flash

21a5f8d0000.dll

Status: finished
Submission Time: 04.05.2021 11:38:37
Malicious
Trojan
Ursnif

Comments

Tags

  • Gozi

Details

  • Analysis ID:
    403758
  • API (Web) ID:
    709667
  • Analysis Started:
    04.05.2021 11:41:53
  • Analysis Finished:
    04.05.2021 11:47:37
  • MD5:
    b8c176dc8ab0d768031014f95b8816e8
  • SHA1:
    97826adb6aac6340a74ca024a65065fa6fdb21ca
  • SHA256:
    cc79e66b24bfca1cd0ef27c63921737786dcdae02f871279800ea2c82939721a
  • Technologies:
Full Report Management Report IOC Report Engine Info Verdict Score Reports

malicious

System: Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211

malicious
60/100

malicious

URLs

Name Detection
http://https://file://USER.ID%lu.exe/upd
http://constitution.org/usdeclar.txt
http://constitution.org/usdeclar.txtC:

Dropped files

Name File Type Hashes Detection
C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp\MpCmdRun.log
data
#