Boggly10.exe

Boggly

BadgeWinners

The executable Boggly10.exe has been detected as malware by 17 anti-virus scanners. While running, it connects to the Internet address ip-23-229-165-66.ip.secureserver.net on port 80 using the HTTP protocol.
Publisher:
BadgeWinners

Product:
Boggly

Version:
10.00

MD5:
57686d375543361de612b3831210e962

SHA-1:
2020bf4e71d1b01a3ccfa830cdae38cae7b98181

SHA-256:
a58eef508440549a34a4a036b8c8d9c1a0fbd46592df69946e7fee2ee3e1d9e3

Scanner detections:
17 / 68

Status:
Malware

Analysis date:
4/26/2024 8:31:28 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.14810784
544

Agnitum Outpost
Trojan.VbCrypt
7.1.1

Avira AntiVirus
TR/Agent.774144.300
8.3.1.6

Arcabit
Trojan.Generic.DE1FEA0
1.0.0.425

Bitdefender
Trojan.Generic.14810784
1.0.20.1110

Dr.Web
Trojan.VbCrypt.8
9.0.1.0222

Emsisoft Anti-Malware
Trojan.Generic.14810784
8.15.08.10.09

F-Secure
Trojan.Generic.14810784
11.2015-10-08_2

G Data
Trojan.Generic.14810784
15.8.25

IKARUS anti.virus
Trojan.Agent
t3scan.1.9.5.0

McAfee
Artemis!57686D375543
5600.6678

MicroWorld eScan
Trojan.Generic.14810784
16.0.0.666

NANO AntiVirus
Trojan.Win32.VbCrypt.dtlesj
0.30.24.3079

nProtect
Trojan.Generic.14810784
15.08.07.01

Panda Antivirus
Trj/CI.A
15.08.10.09

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1015

VIPRE Antivirus
Trojan.Win32.Generic
42704

File size:
756 KB (774,144 bytes)

Product version:
10.00

Original file name:
Boggly10.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\boggly10.exe

File PE Metadata
Compilation timestamp:
6/29/2015 12:01:43 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:FaOzcyhjAvBoI7DrfSbaU6KX0PosH1OJ/8wceFj4j2O:YYmo0fK//8jR2

Entry address:
0x18B4

Entry point:
68, D8, 2C, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, CE, AF, BB, DE, A0, 13, 6E, 42, 80, 96, 37, 9A, 77, 18, 57, DC, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 42, 6F, 67, 67, 6C, 79, 00, 00, 00, 00, 00, 00, FF, CC, 31, 00, 1C, 3F, D1, 8E, A5, F2, 71, 90, 45, 90, 52, 75, B9, 72, 7A, 1B, 65, A8, 44, C6, 92, 82, 5E, FE, 4B, 8B, AE, E5, 08, 91, C4, 39, 59, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00, AA, 00, 60, D3, 93, 00, 00, 00...
 
[+]

Entropy:
4.1609

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
744 KB (761,856 bytes)

The executing file has been seen to make the following network communication in live environments.

TCP (HTTP):
Connects to ip-23-229-165-66.ip.secureserver.net  (23.229.165.66:80)

Remove Boggly10.exe - Powered by Reason Core Security