IOC Report
https://u9602140.ct.sendgrid.net/ls/click?upn=u001.VhG8s3iu4lBtHwuiMZy5KmDQjwQgyAhDB3VZFBrwAyAwti9FWz3JXdLFB1r7mK6FseONf8PPgBQzA-2FoKEW-2B20ZEGMnI2mdxXGY-2BWgSBDP5t-2BYuTNY3xLQuRpoZyR2-2FFW8rsYk90SVdiogLqjKqx13DbbW5Ae4A4gRPXTaf0ia3MGnnvDC1GOcPGAORA-2FcNp7ikdK_B6R8xCfx9nFREAgpPI1bmJcVBhkYp-2FtjdAmyCB

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 64
ASCII text, with very long lines (4370), with no line terminators
downloaded
Chrome Cache Entry: 65
ASCII text, with very long lines (58254)
downloaded
Chrome Cache Entry: 66
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, comment: "CREATOR: gd-jpeg v1.0 (using IJG JPEG v62), default quality", baseline, precision 8, 1140x250, components 3
downloaded
Chrome Cache Entry: 67
Web Open Font Format (Version 2), TrueType, length 18588, version 1.0
downloaded
Chrome Cache Entry: 68
ASCII text, with very long lines (1004), with no line terminators
downloaded
Chrome Cache Entry: 69
ASCII text, with very long lines (58254)
dropped
Chrome Cache Entry: 70
ASCII text, with very long lines (44237)
downloaded
Chrome Cache Entry: 71
ASCII text, with very long lines (3453), with no line terminators
downloaded
Chrome Cache Entry: 72
ASCII text, with very long lines (20384), with no line terminators
downloaded
Chrome Cache Entry: 73
Web Open Font Format (Version 2), TrueType, length 18536, version 1.0
downloaded
Chrome Cache Entry: 74
ASCII text
downloaded
Chrome Cache Entry: 75
MS Windows icon resource - 3 icons, 48x48, 32 bits/pixel, 32x32, 32 bits/pixel
downloaded
Chrome Cache Entry: 76
Web Open Font Format (Version 2), TrueType, length 18436, version 1.0
downloaded
Chrome Cache Entry: 77
ASCII text, with very long lines (1572)
downloaded
Chrome Cache Entry: 78
ASCII text, with very long lines (838), with no line terminators
dropped
Chrome Cache Entry: 79
ASCII text, with very long lines (329), with no line terminators
dropped
Chrome Cache Entry: 80
ASCII text, with very long lines (39926), with no line terminators
dropped
Chrome Cache Entry: 81
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, comment: "CREATOR: gd-jpeg v1.0 (using IJG JPEG v62), default quality", baseline, precision 8, 1140x250, components 3
dropped
Chrome Cache Entry: 82
PNG image data, 1375 x 296, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 83
ASCII text, with very long lines (4370), with no line terminators
dropped
Chrome Cache Entry: 84
ASCII text, with very long lines (838), with no line terminators
downloaded
Chrome Cache Entry: 85
ASCII text, with very long lines (41984)
dropped
Chrome Cache Entry: 86
ASCII text, with very long lines (329), with no line terminators
downloaded
Chrome Cache Entry: 87
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 88
ASCII text, with very long lines (41984)
downloaded
Chrome Cache Entry: 89
ASCII text, with very long lines (65447)
dropped
Chrome Cache Entry: 90
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 91
PNG image data, 1375 x 296, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 92
ASCII text, with very long lines (55629)
downloaded
Chrome Cache Entry: 93
ASCII text, with very long lines (19409), with no line terminators
downloaded
Chrome Cache Entry: 94
HTML document, ASCII text, with very long lines (1179), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 95
ASCII text, with very long lines (65447)
downloaded
Chrome Cache Entry: 96
ASCII text, with very long lines (65364)
downloaded
Chrome Cache Entry: 97
ASCII text, with very long lines (39926), with no line terminators
downloaded
Chrome Cache Entry: 98
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 99
MS Windows icon resource - 3 icons, 48x48, 32 bits/pixel, 32x32, 32 bits/pixel
dropped
There are 27 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2148 --field-trial-handle=1988,i,17535674589457726320,2673314183611877230,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://u9602140.ct.sendgrid.net/ls/click?upn=u001.VhG8s3iu4lBtHwuiMZy5KmDQjwQgyAhDB3VZFBrwAyAwti9FWz3JXdLFB1r7mK6FseONf8PPgBQzA-2FoKEW-2B20ZEGMnI2mdxXGY-2BWgSBDP5t-2BYuTNY3xLQuRpoZyR2-2FFW8rsYk90SVdiogLqjKqx13DbbW5Ae4A4gRPXTaf0ia3MGnnvDC1GOcPGAORA-2FcNp7ikdK_B6R8xCfx9nFREAgpPI1bmJcVBhkYp-2FtjdAmyCBRTMnRwULgbOWZS4pEJEmGmuiQ-2Byk56FhkUMZjtImCbIuetEkD7iTrbjpvHdUHf-2FFrQdOqmHi43D63TKmFxhZ0U6puLh-2FCGwFMHIXlARDivlYbV8e0tI8AMw7mM-2BwErYVurzgZ8qbfrwrrzZc0-2FM-2FayUxKh-2BNKq1K1OE3lp2RipBRTHxHV6Zsd4DuOcsWCNhAFAiGX3Wy6GF6azWks59MMzVAc9b-2Bha0YTigXlLfe1wLzLvIKQiCOCVv0QU62gKnFXTTSpQfT8OZgAmIljk2M5qDqW138nXkjm7605wSfrtE9OXqiMwCy6s-2B4dQX0eUC-2F-2Be0yqFOkFtHz416IHOPmLB-2FVJf-2B9G4r5NW4CSKstYKiNT2tbk6wKB1p55qNR8j969mvbe5qB73WZw9IMyK81uQhCVnfQkpyC5F32pOPhIz-2BAnXwvNWQI5Divx01kJBM9nUPCgmry-2BkeobpGTvhtERrT4gK8AbRp2Mn6F86hGCul5VmLg-3D-3D"

URLs

Name
IP
Malicious
https://u9602140.ct.sendgrid.net/ls/click?upn=u001.VhG8s3iu4lBtHwuiMZy5KmDQjwQgyAhDB3VZFBrwAyAwti9FWz3JXdLFB1r7mK6FseONf8PPgBQzA-2FoKEW-2B20ZEGMnI2mdxXGY-2BWgSBDP5t-2BYuTNY3xLQuRpoZyR2-2FFW8rsYk90SVdiogLqjKqx13DbbW5Ae4A4gRPXTaf0ia3MGnnvDC1GOcPGAORA-2FcNp7ikdK_B6R8xCfx9nFREAgpPI1bmJcVBhkYp-2FtjdAmyCBRTMnRwULgbOWZS4pEJEmGmuiQ-2Byk56FhkUMZjtImCbIuetEkD7iTrbjpvHdUHf-2FFrQdOqmHi43D63TKmFxhZ0U6puLh-2FCGwFMHIXlARDivlYbV8e0tI8AMw7mM-2BwErYVurzgZ8qbfrwrrzZc0-2FM-2FayUxKh-2BNKq1K1OE3lp2RipBRTHxHV6Zsd4DuOcsWCNhAFAiGX3Wy6GF6azWks59MMzVAc9b-2Bha0YTigXlLfe1wLzLvIKQiCOCVv0QU62gKnFXTTSpQfT8OZgAmIljk2M5qDqW138nXkjm7605wSfrtE9OXqiMwCy6s-2B4dQX0eUC-2F-2Be0yqFOkFtHz416IHOPmLB-2FVJf-2B9G4r5NW4CSKstYKiNT2tbk6wKB1p55qNR8j969mvbe5qB73WZw9IMyK81uQhCVnfQkpyC5F32pOPhIz-2BAnXwvNWQI5Divx01kJBM9nUPCgmry-2BkeobpGTvhtERrT4gK8AbRp2Mn6F86hGCul5VmLg-3D-3D
http://benalman.com/projects/jquery-bbq-plugin/
unknown
https://www.meetmax.com/sched/
unknown
http://api.jqueryui.com/spinner/#theming
unknown
http://jquery.org/license
unknown
https://github.com/jquery-form/form
unknown
https://github.com/carhartl/jquery-cookie
unknown
https://www.meetmax.com/dist/js/menu_more.bundle.js?_=4e0ee0051755ad84a2db836f85110a3b
67.227.249.46
http://api.jqueryui.com/dialog/#theming
unknown
https://www.meetmax.com/upload/client701/logo/Jefferies_Logo_Black_new-size2.png
67.227.249.46
http://jqueryui.com
unknown
http://api.jqueryui.com/category/theming/
unknown
http://jqueryui.com/themeroller/?scope=&folderName=redmond&cornerRadiusShadow=8px&offsetLeftShadow=-
unknown
http://www.smartmenus.org/
unknown
https://www.meetmax.com/dist/css/investor_login.css?_=ee0f82baaeb772960dd53334bbb2f1a8
67.227.249.46
https://www.meetmax.com/dist/js/client_tz.bundle.js?_=5fe0fac7ba8ff15ce6d3e8c957dc48c5
67.227.249.46
http://vadikom.com
unknown
https://github.com/jquery/jquery-color
unknown
https://www.meetmax.com/dist/js/mobile.bundle.js?_=a72c25aff87428d1addea5359c7c4a64
67.227.249.46
http://api.jqueryui.com/tabs/#theming
unknown
http://npm.im/verge
unknown
http://refresh-sf.com/
unknown
http://benalman.com/about/license/
unknown
https://www.meetmax.com/dist/js/bootstrap.bundle.js?_=730bd24c67ca5f98e472e8eacf5bcc2c
67.227.249.46
https://www.meetmax.com/dist/js/investor_login.bundle.js?_=7d2b220af0f4c7d747ad1bc49247b2a8
67.227.249.46
https://fontawesome.com
unknown
https://github.com/mholt/PapaParse
unknown
http://api.jqueryui.com/datepicker/#theming
unknown
https://www.meetmax.com/upload/event_110491/web-banner.jpg
67.227.249.46
http://www.opensource.org/licenses/mit-license
unknown
https://www.meetmax.com/dist/css/bootstrap-themes/spacelab.css?_=7d4fbb697a467dc86f712c4dbd1b4d62
67.227.249.46
https://fontawesome.com/license
unknown
http://guriddo.net/?page_id=103334
unknown
https://github.com/jquery-form/form#license
unknown
https://www.meetmax.com/dist/css/commons.css?_=8088314e9dc5ae3f408de97576a93c71
67.227.249.46
https://www.meetmax.com/dist/js/vendor.bundle.js?_=b381870f90a877ab8f0a00e10942e0f7
67.227.249.46
https://mths.be/punycode
unknown
https://github.com/happyDemon/ParsleyJS-LaraExtras
unknown
https://u9602140.ct.sendgrid.net/ls/click?upn=u001.VhG8s3iu4lBtHwuiMZy5KmDQjwQgyAhDB3VZFBrwAyAwti9FWz3JXdLFB1r7mK6FseONf8PPgBQzA-2FoKEW-2B20ZEGMnI2mdxXGY-2BWgSBDP5t-2BYuTNY3xLQuRpoZyR2-2FFW8rsYk90SVdiogLqjKqx13DbbW5Ae4A4gRPXTaf0ia3MGnnvDC1GOcPGAORA-2FcNp7ikdK_B6R8xCfx9nFREAgpPI1bmJcVBhkYp-2FtjdAmyCBRTMnRwULgbOWZS4pEJEmGmuiQ-2Byk56FhkUMZjtImCbIuetEkD7iTrbjpvHdUHf-2FFrQdOqmHi43D63TKmFxhZ0U6puLh-2FCGwFMHIXlARDivlYbV8e0tI8AMw7mM-2BwErYVurzgZ8qbfrwrrzZc0-2FM-2FayUxKh-2BNKq1K1OE3lp2RipBRTHxHV6Zsd4DuOcsWCNhAFAiGX3Wy6GF6azWks59MMzVAc9b-2Bha0YTigXlLfe1wLzLvIKQiCOCVv0QU62gKnFXTTSpQfT8OZgAmIljk2M5qDqW138nXkjm7605wSfrtE9OXqiMwCy6s-2B4dQX0eUC-2F-2Be0yqFOkFtHz416IHOPmLB-2FVJf-2B9G4r5NW4CSKstYKiNT2tbk6wKB1p55qNR8j969mvbe5qB73WZw9IMyK81uQhCVnfQkpyC5F32pOPhIz-2BAnXwvNWQI5Divx01kJBM9nUPCgmry-2BkeobpGTvhtERrT4gK8AbRp2Mn6F86hGCul5VmLg-3D-3D
167.89.123.64
http://api.jqueryui.com/selectmenu/#theming
unknown
http://github.com/requirejs/almond/LICENSE
unknown
http://api.jqueryui.com/accordion/#theming
unknown
https://github.com/ably/ably-js
unknown
http://trentrichardson.com/examples/timepicker
unknown
http://api.jqueryui.com/checkboxradio/#theming
unknown
https://www.meetmax.com/dist/css/root/common.css?_=96386d3162fc73d30b102e4f6a8c8bdf
67.227.249.46
http://api.jqueryui.com/menu/#theming
unknown
http://api.jqueryui.com/slider/#theming
unknown
https://github.com/twitter/typeahead.js
unknown
https://github.com/date-fns/date-fns/blob/master/docs/upgradeGuide.md#string-arguments
unknown
http://benalman.com/projects/jquery-hashchange-plugin/
unknown
http://api.jqueryui.com/position/
unknown
http://hemantnegi.github.io/jquery.sumoselect
unknown
https://www.meetmax.com/dist/css/public/alt1/main.css?_=edc98c41010c00bda5198b5ad5c23998
67.227.249.46
https://github.com/harvesthq/chosen
unknown
https://www.meetmax.com/dist/css/mobile.css?_=430d2534c8d98b9487524d2c1b2e3a9f
67.227.249.46
https://getbootstrap.com/)
unknown
http://api.jqueryui.com/tooltip/#theming
unknown
https://www.meetmax.com/js/lib/jquery-3.6.0.min.js
67.227.249.46
https://jefferies.com
unknown
http://api.jqueryui.com/button/#theming
unknown
http://parsleyjs.org
unknown
http://medialize.github.io/URI.js/
unknown
http://www.opensource.org/licenses/mit-license.php)
unknown
https://feross.org/opensource
unknown
https://github.com/harvesthq/chosen/blob/master/LICENSE.md
unknown
https://www.meetmax.com/dist/js/commons.bundle.js?_=06057878e63bd36d4c7fe92392318b34
67.227.249.46
http://plugins.learningjquery.com/cluetip/
unknown
https://github.com/uxsolutions/bootstrap-datepicker)
unknown
https://www.meetmax.com/sched/event_110491/investor_login.html?event_id=110491&username=Anders&confirmation_number=XMJWQTJVE2J
https://www.meetmax.com/dist/css/vendor.css?_=18ce0d5ce6e4985a562eaca5de015455
67.227.249.46
https://github.com/twbs/bootstrap/blob/master/LICENSE)
unknown
https://www.apache.org/licenses/LICENSE-2.0)
unknown
https://github.com/js-cookie/js-cookie
unknown
https://github.com/h5bp/html5-boilerplate/blob/master/src/css/main.css
unknown
https://www.meetmax.com/favicon.ico
67.227.249.46
http://feross.org
unknown
http://api.jqueryui.com/controlgroup/#theming
unknown
https://fullcalendar.io/
unknown
http://api.jqueryui.com/progressbar/#theming
unknown
http://getharvest.com
unknown
http://api.jqueryui.com/autocomplete/#theming
unknown
There are 71 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
www.meetmax.com
67.227.249.46
s-part-0044.t-0009.fb-t-msedge.net
13.107.253.72
s-part-0017.t-0009.fb-t-msedge.net
13.107.253.45
www.google.com
142.250.186.36
u9602140.ct.sendgrid.net
167.89.123.64
default.qdr.p1.ds-c7110-microsoft.global.dns.qwilted-cds.cqloud.com
217.20.57.25
fp2e7a.wpc.phicdn.net
192.229.221.95

IPs

IP
Domain
Country
Malicious
142.250.186.36
www.google.com
United States
192.168.2.17
unknown
unknown
192.168.2.4
unknown
unknown
192.168.2.5
unknown
unknown
239.255.255.250
unknown
Reserved
67.227.249.46
www.meetmax.com
United States
167.89.123.64
u9602140.ct.sendgrid.net
United States

DOM / HTML

URL
Malicious
https://www.meetmax.com/sched/event_110491/investor_login.html?event_id=110491&username=Anders&confirmation_number=XMJWQTJVE2J