"Remote Your Desktop Software" TROJAN - +49 711 217 246 705 & +7 (495) 580-11-11

Link (Dangerous): Anudosk

Registered via NameCheap on March 29, 2022 (Updated April 3, 2022) - Whois anyremcon.digital

image

VirusTotal - VirusTotal - File - a171bbdc47b43e4a4dec3287731d3efd5d501a3b7a563edaab6c39dc248b5123

Any.Run - https://anyremcon.digital/Bye/en/windows/index.php - Interactive analysis - ANY.RUN

image

Program is downloaded as an MSI file, and contains the Generik & StupidPInvoker trojans

Associated Phone Number (GERMANY) +49 711 217 246 705

image

Associated IP Addresses:
66.29.153.113

151.248.120.242 (statmakesmoney.com)

Registered in Moscow, Netherlands via Reg.Ru on January 18, 2022 - Whois statmakesmoney.com

Associated Phone Number (RUSSIA) +7 (495) 580-11-11

image

(files.gpg4win.org)