[2018-10-09] HookAds->FalloutEK->AZORult

October 09, 2018

Overview

Saz file is 2018-10-09_22-35-00.saz

(↓Analysis result using EKFiddle)

Malware

AZORult

673acd97318bed9d322360cf6b3f5076d431c10c478c8fa1c3df9811a7188abc
[Hybrid-Analysis] [VirusTotal]

Traffic-Chain

https[:]//www.coinfinda.info/?cash&source=1925323-3111778393-0
↓
https[:]//www.coinfinda.info/setings.php
↓
https[:]//onlinefishthere.pro/next/gebrialer
↓
[Fallout Exploit Kit][Landing Page]
http[:]//whereareyoupoop.club/3783/Battleful-booleys-Undulled-gimmor/UwmUau
↓
[Fallout Exploit Kit][Malware Payload]
http[:]//whereareyoupoop.club/bZpsNfJT/7461/tubenose_geminis_conscribe_Deepwater/Teamaking-10212-arenariae/5793