flash

sc.com

Status: finished
Submission Time: 22.11.2020 05:03:31
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    321434
  • API (Web) ID:
    544673
  • Analysis Started:
    22.11.2020 05:03:32
  • Analysis Finished:
    22.11.2020 05:08:08
  • MD5:
    a2f3a68db7863f4da11cf0255a4969e4
  • SHA1:
    fe611bbce708b77bab1b9c31eb3dd30c4a7b763a
  • SHA256:
    5411a2337cd4c63d1b0740ca513bc5c958b37777f10de80f96217368a3191b89
  • Technologies:
Full Report Management Report Engine Info Verdict Score Reports

System: Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211

malicious
48/100

URLs

Name Detection
0
https://i.ibb.co/gtKmtC9/officebg.png
https://i.ibb.co/F3yr74z/forgotpass.png
Click to see the 5 hidden entries
https://i.ibb.co/7CKgHCt/ep.png
https://i.ibb.co/9qFGmjh/miciconlogo.png
https://passwordreset.microsoftonline.com/
https://pikap.kz/wp-admin/wed/server5.php
https://i.ibb.co/r5zjhmN/officebg2.png

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{39FD2C44-2CC3-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{39FD2C46-2CC3-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Temp\JavaDeployReg.log
ASCII text, with CRLF line terminators
#
Click to see the 2 hidden entries
C:\Users\user\AppData\Local\Temp\~DF94625A1E314DF9D3.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DFF37C87F1E61570B4.TMP
data
#