IOC Report
5_1 Availity - Clearinghouse Payer List - Premium - Preferred Plus_xlsx.html

loading gif

Files

File Path
Type
Category
Malicious
5_1 Availity - Clearinghouse Payer List - Premium - Preferred Plus_xlsx.html
HTML document, ASCII text, with CRLF line terminators
initial sample
C:\Users\user\Downloads\2d95bef1-0fbb-4c59-814b-1b3149a6ff9c.tmp
Microsoft Excel 2007+
dropped
C:\Users\user\Downloads\5.1 Availity - Clearinghouse Payer List - Premium - Preferred Plus.xlsx.crdownload
Microsoft Excel 2007+
dropped
Chrome Cache Entry: 156
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 157
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 158
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
dropped
Chrome Cache Entry: 159
ASCII text
downloaded
Chrome Cache Entry: 160
HTML document, ASCII text
downloaded
Chrome Cache Entry: 161
Unicode text, UTF-8 text, with very long lines (25715)
downloaded
Chrome Cache Entry: 162
HTML document, ASCII text
downloaded
Chrome Cache Entry: 163
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 164
ASCII text, with very long lines (11046)
downloaded
Chrome Cache Entry: 165
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 166
ASCII text, with very long lines (762)
downloaded
Chrome Cache Entry: 167
ASCII text, with very long lines (3980)
downloaded
Chrome Cache Entry: 168
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
downloaded
Chrome Cache Entry: 169
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 170
ASCII text, with very long lines (11046)
downloaded
Chrome Cache Entry: 171
ASCII text, with very long lines (18001)
downloaded
There are 9 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "C:\Users\user\Desktop\5_1 Availity - Clearinghouse Payer List - Premium - Preferred Plus_xlsx.html"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2420 --field-trial-handle=2340,i,3582820520771955570,505747528871674737,262144 /prefetch:8

URLs

Name
IP
Malicious
https://availity.lightning.force.com/aura?r=1&ui-content-components-forceContent-previewInfoProvider.PreviewInfoProvider.getPreviewInfo=1
136.146.40.118
http://www.apache.org/licenses/LICENSE-2.0
unknown
http://momentjs.com/guides/#/warnings/zone/
unknown
https://availity.my.salesforce.com/static/111213/sfc/javascript/lib/AC_OETags.js
136.146.39.118
https://availity.my.salesforce.com/visualforce/session?url=https%3A%2F%2Favaility.lightning.force.com%2Faura%3Fr%3D0%26ui-content-components-forceContent-contentDistributionViewer.ContentDistributionViewer.getContentDistributionInfo%3D1
136.146.39.118
https://availity.my.salesforce.com/sfc/dist/version/download/?oid=00D300000000I3W&ids=068Hp00000iR79IIAS&d=/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac&operationContext=DELIVERY&viewId=05HHp000004Mt4cMAC&dpt=
136.146.39.118
https://availity.my.salesforce.com/sCSS/60.0/sprites/1705602480000/Theme2/default/gc/contentDistribution.css
136.146.39.118
https://availity.my.salesforce.com/lightning/lightning.out.delegate.js?v=1716414602749
136.146.39.118
http://polymer.github.io/PATENTS.txt
unknown
https://availity.my.salesforce.com/sfc/ld/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac/l/%7B%22mode%22%3A%22PROD%22%2C%22cac%22%3A0%2C%22app%22%3A%22forceContent%3AcontentDistributionApp%22%2C%22serializationVersion%22%3A%221-248.10.5-5.0.10-b%22%2C%22parts%22%3A%22t%22%2C%22loaded%22%3A%7B%22APPLICATION%40markup%3A%2F%2FforceContent%3AcontentDistributionApp%22%3A%22yYM3XHVkMyjSW6pzoV07SA%22%7D%2C%22dns%22%3A%22c%22%2C%22ls%22%3A1%2C%22lrmc%22%3A%22-386269907%22%7D/appcore.js?2=
136.146.39.118
https://availity.my.salesforce.com/sfc/ld/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac/aura?r=1&ui-content-components-forceContent-previewInfoProvider.PreviewInfoProvider.getPreviewInfo=1
136.146.39.118
https://availity.my.salesforce.com/sfc/p/
136.146.39.118
https://availity.my.salesforce.com/sfc/ld/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac/forceContent/contentDistributionApp.app?aura.format=JSON&aura.formatAdapter=LIGHTNING_OUT
136.146.39.118
https://availity.my.salesforce.com/sfc/ld/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac/auraCmpDef?_au=yYM3XHVkMyjSW6pzoV07SA&_c=false&_cac=0&_density=VIEW_ONE&_ff=DESKTOP&_l=true&_l10n=en_US&_lrmc=-386269907&_style=-967093545&aura.app=markup://forceContent:contentDistributionApp&aura.mode=PROD&_def=markup://lightning:iconSvgTemplatesUtility&_uid=LATEST
136.146.39.118
https://availity.my.salesforce.com/lightning/lightning.out.js
136.146.39.118
http://momentjs.com/guides/#/warnings/add-inverted-param/
unknown
http://polymer.github.io/LICENSE.txt
unknown
http://momentjs.com/guides/#/warnings/dst-shifted/
unknown
file:///C:/Users/user/Desktop/5_1%20Availity%20-%20Clearinghouse%20Payer%20List%20-%20Premium%20-%20Preferred%20Plus_xlsx.html
https://availity.my.salesforce.com/sfc/ld/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac/l/%7B%22mode%22%3A%22PROD%22%2C%22cac%22%3A0%2C%22app%22%3A%22forceContent%3AcontentDistributionApp%22%2C%22fwuid%22%3A%22ZDROWDdLOGtXcTZqSWZiU19ZaDJFdzk4bkk0bVJhZGJCWE9mUC1IZXZRbmcyNDguMTAuNS01LjAuMTA%22%2C%22loaded%22%3A%7B%22APPLICATION%40markup%3A%2F%2FforceContent%3AcontentDistributionApp%22%3A%22yYM3XHVkMyjSW6pzoV07SA%22%7D%2C%22mlr%22%3A1%2C%22pathPrefix%22%3A%22%2Fsfc%2Fld%2F300000000I3W%2Fa%2FHp000000Rk08%2FYmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac%22%2C%22dns%22%3A%22c%22%2C%22ls%22%3A1%2C%22lrmc%22%3A%22-386269907%22%7D/inline.js?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9..raywhquk_DPjFviibgGv8hsGg1ZYzXTbQxKdp_cBurk
136.146.39.118
http://polymer.github.io/AUTHORS.txt
unknown
https://availity.lightning.force.com/aura?r=0&ui-content-components-forceContent-contentDistributionViewer.ContentDistributionViewer.getContentDistributionInfo=1
136.146.40.118
https://availity.my.salesforce.com/sfc/ld/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac/l/%7B%22mode%22%3A%22PROD%22%2C%22cac%22%3A0%2C%22app%22%3A%22forceContent%3AcontentDistributionApp%22%2C%22fwuid%22%3A%22ZDROWDdLOGtXcTZqSWZiU19ZaDJFdzk4bkk0bVJhZGJCWE9mUC1IZXZRbmcyNDguMTAuNS01LjAuMTA%22%2C%22loaded%22%3A%7B%22APPLICATION%40markup%3A%2F%2FforceContent%3AcontentDistributionApp%22%3A%22yYM3XHVkMyjSW6pzoV07SA%22%7D%2C%22mlr%22%3A1%2C%22pathPrefix%22%3A%22%2Fsfc%2Fld%2F300000000I3W%2Fa%2FHp000000Rk08%2FYmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac%22%2C%22dns%22%3A%22c%22%2C%22ls%22%3A1%2C%22lrmc%22%3A%22-386269907%22%7D/resources.js?pv=17155677180001928571293&rv=1716008668000
136.146.39.118
https://availity.my.salesforce.com/favicon.ico
136.146.39.118
https://availity.my.salesforce.com/sfc/ld/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac/_slds/icons/doctype-sprite/svg/symbols.svg?cache=10.8.2
136.146.39.118
http://momentjs.com/guides/#/warnings/js-date/
unknown
https://availity.my.salesforce.com/sfc/ld/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac/auraFW/javascript/ZDROWDdLOGtXcTZqSWZiU19ZaDJFdzk4bkk0bVJhZGJCWE9mUC1IZXZRbmcyNDguMTAuNS01LjAuMTA/aura_prod.js
136.146.39.118
https://availity.my.salesforce.com/auraCmpDef?_au=yYM3XHVkMyjSW6pzoV07SA&_c=false&_cac=0&_def=markup://lightning:iconSvgTemplatesUtility&_density=VIEW_ONE&_ff=DESKTOP&_l=true&_l10n=en_US&_lrmc=-386269907&_style=-967093545&_uid=cTOlNQKHjpgxabUxr4qLPg&aura.app=markup://forceContent:contentDistributionApp&aura.mode=PROD
136.146.39.118
https://availity.my.salesforce.com/sfc/p/#300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac
https://availity.my.salesforce.com/sCSS/60.0/sprites/1705602480000/Theme3/default/gc/contentDistribution.css
136.146.39.118
http://momentjs.com/guides/#/warnings/define-locale/
unknown
https://availity.my.salesforce.com/sfc/p/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx
unknown
https://availity.my.salesforce.com/sfc/ld/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac/l/%7B%22mode%22%3A%22PROD%22%2C%22cac%22%3A0%2C%22app%22%3A%22forceContent%3AcontentDistributionApp%22%2C%22fwuid%22%3A%22ZDROWDdLOGtXcTZqSWZiU19ZaDJFdzk4bkk0bVJhZGJCWE9mUC1IZXZRbmcyNDguMTAuNS01LjAuMTA%22%2C%22loaded%22%3A%7B%22APPLICATION%40markup%3A%2F%2FforceContent%3AcontentDistributionApp%22%3A%22yYM3XHVkMyjSW6pzoV07SA%22%7D%2C%22mlr%22%3A1%2C%22pathPrefix%22%3A%22%2Fsfc%2Fld%2F300000000I3W%2Fa%2FHp000000Rk08%2FYmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac%22%2C%22dns%22%3A%22c%22%2C%22ls%22%3A1%2C%22lrmc%22%3A%22-386269907%22%7D/bootstrap.js?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9..raywhquk_DPjFviibgGv8hsGg1ZYzXTbQxKdp_cBurk
136.146.39.118
https://availity.my.salesforce.com/sfc/ld/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac/aura?r=0&ui-content-components-forceContent-contentDistributionViewer.ContentDistributionViewer.getContentDistributionInfo=1
136.146.39.118
https://availity.my.salesforce.com/visualforce/session?url=https%3A%2F%2Favaility.lightning.force.com%2Faura%3Fr%3D1%26ui-content-components-forceContent-previewInfoProvider.PreviewInfoProvider.getPreviewInfo%3D1
136.146.39.118
https://availity.my.salesforce.com/sfc/ld/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac/l/%7B%22mode%22%3A%22PROD%22%2C%22cac%22%3A0%2C%22app%22%3A%22forceContent%3AcontentDistributionApp%22%2C%22serializationVersion%22%3A%221-248.10.5-5.0.10-b%22%2C%22parts%22%3A%22t%22%2C%22loaded%22%3A%7B%22APPLICATION%40markup%3A%2F%2FforceContent%3AcontentDistributionApp%22%3A%22yYM3XHVkMyjSW6pzoV07SA%22%7D%2C%22dns%22%3A%22c%22%2C%22ls%22%3A1%2C%22lrmc%22%3A%22-386269907%22%7D/app.js?2=
136.146.39.118
https://availity.my.salesforce.com/sfc/ld/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac/l/%7B%22mode%22%3A%22PROD%22%2C%22cac%22%3A0%2C%22app%22%3A%22forceContent%3AcontentDistributionApp%22%2C%22loaded%22%3A%7B%22APPLICATION%40markup%3A%2F%2FforceContent%3AcontentDistributionApp%22%3A%22yYM3XHVkMyjSW6pzoV07SA%22%7D%2C%22styleContext%22%3A%7B%22c%22%3A%22webkit%22%2C%22x%22%3A%5B%22isDesktop%22%5D%2C%22tokens%22%3A%5B%22markup%3A%2F%2Fforce%3AsldsTokens%22%2C%22markup%3A%2F%2Fforce%3Abase%22%2C%22markup%3A%2F%2Fforce%3AformFactorLarge%22%5D%2C%22tuid%22%3A%22Co0Kry3W16Y_2a-Eqon3-w%22%2C%22cuid%22%3A-967093545%7D%2C%22pathPrefix%22%3A%22%2Fsfc%2Fld%2F300000000I3W%2Fa%2FHp000000Rk08%2FYmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac%22%7D/app.css?2=
136.146.39.118
http://polymer.github.io/CONTRIBUTORS.txt
unknown
https://www.lightningdesignsystem.com/resources/icons/
unknown
https://availity.file.force.com/sfc/dist/version/download/?oid=00D300000000I3W&ids=068Hp00000iR79IIAS&d=%2Fa%2FHp000000Rk08%2FYmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac&operationContext=DELIVERY&viewId=05HHp000004Mt4cMAC&dpt=
136.146.34.118
http://momentjs.com/guides/#/warnings/min-max/
unknown
https://availity.my.salesforce.com/sfc/p/300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac
136.146.39.118
There are 32 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
www.google.com
142.250.184.196
na233-ia7.ia7.r.salesforce.com
136.146.39.118
availity.lightning.force.com
unknown
availity.my.salesforce.com
unknown
availity.file.force.com
unknown

IPs

IP
Domain
Country
Malicious
142.250.184.196
www.google.com
United States
136.146.34.118
unknown
United States
192.168.2.6
unknown
unknown
136.146.40.118
unknown
United States
239.255.255.250
unknown
Reserved
136.146.39.118
na233-ia7.ia7.r.salesforce.com
United States

DOM / HTML

URL
Malicious
file:///C:/Users/user/Desktop/5_1%20Availity%20-%20Clearinghouse%20Payer%20List%20-%20Premium%20-%20Preferred%20Plus_xlsx.html
https://availity.my.salesforce.com/sfc/p/#300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac
https://availity.my.salesforce.com/sfc/p/#300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac
https://availity.my.salesforce.com/sfc/p/#300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac
https://availity.my.salesforce.com/sfc/p/#300000000I3W/a/Hp000000Rk08/YmhNn6WGveSBS3MbbrIXyqcpNf.oqrx_1b90T4wSZac