"The Layer2 designed for X" TROJAN

Link (Dangerous): Inspect - Dive Into Web3 Communities (streamingsolution.info)

Registered in the Russian Federation via NameCheap on January 31, 2023 - Whois streamingsolution.info

image

Associated Facebook account - Redirecting...

VirusTotal - VirusTotal - File - b3d72c15d495bd2333ca16adfc210535173653e87322d991d6ed3fa522dc2dca

Any.run - Analysis (PASS 123) Inspect-1.8.7.zip (MD5: 28EBC222CF3820A20F76DA6B61BB26A7) Malicious activity - Interactive analysis ANY.RUN

image

Program is downloaded as a protected ZIP file and contains the DropperX, and MISLZilla trojans, the Rilide infostealer and the Ainslot worm.

All data is logged and sent to 212.118.55.228, a Dutch datacenter serving the Russian Federation.

Associated IP Address - 94.103.80.182 :netherlands:

OTHER DOMAINS HOSTED ON THE IP ADDRESS:

2 Likes