"Phantom Cheats" DISCORD TROJAN

Link (Dangerous): Phantom Community

OWNER - svg#0002 (UID: 1031699678619770971)

Associated Discord Account (likely hacked) - Apolinário#0777 (UID: 207335727308996608, from the CS:GO server)

Scammer is promoting their fake cheating program Phantom Cheats for Fortnite, Valorant, GTA V, Call of Duty, Rust and Roblox, which also doubles as a fake Nitro generator. The program is downloaded on their website Phantom (phantomtools.xyz)

Registered via NameCheap on October 19, 2022 - Whois phantomtools.xyz

VirusTotal - VirusTotal - File - 4f8f2b9d9160a80c44625a8d55524845fe54d68a1c9aa8c9bbc14da6625554c9

I AM UNABLE TO PERFORM AN ANY.RUN AS IT REQUIRES A 64-BIT OPERATING SYSTEM

Program contains the Artemis, Convagent and Wacatac trojans.

Associated IP Addresses:
5.206.227.40

208.91.197.39

You should be able to run a 64 bit scan using hybrid analysis

I submitted the binary so it should tell us any of the strings inside of the program shortly, I just downloaded the first cheats I saw on their website.