IOC Report
http://bafybeicyoou3q7k5bml4hx2cqyi7ytj76vckg4hfeuvxbwxh3uw3qlhwwu.ipfs.cf-ipfs.com/

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 42
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 513
dropped
Chrome Cache Entry: 43
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 44
Unicode text, UTF-8 text, with very long lines (65335)
downloaded
Chrome Cache Entry: 45
gzip compressed data, from Unix, original size modulo 2^32 749686
downloaded
Chrome Cache Entry: 46
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 513
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2568 --field-trial-handle=2484,i,13484271707041999364,4180294912672599584,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://bafybeicyoou3q7k5bml4hx2cqyi7ytj76vckg4hfeuvxbwxh3uw3qlhwwu.ipfs.cf-ipfs.com/"

URLs

Name
IP
Malicious
http://bafybeicyoou3q7k5bml4hx2cqyi7ytj76vckg4hfeuvxbwxh3uw3qlhwwu.ipfs.cf-ipfs.com/
malicious
http://bafybeicyoou3q7k5bml4hx2cqyi7ytj76vckg4hfeuvxbwxh3uw3qlhwwu.ipfs.cf-ipfs.com/
malicious
https://getbootstrap.com/)
unknown
http://bafybeicyoou3q7k5bml4hx2cqyi7ytj76vckg4hfeuvxbwxh3uw3qlhwwu.ipfs.cf-ipfs.com/cdnjs.cloudflare.com/ajax/libs/font-awesome/6.1.1/css/all.min.css
104.17.64.14
https://github.com/twbs/bootstrap/blob/main/LICENSE)
unknown
https://cdn.jsdelivr.net/npm/bootstrap@5.3.0-alpha3/dist/css/bootstrap.min.css
151.101.193.229

Domains

Name
IP
Malicious
officedocuments.com.ng
unknown
malicious
jsdelivr.map.fastly.net
151.101.193.229
part-0017.t-0009.t-msedge.net
13.107.246.45
cloudflare-ipfs.com
104.17.64.14
www.google.com
216.58.206.68
part-0015.t-0009.t-msedge.net
13.107.246.43
fp2e7a.wpc.phicdn.net
192.229.221.95
bafybeicyoou3q7k5bml4hx2cqyi7ytj76vckg4hfeuvxbwxh3uw3qlhwwu.ipfs.cf-ipfs.com
unknown
cdn.jsdelivr.net
unknown

IPs

IP
Domain
Country
Malicious
13.107.246.43
part-0015.t-0009.t-msedge.net
United States
13.107.246.45
part-0017.t-0009.t-msedge.net
United States
151.101.193.229
jsdelivr.map.fastly.net
United States
192.168.2.4
unknown
unknown
216.58.206.68
www.google.com
United States
192.168.2.5
unknown
unknown
239.255.255.250
unknown
Reserved
104.17.64.14
cloudflare-ipfs.com
United States

DOM / HTML

URL
Malicious
http://bafybeicyoou3q7k5bml4hx2cqyi7ytj76vckg4hfeuvxbwxh3uw3qlhwwu.ipfs.cf-ipfs.com/
malicious