Demmoned / AutoBazaar-Flip-Skyblock-Mod

0 stars 0 forks source link

Literally a fucking RAT #2

Open WitheredFOT opened 6 months ago

WitheredFOT commented 6 months ago

Analysis Results for BazaarFlipperV2-25dlr.jar The mod (BazaarFlipperV2-25dlr.jar) has been scanned using regex and we have found abnormalities that match signatures of known malicious software. Additionaly, 9 suspicious items were detected, 5 of these are of high severity.

Known malicious software identified: Yoink Stealer Found Discord webhook encoded in base64: https://discord.com/api/webhooks/1081890697415774218/WuwwFwPyM5pr7F3q_8nCgZasW8h5qDoWSm2Y9TdPZSchJS3jy8WtrY448f4rOPoHTo3d Attempts to access browser user data directories Attempts to access Discord information Attempts to access files containing sensitive info, such as banking info, account info or passwords Attempts to retrieve your IP Attempts to access Minecraft session info | This could be used for legitmate purposes Attempts to access local application data, often used to store mod configs or sensitive info Attempts to take a screenshot | This is often used for legitimate reasons such as macro warnings. Attempts to upload or download files from external services