Hellevator: Try my game (Discord scam)

Scammer’s Website or Email: Hellevator
Additional information about this scam: I got DMed from this stranger who ask me to test his game. I warned the server that we have in common. I also praised the scammer for his amazing game, and he blocked me.

1 Like

Triage Report:  hxxps://playhellevator[.]blogspot[.]com/2024/02/hellevator[.]html | Triage

Cannot run it using ANY.run because the exe is 64-bit

1 Like

This malware is actually quite undetected, I am going to report it to various AV software to increase the detection, here is an in-depth analysis in Hybrid Analysis if you wanna see exactly what this malware does Free Automated Malware Analysis Service - powered by Falcon Sandbox - Viewing online file analysis results for 'Hellevator.exe'

1 Like

Any.Run: https://app.any.run/tasks/ad416c9f-8abd-470e-a6d6-1d758ff1cbd9

1 Like

Looks like a standard Discord tokener.

1 Like

Yeah Malwarebytes is aware of it and they are currently reverse engineering it and adding detections, I also reported it to Microsoft, but they always take forever to add detections for threats like these.

1 Like