flash

https://boa-owuzx.github.io/moizideiauzx/oxcud.html?bbre=ds98ucxzux

Status: finished
Submission Time: 23.02.2021 15:33:35
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    356727
  • API (Web) ID:
    615441
  • Analysis Started:
    23.02.2021 15:35:48
  • Analysis Finished:
    23.02.2021 15:41:45
  • Technologies:
Full Report Management Report IOC Report Engine Info Verdict Score Reports
New

System: Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211

malicious
80/100

malicious

IPs

IP Country Detection
185.199.109.153
Netherlands
151.101.65.195
United States
104.16.124.175
United States
Click to see the 4 hidden entries
152.199.21.175
United States
104.16.18.94
United States
172.67.185.66
United States
67.199.248.10
United States

Domains

Name IP Detection
boa-owuzx.github.io
185.199.109.153
cnd11.smsmail.net
172.67.185.66
atnkamcndtepa.firebaseapp.com
151.101.65.195
Click to see the 10 hidden entries
cdnjs.cloudflare.com
104.16.18.94
sni1gl.wpc.alphacdn.net
152.199.21.175
bit.ly
67.199.248.10
unpkg.com
104.16.124.175
signup.live.com
0.0.0.0
secure.aadcdn.microsoftonline-p.com
0.0.0.0
aadcdn.msauth.net
0.0.0.0
assets.onestore.ms
0.0.0.0
acctcdn.msauth.net
0.0.0.0
ajax.aspnetcdn.com
0.0.0.0

URLs

Name Detection
https://boa-owuzx.github.io/moizideiauzx/
https://boa-owuzx.github.io/moizideiauzx/oxcud.html?bbre=ds98ucxzuxub.io/moizideiauzx/oxcud.html?bbr
https://boa-owuzx.github.io/moizideiauzx/oxcud.html?bbre=ds98ucxzux
Click to see the 97 hidden entries
https://boa-owuzx.github.io/moizideiauzx/oxcud.html?bbre=ds98ucxzuxRoot
https://boa-owuzx.github.io/moizideiauzx/oxcud.html?bbre=ds98ucxzux#/GETBqSKN7ZzZ2yonSmNzcjuxxYsQOPfNg7xTKUb-&!UAxiyJLRzB0dl2eZFjTMGvH17O&!@Z6Ubft8nkxHQji2PJ1LEpB&!@-e2hCjhFpbOBRgqPtmVU6OeDjsgMr2tQcCmWgviXszsFNb6ahIB7vK1nipOF7jcBWeVCZjo9l4xk1nm9YmdjEGVJt8v2LIRd-jQ1JFZWoj0znBwX9r5Ta2bV0PQ5IcKBbuzXa8BSNKqUFlRpzIEHuZhFkIvKKdeE73Ujy2ZuYfc/BJqoNl3vd0UuU7qp1x2hAzvUx1Oyb4qkNRGQ7wIZakRjSb9epY0Onca0pN1Gl0eZZS
https://boa-owuzx.github.io/moizideiauzx/oxcud.html?bbre=ds98ucxzux#/
https://boa-owuzx.github.io/moizideiauzx/oxcud.html?bbre=ds98ucxzux#er=6.7.6640.0&wp=MBI_SSL&wreply=
https://boa-owuzx.github.io/moizideiauzx/oxcud.html?bbre=ds98ucxzux#/GETBqSKN7ZzZ2yonSmNzcjuxxYsQOPf
https://boa-owuzx.github.io/moizideiauzx/oxcud.html?bbre=ds98ucxzux#/er=6.7.6640.0&wp=MBI_SSL&wreply
https://boa-owuzx.github.io/moizideiauzx/oxcud.html?bbre=ds98ucxzux#/2aklH1e5weOtX4l4Ha0fvwXNBRVQNKZ
https://www.skype.com/go/legal
https://mixer.com/about/tos
https://www.microsoft.
https://www.linkedin.com/legal/privacy-policy
https://acctcdn.msauth.net/lightweightsignuppackage_OwHbS0yAbvGpBlUF0ZS3iA2.js?v=1
https://aka.ms/DPA
https://support.xbox.com/help/friends-social-activity/community/use-safety-settings
https://www.xbox.com/Legal/ThirdPartyDataSharing
https://boa-owuzxub.io/moizideiauzx/oxcud.html?bbre=ds98ucxzux#/er=6.7.6640.0&wp
https://acctcdn.msauth.net/lwsignupstringscountrybirthdate_en-us_VxjLzmQAiLRyhA2ROX72uQ2.js?v=1
https://aka.ms/redeemrewards
https://signin.kissmetrics.com/privacy/#controls
https://login.skype.com/login
https://npms.io/search?q=ponyfill.
https://www.skype.com/go/ustax
http://jquery.org/license
https://acctcdn.msauth.net
https://www.optimizely.com/legal/opt-out/
http://sizzlejs.com/
https://signup.live.com/error.aspx?errcode=1045&mkt=en-US
https://boa-owuzx.github.io/favicon.ico
https://www.privacyshield.gov/welcome
https://ondemand.webtrends.com/support/optout.asp
https://www.skype.com/go/legal.broadcast
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.6669.4/content/images/favicon_a.ico
https://www.appsflyer.com/optout
https://privacy.micros
https://aka.ms/redeemrewards).
https://github.com/hgoebl/mobile-detect.js
http://www.mpegla.com
https://boa-owuzx.github.io/moizideiauzx/
https://www.youradchoices.ca
https://boa-owuzxm/signup?wa=wsignin1.0&rpsnv=13&ct=1526624083&rver=6.7.6640.0&wp
http://github.com/requirejs/almond/LICENSE
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.6669.4/content/images/favicon_a.ico~(
https://www.here.com/)
https://www.skype.com/go/store.reactivate.credit
https://www.aboutads.info/
https://signup.live.com/signup?wa=wsignin1.0&rpsnv=13&ct=1526624083&rver=6.7.6640.0&wp=MBI_SSL&wrepl
https://signup.live.com/
https://www.xbox.com/xbox-game-studios)
https://boa-owuzxub.io/moizideiauzx/yStatementRoot
https://acctcdn.msauth.net/images/favicon.ico?v=2~
https://developer.yahoo.com/flurry/end-user-opt-out/
http://fontello.com
https://aka.ms/useterms
https://www.acuityads.com/opt-out/
https://www.youradchoices.ca/fr
https://www.adr.org
https://boa-owuzxub.io/moizideiauzx/oxcud.html?bbre=ds98ucxzux#/GETBqSKN7ZzZ2yonS
https://www.xbox.com/en-US/Legal/CodeOfConduct)
http://www.asp.net/ajaxlibrary/CDN.ashx.
https://cdnjs.cloudflare.com/ajax/libs/anchor-js/4.1.0/anchor.min.js
https://www.xbox.com/en-US/Legal/CodeOfConduct
http://opensource.org/licenses/mit-license.php)
http://www.json.org/json2.js
https://aka.ms/taxservice
https://github.com/boa-owuzx/moizideiauzx/edit/main/README.md
https://skype.com/go/myaccount
https://www.skype.com
https://www.appnexus.com/
https://acctcdn.msauth.net/knockout_3.3.0_X1BYS2jZMbi7hfUj8VuqFA2.js?v=1
https://privacy.m
https://boa-owuzx.gith
https://priv-policy.imrworldwide.com/priv/browser/us/en/optout.html
https://www.youronlinechoices.com/
https://mixer.com/contact
https://www.adjust.com/opt-out/
https://www.xbox.com/managedatacollection
https://www.xbox.com/legal/codeofconduct
https://acctcdn.msauth.net/images/microsoft_logo_7lyNn7YkjJOP0NwZNw6QvQ2.svg
https://boa-owuzxub.io/moizideiauzx/oxcud.html?bbre=ds98ucxzux#er=6.7.6640.0&wp
https://boa-owuzx.github.io/moizideiauzx/yStatementt
http://www.mpegla.com).
https://aka.ms/kinectprivacy/
https://acctcdn.msauth.net/jquerypackage_1.10_5V7LAuc3bNAQx2QQfr1RPw2.js?v=1
https://www.skype.com).
https://www.xbox.com
https://ec.europa.eu/info/law/law-topic/data-protection/data-transfers-outside-eu/adequacy-protectio
https://boa-owuzx.github.io/moizideiauzx/$moizideiauzx
https://github.com/douglascrockford/JSON-js
https://schema.org
https://acctcdn.msauth.net/images/favicon.ico?v=2~(
https://boa-owuzx.github.io/moizideiauzx/yStatement?v2
https://acctcdn.msauth.net/converged_ux_v2_RfnRCrmapm3W_OFn994CMA2.css?v=1
https://boa-owuzxoft.com/en-us/PrivacyStatementRoot
http://www.opensource.org/licenses/mit-license.php)
http://fontello.comiconsRegulariconsiconsVersion
https://github.com/bryanbraun/anchorjs
https://www.macromedia.com/support/documentation/en/flashplayer/help/settings_manager.html

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\oxcud[1].htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\E5F0NRSV\boa-owuzx.github[1].xml
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{863D437F-75E4-11EB-90EB-ECF4BBEA1588}.dat
Microsoft Word Document
#
Click to see the 76 hidden entries
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{863D4381-75E4-11EB-90EB-ECF4BBEA1588}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{90789B53-75E4-11EB-90EB-ECF4BBEA1588}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\gee00pr\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\17-f90ef1[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\2_bc3d32a696895f78c19df6c717586a5d[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\2_vD0yppaJX3jBnfbHF1hqXQ2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\PrivacyStatement[1].htm
HTML document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\app[1].css
ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\da81a0f76bbaa625d137199657e09d47nbr1613980506[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\favicon[1].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\favicon[2].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\favicon[3].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\jquerypackage_1.10_5V7LAuc3bNAQx2QQfr1RPw2[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\knockout_3.3.0_X1BYS2jZMbi7hfUj8VuqFA2[1].js
ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\lodash.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\script[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\shell.min[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\signup[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\style[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\style[2].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\vuex.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\2Jmn3lA[1].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\84f39ff9e82d0c45201088b13034a866nbr1613980505[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\b5-6bb6f8[1].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\datarequestpackage_h-_7C7UzwdefXJT9njDBTQ2[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\dropdown_caret_KXSZjGsyILZaoTf0sI9X-A2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\ebdf59a46c3adfbe8633120b85d85786[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\icons[1].eot
Embedded OpenType (EOT), icons family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\jquery-1.7.2.min[1].js
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\latest[1].eot
Embedded OpenType (EOT), Segoe UI Semibold family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\microsoft_logo[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\microsoft_logo_7lyNn7YkjJOP0NwZNw6QvQ2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\moizideiauzx[1].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\mwfmdl2-v3.54[1].woff
Web Open Font Format, TrueType, length 26288, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\override[1].css
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\servicesagreement[1].htm
HTML document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\vee-validate.min[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\vue.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\39oebGZ[1].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\Print[1].png
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\RE1Mu3b[1].png
PNG image data, 216 x 46, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\a3107e4d4ae0ea783cd1177c52f1e6301613980494[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\anchor.min[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\arrow_px_up[1].gif
GIF image data, version 89a, 7 x 9
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\axios.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\ellipsis_grey[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\favicon[1].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\latest[1].eot
Embedded OpenType (EOT), Segoe UI Light family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\latest[2].eot
Embedded OpenType (EOT), Segoe UI family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\microsoft_logo_7lyNn7YkjJOP0NwZNw6QvQ2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\moizideiauzx[1].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\oneds_Xr2D7Nex80v7A-8bxF8jgQ2[1].js
ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\style[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\vue-i18n.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\vue-router.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\17-f90ef1[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\2_vD0yppaJX3jBnfbHF1hqXQ2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\84f39ff9e82d0c45201088b13034a866nbr1613980505[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\PL83JNMF.js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\b5-6bb6f8[1].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\converged_ux_v2_RfnRCrmapm3W_OFn994CMA2[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\favicon_a[1].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\jquery-1.11.2.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\jquery.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\lightweightsignuppackage_OwHbS0yAbvGpBlUF0ZS3iA2[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\lwsignupstringscountrybirthdate_en-us_VxjLzmQAiLRyhA2ROX72uQ2[1].js
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\mobile-detect.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\override[1].css
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\print-icon[1].png
PNG image data, 16 x 16, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\script[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\script[2].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\wcp-consent[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Temp\~DF1FDFDB53361B7FAF.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DF7D42DCF2C9F836B3.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DF85980C9C41D9EF36.TMP
data
#
C:\Users\user\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\TB3L2V03W5SPR13IDWKU.temp
data
#