top title background image
flash

vidar_02520000.bin.exe

Status: finished
Submission Time: 2024-01-13 16:18:04 +01:00
Malicious
Trojan
Spyware
Evader
Vidar

Comments

Tags

  • 32-bit
  • exe
  • stealer
  • vidar

Details

  • Analysis ID:
    1374273
  • API (Web) ID:
    1374273
  • Analysis Started:
    2024-01-13 16:18:04 +01:00
  • Analysis Finished:
    2024-01-13 16:27:05 +01:00
  • MD5:
    9cc5ab9f921d3d7cb2e627fc9a89e901
  • SHA1:
    738d1eba7455ef319fe35014defd4ab1623d187c
  • SHA256:
    32df75ebdf0e44f9351863160e89c89a000bebfa038ebb36dbb9e668ebcb045f
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
malicious
Score: 100
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious
Score: 37/69
malicious
Score: 17/38
malicious

IPs

IP Country Detection
116.202.0.196
Germany
149.154.167.99
United Kingdom

Domains

Name IP Detection
t.me
149.154.167.99

URLs

Name Detection
https://ch.search.yahoo.com/favicon.icohttps://ch.search.yahoo.com/search
https://t.me/C
https://ac.ecosia.org/autocomplete?q=
Click to see the 30 hidden entries
https://t.me/bg3gotyZ
https://116.202.0.196:10220-data;
https://116.202.0.196:10220/e
https://t.me/bg3gotymedvsMozilla/5.0
https://support.office.com/article/94ba2e0b-638e-4a92-8857-2cb5ac1d8e17rer.exe
https://support.office.com/article/94ba2e0b-638e-4a92-8857-2cb5ac1d8e17Install
https://www.ecosia.org/newtab/
https://support.office.com/article/7D48285B-20E8-4B9B-91AD-216E34163BAD?wt.mc_id=EnterPK2016Examples
https://t.me/bg3goty
https://116.202.0.196:10220/sqlite3.dll
https://cdn.ecosia.org/assets/images/ico/favicon.icohttps://www.ecosia.org/search?q=
https://116.202.0.196:10220/qlite3.dllryptography
http://www.sqlite.org/copyright.html.
https://116.202.0.196/
https://116.202.0.196:10220/
https://support.office.com/article/7D48285B-20E8-4B9B-91AD-216E34163BAD?wt.mc_id=EnterPK2016ost.exe
https://116.202.0.196:10220nux
https://support.office.com/article/94ba2e0b-638e-4a92-8857-2cb5ac1d8e17
https://support.office.com/article/7D48285B-20E8-4B9B-91AD-216E34163BAD?wt.mc_id=EnterPK2016
https://ch.search.yahoo.com/sugg/chrome?output=fxjson&appid=crmas&command=
https://duckduckgo.com/favicon.icohttps://duckduckgo.com/?q=
https://web.telegram.org
https://steamcommunity.com/profiles/76561199601319247helloWFQY12O5J6Nr.$v
https://www.google.com/images/branding/product/ico/googleg_lodp.ico
https://116.202.0.196:10220_Defaulthrome
https://116.202.0.196:10220
https://duckduckgo.com/ac/?q=
https://t.me/
https://duckduckgo.com/chrome_newtab
https://steamcommunity.com/profiles/76561199601319247

Dropped files

No malicious files found. See full and IOC report for all dropped files.