top title background image
flash

icGL4EF2m6.ps1

Status: finished
Submission Time: 2025-01-08 08:44:06 +01:00
Malicious
Trojan
Spyware
Evader
Amadey

Comments

Tags

  • Amadey
  • ps1

Details

  • Analysis ID:
    1585769
  • API (Web) ID:
    1585769
  • Original Filename:
    23651958582a81e31bc320af26c67bc4.ps1
  • Analysis Started:
    2025-01-08 08:44:07 +01:00
  • Analysis Finished:
    2025-01-08 08:51:43 +01:00
  • MD5:
    23651958582a81e31bc320af26c67bc4
  • SHA1:
    59e419657487ea25c9b595a588e9dda925df7093
  • SHA256:
    d65d87ab0447ebd71d228e52749c97bb1e732b8a2f4c31537b08bff29fc27768
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 100
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious
Score: 6/61

IPs

IP Country Detection
185.11.61.104
Russian Federation

URLs

Name Detection
http://185.11.61.104/7jbBdsS/index.php
http://185.11.61.104/7jbBdsS/index.phptingsLMEM8X
http://185.11.61.104/7jbBdsS/index.phpp
Click to see the 25 hidden entries
https://oneget.org
http://185.11.61.104/7jbBdsS/index.phpm
http://185.11.61.104/7jbBdsS/index.phpt
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name
http://185.11.61.104/7jbBdsS/index.php8
http://185.11.61.104/7jbBdsS/index.phpw
http://185.11.61.104/7jbBdsS/index.php9-
https://aka.ms/pscore68
http://185.11.61.104/7jbBdsS/index.phpheCounterMutex
https://oneget.orgX
https://nuget.org/nuget.exe
https://contoso.com/
http://nuget.org/NuGet.exe
http://185.11.61.104/7jbBdsS/index.phpA
http://185.11.61.104/7jbBdsS/index.phpL
https://github.com/Pester/Pester
http://185.11.61.104/7jbBdsS/index.phpT
https://contoso.com/Icon
https://contoso.com/License
https://go.micro
http://www.apache.org/licenses/LICENSE-2.0.html
http://pesterbdd.com/images/Pester.png
http://185.11.61.104/
http://185.11.61.104/7jbBdsS/index.phpm32
http://www.apache.org/licenses/LICENSE-2.0

Dropped files

No malicious files found. See full and IOC report for all dropped files.