InventoryChanger.zip?ex=670f57bf&is=670e063f&hm=49abce8b0676e61e01bcda855943deeefeae1a40a6e44c6f4259d1741b5e772d&

First submission 2024-10-15 20:02:02

File details

File type: Zip archive data, at least v2.0 to extract
Mime type: application/zip
File size: 1604.07 KB (1642568 bytes)
MD5: 3b792a5808816f221a7b35bf6e73ea78
SHA1: 51432c4240aeca954d230df62fff08c1f199d14e
SHA256: 43eb4aa05b43957caac28f0cb12dd47442acb3bac9bac57e709f101ece3d8335

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 26/77 VT report date: 2024-10-15 18:19:36
Malware Type 1 trojan

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXps://cdn.discordapp.com/attachments/1295030567431311372/1295085108650573904/InventoryChanger.zip?ex=670f57bf&is=670e063f&hm=49abce8b0676e61e01bcda855943deeefeae1a40a6e44c6f4259d1741b5e772d& VirusTotal Report cdn.discordapp.com VirusTotal Report 2024-10-15 20:02:02

Strings analysis - Possible IPs found 2

7.0.4.2
4.4.2.6