IOC Report
https://metaioseklcogin.webflow.io/

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 47
HTML document, Unicode text, UTF-8 text, with very long lines (8861), with no line terminators
downloaded
Chrome Cache Entry: 48
ASCII text, with very long lines (65451)
downloaded
Chrome Cache Entry: 49
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 50
gzip compressed data, from Unix, original size modulo 2^32 37646
downloaded
Chrome Cache Entry: 51
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1264x764, components 3
dropped
Chrome Cache Entry: 52
gzip compressed data, from Unix, original size modulo 2^32 37279
downloaded
Chrome Cache Entry: 53
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1264x764, components 3
downloaded
Chrome Cache Entry: 54
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
dropped

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2516 --field-trial-handle=2296,i,4188136114675171219,13452510514202242541,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://metaioseklcogin.webflow.io/"

URLs

Name
IP
Malicious
https://metaioseklcogin.webflow.io/
malicious
https://metaioseklcogin.webflow.io/
malicious
https://d3e54v103j8qbb.cloudfront.net/js/jquery-3.5.1.min.dc5e7f18c8.js?site=658cec990fe960c2d842cbdb
52.222.232.99
https://assets-global.website-files.com/658cec990fe960c2d842cbdb/js/webflow.235cb1a9b.js
18.245.162.13
https://assets-global.website-files.com/658cec990fe960c2d842cbdb/css/metaioseklcogin.webflow.5e22c9479.css
18.245.162.13
https://assets-global.website-files.com/658cec990fe960c2d842cbdb/658ced94adc727c27bb15f04_MetaMask_Fox.svg.png
18.245.162.13
https://assets-global.website-files.com/img/webclip.png
unknown
https://assets-global.website-files.com/658cec990fe960c2d842cbdb/658cecd186303d8f3a24cfe1_metamas-banner_.jpg
18.245.162.13
https://assets-global.website-files.com/658cec990fe960c2d842cbdb/658cecd186303d8f3a24cfe1_metamas-ba
unknown
https://assets-global.website-files.com/658cec990fe960c2d842cbdb/css/metaioseklcogin.webflow.5e22c94
unknown
https://assets-global.website-files.com/658cec990fe960c2d842cbdb/658ced94adc727c27bb15f04_MetaMask_F
unknown
https://flesterwisors.com/a84e76ff-85b6-4efe-95ff-70294deaf642
unknown
https://webflow.com
unknown
There are 2 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
d3e54v103j8qbb.cloudfront.net
52.222.232.99
webflow-io.map.fastly.net
151.101.2.188
google.com
142.250.184.238
d3vmvmej3wjbxn.cloudfront.net
18.245.162.13
www.google.com
142.250.185.196
fp2e7a.wpc.phicdn.net
192.229.221.95
windowsupdatebg.s.llnwi.net
87.248.205.0
assets-global.website-files.com
unknown
flesterwisors.com
unknown
metaioseklcogin.webflow.io
unknown

IPs

IP
Domain
Country
Malicious
18.239.69.126
unknown
United States
192.168.2.4
unknown
unknown
192.168.2.5
unknown
unknown
239.255.255.250
unknown
Reserved
151.101.2.188
webflow-io.map.fastly.net
United States
18.245.162.13
d3vmvmej3wjbxn.cloudfront.net
United States
142.250.185.196
www.google.com
United States
52.222.232.99
d3e54v103j8qbb.cloudfront.net
United States

DOM / HTML

URL
Malicious
https://metaioseklcogin.webflow.io/