top title background image
flash

https://sugar-stirring-mockingbird.glitch.me/#comp@hansi.at

Status: finished
Submission Time: 2020-11-26 09:17:48 +01:00
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    323053
  • API (Web) ID:
    547897
  • Analysis Started:
    2020-11-26 09:17:49 +01:00
  • Analysis Finished:
    2020-11-26 09:20:57 +01:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 60
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious

IPs

IP Country Detection
20.37.219.194
United States
54.225.169.28
United States
52.205.236.122
United States
Click to see the 1 hidden entries
104.16.18.94
United States

Domains

Name IP Detection
elb097307-934924932.us-east-1.elb.amazonaws.com
54.225.169.28
cdnjs.cloudflare.com
104.16.18.94
web.cytrack.com
20.37.219.194
Click to see the 7 hidden entries
sugar-stirring-mockingbird.glitch.me
52.205.236.122
stackpath.bootstrapcdn.com
0.0.0.0
code.jquery.com
0.0.0.0
cdn.jsdelivr.net
0.0.0.0
maxcdn.bootstrapcdn.com
0.0.0.0
ow2.res.office365.com
0.0.0.0
api.ipify.org
0.0.0.0

URLs

Name Detection
https://getbootstrap.com/)
https://ow2.res.office365.com/owalanding/2020.1.16.01/images/favicon.ico?v=4~
https://code.jquery.com/jquery-3.3.1.min.js
Click to see the 22 hidden entries
http://opensource.org/licenses/MIT).
https://sugar-stirring-mockingbird.glitch.me/
https://github.com/twbs/bootstrap/blob/master/LICENSE)
http://getbootstrap.com)
https://stackpath.bootstrapcdn.com/font-awesome/4.7.0/css/font-awesome.min.css
https://github.com/twbs/bootstrap/graphs/contributors)
https://github.com/danieledesantis/jquery-browser-detection
https://cdnjs.cloudflare.com/ajax/libs/popper.js/1.14.0/umd/popper.min.js
http://fontawesome.io/license/
http://fontawesome.io/license
https://sugar-stirring-mockingbird.glitch.me/#comp
https://ow2.res.office365.com/owalanding/2020.1.16.01/images/favicon.ico?v=4
https://api.ipify.org?format=json
https://cdn.jsdelivr.net/npm/sweetalert2
https://stackpath.bootstrapcdn.com/bootstrap/4.1.0/js/bootstrap.min.js
https://maxcdn.bootstrapcdn.com/bootstrap/3.3.7/css/bootstrap.min.css
http://fontawesome.iohttp://fontawesome.iohttp://fontawesome.io/license/http://fontawesome.io/licens
https://web.cytrack.com/wpv1/wp-content/uploads/microsoft-outlook-logo.jpg
https://code.jquery.com/jquery-migrate-3.1.0.min.js
https://sugar-stirring-mockingbird.glitch.me/#comp@hansi.at
https://autosoftug.com/wp-content/themes/satenet/inc/xz4/processor.php
http://fontawesome.io

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\1RWIY0K9.htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\popper.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Temp\~DFFE506D96E3CD96F1.TMP
data
#
Click to see the 16 hidden entries
C:\Users\user\AppData\Local\Temp\~DF7B847ADEC881B843.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DF32CF0219CD9B02C0.TMP
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\fontawesome-webfont[1].eot
Embedded OpenType (EOT), FontAwesome family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\bootstrap.min[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\jquery-migrate-3.1.0.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\jquery-3.3.1.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\2GIH7R4N.json
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{6D30CF7C-300B-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\microsoft-outlook-logo[1].jpg
PNG image data, 1275 x 550, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\favicon[1].ico
MS Windows icon resource - 3 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\sweetalert2@9[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\font-awesome.min[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\bootstrap.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\ynfz0jx\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{6D30CF7F-300B-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{6D30CF7E-300B-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#