tryyudjasudqo.shop
|
|
|
|
Name: |
tryyudjasudqo.shop
|
TargetID: |
0
|
From Memory: |
false
|
Source: |
config extractor
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Found malware configuration |
AV Detection |
|
C2 URLs / IPs found in malware configuration |
Networking |
Application Layer Protocol
|
LummaC encrypted strings found |
HIPS / PFW / Operating System Protection Evasion |
Deobfuscate/Decode Files or Information
|
Sample uses string decryption to hide its real strings |
AV Detection |
|
|
keennylrwmqlw.shop
|
|
|
|
Name: |
keennylrwmqlw.shop
|
TargetID: |
0
|
From Memory: |
false
|
Source: |
config extractor
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Found malware configuration |
AV Detection |
|
C2 URLs / IPs found in malware configuration |
Networking |
Application Layer Protocol
|
LummaC encrypted strings found |
HIPS / PFW / Operating System Protection Evasion |
Deobfuscate/Decode Files or Information
|
Sample uses string decryption to hide its real strings |
AV Detection |
|
|
reggwardssdqw.shop
|
|
|
|
Name: |
reggwardssdqw.shop
|
TargetID: |
0
|
From Memory: |
false
|
Source: |
config extractor
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Found malware configuration |
AV Detection |
|
C2 URLs / IPs found in malware configuration |
Networking |
Application Layer Protocol
|
LummaC encrypted strings found |
HIPS / PFW / Operating System Protection Evasion |
Deobfuscate/Decode Files or Information
|
Sample uses string decryption to hide its real strings |
AV Detection |
|
|
tesecuuweqo.shop
|
|
|
|
Name: |
tesecuuweqo.shop
|
TargetID: |
0
|
From Memory: |
false
|
Source: |
config extractor
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Found malware configuration |
AV Detection |
|
C2 URLs / IPs found in malware configuration |
Networking |
Application Layer Protocol
|
LummaC encrypted strings found |
HIPS / PFW / Operating System Protection Evasion |
Deobfuscate/Decode Files or Information
|
Sample uses string decryption to hide its real strings |
AV Detection |
|
|
tendencctywop.shop
|
|
|
|
Name: |
tendencctywop.shop
|
TargetID: |
0
|
From Memory: |
false
|
Source: |
config extractor
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Found malware configuration |
AV Detection |
|
C2 URLs / IPs found in malware configuration |
Networking |
Application Layer Protocol
|
LummaC encrypted strings found |
HIPS / PFW / Operating System Protection Evasion |
Deobfuscate/Decode Files or Information
|
Sample uses string decryption to hide its real strings |
AV Detection |
|
|
eemmbryequo.shop
|
|
|
|
Name: |
eemmbryequo.shop
|
TargetID: |
0
|
From Memory: |
false
|
Source: |
config extractor
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Found malware configuration |
AV Detection |
|
C2 URLs / IPs found in malware configuration |
Networking |
Application Layer Protocol
|
LummaC encrypted strings found |
HIPS / PFW / Operating System Protection Evasion |
Deobfuscate/Decode Files or Information
|
Sample uses string decryption to hide its real strings |
AV Detection |
|
|
licenseodqwmqn.shop
|
|
|
|
Name: |
licenseodqwmqn.shop
|
TargetID: |
0
|
From Memory: |
false
|
Source: |
config extractor
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Found malware configuration |
AV Detection |
|
C2 URLs / IPs found in malware configuration |
Networking |
Application Layer Protocol
|
LummaC encrypted strings found |
HIPS / PFW / Operating System Protection Evasion |
Deobfuscate/Decode Files or Information
|
Sample uses string decryption to hide its real strings |
AV Detection |
|
|
relaxatinownio.shop
|
|
|
|
Name: |
relaxatinownio.shop
|
TargetID: |
0
|
From Memory: |
false
|
Source: |
config extractor
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Found malware configuration |
AV Detection |
|
C2 URLs / IPs found in malware configuration |
Networking |
Application Layer Protocol
|
LummaC encrypted strings found |
HIPS / PFW / Operating System Protection Evasion |
Deobfuscate/Decode Files or Information
|
Sample uses string decryption to hide its real strings |
AV Detection |
|
|