Password Stealer

IP: 91.243.32.45
VT Scan 26/71
YT Video directing users to download it

From VT: 4 matches for rule Stop Windows Service by Jakob Weinzettl, oscd.community from Sigma Integrated Rule Set (GitHub)

Detects execution of Net.exe, whether suspicious or benign.

Sigma Integrated Rule Set (GitHub) - Michael Haag, Mark Woan (improvements), James Pemberton / @4A616D6573 / oscd.community (improvements)

The sandbox VirusTotal ZenBox flags this file as: STEALER MALWARE TROJAN EVADER.

1 Like


Information on the IP

Thanks for the updated information

1 Like