IOC Report
http://pemulihan-akun.dana-24.webappsystem.com/

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 52
HTML document, ASCII text, with very long lines (6714), with CRLF line terminators
downloaded
Chrome Cache Entry: 53
PNG image data, 1440 x 575, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 54
Unicode text, UTF-8 text, with very long lines (50806)
downloaded
Chrome Cache Entry: 55
PNG image data, 1440 x 575, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 56
Unicode text, UTF-8 text
downloaded
Chrome Cache Entry: 57
GIF image data, version 89a, 32 x 32
dropped
Chrome Cache Entry: 58
PNG image data, 1440 x 575, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 59
ASCII text, with very long lines (65371)
downloaded
Chrome Cache Entry: 60
ASCII text, with very long lines (42862)
downloaded
Chrome Cache Entry: 61
PNG image data, 600 x 315, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 62
Web Open Font Format, CFF, length 1380, version 1.0
downloaded
Chrome Cache Entry: 63
ASCII text, with very long lines (1572)
downloaded
Chrome Cache Entry: 64
ASCII text
downloaded
Chrome Cache Entry: 65
Web Open Font Format (Version 2), TrueType, length 18720, version 1.0
downloaded
Chrome Cache Entry: 66
PNG image data, 600 x 315, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 67
ASCII text, with very long lines (65451)
downloaded
Chrome Cache Entry: 68
GIF image data, version 89a, 32 x 32
downloaded
Chrome Cache Entry: 69
Unicode text, UTF-8 text, with very long lines (65300)
downloaded
Chrome Cache Entry: 70
PNG image data, 1440 x 575, 8-bit/color RGB, non-interlaced
downloaded
There are 10 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2264 --field-trial-handle=2124,i,9666912475870280729,789640676844921617,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://pemulihan-akun.dana-24.webappsystem.com/"

URLs

Name
IP
Malicious
http://pemulihan-akun.dana-24.webappsystem.com/
malicious
http://pemulihan-akun.dana-24.webappsystem.com/
malicious
https://github.com/google/material-design-icons
unknown
https://cdn.jsdelivr.net/npm/bootstrap
unknown
https://github.com/twbs/bootstrap/blob/main/LICENSE)
unknown
https://code.ionicframework.com/ionicons/2.0.1/css/ionicons.min.css
104.26.7.173
https://twitter.com/benjsperry
unknown
https://api2.branch.io
unknown
http://pemulihan-akun.dana-24.webappsystem.com/img/logo-ojk.png
188.166.191.232
http://ionicons.com/
unknown
https://getbootstrap.com/)
unknown
https://cdnjs.cloudflare.com/ajax/libs/jquery/3.5.1/jquery.min.js
104.17.24.14
https://github.com/driftyco/ionicons
unknown
https://www.dana.id/favicon.ico
unknown
https://maxcdn.bootstrapcdn.com/bootstrap/3.3.5/css/bootstrap.min.css
104.18.10.207
https://twitter.com/ionicframework
unknown
https://app.link
unknown
https://a.m.dana.id
unknown
https://a.m.dana.id/danaweb/web/dana-meta-logo.png
unknown
https://cdn.jsdelivr.net/npm/slick-carousel
unknown
http://getbootstrap.com)
unknown
https://github.com/twbs/bootstrap/blob/master/LICENSE)
unknown
https://sentry.io
unknown
http://pemulihan-akun.dana-24.webappsystem.com/img/1.png
188.166.191.232
https://youtube.com
unknown
http://pemulihan-akun.dana-24.webappsystem.com/img/2.png
188.166.191.232
https://cdn.lr-ingest.io
unknown
http://creativecommons.org/licenses/by/4.0/
unknown
There are 17 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
bg.microsoft.map.fastly.net
199.232.210.172
app.link
18.66.27.116
cdnjs.cloudflare.com
104.17.24.14
sentry.io
35.186.247.156
maxcdn.bootstrapcdn.com
104.18.10.207
www.google.com
142.250.185.164
cdn.lr-ingest.io
188.114.97.3
code.ionicframework.com
104.26.7.173
fp2e7a.wpc.phicdn.net
192.229.221.95
pemulihan-akun.dana-24.webappsystem.com
188.166.191.232
api2.branch.io
13.32.110.70
youtube.com
142.250.185.142
cdn.jsdelivr.net
unknown
a.m.dana.id
unknown
www.dana.id
unknown
There are 5 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
104.17.24.14
cdnjs.cloudflare.com
United States
18.66.27.116
app.link
United States
104.18.10.207
maxcdn.bootstrapcdn.com
United States
35.186.247.156
sentry.io
United States
188.166.191.232
pemulihan-akun.dana-24.webappsystem.com
Netherlands
192.168.2.6
unknown
unknown
192.168.2.5
unknown
unknown
239.255.255.250
unknown
Reserved
188.114.97.3
cdn.lr-ingest.io
European Union
142.250.185.142
youtube.com
United States
142.250.185.164
www.google.com
United States
104.26.7.173
code.ionicframework.com
United States
13.32.110.70
api2.branch.io
United States
There are 3 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
http://pemulihan-akun.dana-24.webappsystem.com/
http://pemulihan-akun.dana-24.webappsystem.com/
http://pemulihan-akun.dana-24.webappsystem.com/