJyaD6Gl&YL3=9rN46F
http://www.6936399.com/u2e/www.onehealthtaskforce.com
Click to see the 87 hidden entries
http://www.carterandcone.coml
http://www.jsbdistributor.com/u2e/www.baisongke.com
http://www.catearhelmet.com/u2e/www.2794moraga.com
http://www.jsbdistributor.com/u2e/
http://www.jsbdistributor.com
http://www.2794moraga.com/u2e/www.pinacle.online
http://www.2794moraga.com/u2e/
http://www.6936399.com
http://www.adesignmuseum.net/u2e/
http://www.pinacle.online/u2e/
http://www.worstcasebestcase.com
http://www.2794moraga.comReferer:
http://www.colettesimonepsyd.com
http://www.onehealthtaskforce.comReferer:
http://www.catearhelmet.com/u2e/
http://www.pinacle.online
http://www.colettesimonepsyd.com/u2e/www.ahyqmux.icu
http://www.ahyqmux.icu/u2e/www.worstcasebestcase.com
http://www.severbroke.com/u2e/
http://www.fontbureau.com
http://www.apache.org/licenses/LICENSE-2.0
http://www.daveadonai.comReferer:
http://www.severbroke.com/u2e/www.colettesimonepsyd.com
http://www.theselfunknown.com
http://www.nacesiti.comReferer:
http://www.ahyqmux.icu
http://www.daveadonai.com/u2e/
http://www.ahyqmux.icuReferer:
http://www.worstcasebestcase.com/u2e/www.daveadonai.com
http://www.2794moraga.com
http://www.fontbureau.com/designers8
http://www.jiyu-kobo.co.jp/
http://192.210.146.118/bin_SQZyzLkAMl175.binR
http://www.daveadonai.com
http://www.daveadonai.com/u2e/www.adesignmuseum.net
http://www.catearhelmet.com
http://www.baisongke.com
http://www.fontbureau.com/designers/frere-jones.html
http://www.6936399.comReferer:
http://www.founder.com.cn/cn
http://www.fontbureau.com/designers/cabarga.htmlN
http://www.adesignmuseum.netReferer:
http://www.nacesiti.com/u2e/
http://www.nacesiti.com/u2e/www.catearhelmet.com
http://www.nacesiti.com
http://www.colettesimonepsyd.comReferer:
http://192.210.146.118/
http://www.theselfunknown.com/u2e/
http://www.goodfont.co.kr
http://www.worstcasebestcase.com/u2e/
http://www.pinacle.onlineReferer:
http://www.fontbureau.com/designers
http://www.tiro.com
http://www.worstcasebestcase.comReferer:
http://www.sajatypeworks.com
http://www.onehealthtaskforce.com/u2e/
http://www.fontbureau.com/designers?
http://www.ahyqmux.icu/u2e/
http://www.severbroke.com
http://www.onehealthtaskforce.com/u2e/www.theselfunknown.com
http://www.founder.com.cn/cn/bThe
http://www.6936399.com/u2e/
http://www.fontbureau.com/designers/?
http://192.210.146.118/bin_SQZyzLkAMl175.biny
http://www.fontbureau.com/designersG
http://www.theselfunknown.com/u2e/www.severbroke.com
http://www.sakkal.com
http://www.baisongke.com/u2e/
http://www.jsbdistributor.comReferer:
http://www.adesignmuseum.net
http://www.zhongyicts.com.cn
http://www.adesignmuseum.net/u2e/www.jsbdistributor.com
http://www.urwpp.deDPlease
http://www.sandoll.co.kr
http://www.fonts.com
http://www.galapagosdesign.com/DPlease
http://www.onehealthtaskforce.com
http://www.baisongke.comReferer:
http://www.severbroke.comReferer:
http://www.catearhelmet.comReferer:
http://www.colettesimonepsyd.com/u2e/
http://www.theselfunknown.comReferer:
http://fontfabrik.com
http://www.galapagosdesign.com/staff/dennis.htm
http://www.founder.com.cn/cn/cThe
http://www.typography.netD
http://www.baisongke.com/u2e/j