IOC Report
Hirepool Finance Report.html

loading gif

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "C:\Users\user\Desktop\Hirepool Finance Report.html"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2272 --field-trial-handle=2136,i,10338269528735008511,460773570327190873,262144 /prefetch:8

URLs

Name
IP
Malicious
file:///C:/Users/user/Desktop/Hirepool%20Finance%20Report.html
https://url.au.m.mimecastprotect.com/s/LlaXCyojE0Cq3vNul1-F0?domain=ayssaless.com
unknown

Domains

Name
IP
Malicious
url.au.m.mimecastprotect.com
124.47.150.19
www.google.com
216.58.206.36

IPs

IP
Domain
Country
Malicious
239.255.255.250
unknown
Reserved
142.250.186.164
unknown
United States
124.47.150.19
url.au.m.mimecastprotect.com
Australia
192.168.2.6
unknown
unknown
216.58.206.36
www.google.com
United States

DOM / HTML

URL
Malicious
file:///C:/Users/user/Desktop/Hirepool%20Finance%20Report.html
file:///C:/Users/user/Desktop/Hirepool%20Finance%20Report.html