top title background image
flash

SecuriteInfo.com.Win32.TrojanX-gen.3459.12800.exe

Status: finished
Submission Time: 2024-05-21 23:23:10 +02:00
Malicious
Phishing
Trojan
Evader

Comments

Tags

  • exe

Details

  • Analysis ID:
    1445341
  • API (Web) ID:
    1445341
  • Analysis Started:
    2024-05-21 23:23:10 +02:00
  • Analysis Finished:
    2024-05-21 23:42:06 +02:00
  • MD5:
    d06fdf6fefd7a4444bb62ac9300809eb
  • SHA1:
    7c4e7c783be7742e324587089f3a2547b1432251
  • SHA256:
    58f8f4e8795ca219432159ed6501fb7c6d933f3d713d35b7ca1ebf01dc2a0209
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
malicious
Score: 92
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
malicious
Score: 100
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
Run Condition: Run with higher sleep bypass

Third Party Analysis Engines

malicious
Score: 16/23
malicious

IPs

IP Country Detection
188.114.96.3
European Union
142.250.184.198
United States
157.240.253.35
United States
Click to see the 74 hidden entries
172.67.184.145
United States
18.239.38.71
United States
108.138.26.110
United States
192.0.77.32
United States
188.114.97.3
European Union
185.184.8.90
Poland
13.42.166.119
United States
142.250.184.194
United States
142.250.186.100
United States
142.250.185.68
United States
142.250.186.34
United States
142.250.184.196
United States
18.155.129.129
United States
172.67.141.52
United States
162.159.130.233
United States
54.165.165.20
United States
18.239.15.205
United States
216.58.212.130
United States
104.16.225.240
United States
216.58.206.68
United States
173.0.146.83
United States
104.21.26.25
United States
3.160.150.110
United States
34.96.105.8
United States
104.26.6.228
United States
52.86.37.184
United States
108.138.26.86
United States
185.199.108.133
Netherlands
162.159.129.233
United States
51.89.192.129
France
154.59.122.79
United States
162.159.135.234
United States
13.32.23.209
United States
172.217.16.198
United States
31.204.132.208
Netherlands
172.67.153.149
United States
18.239.18.107
United States
23.109.170.136
Netherlands
142.250.185.196
United States
52.56.121.62
United States
192.0.0.8
Reserved
239.255.255.250
Reserved
64.233.166.156
United States
192.0.77.2
United States
157.240.0.35
United States
13.32.121.115
United States
23.109.170.12
Netherlands
173.0.146.23
United States
173.0.146.28
United States
35.190.80.1
United States
208.74.201.175
United States
18.239.38.189
United States
162.19.19.15
United States
104.21.3.15
United States
143.204.215.36
United States
213.155.156.168
European Union
188.42.105.236
Luxembourg
23.109.170.155
Netherlands
104.17.247.203
United States
212.117.186.44
Luxembourg
172.240.104.108
United States
192.0.76.3
United States
142.251.168.155
United States
104.16.224.240
United States
213.155.156.169
European Union
192.0.78.139
United States
157.240.252.35
United States
172.217.18.98
United States
142.250.185.162
United States
104.18.33.10
United States
192.0.78.230
United States
162.159.128.233
United States
142.250.186.142
United States
23.109.170.254
Netherlands

Domains

Name IP Detection
pogothere.xyz
188.114.96.3
d2906506rwyvg2.cloudfront.net
18.239.15.205
jetpack.wordpress.com
192.0.78.32
Click to see the 74 hidden entries
noosertrouped.top
212.117.186.44
sync.ipredictive.com
52.86.37.184
teiankythes.top
173.0.146.83
a.nel.cloudflare.com
35.190.80.1
d5p.de17a.com
213.155.156.169
robloxscripts.net
192.0.78.139
sync.srv.stackadapt.com
54.165.165.20
t.rtbadshubmy.com
172.67.184.145
0.gravatar.com
192.0.73.2
2.gravatar.com
192.0.73.2
aliyothvoglite.top
51.89.192.129
ghabovethec.info
108.138.26.110
theekedgleamed.com
23.109.170.155
static.getclicky.com
104.16.224.240
www.showmelocal.com
208.74.201.175
secure.gravatar.com
192.0.73.2
s0.2mdn.net
142.250.184.198
a.tile.openstreetmap.org
0.0.0.0
c.tile.openstreetmap.org
0.0.0.0
ad.turn.com
0.0.0.0
r.turn.com
0.0.0.0
www.facebook.com
0.0.0.0
b.tile.openstreetmap.org
0.0.0.0
fundingchoicesmessages.google.com
0.0.0.0
sync-dmp.aura-dsp.com
0.0.0.0
sync-tm.everesttech.net
0.0.0.0
dclk-match.dotomi.com
0.0.0.0
ums.acuityplatform.com
154.59.122.79
use.fontawesome.com
0.0.0.0
ag.innovid.com
0.0.0.0
cdn.ocmtag.com
188.114.97.3
s0.wp.com
192.0.77.32
public-api.wordpress.com
192.0.78.23
pixel.wp.com
192.0.76.3
sdk.ocmhood.com
104.26.6.228
unpkg.com
104.17.247.203
stats.g.doubleclick.net
142.251.168.155
rdreamsansw.info
18.239.18.107
widgets.wp.com
192.0.77.32
www.google.com
142.250.184.196
d2psma0az3acui.cloudfront.net
18.239.38.71
cm.g.doubleclick.net
142.250.185.130
unrovemoue.top
172.240.104.108
c0.wp.com
192.0.77.37
googlecm.hit.gemius.pl
192.0.0.8
go.affflow.com
172.67.141.52
aragorn-prod-uk-acai-lb.inbake.com
52.56.121.62
us.moders.co
31.204.132.208
sync.gonet-ads.com
188.42.105.236
tesousefulhead.info
104.21.3.15
cdn.discordapp.com
162.159.129.233
discord.com
162.159.128.233
tr.blismedia.com
34.96.105.8
t.ocmhood.com
104.26.6.228
1.gravatar.com
192.0.73.2
getrunkhomuto.info
3.160.150.110
onclickperformance.com
188.114.97.3
feed.rtbadshubmy.com
172.67.184.145
in.getclicky.com
104.16.225.240
www3.l.google.com
142.250.186.142
myxioslive.com
188.114.96.3
googleads.g.doubleclick.net
172.217.18.98
discord.gg
162.159.135.234
rblxexploits.com
172.67.153.149
abtfliping.top
23.109.170.254
stats.wp.com
192.0.76.3
i0.wp.com
192.0.77.2
easyexploits.com
104.21.26.25
raw.githubusercontent.com
185.199.108.133
ndtheyeiedm.info
143.204.215.36
opeanresultancete.info
13.32.121.115
creativecdn.com
185.184.8.90
engine.blehcourt.com
104.18.33.10
star-mini.c10r.facebook.com
157.240.252.35

URLs

Name Detection
https://us.moders.co/nty/postback/click?key=v2-1716327214114-4-7119-1174722-8c1572e2-8dd5-2d0d-c0a8-198e8f943024
about:blank
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/02/image-2.png?w=1680&ssl=1
Click to see the 97 hidden entries
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/02/image-4.png?fit=1408%2C792&ssl=1
https://robloxscripts.net/S
https://robloxscripts.net/thunder-client-arsenal-script-aimbot-esp-godmode-more/image-2-13/
https://robloxscripts.net/wp-content/fonts/poppins/pxiByp8kv8JHgFVrLEj6Z1xlFQ.woff2
https://pastebin.com/raw/tzTXmYf2
https://robloxscripts.net/new-blox-fruits-redz-hub-script-auto-farm-auto-raid-more/
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/02/image-4.png?resize=1200%2C675&ssl
https://robloxscripts.net/A
https://github.com/dirkgroenen/jQuery-viewport-checker/blob/master/LICENSE
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/02/image-3.png?fit=1898%2C1068&ssl=1
https://d2psma0az3acui.cloudfront.net/?amspd=955131
https://sync.gonet-ads.com/match/google?google_gid=CAESEOe__lBYJF4G9RYJ6un9d1E&google_cver=1&google_push=AXcoOmQ-huTvqq2XLLNasZ0N1qmFQgAquak8gkdg3zUGCAyfcu-gVEjXxZj0mB3vunVwG9X8GrJakMaSKp2FcyJpJYTL1Oa2q35NyGs&chk=1
https://www.google.com/ads/measurement/l?ebcid=ALh7CaTVUR5Gmlur4TSwVMgxZNjkC5rHWcNwJM1pp-xIrWRW44PNI02Uk1z7qKYjJbDtgFDSpEZajrnbr9dagm7adlt6BhXL2g
https://robloxscripts.net/wp-json/oembed/1.0/embed?url=https%3A%2F%2Frobloxscripts.net%2F&forma
https://d2906506rwyvg2.cloudfront.net/tazV2ZlUIWhgAah9cEltsWgxAX2dNRQQDM1ZQFxUsDk0GCjoCQQVINgRYUAwmBFsGWy1cAQcNGTxvI0AhEVFLS2FNWRcIMlYTEwg2VgRQBzEJCEJAIRtaHVs3DVgDCi8JVBsRcx5USws6EVwaCjROBzBTe1sQRFZ9HFwYAjocRlNUZQVBU1RlWgVYVnBYd1-NUZRxcGFBhTgY0Q2dbTUBSfE4HRgclG1kTETAJXh8ScFlzQ1ViRQZAQ2dbHR0OIQZZU1QWTgdGCjwAUFNUZQxQFQ06QhBEVjYDRxkLME4HMFdkXBtGSGVFBVNUZRhUEAcnAhBEIGBYAlhVY01AS1c
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/02/image-5.png?fit=631%2C355&ssl=1&
http://icsharpcode.net/sharpdevelop/avalonedit#ICSharpCode.AvalonEdit.Highlighting
https://robloxscripts.net/new-blox-fruits-script-w-azure-hub/image-5-8/
http://discord.gg/fortnite).
https://cdn.discordapp.com/icons/1070870745745473576/891055ef63eee450282e9e094c15b9a6.webp?size=64
http://googleads.g.doubleclick.net
http://www.roblox.com/asset/?id=9419827
https://www.showmelocal.com/js/fontawesome5140.js
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/02/image-3.png?resize=1024%2C576&ssl
https://us.moders.co/nty/postback/click?key=v2-1716327214114-4-7119-1174722-8c1572e2-8dd5-2d0d-c0a8-
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/03/image.png?w=620&ssl=1
https://d5p.de17a.com/cookies/google?google_gid=CAESEIcjr96v7wnNRS0f7BW6Tps&google_cver=1&google_push=AXcoOmQ9-qOBQXdGDeCFFYyG-AVOmsZxy9XZ72msVbq9WRQk8N-_HUiK-t1ImnPo6LfabTpJUhkPbFCDpQnVqKj6PsRRuFXIABE48OQ
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/04/image.png?fit=300%2C169&ssl=1
https://discord.com/assets/ec09b0d1e4c64b3c0956.svg
https://robloxscripts.net/yQ
https://operations.osmfoundation.org/policies/tiles/
https://theekedgleamed.com/tBLagqq0jsW07Yy/65365
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/01/image-2.png?fit=697%2C392&ssl=1&
https://robloxscripts.net/u
https://discord.com/assets/3e0ea01b0dbd07fd8885.svg
https://tesousefulhead.info/a29ZbXFEUDoeTAkFC10QPAMDLzRaPQErAiY7D1wVMy4fIyZaLn8ZGA9SYFxIXVZrSwECC2RcVxgbOBkEGFJqXUFaSTADFwRSaV1BWkkvUEBFXG1DQl1BbUsEVl1pWEFZVmBZRFNcYFlHX15/GQEKCGRcVxsbLQFMWlhoW0JZWGhVQ15cYA
https://fundingchoicesmessages.google.com/i/ca-pub-2249257918045069?href=https%3A%2F%2Frobloxscripts.net&ers=2
https://sdk.ocmhood.com/sdk/ht.js?tag=NjY4ZwSkNAFfmDQ2ePAxNDY4MjE0Nulb
https://robloxscripts.net/new-pet-simulator-99-script-zap-hub-auto-farm/
http://anaminus.github.io/rbx/json/api/latest.json
https://robloxscripts.net/c
https://fontawesome.com/license/free
https://discord.com/assets/49368.2d66f73fb7611f643118.js
https://discord.gg/9APgdkhTEkQ
https://robloxscripts.net/K
https://discord.com/assets/04bca5e801a9fcbfc3aa.woff2
https://robloxscripts.net/_static/??wp-includes/js/jquery/jquery-migrate.min.js
https://robloxscripts.net/YQ
http://www.opensource.org/licenses/mit-license.php
https://robloxscripts.net/wp-content/fonts/poppins/pxiEyp8kv8JHgFVrJJfecg.woff2
https://unrovemoue.top/XzFULJNJc9WAuZZsfzbOTSxlOtobz_5NHwvqQKbxMxLYACum79B3KZ5uih2UIn6Wp*FokeczVyPXsG0d*7DTFAlRDmSEnTF?ck9=eyJhIjo1NjQsInMiOiIxMjgweDEwMjQiLCJiIjoiMTI4MHg5MDciLCJyIjoiIiwicSI6Imh0dHBzOi8vZWFzeWV4cGxvaXRzLmNvbS8iLCJoIjo0NzQxLCJsIjoiZW4tVVMiLCJ0IjoyNDAsInoiOjMxNzYsImsiOjAsInUiOiIiLCJmIjpmYWxzZSwid2giOiJub3QgaW4gaWZyYW1lIiwiaWgiOiJub3QgaW4gaWZyYW1lIiwiZSI6Imc3ZXVmdG5zMzFtZGlrbyIsIm8iOnRydWUsIm0iOjE3MTYzMjcxNzg3MTEsInRzIjowLCJwciI6MSwiZG0iOjgsImhjIjo0LCJibCI6LTEsImJjIjozLCJ2diI6Ikdvb2dsZSBJbmMuIChHb29nbGUpIiwidnIiOiJBTkdMRSAoR29vZ2xlLCBWdWxrYW4gMS4zLjAgKFN3aWZ0U2hhZGVyIERldmljZSAoU3ViemVybykgKDB4MDAwMEMwREUpKSwgU3dpZnRTaGFkZXIgZHJpdmVyKSIsImFjIjowLCJjdCI6InVua25vd24iLCJjZXQiOiI0ZyIsImNkbG0iOi0xLCJjZGwiOjEwLCJjcnR0IjoxNTAsInRtcyI6MSwiY2UiOnRydWUsImNkIjoyNCwib3IiOiJsYW5kc2NhcGUtcHJpbWFyeSJ9
https://robloxscripts.net/new-blox-fruits-auto-bounty-farm-script-hoho-hub/
https://googleads.g.doubleclick.net/pagead/interaction/?ai=CN-IoJhNNZsH8CKyK7M8P1M2KgAG1g4ufdKe-l8a6DGQQASD-5qVrYMkGoAHFkND-A8gBAagDAcgDSKoE1AFP0CG0MhzTlcKwXVVae0G3hRF3U7Ro2Tow5l_RfgtFRKJU5fJbCQgzuwy_ouZid3G28znLOrJUab-JI8IVE7tt5enHZ9okVIr-dNNLkWjp_m1zH86-S-CwnN0QaNZeUdkM-W5xCzzZm2r6INIoM9UCEBRjFZSsfQGb1wwIlgEMKJRFrHOXf3eKyQ_3oxbz0MoFf_E3xD01i8RwiNdd0L-HJvOVGjYhwtUhfpg5DNBdlD6NNYSEsAT4nWvwN5PueNceHFkB3Pmv3wh_cPZU1NUqYmG9ZcAEs7aN2RmIBcOm7j2gBi6AB6PvrwGoB9m2sQKoB9XJG6gHpr4bqAeOzhuoB5PYG6gH7paxAqgH_p6xAqgHr76xAqgHmgaoB_PRG6gHltgbqAeqm7ECqAeDrbECqAfgvbECqAf_nrECqAffn7ECqAfKqbECqAfrpbECqAfqsbECqAeZtbECqAe-t7ECqAf4wrECqAf7wrEC2AcB0ggkCIBhEAEYHzICigI6CYBAgMCAgICgKEi9_cE6WM_pwovZn4YDsQlFxcCF947bQYAKAZgLAcgLAdoMEAoKEMC4_Oen8IvNehICAQOqDQJVU8gNAdgTDYgUBtAVAZgWAfgWAYAXAbIYCRICsV8YLiIBAA&sigh=VW_Sen_QGWo&cid=CAQSOwDaQooLK8DVTACXyQGOwJvUBujTySCTxJQY2E6_RkV7cjbUdgQ53Bx13Uhs-GuDQvsMsuggjSauEWDq&label=window_focus&gqid=JhNNZveQCO6I1PIPkae0qAE&qqid=CMGnw4vZn4YDFSwF-wMd1KYCEA&bgload=1
https://fundingchoicesmessages.google.com/el/AGSKWxUBgXyObkj2GmF722LEgg_3M4zFX10iLxCYaYgB44hJlOblw-H3EPqHWOq-nHyJSfSx5LtM7in6A1vMSX36gg8DfImjSq06CUJbwDsewotoXcQdaQ7E8gcENSAg3gks9mT_m1oxiw==
http://getbootstrap.com)
https://discord.com/assets/shared.c71c96a5bc3aade127c2.js
https://cm.g.doubleclick.net/pixel?google_nid=stackadapt_usd&google_hm=wDRi3Y1XWudtyec5KKvj7ggue68&google_push=AXcoOmTiuA44hvAdUA8UJ299s-m3YPbcxxn82fkq3S0WRAUAekHCAaUcfvKmOWvlqLKzjMz-6hSeIyK59ZliV7-rdbg4yatJAbOsItI
https://discord.com/assets/57878.f80f2ae72af75d9274b1.js
https://github.com/twbs/bootstrap/graphs/contributors)
https://fundingchoicesmessages.google.com/i/%
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/02/image-3.png?resize=1200%2C675&ssl
http://icsharpcode.net/sharpdevelop/avalonedit#ICSharpCode.AvalonEdit.HighlightingQ
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/02/image-2.png?resize=790%2C461&ssl
https://robloxscripts.net/_static/??-eJydzsEOgjAMgOEXsk4TjXowPooZrMzC6CYtTN7eRTwYvXlsk/9rc4I6siKrSWH
https://ampcid.google.com/v1/publisher:getClientId
https://fundingchoicesmessages.google.com/f/AGSKWxUdALC5b5gV06lhHXeLh00DF6AXHLreCwhlwbGYzPWbr0TJaYVrTZiw9VXT1d0dvXcNZh6tFA7de5iOfiXbuPuLn_1T416qY8gqxb7QUmld1dLIePrZhbUnfU_78uTQajTHFhpFEg==?fccs=W251bGwsbnVsbCxudWxsLG51bGwsbnVsbCxudWxsLFsxNzE2MzI3MjE0LDQxOTAwMDAwMF0sbnVsbCxudWxsLG51bGwsW251bGwsWzcsOSw2XSxudWxsLDIsbnVsbCwiZW4iLG51bGwsbnVsbCxudWxsLG51bGwsbnVsbCwxXSwiaHR0cHM6Ly9yb2Jsb3hzY3JpcHRzLm5ldC8iLG51bGwsW1s4LCJYdXhaUDRTWFdpYyJdLFs5LCJlbi1VUyJdLFsxOCwiW1tbMF1dXSJdLFsyMCwiW251bGwsbnVsbCxbOTUzMjk4NDJdLG51bGwsMTZdIl0sWzE5LCIyIl0sWzE3LCJbMF0iXV1d
https://discord.com/
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/02/image-5.png?fit=300%2C169&ssl=1
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2022/08/pnj-rs-w-1.png?fit=504%2C355&ssl=
https://robloxscripts.net/new-blox-fruits-devil-fruit-farm-hop-script-hoho-hub/
http://www.roblox.com/asset/?id=9419831
https://twitter.com/discord).
https://robloxscripts.net/wp-json/wp/v2/pages/299
https://opeanresultancete.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
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/02/image-4.png?resize=1024%2C576&ssl
https://www.showmelocal.com/js/dash.js
http://mathiasbynens.be/
https://www.showmelocal.com/showad.aspx?bid=23819413
https://robloxscripts.net/wp-includes/js/jquery/jquery.min.js?ver=3.7.1
https://cdn.discordapp.com/attachments/929421642235519037/1014534028076003368/discord.svg
http://www.roblox.com/asset/?id=19399245
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2022/09/cropped-RS-Logo.png?fit=270%2C270&#03
https://robloxscripts.net/#breadcrumb
https://discord.com/invite/9APgdkhTEk?locale=es-419
https://tesousefulhead.info/bmk4TjJBVls9DzRZdjh/AiNsK143IWIiYF0xTwxaOyFuF3M5JB46WwpUAXsHWV0AaEIHDQV/FB0dWTpHHVQLfgJfT1EgVAFUCH4CX09OcwNAWgxgAVhHDGhHU1sIewJcUAF6B1ZaAXoEWlgeOkIPDgV/FB4dTCIPX14JeAFcXgp+AF1QCA
https://robloxscripts.net/
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/04/image.png?w=629&ssl=1
https://discord.com/invite/9APgdkhTEk?locale=sv-SE
https://robloxscripts.net/new-blox-fruits-script-w-azure-hub/
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/02/image-5.png?fit=631%2C355&ssl=1&a
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/03/image.png?fit=300%2C169&ssl=1
https://robloxscripts.net/y
https://unrovemoue.top/XzFULJNJc9WAuZZsfzbOTSxlOtobz_5NHwvqQKbxMxLYACum79B3KZ5uih2UIn6Wp*FokeczVyPXsG0d*7DTFAlRDmSEnTF?ck9=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
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/03/image.png?resize=300%2C169&ssl=1
https://i0.wp.com/robloxscripts.net/wp-content/uploads/2024/03/pf1-fs8.png?resize=1200%2C675&ssl
https://t.ocmhood.com/v2/users
https://discord.com

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Roaming\83C0CF468771E10150E77501F8BEB4AB\83C0CF468771E10150E77501F8BEB4AB.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
#
C:\Users\user\Desktop\Furk Ultra 2.6.0\FurkByteCode.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
#
C:\Users\user\Desktop\Furk Ultra 2.6.0\FurkUltra.exe
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
#
Click to see the 1 hidden entries
C:\Users\user\Desktop\Furk Ultra 2.6.0\ICSharpCode.AvalonEdit.dll
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
#