Putin-backed DISCORD TROJAN +7 (474) 752-82-10

Popup - https://gitvhub.com/ee/game/raw/main/HiddenSky.zip

Registered by Georgii Basov in the Russian Federation via Ru-Center on February 23, 2022 - Whois gitvhub.com

VirusTotal - VirusTotal - File - 527b3ec7f548207e3ef8509973591509e5d61c91d613c232329204dfa35535be

Any.Run - HiddenSky.zip (MD5: E494C5E162E3FE733F0B7A94BF10C1BE) - Interactive analysis - ANY.RUN

image

Associated Phone Number (RUSSIA) - +7 (474) 752-82-10

image

Associated Email Address - [email protected]

Associated IP Address - 31.31.196.166

Program contains several trojans, including Asprotect, Bobik, Eldorado, Kryptik, Sabsik, SusGen and a variant of the Redline tracker.

1 Like

Asprotect is PE packer not trojan.

“susgen” :laughing: