top title background image
flash

https://sbicorp.co.id/wp-psl/IK/of1/?08909598527009&email=(lisa@rugbyfoundation.nz)

Status: finished
Submission Time: 2020-10-19 02:15:37 +02:00
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    299828
  • API (Web) ID:
    494754
  • Analysis Started:
    2020-10-19 02:15:37 +02:00
  • Analysis Finished:
    2020-10-19 02:18:36 +02:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 84
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious
malicious

IPs

IP Country Detection
209.58.172.63
Singapore

Domains

Name IP Detection
sbicorp.co.id
209.58.172.63

URLs

Name Detection
https://sbicorp.co.id/wp-psl/IK/of1/ps7nw46r0mayueqzbxgof1vjtcl2i8kdh359zc5rnvgd1j2mk40x78t39eqayi6wpshbfolur2hoavynfxmdb4zjkpgui7sqe10l95wc68t3?data=bGlzYUBydWdieWZvdW5kYXRpb24ubno=
https://sbicorp.co.id/wp-psl/IK/of1/images/favicon.ico~
https://sbicorp.co.id/wp-psl/IK/of1/ps7nw46r0mayueqzbxgof1vjtcl2i8kdh359zc5rnvgd1j2mk40x78t39eqayi6w

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\ps7nw46r0mayueqzbxgof1vjtcl2i8kdh359zc5rnvgd1j2mk40x78t39eqayi6wpshbfolur2hoavynfxmdb4zjkpgui7sqe10l95wc68t3[1].htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\sigin[1].png
PNG image data, 108 x 32, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Temp\~DFC6486ADD35C30147.TMP
data
#
Click to see the 17 hidden entries
C:\Users\user\AppData\Local\Temp\~DFB89C3BAAF6184A6F.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DF4E84BD7D9E32A13B.TMP
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\favicon[2].ico
MS Windows icon resource - 1 icon, 16x16, 32 bits/pixel
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\conv[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\arrow_left[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\firstmsg1[1].png
PNG image data, 353 x 41, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\ellipsis_grey[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{C2300136-11EB-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\inv-small-background[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 50x28, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\inv-big-background[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 1920x1080, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\forgetpass[1].png
PNG image data, 121 x 20, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\passwrd[1].png
PNG image data, 69 x 34, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\enterpass[1].png
PNG image data, 170 x 29, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\ellipsis_white[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\ynfz0jx\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{C9CE43C5-11EB-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{C2300138-11EB-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#