top title background image
flash

http://steelafpinegua.tk/index/?8131599557550

Status: finished
Submission Time: 2020-10-15 21:52:42 +02:00
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    298945
  • API (Web) ID:
    492990
  • Analysis Started:
    2020-10-15 21:52:42 +02:00
  • Analysis Finished:
    2020-10-15 21:56:43 +02:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 48
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

IPs

IP Country Detection
104.31.72.194
United States
85.25.252.199
Germany
185.50.248.46
Ukraine
Click to see the 1 hidden entries
5.189.217.21
Russian Federation

Domains

Name IP Detection
tdsjsext3.life
185.50.248.46
straightbeforemeat10.live
5.189.217.21
steelafpinegua.tk
104.31.72.194
Click to see the 1 hidden entries
traffi777.icu
85.25.252.199

URLs

Name Detection
https://straightbeforemeat10.live/7122635642/
http://traffi777.icu/media/mainstream/pixel.html
https://straightbeforemeat10.live/7122635642/
Click to see the 10 hidden entries
http://steelafpinegua.tk/index/?8131599557550
https://straightbeforeu=h2xkd0x&o=lxkgnum&t=cid:1490&cid=1490-12220-202010152253365b5cemeat10.live/7
http://getbootstrap.com)
http://traffi777.icu/?u=h2xkd0x&o=lxkgnum&t=cid:1490&cid=1490-12220-202010152253365b5ceRoot
https://straightbmeat10.live/7122635642/u=h2xkd0x&o=lxkgnum&t=cid:1490&cid=1490-12220-20201015225336
https://github.com/twbs/bootstrap/blob/master/LICENSE)
http://traffi777.icu/?u=h2xkd0x&o=lxkgnum&t=cid:1490&cid=1490-12220-202010152253365b5ce
http://traffi777.icu/favicon.ico
https://straightbeforemeat10.live/7122635642/?u=h2xkd0x&o=lxkgnum&t=cid:1490&cid=1490-12220-20201015
https://straightbeforemeat10.live/7122635642/u=h2xkd0x&o=lxkgnum&t=cid:1490&cid=1490-12220-202010152

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\7122635642[1].htm
HTML document, UTF-8 Unicode (with BOM) text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\bootstrap-mini[1].css
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\confetti[1].js
ASCII text, with very long lines, with no line terminators
#
Click to see the 40 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\facebook-icons2[1].png
PNG image data, 23 x 766, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\font-awesome-mini[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\getextparams[1].json
UTF-8 Unicode (with BOM) text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\img1[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 50x50, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\img2[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 50x50, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\iphone11pro[1].png
PNG image data, 300 x 402, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\main[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\bbms[1].js
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\0XGG0XJ4.htm
HTML document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\exit_ms[1].js
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\fontawesome-webfont[1].woff
Web Open Font Format, TrueType, length 44432, version 1.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\img3[1].jpg
JPEG image data, baseline, precision 8, 50x50, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\img6[1].jpg
JPEG image data, baseline, precision 8, 50x50, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\img7[1].jpg
JPEG image data, baseline, precision 8, 50x50, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\js.cookie6_pure[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\utils-ms[1].js
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\~DF30C5FB3805C903B4.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DF4014A44E88F0BC25.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DF66294F0FD8B816CF.TMP
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\returnDate.de[1].js
UTF-8 Unicode text
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{1AEE5658-0F20-11EB-90EB-ECF4BBEA1588}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{1AEE5659-0F20-11EB-90EB-ECF4BBEA1588}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\de-en[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\ie[1].png
PNG image data, 245 x 241, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\img11[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 50x50, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\img5[1].jpg
JPEG image data, baseline, precision 8, 50x50, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\index[1].htm
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\logo_f01[1].png
PNG image data, 130 x 126, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\main[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\pixel[1].htm
HTML document, ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\bootstrap.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\comment[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\img10[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 48x48, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\img4[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 50x50, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\img8[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 50x50, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\img9[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 50x50, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\jquery.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\logo1[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\logo2[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{1AEE5656-0F20-11EB-90EB-ECF4BBEA1588}.dat
Microsoft Word Document
#